Deny reading .env

This commit is contained in:
Alex Gleason
2024-11-07 13:32:53 -06:00
parent 6fae72b4cf
commit 459adadd4c
2 changed files with 24 additions and 25 deletions

View File

@@ -21,16 +21,15 @@ class PolicyWorker implements NPolicy {
{
type: 'module',
name: 'PolicyWorker',
// FIXME: Disabled until Deno 2.0 adds support for `import` permission here.
// https://github.com/denoland/deno/issues/26074
// deno: {
// permissions: {
// read: [Conf.denoDir, Conf.policy, Conf.dataDir],
// write: [Conf.dataDir],
// net: 'inherit',
// env: false,
// },
// },
deno: {
permissions: {
read: [Conf.denoDir, Conf.policy, Conf.dataDir],
write: [Conf.dataDir],
net: 'inherit',
env: false,
import: true,
},
},
},
),
);