docker-container-security

SKILLFlusso di lavorocommunity
v0.0.0GoldenWing-360MITAggiornato 17 g faFonte →

Run containers with a defensive baseline that survives production. Covers non-root users, read-only filesystems, dropped Linux capabilities, secret mounts instead of build-time bake-in, image scanning with trivy, distroless and minimal base images, and the Docker-bypasses-UFW firewall pitfall. Invok

Community-submitted skill. Not yet reviewed by the Forge team. Full prompt content may not be available.Request review →
15Stelle del repo
1Client
1Formati
17 g faUltimo aggiornamento
Skill
AutoreGoldenWing-360
Versione0.0.0
LicenzaMIT
CategoriaFlusso di lavoro
Formatiskill.md
PromptNon pubblicato
Compatibilità
Claude✓ Supportato
Cursor
Copilot
ChatGPT
Gemini
Descrizione

Run containers with a defensive baseline that survives production. Covers non-root users, read-only filesystems, dropped Linux capabilities, secret mounts instead of build-time bake-in, image scanning with trivy, distroless and minimal base images, and the Docker-bypasses-UFW firewall pitfall. Invoke when adding Docker to a VPS with UFW, writing a new Dockerfile, or pushing an image to a public re

Parole chiave
skillclaude