diff --git a/configs/mcp.nix b/configs/mcp.nix index 8e11d63..7c3beee 100644 --- a/configs/mcp.nix +++ b/configs/mcp.nix @@ -54,7 +54,10 @@ in LockPersonality = true; MemoryDenyWriteExecute = true; RestrictRealtime = true; - ReadWritePaths = "/srv"; + ReadWritePaths = [ + "/srv" + "/run/user/${toString mcpUid}" + ]; }; }; }