|
3 | 3 | (deny default) |
4 | 4 |
|
5 | 5 | ; Get fonts |
6 | | -(import "system.sb") |
| 6 | +; (import "system.sb") |
7 | 7 |
|
8 | 8 | ; Helpers |
9 | 9 | (define (param-regex param-name param-relative-regex) |
|
50 | 50 | (regex #"^/private/var/folders/[^/]+/[^/]+/.+") |
51 | 51 | (regex #"^/Library/Preferences/.*.plist") |
52 | 52 | (regex #"^/[^/]+/Library/Python") |
| 53 | + (subpath "/Library/Developer/CommandLineTools") |
53 | 54 | (subpath "/Library/Developer/Toolchains") |
54 | 55 | (subpath "/Library/Frameworks/UIAutomation.framework") |
55 | 56 | (subpath "/Library/Python") |
| 57 | + (subpath "/System/Library/Perl") |
56 | 58 | (subpath "/Applications/Xcode.app") |
57 | 59 | (subpath "/Applications/Xcode-beta.app") |
58 | 60 | (subpath "/bin") |
59 | 61 | (subpath "/usr/bin") |
60 | 62 | (subpath "/usr/local/bin") |
61 | | - (subpath "/usr/lib/swift") |
62 | 63 | (subpath "/usr/libexec/path_helper") |
63 | 64 | (subpath "/usr/local/share/git-core") |
64 | 65 | (subpath "/usr/local/share/hwtrace") |
| 66 | + |
| 67 | + (regex #".*/LLDB.framework/.*") |
| 68 | + (regex #".*/Python3.framework/.*") |
| 69 | + (regex #".*/branch-main/.*") |
| 70 | + (regex #".*/usr/lib/swift/.*") |
| 71 | + ; (regex #".*/Frameworks/.*") |
| 72 | + ; (regex #".*/PrivateFrameworks/.*") |
| 73 | + |
| 74 | + ; (subpath "/System/Volumes/Preboot") |
| 75 | + ; (subpath "/System/Volumes") |
| 76 | + ; (subpath "/usr/lib") |
| 77 | + ; (subpath "/Users/ec2-user") |
| 78 | + ; (subpath "/Library/Developer/CommandLineTool") |
| 79 | + ; (subpath "/") |
65 | 80 | ) |
66 | 81 |
|
67 | 82 | (allow mach-lookup) |
|
84 | 99 | (regex #"^/Users/[^/]+/Library/Caches/com.apple.python.*") |
85 | 100 | (regex #"^/Users/[^/]+/Library/Developer/Xcode/DerivedData.*") |
86 | 101 | (regex #"^/Users/[^/]+/Library/Application Support/Code.*") |
| 102 | + (regex #"^/Users/[^/]+/Library/Application Support/Microsoft.*") |
87 | 103 | (regex #"^/private/var/folders/[^/]+/[^/]+/.+") |
88 | 104 | (regex #"^/Users/[^/]+/.vscode.*") |
| 105 | + |
| 106 | + (regex #".*/branch-main.*") |
89 | 107 | ) |
90 | 108 |
|
91 | 109 | ; Execute |
|
0 commit comments