Hacker News new | ask | show | jobs
by ericlewis 2376 days ago
couldn't a malicious docker image also be tooled to dump all of that stuff to an external destination?
1 comments

Absolutely. CI systems tend to get broad access to everything sacred. Giving that level of access to community code is risky in the least.