Allow me to retort :)

  1. Security: “Unless you run your containers in privileged mode” — which is the equivalent of running a regularly installed packaged service as root. “how do you know what’s inside the image you just pulled”, that’s exactly like asking if you verified a package installed by apt. You can get them from official repos trusting that their behavior is approved by the community much like pulling images from communities such as official repositories or the more broad Bitnami community. In this case Docker doesn’t protect you against yourself (which would’ve been worth mentioning had someone implied that it would)

“I am a big fan of “I want to know WHAT I am doing and WHY” — big claim, but it doesn’t really feel like you do.



