Require security review for sandbox rules #24018

Merged
MikeMcQuaid opened 7:00am on September 17, 2026 wanted to merge 10 Ξ” into homebrew/brew main from
sandbox-security-review
Diff Delta:
10
About 5 Diff Delta/hour
Classified as:  General

MikeMcQuaid's Description of Work

Just want to make sure we're being extra safe here.



  • [x] Have you followed our Contributing guidelines?

  • [x] Have you checked for other open Pull Requests for the same change?

  • [x] Have you explained what your changes do? Performance claims (e.g. "this is faster") must include brew benchmark results.

  • [x] Have you explained why you'd like these changes included, not just what they do?

  • [x] For bug fixes, have you given step-by-step brew commands to reproduce the bug?

  • [x] Have you written new tests (excluding integration tests)? Here's an example.

  • [x] Have you successfully run brew lgtm (style, typechecking and tests) locally?



  • [x] I did not use AI/LLM to create this PR, or I disclosed the tool/model below and reviewed its output; I did not attribute commits to AI and will answer maintainer questions and review comments myself without AI/LLM.

Codex with GPT 6 Astra at Extra High effort, with local review and testing.


1 total changed file
Loading changes...
You’ve completed the full review pass
LGTM-land is officially in view