Classic confinement request for sshdeck

name: sshdeck

description: SSHDeck is a desktop SSH connection manager. It reads and updates OpenSSH host profiles, organizes remote hosts into groups, stores connection metadata, and launches interactive SSH sessions in the user’s system terminal.

snapcraft: https://github.com/lucadegrassi/SSHDeck/blob/main/snap/snapcraft.yaml

upstream: PRIVATE

upstream-relation: The publisher is the project owner and maintainer.

supported-category: tools for local, non-root user driven configuration of/switching to development workspaces/environments (SSHDeck is a user-level client for connecting to remote development and server environments).

reasoning: The current workflow reads and updates the hidden file ~/.ssh/config, and uses IdentityFile paths configured by the user. The home interface does not expose hidden .ssh files. A personal-files plug can grant specific paths, but arbitrary IdentityFile paths are user-selected and cannot be known at build time without broad access and additional manual connections. SSHDeck also launches the host OpenSSH client and the user’s selected host terminal (GNOME Terminal or Ptyxis); strict confinement does not provide access to these host executables in the current design. A strict manifest with narrow personal-files plugs was build-tested, but the existing interfaces do not preserve the host-terminal workflow; the strict variant has not been runtime-tested. The full current functionality therefore requires classic confinement.

This request has been added to the queue for review by the @reviewers team.