For newer Linux kernels, Landlock might be the way forward instead of bubblewrap. See https://docs.kernel.org/userspace-api/landlock.html.