{
"$type": "site.standard.document",
"bskyPostRef": {
"cid": "bafyreiba3u7mt6eumev7bpibgv3x23sren47j3eu7wvbjrgcy3suphm5mq",
"uri": "at://did:plc:haakkg7y3xdghcdmprxeexso/app.bsky.feed.post/3mjf7v76alcl2"
},
"path": "/t/are-appimages-a-generel-security-risk/37077#post_8",
"publishedAt": "2026-04-13T14:55:22.000Z",
"site": "https://discuss.privacyguides.net",
"tags": [
"PPA, AUR, Nix",
"@Kabo"
],
"textContent": "TheDoc:\n\n> It’s best to avoid them so I’d recommend reporting any bugs you find with the Flatpak to Cryptomator\n\nBut I need to get the job done and can’t wait till they someday patch the bug\n\nTheDoc:\n\n> In the meantime it might be better to install it from one of the repositories they endorse (PPA, AUR, Nix) if any of those apply to you.\n\nPPA seems like its an Ubuntu thing?\n\nThe other two are specific to distro’s I don’t use.\n\nTheDoc:\n\n> you _could_ mess with Distrobox\n\nIsn’t this to much overhead?\n\nanonymous595:\n\n> It is not “security nightmare” but it acts as raw BIN, so it _can_ abuse rights because of lack of sandbox and it is still “no trust = do not run” approach.\n\nseize:\n\n> I believe much of the security concern brought up by @Kabo are around appimage reliance on the outdated and unmaintained _fuse2_ library, and not sandboxing concerns .\n\nYes, although I prefer Flatpak mostly because of sandboxing, in the case of Cryptomator, it needs very strong permissions that allow sandbox escape anyway.\n\nSo I wonder, is AppImage a security risk, even if you assume that the dev’s are not malicous?",
"title": "Are AppImages a generel security risk?"
}