2. Are apps running in some sort of sandbox that prohibits them from accessing your phone contacts, e-mails, sms message, gps location, and so forth without giving explicit approval? (e.g. like Windows UAC or pre-install security info like Android).
2. no, but you've got the advantage on linux of being able to run apps with users with low access rights