Chrome & AppContainer Tweak

  • Thread starter Thread starter Deleted member 178
  • Start date Start date
Status
Not open for further replies.
D

Deleted member 178

Thread author
My Chrome is not in AppContainer (it says Untrusted), do you know why is that?
Win 10 Home.
View attachment 81503

i did a tweak to enable Appcontainer in Chrome.

"Untrusted" is the lowest integrity level in Windows while "high" is when you give admin rights.

are you running sandboxie? because browsers in Sandboxie are set as untrusted.

lowest is safest:

Appcontainer > untrusted > low > medium > High
 
Last edited by a moderator:
Removed: Slimjet x64
Added: Chrome x64

reason:

Slimjet despite its cool features and privacy optimization is in my book "less securable"; it can't be run in AppContainer unlike Chrome x64.

as shown on the integrity level, Chrome is under Windows AppContainer (aka "sandbox" )

vjXc5Iz.png


so for me, Chrome is still the most secured Chromium-based browser.
Have you tried Iridium? I tried in Linux that browser but something about the default extensions raised an eyebrow on me. Don't know exactly why or how to explain.
 
Have you tried Iridium? I tried in Linux that browser but something about the default extensions raised an eyebrow on me. Don't know exactly why or how to explain.

not tried and i feel not the envy to try since no description of the "added security" is given...
 
not tried and i feel not the envy to try since no description of the "added security" is given...
fire it up on a VM and check its extensions. you will perhaps understand what i mean by raising an eyebrow.
 
found out the "enhancement" : Differences between Iridium and Chromium · iridium-browser/iridium-browser Wiki · GitHub

nothing spectacular... from what i read and what you said , seems all the addons will be displayed :D
I for one didnt like Qwant search that is loaded by default.

But yeah if I recall correctly, unless windows version is different, a manual user can easily disable some of the options, what they call "tweaks", at least on Chromium for Linux.

I have Chromium also on Windows but it is a pain to get it updated.
 
i did a tweak to enable Appcontainer in Chrome.

"Untrusted" is the lowest integrity level in Windows while "high" is when you give admin rights.

are you running sandboxie? because browsers in Sandboxie are set as untrusted.

lowest is safest:

Appcontainer > untrusted > low > medium > High

I'm runing Shadow defender only (on this pc).
What tweak you did and how?
 
the tweak is typing "About://flag" in Chrome , scrolldown and enable "Enable AppContainer Lockdown"
 
  • Like
Reactions: Av Gurus
the tweak is typing "About://flag" in Chrome , scrolldown and enable "Enable AppContainer Lockdown"

I did that and 2 process are flagged as Medium & Low.
Any suggestions about that?

Clipboard01.jpg
 
I have Chrome 64-bit Stable and that doesn't exist, are you using a Beta or Canary build?
 
  • Like
Reactions: Rishi
I checked earlier, prior to my other post and I didn't see any AppContainer Lockdown (with search function). What version number are you running?
 
  • Like
Reactions: Deleted member 178
I checked earlier, prior to my other post and I didn't see any AppContainer Lockdown (with search function). What version number are you running?
Chrome Version 48.0.2564.82 m (64-bit)

On chrome://flags/
That option is located down. It's near the category "unavailable experiment" near the bottom, just two options above that.
 
I am probably using v47, since I only use Windows once or twice a week. I'll update tomorrow and re-check the flags options.
 
  • Like
Reactions: Deleted member 178
i have those two also,no idea why. i will investigate.
Those two processes must be the ones spawning the child chrome.exe processes, and as such they might not be able to be assigned the AppContainer integrity level.
This is just a guess, but it seems like a possible explanation.
 
Status
Not open for further replies.