Though it looks and sounds good, how would security be impacted by using the google chrome-based electron runtime to run the desktop client’s TypeScript and CLI runtime to run the server’s C# code? Wouldn’t this increase potential attack surface and probability of introducing vulnerabilities through more complexity (though this could be said for writing more of the stack oneself)? Im thinking about pass (https://www.passwordstore.org/) and KeePass 1.x (https://keepass.info) for comparison.