Files
frigate/docker/main
Josh Hawkins bc62eb4adc harden root writes into unprivileged-owned paths
Restrict the sweep sentinel to a mount at or below /media/frigate so a
parent /media mount cannot bless a later-shadowed volume. Rebuild
/tmp/nginx root-owned each start so root's cp and tempio writes cannot
follow a symlink an unprivileged nginx planted in the previous run.
2026-08-29 15:59:23 -05:00
..
2025-11-05 07:10:56 -07:00
2025-10-25 16:40:04 -05:00