Ludovic Courtès writes: > I think it’s a good endeavor, but it’s a longer-term one since it’ll > take some time before this new version is in use by all the Guix code. > > The difficulty in designing such an interface is that the Scheme API is > more about ports than it’s about file names and file descriptors. > > Thanks! > > Ludo’.
In the long run, that might end up being safer. In the meanwhile, we suffer the world of ACLs. ;) (From my read, this is practically exactly the scenario from Norm Hardy's original Confused Deputy paper...)