Skip to content
This repository was archived by the owner on Feb 6, 2026. It is now read-only.
This repository was archived by the owner on Feb 6, 2026. It is now read-only.

Take steps to prevent file access from Sandbox #22

Description

@ynvaser

Previous issue: #15
Seems like it's not enough.
I'd suggest running the app with a linux user that only has read/execute access to what it needs to.

Activity

  1. I-Al-Istannen commented on Feb 16, 2019

    @I-Al-Istannen
    Contributor

    Letting it run with reduced rights is still beneficial, but it can not prevent the bot from reading it's own token. Though adding a safeguard that blocks all executed code from reading a file in the bot directory would be possible.

  2. self-assigned this
    on Mar 18, 2019
  3. irufus commented on Mar 18, 2019

    @irufus
    Contributor

    Leaving a note to close and split this into another issue.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

Labels

enhancementNew feature or request

Type

No type

Projects

No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions