I agree. Let's not go overboard with those security issues. Note that
the situation with LuaTeX is somewhat different. You can run it
somewhere on a server and typeset whatever comes your way. In that
scenario you cannot assume that all documents/scripts are harmless and
you need some protection.

The situation is different for TW, since it is intended for personal
and interactive use, in which case there will be always user
supervision of what scripts get installed/executed. I think that this
is entirely sufficient and there is no need to disable anything. If
someone is stupid enough to run a random piece of code from a random
place, I'd say they get what they deserve. You cannot protect against
that anyway and introducing draconian security measures can only
cripple legitimate usage cases.



