Skip to content

Conversation

@bwalding
Copy link
Owner

@bwalding bwalding commented May 12, 2025

Adds docker to the list of allowed commands to install via deeplinks.

Given that upx / npx can run arbitrary code from a repository, this doesn't seem to be a change in the security threat model.

There is also a "good" argument that docker could be a first-class command type rather than just another command invoked by a shell - but that won't be addressed here.

@bwalding bwalding force-pushed the feat-docker-via-scheme branch from 40520e9 to 52cd139 Compare May 12, 2025 08:13
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants