Hacker News new | ask | show | jobs
by smoochy 1471 days ago
I wholeheartedly agree. My initial motivation for building `dock` was actually looking at all the vulnerabilities in different packages for various package managers and thinking "I would not like that on my system". Then I decided it would generally be a good idea to isolate other stuff. Like you can actually run your browser from a container, without it having access to your filesystem and, possibly, other information your OS provides. Dock for me wasn't about NOT setting up the environment, because I WAS actually setting it up for every single container I'm using. But it was about not having to set it up again again, let alone managing conflicts.