On affected Omarchy systems, this means that the default user and all processes launched in that user session have access to root.
Hmm, maybe I'm misunderstanding. Does "all processes launched in that user session" not include containerized apps?