Hacker News new | ask | show | jobs
by ashishb 205 days ago
> I think it's better to not run npm as root user on container. I would suggest adding --user 1000 to your docker run command.

Good point. Here's the improvement that work for me

https://github.com/ashishb/dotfiles/commit/fe4fb15fe867bf77a...

1 comments

It gets tricky with private dependencies, then you have to pass some sort of token into the container to authenticate with the host when installing dependencies.
Definitely.

Would you prefer doing those tricks or exposing everything on your machine to random npm packages?