Flatsonar

Sunshine

by LizardByte

GameStream host for Moonlight

Dangerous permissions Verified creator GPL-3.0-only v2026.914.233613

Support the creators

Flatsonar is just the shop window. The people below made Sunshine.

Screenshot 1 of Sunshine

About

Offering low latency, cloud gaming server capabilities with support for AMD, Intel, and Nvidia GPUs for hardware encoding. Software encoding is also available. You can connect to Sunshine from any Moonlight client on a variety of devices. A web UI is provided to allow configuration, and client pairing, from your favorite web browser. Pair from the local server or any mobile device.

NOTE: Sunshine requires additional installation steps on Flatpak.

Run flatpak run --command=additional-install.sh dev.lizardbyte.app.Sunshine

NOTE: Sunshine uses a self-signed certificate. The web browser will report it as not secure, but it is safe.

Permissions

4 permissions weaken the sandbox. Flatsonar asks before installing.

  • all devices (/dev): webcams, disks, raw hardware
    --device=all
  • sandbox escape: can run commands on the host via flatpak-spawn
    --talk-name=org.freedesktop.Flatpak
  • full access to your home folder
    --filesystem=home
  • talks to system service org.freedesktop.Avahi
    --system-talk-name=org.freedesktop.Avahi
  • inter-process communication (needed for X11)
    --share=ipc
  • network
    --share=network
  • X11 display, only when Wayland is unavailable
    --socket=fallback-x11
  • audio
    --socket=pulseaudio
  • Wayland display
    --socket=wayland
  • access to xdg-run/pipewire-0
    --filesystem=xdg-run/pipewire-0
  • access to xdg-config/kdeglobals
    --filesystem=xdg-config/kdeglobals:ro
  • talks to com.canonical.AppMenu.Registrar
    --talk-name=com.canonical.AppMenu.Registrar
  • talks to org.kde.kconfig.notify
    --talk-name=org.kde.kconfig.notify
  • talks to org.kde.KGlobalSettings
    --talk-name=org.kde.KGlobalSettings
  • system tray
    --talk-name=org.kde.StatusNotifierWatcher

Who publishes this

The creator demonstrably controls this app id: Flathub verification, the hosting account owns the namespace, or a well-known file on their domain.

  • verified on Flathub: the developer proved they control this app id
    publisher:flathub

Maintenance

Recent activity on the upstream repository, or built and reviewed by Flathub.

No staleness signals: recent activity, or built and reviewed by Flathub.