Files
frigate/docker/main
Josh Hawkins 126cc0ba31 harden root writes into unprivileged-owned paths
Restrict the sweep sentinel to a mount at or below /media/frigate so a
parent /media mount cannot bless a later-shadowed volume. Rebuild
/tmp/nginx root-owned each start so root's cp and tempio writes cannot
follow a symlink an unprivileged nginx planted in the previous run.
2026-08-28 07:28:47 -05:00
..
2026-03-11 08:32:16 -05:00
2025-11-05 07:10:56 -07:00
2025-10-25 16:40:04 -05:00