Hacker News new | ask | show | jobs
by syntonym 2567 days ago
The discussion is a bit dated, docker now supports user namespaces such that apps can run as root inside a container, but are not root outside of the container.