Build small, reproducible and non-privileged container images.
Scanned 9/3/2026
Install to Claude Code
npx -y skills add Andersseen/agentyx --skill containerization --agent claude-codeInstalls into .claude/skills of the current project.
Are you the author of Containerization?
Add the live security badge to your README — it updates automatically with every re-scan.
[](https://www.skillsdirectory.com/skills/andersseen-containerization)More formats (shields.io, HTML) on the badges page.
---
name: containerization
description: Build small, reproducible and non-privileged container images.
---
# Containerization
An image is a deployment artifact. Build it to be small, identical everywhere and safe to run.
## Build in stages
Compile in a build stage and copy only the artifacts into a minimal runtime image. Shipping compilers
and development dependencies inflates both image size and attack surface.
## Order layers by volatility
Put rarely changed steps such as dependency installation before frequently changed application code.
Correct ordering turns most rebuilds into cache hits.
## Pin the base image
Reference an explicit version or digest rather than a moving tag. Rebuilding the same commit must
produce the same image, and update the base deliberately.
## Never run as root
Create an unprivileged user and drop capabilities. A container is an isolation boundary, not a
security guarantee, and root inside makes an escape far more valuable.
## Keep configuration and secrets outside
Inject configuration through environment or mounted files at runtime. Baking credentials into an
image publishes them to everyone who can pull it, permanently.
## Handle signals and report health
Ensure the process receives termination signals so shutdown is graceful, and expose readiness and
liveness endpoints so orchestrators route traffic correctly.
Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.
No comments yet. Be the first to comment!
Use this skill when developing or maintaining browser extension code in the `browser/` directory, including Chrome/Firefox/Edge compatibility, content scripts, background scripts, or i18n updates.
Official Google SEO guide covering search optimization, best practices, Search Console, crawling, indexing, and improving website search visibility based on official Google documentation
SEO optimization with keyword analysis, readability assessment, technical validation, content quality. Use for search rankings, blog posts, content audits, or encountering keyword density, readability scores, meta tags, schema markup errors.
Python backend development expertise for FastAPI, security patterns, database operations, Upstash integrations, and code quality. Use when: (1) Building REST APIs with FastAPI, (2) Implementing JWT/OAuth2 authentication, (3) Setting up SQLAlchemy/async databases, (4) Integrating Redis/Upstash caching, (5) Refactoring AI-generated Python code (deslopification), (6) Designing API patterns, or (7) Optimizing backend performance.
PTES-aligned adversarial security audit for backend, frontend, and mobile applications. Produces a CVSS-scored Hacker Report with verified PoCs and phased remediation.