Another feature request: It's often difficult to tell what/were/how sandbox is being violated. It would help if libsandbox could log (say) pid, ppid and argv when a vio occurs. This could be combined with bug 138499: sandboxed processes could dump a ps tree when the vio happens.
Added cmdline info to log in svn.