I love flatpaks, they're convenient for distibution and maintenance. There's always a lot of discussion over it's security model; reading home, using X11, permissions for accessing devices, etc
I think it's great to have such control, but it does feel kind of 'patched in', why isn't this model integrated kernel level?
If you look at Android, each app runs as a different user, which is a kernel level system, and feel in line with the main linux security model
Could we have something like that, low level supported, like a app-level permissions on kernel level?
I'm new, i don't know much about this, but i was thinking about it and would like to hear your thoughts!
[link] [comments]