TheHolm

joined 2 years ago
[–] TheHolm@aussie.zone 2 points 4 hours ago* (last edited 3 hours ago)

If you care about security you build it is own. No need to trust random dude in the internet. After all It just fire and forget. Copy whatever "code" is used to build container you are after, verify it once and than just rebuild it periodically to pull patches from more reliable sources.
Docker security is a joke, no need to make it worse.

[–] TheHolm@aussie.zone 1 points 15 hours ago

If you using bind mounts - you are using dockers in wrong way. Use named volumes.

[–] TheHolm@aussie.zone 2 points 16 hours ago (1 children)

Woodpecker. No BS CI which can be attached to pretty much anything. It just need a webhook and way to pull your project.