jart / jart/pledge

Well Done and is the pledge command line support primarily for gaining interest?

Open
#12 0 comments 0 reactions 0 assignees View on GitHub

Nobody has claimed this yet.

Dominant language
C
Stars
143
Forks
7
PR merge metrics
No merged PRs in 30d

Description

Pledge would be hugely valuable for Linux security. Well done.

I notice you say in your blog post that "Pledge works best when developing software using [Cosmpolitan Libc](https://github.com/jart/cosmopolitan)."

I therefore assume you already know the following but just want to make 100% sure. A command line enforcer was refused by the OpenBSD leader as the main benefit is the policy maker having intimate knowledge of the binary and the policy and binary being kept in sync no matter which version you install.

I hope other libcs pick this up or perhaps that Linux generally adopts cosmopolitan. Good luck.

Contributor guide

No contributing guide indexed for this repository

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

Research direction

The issue names no files, tests, or entry points and does not request a specific code change. First clarify whether command-line enforcement is intended for this project and what behavior would define completion; the current discussion does not provide a testable scope.

Written by the indexing model from the issue text.

Assessment

Tech stack
c, linux
Domain
cli, operating-systems, security
Issue type
Feature
Difficulty
5/5
Estimated time
Over a week
Activity status
Stale
Clarity
Needs clarification
Newbie friendliness
10/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.