ashishb 3 hours ago

Tell me a better alternative that allows me to run, say, 'markdown lint', an npm package, on the current directory without giving access to the full system on Mac OS?

  • ATechGuy 3 hours ago

    sandbox-exec -f curr_dir_access_profile.sb markdownlint

    • ashishb 3 hours ago

      So you have to install npm package markdownlint on your machine and let it run it's potentially dangerous postinstall step?

      • ATechGuy 3 hours ago

        You can customize curr_dir_access_profile.sb to block access to network/fs/etc. Why is this not enough?

        • ashishb 2 hours ago

          Some tools do require Internet access.

          Further, I don't even want to take the risk of running 'npm install markdownlint' anymore on my machine.