# Last Modified: Fri Feb 17 16:35:13 2023
#include <tunables/global>
/opt/firefox/firefox {
#include <abstractions/audio>
#include <abstractions/base>
#include <abstractions/openssl>
#include <abstractions/postfix-common>
#include <abstractions/python>
#include <abstractions/totem>
#include <abstractions/ubuntu-browsers.d/ubuntu-integration>
#include <abstractions/ubuntu-konsole>
capability sys_admin,
ptrace trace peer=/opt/firefox/firefox,
/etc/*.types r,
/etc/mailcap r,
/opt/firefox/firefox-bin mrix,
/opt/firefox/libnspr*.so mr,
/opt/firefox/libplc*.so mr,
/opt/firefox/libplds*.so mr,
/opt/firefox/pingsender mrix,
/opt/firefox/plugin-container mrix,
/proc/cpuinfo r,
/proc/filesystems r,
/proc/meminfo r,
/proc/sys/dev/i915/perf_stream_paranoid r,
/run/pulseaudio-enable-autospawn r,
/sys/devices/pci0000:00/0000:00:02.0/device r,
/sys/devices/pci0000:00/0000:00:02.0/revision r,
/sys/devices/pci0000:00/0000:00:02.0/subsystem_device r,
/sys/devices/pci0000:00/0000:00:02.0/subsystem_vendor r,
/sys/devices/pci0000:00/0000:00:1d.2/0000:0?:00.0/vendor r,
/sys/devices/pci0000:00/0000:00:1d.?/0000:0?:00.0/class r,
/sys/devices/pci0000:00/0000:00:1d.?/0000:0?:00.0/device r,
/sys/devices/pci0000:00/0000:00:1d.?/0000:0?:00.0/vendor r,
/sys/devices/pci0000:00/0000:00:1f.4/class r,
/sys/devices/pci0000:00/0000:00:??.?/class r,
/sys/devices/pci0000:00/0000:00:??.?/device r,
/sys/devices/pci0000:00/0000:00:??.?/vendor r,
/sys/devices/system/cpu/cpu0/cache/index?/size r,
/sys/devices/system/cpu/cpufreq/policy0/cpuinfo_max_freq r,
/sys/devices/system/cpu/present r,
/usr/bin/lsb_release mrix,
/usr/bin/python?.? ix,
/var/lib/flatpak/app/org.mozilla.Thunderbird/x86_64/stable/**/*.desktop r,
/var/lib/flatpak/exports/share/applications/*.cache r,
/var/lib/flatpak/exports/share/icons/*/*.cache r,
/var/lib/flatpak/exports/share/icons/*/*.theme r,
/{media,mnt,opt,srv}/** mr,
owner "/home/*/.config/BraveSoftware/Brave-Browser/Local State" r,
owner "/home/*/.config/google-chrome/Local State" r,
owner "/home/*/.mozilla/firefox/Crash Reports/InstallTime*" r,
owner "/home/*/.mozilla/firefox/Crash Reports/pending/*.extra" rw,
owner /**/ rw,
owner /home/*/.Xauthority r,
owner /home/*/.cache/event-sound-cache.*.*.x86_64-pc-linux-gnu rwk,
owner /home/*/.cache/fontconfig/*.cache-* r,
owner /home/*/.cache/mesa_shader_cache/??/* r,
owner /home/*/.cache/mesa_shader_cache/index rw,
owner /home/*/.cache/mozilla/firefox/*.default-release/**/*.vlpset rw,
owner /home/*/.cache/mozilla/firefox/*.default-release/*.*.json r,
owner /home/*/.cache/mozilla/firefox/*.default-release/*/*.vlpset r,
owner /home/*/.cache/mozilla/firefox/*.default-release/.startup-incomplete rw,
owner /home/*/.cache/mozilla/firefox/*.default-release/cache2/*.tmp rw,
owner /home/*/.cache/mozilla/firefox/*.default-release/cache2/*/* rw,
owner /home/*/.cache/mozilla/firefox/*.default-release/cache2/??_* rw,
owner /home/*/.cache/mozilla/firefox/*.default-release/cache2/entries/* rw,
owner /home/*/.cache/mozilla/firefox/*.default-release/cache2/index rw,
owner /home/*/.cache/mozilla/firefox/*.default-release/safebrowsing-updating/*.sbstore rw,
owner /home/*/.cache/mozilla/firefox/*.default-release/safebrowsing-updating/google4/*.metadata rw,
owner /home/*/.cache/mozilla/firefox/*.default-release/safebrowsing-updating/google4/goog-phish-proto.metadata rw,
owner /home/*/.cache/mozilla/firefox/*.default-release/safebrowsing/*.sbstore r,
owner /home/*/.cache/mozilla/firefox/*.default-release/safebrowsing/*/*.metadata r,
owner /home/*/.cache/mozilla/firefox/*.default-release/settings/**/*.ftl r,
