Oh wow… please do not do that folks!
If the latter, it's definitely a footgun but you shouldn't be using it for applications. It's a legacy binary for scripts.
TLDR: it restricts even the root user from modifying system files. Like the ones that would otherwise be the target of malware.
Wouldn't it be far easier to enumerate what you want an app to access?
Enumerating what I do want an app to access is handled by Gatekeeper.
...and all its children, which is effectively the entire operating system
> Enumerating what I do want an app to access is handled by Gatekeeper.
Gatekeeper is not capable of this.
It’s a core part of how macOS is prevents unauthorised modifications to the operating system and file system by malicious software.