4 ms·
XDG portals are just APIs that applications can implement and use. Regardless, do you not trust the applications that you run natively?
by mixedCase 3y ago
XDG portals are just APIs that applications can implement and use.
Regardless, do you not trust the applications that you run natively?
- kaba0 3y agoA “good” pdf reader only needs a bug and a bad pdf file.
- carbotaniuman 3y agoI mean I trust Firefox to not steal my data, or maybe $APP_NAME, but do I trust the C++ code? Or maybe it's an app that's been pwned a lot. Sandboxing has uses other than running actively hostile apps (for which I'd argue this kind of sandboxing isn't enough).
- ben0x539 3y agoI generally trust the applications that I run natively to not be malicious, but I don't always trust them to not step on each other's toes, or make a well-intentioned mess of things.
- mjg59 3y agoI don't assume that applications are inherently hostile, but I do not trust that the developer of every application I use to open untrusted input is sufficiently security conscious to prevent those applications from being subverted.
- Gigachad 3y agoNo, I absolutely do not trust the applications I run natively. I trust the hardware, the OS, and the sandboxing layer. Mostly because I have to. I absolutely do not trust Spotify or Steam with my personal documents