owner /home/*/.cache/mozilla/firefox/*.default-release/startupCache/*.*.little rw,
owner /home/*/.cache/mozilla/firefox/*.default-release/startupCache/*.*.lz4 r,
owner /home/*/.cache/mozilla/firefox/*.default-release/startupCache/*.bin rw,
owner /home/*/.cache/mozilla/firefox/*.default-release/startupCache/scriptCache-child-current.bin r,
owner /home/*/.cache/mozilla/firefox/*.default-release/startupCache/scriptCache-current.bin r,
owner /home/*/.cache/mozilla/firefox/*.default-release/startupCache/urlCache-current.bin rw,
owner /home/*/.cache/mozilla/firefox/*.default-release/startupCache/urlCache.bin rw,
owner /home/*/.cache/mozilla/firefox/*.default-release/thumbnails/*.png rw,
owner /home/*/.config/*.dirs r,
owner /home/*/.config/*.list r,
owner /home/*/.config/dconf/user r,
owner /home/*/.config/gtk-3.0/*.css r,
owner /home/*/.config/gtk-3.0/assets/*.svg r,
owner /home/*/.config/gtk-3.0/gtk.css r,
owner /home/*/.config/gtk-3.0/settings.ini r,
owner /home/*/.config/pulse/cookie rk,
owner /home/*/.fonts/*.TTF r,
owner /home/*/.fonts/*.otf r,
owner /home/*/.fonts/*.ttf r,
owner /home/*/.fonts/.uuid r,
owner /home/*/.local/share/applications/*.desktop r,
owner /home/*/.local/share/applications/*.list r,
owner /home/*/.local/share/icons/*/*.cache r,
owner /home/*/.local/share/icons/*/*/*/*.svg r,
owner /home/*/.local/share/icons/Tela-dark/*.theme r,
owner /home/*/.mozilla/firefox/firefox-mpris/*.png rw,
owner /home/*/.mozilla/firefox/*.default-release/**/*.info r,
owner /home/*/.mozilla/firefox/*.default-release/**/*.safe.bin rw,
owner /home/*/.mozilla/firefox/*.default-release/*.*.lz4 rw,
owner /home/*/.mozilla/firefox/*.default-release/*.*.mozlz4 r,
owner /home/*/.mozilla/firefox/*.default-release/*.*.tmp rw,
owner /home/*/.mozilla/firefox/*.default-release/*.db rwk,
owner /home/*/.mozilla/firefox/*.default-release/*.js rw,
owner /home/*/.mozilla/firefox/*.default-release/*.json rw,
owner /home/*/.mozilla/firefox/*.default-release/*.jsonlz4 rw,
owner /home/*/.mozilla/firefox/*.default-release/*.sqlite rwk,
owner /home/*/.mozilla/firefox/*.default-release/*.sqlite-journal rw,
owner /home/*/.mozilla/firefox/*.default-release/*.sqlite-wal rw,
owner /home/*/.mozilla/firefox/*.default-release/*.txt rw,
owner /home/*/.mozilla/firefox/*.default-release/.parentlock wk,
owner /home/*/.mozilla/firefox/*.default-release/bookmarkbackups/*.*.tmp rw,
owner /home/*/.mozilla/firefox/*.default-release/compatibility.ini r,
owner /home/*/.mozilla/firefox/*.default-release/crashes/*.*.*.tmp rw,
owner /home/*/.mozilla/firefox/*.default-release/crashes/*.*.mozlz4 rw,
owner /home/*/.mozilla/firefox/*.default-release/datareporting/**/*-*-*-*-* rw,
owner /home/*/.mozilla/firefox/*.default-release/datareporting/**/newtab rw,
owner /home/*/.mozilla/firefox/*.default-release/datareporting/**/pageload rw,
owner /home/*/.mozilla/firefox/*.default-release/datareporting/*.json rw,
owner /home/*/.mozilla/firefox/*.default-release/datareporting/*.tmp rw,
owner /home/*/.mozilla/firefox/*.default-release/datareporting/aborted-session-ping rw,
owner /home/*/.mozilla/firefox/*.default-release/extensions/\{9b19c459-2eb7-4bfe-b3ac-fb798b4bea5e\}.xpi r,
owner /home/*/.mozilla/firefox/*.default-release/extensions/uBlock0@raymondhill.net.xpi r,
owner /home/*/.mozilla/firefox/*.default-release/gmp-widevinecdm/*/*.json r,
owner /home/*/.mozilla/firefox/*.default-release/gmp-widevinecdm/*/libwidevinecdm.so mr,
owner /home/*/.mozilla/firefox/*.default-release/gmp/Linux_x86_64-gcc3/gmp-widevinecdm/**/salt rw,
owner /home/*/.mozilla/firefox/*.default-release/lock rw,
