From e38d2078cc70b0453ef70523a8ad38279941aca2 Mon Sep 17 00:00:00 2001 From: Olcan Date: Tue, 10 Jun 2025 08:58:37 -0700 Subject: restricted networking for all sandboxing methods, new seatbelt profiles, updated docs, fixes to sandbox build, debugging through sandbox (#891) --- packages/cli/src/utils/sandbox-macos-minimal.sb | 19 ------------------- 1 file changed, 19 deletions(-) delete mode 100644 packages/cli/src/utils/sandbox-macos-minimal.sb (limited to 'packages/cli/src/utils/sandbox-macos-minimal.sb') diff --git a/packages/cli/src/utils/sandbox-macos-minimal.sb b/packages/cli/src/utils/sandbox-macos-minimal.sb deleted file mode 100644 index 552efcd4..00000000 --- a/packages/cli/src/utils/sandbox-macos-minimal.sb +++ /dev/null @@ -1,19 +0,0 @@ -(version 1) - -;; allow everything by default -(allow default) - -;; deny all writes EXCEPT under specific paths -(deny file-write*) -(allow file-write* - (subpath (param "TARGET_DIR")) - (subpath (param "TMP_DIR")) - (subpath (param "CACHE_DIR")) - (subpath (string-append (param "HOME_DIR") "/.gemini")) - (subpath (string-append (param "HOME_DIR") "/.npm")) - (subpath (string-append (param "HOME_DIR") "/.cache")) - (subpath (string-append (param "HOME_DIR") "/.gitconfig")) - (literal "/dev/stdout") - (literal "/dev/stderr") - (literal "/dev/null") -) \ No newline at end of file -- cgit v1.2.3