Damned #Arch #Linux...
I wanted to start using #selinux on my main computer, because I have untrusted apps I don't want to spy on me. Like obedient Arch user I searched their sacred #Wiki... And suprise! Selinux-related packages are in damned #AUR!
I feel using systemd (and few other important things) from AUR is less safe than using these things from [testing] 😏
Now I have to find other way to introduce app #isolation...
@madargon Firefox containers are great. You might like @stoically 's Temporary Containers extension. It can be set to open each new tab in a new container that gets cleared after closing.
I've read that firejail can be used alongside apparmor. What I like about firejail is it's easy to quickly check running something outside of it if it breaks anything, and with the default profile it only lets Firefox see its settings and ~/Downloads, but nothing else on the filesystem.
Server run by the main developers of the project It is not focused on any particular niche interest - everyone is welcome as long as you follow our code of conduct!