Last but not least, maybe you're really worried about your local applications being compromised by a motivated, well funded attacker. If you are then I don't think the Snap/Flatpak sandbox can do much for you. If you really need tight isolation between apps something like Qubes OS is a much better idea, and probably safer. 9/14