aube (npm/yarn/pnpm drop-in alternative) now has a "jailBuilds" flag that restricts access to network/filesystem access.
https://aube.en.dev/package-manager/jailed-builds.html
But this feels like a cat/mouse game.
dino was wired with security in mind, but you can see developers dont tend towards aecurity
dino was wired with security in mind, but you can see developers dont tend towards aecurity