encapsulate provides its client process the same environment it's started in, except for some limitations:
encapsulate remounts the whole filesystem read-only, except for user-selectable regions which are mounted read-write. It also isolates the process from the system's process table, network interface, IPC, and shared memory tables.
These details are provided for information only. No information here is legal advice and should not be used as such.
There are no reported vulnerabilities
30 Day SummarySep 24 2018 — Oct 24 2018
12 Month SummaryOct 24 2017 — Oct 24 2018