Sets permission_question, permission_target_path, permission_operation.
With bubblewrap: only prompt for network access or extra allow_write host roots; default sandboxed runs skip execute permission (seccomp / mount policy contain the run). Without bubblewrap: prompt every command — there is no equivalent sandbox.
|
true if permission is needed of false if it can be skipped |