logoalt Hacker News

amusingimpala75yesterday at 1:27 PM2 repliesview on HN

Yes but NixOS does all of these things already, without the process overhead


Replies

staticassertionyesterday at 11:13 PM

Nix wraps your process in namespaces and seccomp?

show 1 reply
umviyesterday at 1:51 PM

Even the minimal SBOM part? It's hard to be more minimal than a busybox binary.

show 1 reply