AgentStack
Browse Sign in
Browse Why AgentStack Sell Docs
Sign in
SKILL unreviewed MIT Self-run

Docker Patterns

skill-jonathan0823-opencode-config-docker-patterns · by Jonathan0823

Docker best practices, multi-stage builds, container security, Docker Compose orchestration, and deployment patterns. Use when containerizing applications, optimizing Docker images, setting up development environments, or deploying with Docker.

No reviews yet
0 installs
23 views
0.0% view→install

Install

$ agentstack add skill-jonathan0823-opencode-config-docker-patterns

Open-source listing, not yet scanned by AgentStack. Follow the source repository for install instructions.

Security review

⚠ Flagged

1 finding(s); flagged for manual review. · v0.1.0 How review works →

  • Prompt-injection patterns
  • Secret / credential exfiltration
  • Dangerous shell & filesystem operations
  • Untrusted network calls
  • Known-malicious package signatures
  • high Destructive filesystem operation.

What it can access

  • Network access Used
  • Filesystem access No
  • Shell / process execution No
  • Environment & secrets Used
  • Dynamic code execution No

From automated source analysis of v0.1.0. “Used” means the capability is present in the source — more access means more to trust, not that it’s unsafe.

View the full security report →

Reliability & compatibility

Not yet reviewed
0 installs to date
no reviews yet
4mo ago

Declared compatibility

Claude CodeClaude Desktop

Compatibility is declared by the source manifest. End-to-end runtime verification is coming, see below.

Preview Execution monitoring

We're building live execution health for every listing: tool-call success rate, median latency, uptime, and last-checked timestamps, measured, not self-reported. It isn't live yet, so we don't show numbers we can't stand behind.

How agent discovery & health will work →
Are you the author of Docker Patterns? Claim this listing to set pricing, connect Stripe payouts, and keep 70% of every sale.
Sign up to claim

About

Docker Patterns Skill

Overview

This skill provides guidelines for building production-ready Docker containers, multi-stage builds, security hardening, Docker Compose orchestration, and deployment best practices.

Quick Reference

Multi-Stage Build Example

# Build stage
FROM node:18-alpine AS builder
WORKDIR /app
COPY package*.json ./
RUN npm ci
COPY . .
RUN npm run build

# Production stage
FROM node:18-alpine
RUN addgroup -g 1001 -S nodejs && adduser -S nodejs -u 1001
WORKDIR /app
COPY --from=builder --chown=nodejs:nodejs /app/dist ./dist
COPY --from=builder --chown=nodejs:nodejs /app/node_modules ./node_modules
USER nodejs
EXPOSE 3000
HEALTHCHECK --interval=30s --timeout=3s --start-period=5s --retries=3 \
  CMD node -e "require('http').get('http://localhost:3000/health', (r) => {process.exit(r.statusCode === 200 ? 0 : 1)})"
CMD ["node", "dist/main.js"]

Docker Compose Development

version: '3.8'
services:
  app:
    build:
      context: .
      dockerfile: Dockerfile.dev
    ports:
      - "3000:3000"
    volumes:
      - .:/app
      - /app/node_modules
    environment:
      - NODE_ENV=development

Core Principles

1. Multi-Stage Builds

  • Separate build and runtime environments
  • Minimize final image size
  • Don't include build tools in production

2. Security Hardening

  • Run as non-root user
  • Use specific image tags (not latest)
  • Scan images for vulnerabilities
  • Drop unnecessary capabilities

3. Layer Caching

  • Order instructions by change frequency
  • Copy package files before source code
  • Use .dockerignore to exclude unnecessary files

4. Health Checks

  • Implement /health endpoints
  • Configure Docker health checks
  • Set appropriate intervals and timeouts

Language-Specific Examples

See detailed guides in references/:

  • [Dockerfile Patterns](references/dockerfile-patterns.md) - Multi-stage builds for Node.js, Python, Go, Rust
  • [Docker Compose Patterns](references/docker-compose-patterns.md) - Development, production, and multi-environment setups
  • [Container Security](references/container-security.md) - Security hardening, scanning, and best practices
  • [Deployment Patterns](references/deployment-patterns.md) - Blue-green, rolling updates, Kubernetes

Dockerfile Best Practices

# ✅ DO: Use specific tags
FROM node:18.19.0-alpine3.18

# ✅ DO: Combine RUN commands
RUN apt-get update && \
    apt-get install -y --no-install-recommends curl && \
    rm -rf /var/lib/apt/lists/*

# ✅ DO: Create non-root user
RUN addgroup -g 1001 -S appgroup && \
    adduser -S appuser -u 1001 -G appgroup
USER appuser

# ✅ DO: Copy with ownership
COPY --chown=appuser:appgroup . /app

# ✅ DO: Add health check
HEALTHCHECK --interval=30s --timeout=3s --retries=3 \
  CMD wget --quiet --tries=1 --spider http://localhost:3000/health || exit 1

Docker Compose Best Practices

# ✅ DO: Use environment files
services:
  app:
    env_file:
      - .env.production

# ✅ DO: Set resource limits
deploy:
  resources:
    limits:
      cpus: '0.5'
      memory: 512M

# ✅ DO: Configure health checks
healthcheck:
  test: ["CMD", "wget", "--spider", "http://localhost:3000/health"]
  interval: 30s
  timeout: 10s
  retries: 3

Image Scanning

# Using Trivy
docker run --rm -v /var/run/docker.sock:/var/run/docker.sock \
  aquasec/trivy:latest image myapp:latest

# Using Docker Scout
docker scout cves myapp:latest

# Using Snyk
snyk container test myapp:latest

When to Use This Skill

Use this skill when:

  • Creating Dockerfiles for production applications
  • Setting up development environments with Docker Compose
  • Optimizing image sizes with multi-stage builds
  • Hardening containers for security
  • Setting up health checks and monitoring
  • Managing multiple environments (dev/staging/prod)
  • Implementing CI/CD pipelines with Docker
  • Troubleshooting container issues

Related Skills

  • @ci-cd-pipelines - Continuous integration and deployment with GitHub Actions
  • @security-best-practices - Container security and vulnerability scanning
  • @feature-development - Development workflow
  • @python-patterns - Python-specific patterns
  • @go-conventions - Go-specific patterns
  • @ts-react-nextjs - Node.js patterns

Source & license

This open-source skill is cataloged on AgentStack and links to its original source — we do not rehost the code.

Install and usage instructions live in the source repository linked above.

Reviews

No reviews yet, be the first.

Versions

  • v0.1.0 Imported from the upstream source.