electron-vite-react icon indicating copy to clipboard operation
electron-vite-react copied to clipboard

Setting sandbox to false is a security threat for using bytecodeplugin

Open kotasudhakar opened this issue 1 year ago • 0 comments

I understand that it was asked to turn the sandbox option to false in order to protect source code using bytecode plugin as it uses the nodevm, however it is kinda dangerous tbh to do so although there are still other options like contextIsolation to prevent render process accessing the main process.

Can we do in any other alternative way so that we no need to set the sandbox value to false for browserWindow options and improving security?

kotasudhakar avatar Apr 16 '24 13:04 kotasudhakar