71
submitted 7 months ago* (last edited 7 months ago) by wisha@lemmy.ml to c/kde@lemmy.kde.social

Or is it just buggy?

you are viewing a single comment's thread
view the rest of the comments
[-] possiblylinux127@lemmy.zip 9 points 7 months ago

This is why we need sandboxing. Right now the Linux desktop is still lacking in terms of security

[-] bitterseeds@fosstodon.org 4 points 7 months ago

@possiblylinux127 @wisha And how would sandboxing a malicious script inside a theme that is supposed to change the look of your desktop work? They installed and ran something that rm'd their home directory. I'm honestly curious how you'd solve this.

[-] wisha@lemmy.ml 9 points 7 months ago

A more locked-down theming API could help. For example Firefox themes are always 100% safe to install. That said, Firefox themes are almost useless (they’re more like color schemes lol), and no one wants to lose KDE’s powerful customizability so 🤷🤷

[-] Canary9341@lemmy.ml 4 points 7 months ago

Perhaps having different categories with different limitations would work well. Using the firefox example, prioritize the use of WebExtensions, but keep XUL/XPCOM with appropriate warnings.

[-] JackGreenEarth@lemm.ee 4 points 7 months ago

What do you mean? I have Firefox themes that change the whole look of the browser, using userchrome.css.

[-] HKayn@dormi.zone 2 points 7 months ago* (last edited 7 months ago)

That's obviously not what OP was referring to when mentioning "Firefox themes".

[-] JackGreenEarth@lemm.ee 1 points 7 months ago

Maybe, I was showing that there were better ways to theme Firefox though

[-] possiblylinux127@lemmy.zip 3 points 7 months ago

If it ran in a sandbox it would just wipe its own files instead of the system. Under no circumstances should a plugin from some random guy online be running with such high privileges

[-] bitterseeds@fosstodon.org -1 points 7 months ago

@possiblylinux127 I was asking how you’d run something that modded the whole UI … sandboxed.

[-] possiblylinux127@lemmy.zip 1 points 7 months ago

You would need to expose some sort of hook that allows modifications

SELinux? Apparmor? (Serious question, I don't know if there might be features that render those two inadequate)

this post was submitted on 20 Mar 2024
71 points (93.8% liked)

KDE

5253 readers
106 users here now

KDE is an international technology team creating user-friendly free and open source software for desktop and portable computing. KDE’s software runs on GNU/Linux, BSD and other operating systems, including Windows.

Plasma 6 Bugs

If you encounter a bug, proceed to https://bugs.kde.org, check whether it has been reported.

If it hasn't, report it yourself.

PLEASE THINK CAREFULLY BEFORE POSTING HERE.

Developers do not look for reports on social media, so they will not see it and all it does is clutter up the feed.

founded 1 year ago
MODERATORS