Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Electron also has a lot of hardening features from chromium disabled as is strongly discouraged by Google as unsafe to use for apps.


This seems to be changing as of recently this year. There have been many security-related changes including making options such as Node integration disabled by default [1]. Support for renderer process sandbox is also available [2].

[1] https://github.com/electron/electron/pull/14284

[2] https://electronjs.org/docs/api/sandbox-option




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: