Earlier quoted context omitted.
I'm kind of OK with "macOS Vista." I've wanted more restrictive and granular permissions for a long time. Web browsers don't need unrestricted access to the entire file system. Neither do games. Preview doesn't need to access the microphone. Word doesn't usually need to record the screen. PowerPoint should not be sending email or accessing the camera. TextEdit doesn't need access to my contacts or calendar. And I don…
Just about everything you said there is wrong. Hey, don’t get me wrong: if you enjoy 10.15’s tedious security-theatre crap then knock yourself out. But you are not qualified to dictate what other users need or want to do; only they are. Like Apple, you are thinking App-centrically. Stop. Apps are not the center of the users’ universe. The users’ own tasks are. Therefore you need to think task-centrically—i.e. What do…
This is the case on _every_ OS that lets users install applications.
So, how can we make sure users doing tasks aren't afflicted by applications that want to sneak in? You're saying to "structure a security model differently" leads me to think maybe users shouldn't have admin access on the machine? But then you get all the critiques people have of iOS.
I'm honestly asking, what's the alternative here?