summaryrefslogtreecommitdiff
path: root/packages/cli/src/utils/sandbox-macos-minimal.sb
diff options
context:
space:
mode:
Diffstat (limited to 'packages/cli/src/utils/sandbox-macos-minimal.sb')
-rw-r--r--packages/cli/src/utils/sandbox-macos-minimal.sb19
1 files changed, 0 insertions, 19 deletions
diff --git a/packages/cli/src/utils/sandbox-macos-minimal.sb b/packages/cli/src/utils/sandbox-macos-minimal.sb
deleted file mode 100644
index 552efcd4..00000000
--- a/packages/cli/src/utils/sandbox-macos-minimal.sb
+++ /dev/null
@@ -1,19 +0,0 @@
-(version 1)
-
-;; allow everything by default
-(allow default)
-
-;; deny all writes EXCEPT under specific paths
-(deny file-write*)
-(allow file-write*
- (subpath (param "TARGET_DIR"))
- (subpath (param "TMP_DIR"))
- (subpath (param "CACHE_DIR"))
- (subpath (string-append (param "HOME_DIR") "/.gemini"))
- (subpath (string-append (param "HOME_DIR") "/.npm"))
- (subpath (string-append (param "HOME_DIR") "/.cache"))
- (subpath (string-append (param "HOME_DIR") "/.gitconfig"))
- (literal "/dev/stdout")
- (literal "/dev/stderr")
- (literal "/dev/null")
-) \ No newline at end of file