High-Level Security Profile Generator
(originally from my proposal on https://github.com/docker/docker/issues/17142#issuecomment-148974642 but generic)
The profile would generate artificats of an apparmor profile and seccomp filters.
Obviously doesn't have to be toml since that's super hipster :p
- no one is going to sit and write out all the syscalls/capabilities their app needs
- automatic profiling would be super cool but like
aa-genprofit is never