Classic confinement request for ixress-layout-automation-software

Hello,

I am requesting classic confinement for my prepress and print production application: ixress-layout-automation-software.

Technical Reasons:

  1. File Access Requirements: The application is a layout automation and imposition software used in professional print production environments. It must read and write high-resolution print PDF files from arbitrary local paths, custom hotfolders, network mounts (SMB/NFS), and external storage devices.
  2. User Documents & ICC Profiles: It needs to automatically copy and manage ICC profiles inside the user’s local Documents/iXress folder, and read system settings from the host.
  3. Licensing & System Queries: The application queries local hardware identifiers (such as Motherboard UUIDs/Serial numbers) to register and validate machine-specific licenses.

Since sandboxed (strict) confinement would restrict access to arbitrary filesystem paths and network mounts crucial for a print-house workflow, classic confinement is necessary for this utility to function.

Thank you!

This request has been added to the queue for review by the @reviewers team.

hey @iXress , can you also provide the below information for this snap

  • description: description of the snap
  • snapcraft: URL pointing to the snapcraft.yaml if publicly available
  • upstream: URL pointing to the upstream repository, if open-source. Otherwise, ‘PRIVATE’
  • upstream-relation: relation of the snap publisher with the upstream project
  • supported-category: supported classic confinement category that the snap fits within. The list of supported categories can be found here

Hi,

Here is the requested information for this snap:

  • description: iXress Prepress Software Suite is a professional layout automation, imposition, and pre-press utility designed for print production houses. It automates page placement, signature calculation, and mark additions on plates/press sheets. (Maybe for Art and Design category) (OpenID transaction in progress)
  • snapcraft: The source code and build script are private, but the snap is packed from pre-compiled assets. The generated meta/snap.yaml used to pack the app is as follows:
name: ixress-layout-automation-software
type: app
base: core22
confinement: classic
grade: stable
architectures:
  - amd64
apps:
  ixress-layout-automation-software:
    command: ixress-layout-automation-software --no-sandbox


  • upstream: PRIVATE

  • upstream-relation: I am the owner and main developer of this project.

  • supported-category: Utility that needs to access/process arbitrary files on the system. The application must read and write high-resolution print PDF files from arbitrary paths on the user’s filesystem (local paths, network mounts, and external storage devices).

This is explicitly an unsupported use case (please see the list on the linked document again)

Hi,

"Thank you for the feedback. I have transitioned the snap to strict confinement with the gnome extension and requested home, removable-media, network, and cups plugs. You can close this request.

Thanks!"

1 Like

thanks for confining the snap, closing this thread