Chromium Adds Experimental Flatpak Packaging Support
Chromium’s upstream build system has gained experimental Flatpak packaging support. If it matures, official Flatpak builds become possible rather than being maintained by third parties working from outside the project.
Why this is not trivial
Browsers are the hardest case for sandboxed packaging, because a browser is itself a sandbox.
Chromium runs each renderer in a restricted process using namespaces, seccomp filters, and a setuid or user-namespace helper to drop privileges. Flatpak also confines applications using namespaces and seccomp. Running one inside the other means reconciling two sandbox implementations that both want to control the same kernel facilities, and the historical result is that something has to be relaxed.
That has been the persistent complaint about existing Flatpak browser builds: to make the browser’s own sandbox work inside Flatpak’s, permissions get widened, and the user ends up with a browser whose internal isolation is intact but whose Flatpak confinement is broad enough to be questionable.
Upstream support matters because the people who wrote Chromium’s sandbox are better placed to make it cooperate with Flatpak’s than packagers reverse-engineering the interaction.
What it would change
Right now, Chromium and Chrome Flatpaks are maintained by volunteers tracking upstream releases. That works, and it means security updates reach Flatpak users on a delay that varies with packager availability, which for a browser is the component where delay matters most.
Official builds would mean releases land at upstream’s pace and the sandbox configuration is upstream’s responsibility.
There is also a distribution angle. Immutable and atomic systems, Silverblue, Bazzite, Vanilla OS, Kinoite-style setups, install applications as Flatpaks by design. A browser is the single most important application on a desktop, and having it packaged upstream rather than layered or worked around removes real friction from that model.
Tempering expectations
“Experimental” is doing work in that sentence. Chromium carries experimental build configurations that never ship, and Google’s incentives around Linux packaging have historically been modest: the official Linux distribution is a .deb and an .rpm, and that has been sufficient for their purposes.
Chromium recently gained native arm64 Linux builds after a long wait, which suggests some appetite for improving the Linux story, but the pace there is instructive.
Worth watching rather than planning around. If it lands, it improves the security posture of every Flatpak-first distribution at once.