Deny by default
A program reaches nothing it was not granted. Filesystem, network, and devices all start closed, and the bundled floor profile grants only what a dynamically linked binary needs to start.
Layered, deny-by-default confinement for untrusted programs on Linux. Unprivileged, near-zero overhead, and able to show you what a program actually touches.