From 7810552c271dab7be13a07e6fa9c13d6cfae83ee Mon Sep 17 00:00:00 2001 From: Joe Testa Date: Tue, 5 Sep 2023 11:29:45 -0400 Subject: [PATCH] Drop root privileges in container. --- Dockerfile.multi-arch | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/Dockerfile.multi-arch b/Dockerfile.multi-arch index 217aa74fe..390d2cd18 100644 --- a/Dockerfile.multi-arch +++ b/Dockerfile.multi-arch @@ -23,4 +23,8 @@ FROM scratch LABEL maintainer="Vidar Holen " WORKDIR /mnt COPY --from=alpine /bin/shellcheck /bin/ + +# Drop root privileges. +USER 65535:65535 + ENTRYPOINT ["/bin/shellcheck"]