Theme 1 – Traditional multi‑user security (UID/GID) is outdated
Many commenters argue that the old “root/non‑root” or per‑user permission model no longer provides real isolation for modern workloads.
“The same‑machine‑multi‑user security paradigm has been dead for a long time… root/non‑root split is almost entirely used as a 'don't let people accidentally shoot themselves in the foot'… The uid/gid concept is an antique from the 80s that stopped working a long time ago.” – eddythompson80
Theme 2 – Need for fine‑grained, per‑agent sandboxing
Participants repeatedly call for stronger, managed execution boundaries that limit what an agent (or app) can do, rather than relying on user accounts alone.
“Without a managed execution boundary, the agent may decide that changing the server configuration is the fastest way to complete the task and potentially break the production site.” – Joker_vD
“I’ve been locking down agents by running them as untrusted users… I really want a local hashicorp‑like vault that I can give agents specific access permissions.” – tomrod
Theme 3 – Enterprise‑only security features leave consumers behind
Several users note that advanced security capabilities are gated to paying/corporate customers, while everyday software remains permissive.
“Naturally, this will be gated to corporate customers - the plebs do not get access to better security unless they pay for a top tier license.” – 3eb7988a1663
“Microsoft security is bimodal… consumer applications are a joke… permission model is a modal, 'Do you trust this?' binary choice.” – 3eb7988a1663