Do native packages (rpm) have any security benefits (from targeted attacks) over flatpaks on Fedora Workstation?
I hate flatpaks - they are buggy, most of them fallback to X11, do not integrate well with the OS, (e.g. VLC flatpak and codecs from rpmfusion, imageviewer thumbnails etc), sandbox is pretty much an illusion.
In most cases using a Flatpak is preferred for security reasons as they can be sandboxed. The only exception is if you’re using a Chromium-based or Firefox-based browser, in which case you might be better off using the RPM as some in the community claim that Flatpak replaces the browser sandboxing with the inferior Flatpak sandboxing.