Earlier quoted context omitted.
All it takes is a browser exploit, in any OS. What does the possible existence of exploits have to do with macOS being more secure than Linux? macOS can also have exploits. I don't understand where your claim that there's a specific risk of unrestrained file access to websites comes from. In my eyes, saying that it could be true because exploits could exist nullifies everything you said. You could apply that argument…
Different OSes have different sandboxing capabilities. Until relatively recently, Linux had effectively none , just chroot, and selinux which almost everyone disabled for a decade. The point, which you seem to be missing, is that with generalized sandboxing tools like containers, you can isolate any application to limit the potential damage of application exploits. It's a form of defense in depth. We must assume brow…
You said:
> Unless you're going out of your way to run your browser in a container or dedicated VM on Linux, there are substantial risks associated with browsing the web in terms of exposing all of your information in /home, which might include ssh and pgp private keys, basically everything your user can access.
You're saying that there's this particular substantial risk in this particular OS, in this particular scenario. When I ask for any details that can back it up, you reply "All it takes is a browser exploit".
I would hope it would be self-evident that that is no reason to think that the particular risk you mentioned is real, or at least any more real than it is for any other OS, for any other app, or in any other circumstance.
My only interest in the comment was determining if the particular risk is real, but now it seems it was just FUD.