Low-level unprivileged sandboxing tool used by Flatpak and similar projects
-
Updated
Sep 1, 2026 - C
Low-level unprivileged sandboxing tool used by Flatpak and similar projects
StemJail: Dynamic Role Compartmentalization
A pure-Go implementation of fakeroot using Linux user namespaces.
Simple desktop application sandboxing tool for GNU\Linux
Very experimental docker authorization plugin, disabling some trivial ways of gaining root via docker
Experiments with unshare
Limit SFTP access to a remote (Linux) system
Kernel patches for non-init user namespace on FUSE filesystem
Runs commands in Linux containers with configurable levels of isolation.
Nesting containers with podman
A nix shell running in a (thin) container
Droidspaces container kernel patches for Xiaomi 17 pudding on Android Common Kernel 6.12 GKI
Low-level lightweight toolkit to build process-level isolation sandbox environment(s) in linux
Minimalist LEGO-style bwrap profile management.
Static security auditing for Kubernetes Pod specs — Pod Security Standards, user namespaces, and SecurityContext, entirely offline. CLI + GitHub Action.
To associate your repository with the user-namespaces topic, visit your repo's landing page and select "manage topics."