Flatpak – a security nightmare – 2 years later

Two years ago I wrote about then heavily-pushed Flatpak, self-proclaimed “Future of Apps on Linux”. The article criticized the following three major flows in Flatpak:


  • Most of the apps have full access to the host system but users are misled to believe the apps are sandboxed
  • The flatpak runtimes and apps do not get security updates
  • Flatpak breaks many aspects of desktop integration

So let’s see how Flatpak developers addressed these fundamental issues.

Source: Flatpak – a security nightmare

