Elektrine lite

← Feed

@pulkomandy@mastodon.tetaneutral.net

Post #4268196

2026-07-16 20:44 UTC

@nina_kali_nina@tech.lgbt @iyashikei_kris@mstdn.social as usual with security it depends what your threat model is. There are very few services listening to outside connections, I think none by default. So the main risk is probably the web browser? And you can uninstall that. But there are also a lot of other things to fix, for example, there is no signature checking of package repositories, so you'll need to build packages from source if you don't trust your connexion to Haiku's pacbage servers.

Replies (2)

  • @nina_kali_nina@tech.lgbt @iyashikei_kris@mstdn.social discussions about future plans for a proper security model are that we're usually rore worried about an app accessing data it shouldn't have to. So we'd try to do something more like Android permissions system rather than unix users/groups (at least from the ux side of things). But we indeed have nothing like that yet. And I don't know how we'll do it exactly.

    Open ##4268198

  • @nina_kali_nina@tech.lgbt 2026-07-16 20:48

    @pulkomandy@mastodon.tetaneutral.net @iyashikei_kris@mstdn.social I mean, I think I won't be able to daily-drive any desktop OS without a web browser as the main OS these days, and I'm worried that there is one or two creeps out there who might be interested in phishing me specifically, so a potentially unsafe web browser/network stack are a risk

    Open ##4268200