4 ms·
Show HN: Sandworm.js – Easy auditing and sandboxing for JavaScript dependencies
- cphoover 4y agoHmmm wouldn't you want to intercept syscalls at the kernel level like AppArmor instead of at the application level?
- cphoover 4y agoThis is cool though
- gabidobocan 4y agoThanks! Yes you can (and should) also intercept at kernel level, but the kernel can't tell which of your app's dependencies is responsible for the call, only the application knows that.