@mjtsai Yes, malicious code that hijacks and exploits a security vulnerability in your app.
@mjtsai @rosyna @drewthaler If such entitlements existed, a lot of Developer ID apps would be on the store.
-
-
@ameaijou@rosyna@drewthaler No, I mean the entitlements should go beyond what Apple would accept in the store. -
@mjtsai@ameaijou@drewthaler There are entitlements non-MAS apps can use that MAS apps can't. -
@rosyna@ameaijou@drewthaler Yes, I’m saying there should be more. I don’t want to run into a road block *after* adopting sandboxing. -
@mjtsai@ameaijou@drewthaler But which ones are missing that you'd run into? - View other replies
-
@rosyna@ameaijou@drewthaler First issue is what’s not possible, even with non-MAS entitlements, at least in a documented/supported way.
-
-
-
@ameaijou@mjtsai@drewthaler Which are currently missing? -
@ameaijou@mjtsai@drewthaler Also, non-MAS Apps can declare sandbox exceptions for AppleEvents and Mach messaging, the two major issues. -
@rosyna@ameaijou@drewthaler But only specific targets/ports that are known at compile time, right? -
@mjtsai@ameaijou@drewthaler No, they can be blanket exceptions. - View other replies
-
@rosyna@ameaijou@drewthaler I don’t think the link that you posted offers blanket exceptions. Plus, those are temporary. - View other replies
-
@mjtsai@rosyna@ameaijou@drewthaler “temporary” in that Apple specifically says use them and file bugs for missing permanent things. -
@Schwieb@mjtsai@ameaijou@drewthaler That too, if there's no current way to narrow the focus with existing entitlements.
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.
More magic than a mere Twitter bio can contain
Rosyna Keller
Michael Tsai
Drew Thaler
Gwynne Raskind
Erik Schwiebert