Earlier quoted context omitted.
>system dynamic linking made sense I too look forwards to having to manually updated all security patches for each binary in the system.
Would you rather each update of said binary be dependent on the author or some volunteer? That's how you get Debian stable.. No thanks.
The fact that things like flatpak, snap, nix all explicitly try to address this problem with platforms/base layers/grafting etc. is very telling. They are all a trade off of your security vs. the dev's convenience, which might be necessary to succeed.