Skip to content

feat(audit): special-case Flatseal and Warehouse permission checks#1101

Merged
RoyalOughtness merged 3 commits intosecureblue:livefrom
HastD:audit-flatseal
Jun 4, 2025
Merged

feat(audit): special-case Flatseal and Warehouse permission checks#1101
RoyalOughtness merged 3 commits intosecureblue:livefrom
HastD:audit-flatseal

Conversation

@HastD
Copy link
Copy Markdown
Collaborator

@HastD HastD commented Jun 3, 2025

This makes Flatseal and Warehouse display as NOTE rather than FAIL in the flatpak permission audit, because they are installed by default and require the ability to manage flatpaks for their functionality.

The accompanying text notes this, and the recommendations to remove those permissions (which would break Flatseal and Warehouse) are suppressed.

Also fixed a small formatting bug in how padding width was calculated and how multi-line warnings are displayed.

This makes Flatseal and Warehouse display as `NOTE` rather than `FAIL`
in the flatpak permission audit, because they are installed by default
and require the ability to manage flatpaks for their functionality.

The accompanying text notes this, and the recommendations to remove
those permissions (which would break Flatseal and Warehouse) are
suppressed.

Also fixed a small formatting bug in how padding width was calculated
and how multi-line warnings are displayed.

Signed-off-by: Daniel Hast <[email protected]>
@RoyalOughtness RoyalOughtness enabled auto-merge (squash) June 3, 2025 23:12
@RoyalOughtness RoyalOughtness merged commit fd25b95 into secureblue:live Jun 4, 2025
16 checks passed
@HastD HastD deleted the audit-flatseal branch June 4, 2025 01:45
RoyalOughtness pushed a commit to RoyalOughtness/secureblue-dev that referenced this pull request Aug 4, 2025
…ecureblue#1101)

This makes Flatseal and Warehouse display as `NOTE` rather than `FAIL`
in the flatpak permission audit, because they are installed by default
and require the ability to manage flatpaks for their functionality.

The accompanying text notes this, and the recommendations to remove
those permissions (which would break Flatseal and Warehouse) are
suppressed.

Also fixed a small formatting bug in how padding width was calculated
and how multi-line warnings are displayed.

Signed-off-by: Daniel Hast <[email protected]>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants