Closed Olf0 closed 2 years ago
I'm not a sandboxing guru so someone may come along and correct me. However, my understanding of the suggestion to "have application sandboxing enforced to all applications" ¹ is that it meant any app that doesn't have either permissions or an opt-out specified, will be sandboxed by default anyway. This change was introduced in the 4.4.0 release.
Given this, and also given that the readme is now talking about an event in the past, maybe a better wording would be something like (just an initial suggestion):
"Since Sailfish OS 4.4.0 all applications that do not specifically opt-out or define permissions are sandboxed automatically using a default profile."
¹ This was also described in @vigejolla's sandboxing blog post as "we are planning to eventually sandbox all Sailfish apps by default".
Here's that proposal in PR form: https://github.com/sailfishos/sailjail-permissions/pull/128
The fourth sentence of the Sailjail README currently states: "Target is to have application sandboxing enforced to all applications, starting from Sailfish OS 4.4.0."
I wonder what "all" is supposed to mean precisely:
Please clarify the wording in the README, e.g., with one of my suggestions.
Jolla obviously missed the goal of reaching this target by Sailfish OS 4.4.0. AFAIU the Jolla Store app is not sandboxed, yet. While missing due dates is quite common in the IT-business, you might want to update the Sailfish OS release version in this sentence with your current target release.