4 ms·
At least I know a website couldn't read my id_rsa, as opposed to native executables. Unless there is a very serious browser exploit.
by maple3142 5y ago
At least I know a website couldn't read my id_rsa, as opposed to native executables. Unless there is a very serious browser exploit.
- ori_b 5y agoThey're working on it: https://wicg.github.io/file-system-access/ https://wicg.github.io/file-system-access/ While local apps are getting sandboxed properly: https://docs.flatpak.org/en/latest/sandbox-permissions.html https://docs.flatpak.org/en/latest/sandbox-permissions.html
- maple3142 5y ago> They're working on it: https://wicg.github.io/file-system-access/ https://wicg.github.io/file-system-access/ It seems it need user to manually select a file/folder to be used, like Android or iOS does. > While local apps are getting sandboxed properly: https://docs.flatpak.org/en/latest/sandbox-permissions.html https://docs.flatpak.org/en/latest/sandbox-permissions.html It looks good, but it seems many applications still require filesystem=host to run (https://flatkill.org/2020/ https://flatkill.org/2020/). Also, its sandbox solution isn't going to work on Windows, Mac and BSDs.
- ori_b 5y ago> It seems it need user to manually select a file/folder to be used, like Android or iOS does. please select your home directory for our super-awesome functionality
- pjmlp 5y agoIt doesn't need to, the server has the master key and the data it cares about is tracked on each HTTP request.