| FazBrowse GitHub Viewer | Trending | | Home |
| Tools: [Download Repo ZIP] [Original HTTPS Page] |
Codecov Report✅ All modified and coverable lines are covered by tests. @@ Coverage Diff @@
## main #3429 +/- ##
==========================================
+ Coverage 92.23% 95.78% +3.54%
==========================================
Files 100 100
Lines 6172 6172
==========================================
+ Hits 5693 5912 +219
+ Misses 479 260 -219
Flags with carried forward coverage won't be shown. Click here to find out more.
|
Sorry, something went wrong.
|
Closing this — we're revising how we approach these contributions and would rather withdraw it than leave it open unattended. Apologies for the noise, and thanks. |
Sorry, something went wrong.
| Back | FazBrowse Home | New Git URL |
Changes
Add a non-root user (app, UID 1001) to the Dockerfile and set USER 1001
before the container entrypoint. Running as root in a container is a security
risk — it widens the blast radius if the process is compromised, and many
Kubernetes deployments enforce a non-zero runAsUser policy that would
reject a root container at admission.
The RUN instruction uses both Alpine-style (addgroup -S / adduser -S)
and glibc-style (groupadd --system / useradd --system) forms so the
image continues to build from either python:3.x-alpine or
python:3.x-slim base images.
Documentation and testing