Menu

#41 Distroless runtime image

open
nobody
None
2026-01-20
2026-01-20
Anonymous
No

Originally created by: yaront1111

Repo: cordum

Problem

SECURITY.md claims minimal distroless images, but Dockerfile uses Alpine.

Proposed

  • Switch runtime stage to distroless static (nonroot) and keep CA certs.

Acceptance

  • Built binaries run with distroless runtime image.
  • Docs updated to reflect base image.

References

  • Dockerfile
  • SECURITY.md

Discussion


Log in to post a comment.