bitwarden / clients

Bitwarden client apps (web, browser extension, desktop, and cli).
https://bitwarden.com
Other
9.11k stars 1.21k forks source link

MacOS app downloaded from website does not use Sandboxing while App Store version does. #11525

Open duck09 opened 2 days ago

duck09 commented 2 days ago

Steps To Reproduce

  1. Download Bitwarden .dmg from website
  2. Download Bitwarden from App Store
  3. Check "Sandbox" column in Activity monitor

Expected Result

Both versions of the app are sandboxed.

Actual Result

Only the App Store version of the app is sandboxed.

Screenshots or Videos

No response

Additional Context

Sandboxing is an important security feature, especially for a password manager.

Operating System

macOS

Operating System Version

15

Installation method

Direct Download (from bitwarden.com)

Build Version

2024.9.0

Issue Tracking Info

rmcdowell-bitwarden commented 18 hours ago

Hi there,

Thank you for your report!

I was able to reproduce this issue, and I have flagged this to our engineering team.

If you wish to add any further information/screenshots/recordings etc., please feel free to do so at any time - our engineering team will be happy to review these.

Thanks once again!