Is the goal just to use the kernel's process isolation features that you can access with `unshare`?
Or do you mean to just bypass the installation step (because that purportedly contains adware)?