owner /home/*/.mozilla/firefox/*.default-release/minidumps/*.dmp rw,
owner /home/*/.mozilla/firefox/*.default-release/prefs.js rw,
owner /home/*/.mozilla/firefox/*.default-release/saved-telemetry-pings/*-*-*-*-* rw,
owner /home/*/.mozilla/firefox/*.default-release/sessionstore-backups/*.*.tmp rw,
owner /home/*/.mozilla/firefox/*.default-release/sessionstore-backups/*.baklz4 rw,
owner /home/*/.mozilla/firefox/*.default-release/sessionstore-backups/*.jsonlz4 rw,
owner /home/*/.mozilla/firefox/*.default-release/storage/**.final rw,
owner /home/*/.mozilla/firefox/*.default-release/storage/**/*.sqlite rw,
owner /home/*/.mozilla/firefox/*.default-release/storage/**/*.sqlite-wal rw,
owner /home/*/.mozilla/firefox/*.default-release/storage/**/.metadata-v2 rw,
owner /home/*/.mozilla/firefox/*.default-release/storage/**/.padding rw,
owner /home/*/.mozilla/firefox/*.default-release/storage/**/usage rw,
owner /home/*/.mozilla/firefox/*.default-release/storage/*.sqlite rwk,
owner /home/*/.mozilla/firefox/*.default-release/storage/default/https+++** rw,
owner /home/*/.mozilla/firefox/*.default-release/storage/default/https+++*.com/.metadata-v2 rw,
owner /home/*/.mozilla/firefox/*.default-release/storage/default/https+++*.com/.metadata-v2-tmp rw,
owner /home/*/.mozilla/firefox/*.default-release/storage/default/https+++*/*/*.marker rw,
owner /home/*/.mozilla/firefox/*.default-release/storage/default/https+++*/*/*.sqlite rwk,
owner /home/*/.mozilla/firefox/*.default-release/storage/default/https+++*/*/*.sqlite-journal rw,
owner /home/*/.mozilla/firefox/*.default-release/storage/default/https+++*/*/.padding rw,
owner /home/*/.mozilla/firefox/*.default-release/storage/default/moz-extension+++**.files/*/?? rw,
owner /home/*/.mozilla/firefox/*.default-release/storage/default/moz-extension+++**/*.files/?? rw,
owner /home/*/.mozilla/firefox/*.default-release/storage/default/moz-extension+++**/*.sqlite rwk,
owner /home/*/.mozilla/firefox/*.default-release/storage/default/moz-extension+++*/.metadata-v2 rw,
owner /home/*/.mozilla/firefox/*.default-release/storage/permanent/chrome/*/*.sqlite rwk,
owner /home/*/.mozilla/firefox/*.default-release/storage/permanent/chrome/.metadata-v2 r,
owner /home/*/.mozilla/firefox/*.default-release/weave/*/*.*.tmp rw,
owner /home/*/.mozilla/firefox/*.default-release/weave/*/*.json rw,
owner /home/*/.mozilla/firefox/profiles.ini r,
owner /opt/firefox/fonts/** mrw,
owner /proc/*/cgroup r,
owner /proc/*/gid_map rw,
owner /proc/*/maps r,
owner /proc/*/mountinfo r,
owner /proc/*/oom_score_adj rw,
owner /proc/*/setgroups rw,
owner /proc/*/smaps r,
owner /proc/*/stat r,
owner /proc/*/statm r,
owner /proc/*/status r,
owner /proc/*/task/*/comm r,
owner /proc/*/task/*/stat r,
owner /proc/*/uid_map rw,
owner /home/*/Documents/*.csv rw,
owner /home/*/Documents/*.csv.tmp rw,
owner /home/*/Documents/*.html rw,
owner /home/*/Documents/*.jpg rw,
owner /home/*/Documents/*.pdf rw,
owner /home/*/Documents/*.png rw,
owner /home/*/Documents/*.ppt rw,
owner /home/*/Documents/*.tmp rw,
owner /home/*/Documents/*.txt r,
owner /home/*/Documents/keepass-key.key r,
owner /home/*/Documents/logins-updated.xlsx r,
owner /home/*/Documents/logins-updated.xlsx.asc r,
owner /home/*/Documents/opt.*.* rw,
owner /home/*/Documents/terabyte_*.exe rw,
owner /home/*/Downloads/*.*.txt rw,
owner /home/*/Downloads/*.html rw,
owner /home/*/Downloads/*.pdf rw,
owner /home/*/Downloads/*.png rw,
owner /home/*/Downloads/*.webp rw,
owner /home/*/Downloads/opt.* rw,
owner /home/*/Pictures/*.jpg rw,
owner /home/*/Pictures/*.webp rw,
}