Block a user
depot (latest)
Published 2026-07-26 20:39:15 -05:00 by jason
Installation
docker pull registry.alwisp.com/jason/depot:latestsha256:d4f023cc094d56f2cf3c229b163207e500d5eb690fee00875d341a0f9e868f5f
Image Layers
| # debian.sh --arch 'amd64' out/ 'bookworm' '@1776729600' |
| RUN /bin/sh -c groupadd --gid 1000 node && useradd --uid 1000 --gid node --shell /bin/bash --create-home node # buildkit |
| ENV NODE_VERSION=20.20.2 |
| RUN /bin/sh -c ARCH= OPENSSL_ARCH= && dpkgArch="$(dpkg --print-architecture)" && case "${dpkgArch##*-}" in amd64) ARCH='x64' OPENSSL_ARCH='linux-x86_64';; ppc64el) ARCH='ppc64le' OPENSSL_ARCH='linux-ppc64le';; s390x) ARCH='s390x' OPENSSL_ARCH='linux*-s390x';; arm64) ARCH='arm64' OPENSSL_ARCH='linux-aarch64';; armhf) ARCH='armv7l' OPENSSL_ARCH='linux-armv4';; i386) ARCH='x86' OPENSSL_ARCH='linux-elf';; *) echo "unsupported architecture"; exit 1 ;; esac && set -ex && apt-get update && apt-get install -y ca-certificates curl wget gnupg dirmngr xz-utils libatomic1 --no-install-recommends && rm -rf /var/lib/apt/lists/* && export GNUPGHOME="$(mktemp -d)" && for key in 5BE8A3F6C8A5C01D106C0AD820B1A390B168D356 DD792F5973C6DE52C432CBDAC77ABFA00DDBF2B7 CC68F5A3106FF448322E48ED27F5E38D5B0A215F 8FCCA13FEF1D0C2E91008E09770F7A9A5AE15600 890C08DB8579162FEE0DF9DB8BEAB4DFCF555EF4 C82FA3AE1CBEDC6BE46B9360C43CEC45C17AB93C 108F52B48DB57BB0CC439B2997B01419BD92F80A A363A499291CBBC940DD62E41F10027AF002F8B0 ; do { gpg --batch --keyserver hkps://keys.openpgp.org --recv-keys "$key" && gpg --batch --fingerprint "$key"; } || { gpg --batch --keyserver keyserver.ubuntu.com --recv-keys "$key" && gpg --batch --fingerprint "$key"; } ; done && curl -fsSLO --compressed "https://nodejs.org/dist/v$NODE_VERSION/node-v$NODE_VERSION-linux-$ARCH.tar.xz" && curl -fsSLO --compressed "https://nodejs.org/dist/v$NODE_VERSION/SHASUMS256.txt.asc" && gpg --batch --decrypt --output SHASUMS256.txt SHASUMS256.txt.asc && gpgconf --kill all && rm -rf "$GNUPGHOME" && grep " node-v$NODE_VERSION-linux-$ARCH.tar.xz\$" SHASUMS256.txt | sha256sum -c - && tar -xJf "node-v$NODE_VERSION-linux-$ARCH.tar.xz" -C /usr/local --strip-components=1 --no-same-owner && rm "node-v$NODE_VERSION-linux-$ARCH.tar.xz" SHASUMS256.txt.asc SHASUMS256.txt && find /usr/local/include/node/openssl/archs -mindepth 1 -maxdepth 1 ! -name "$OPENSSL_ARCH" -exec rm -rf {} \; && apt-mark auto '.*' > /dev/null && find /usr/local -type f -executable -exec ldd '{}' ';' | awk '/=>/ { so = $(NF-1); if (index(so, "/usr/local/") == 1) { next }; gsub("^/(usr/)?", "", so); print so }' | sort -u | xargs -r dpkg-query --search | cut -d: -f1 | sort -u | xargs -r apt-mark manual && apt-get purge -y --auto-remove -o APT::AutoRemove::RecommendsImportant=false && ln -s /usr/local/bin/node /usr/local/bin/nodejs && node --version && npm --version && rm -rf /tmp/* # buildkit |
| ENV YARN_VERSION=1.22.22 |
| RUN /bin/sh -c set -ex && savedAptMark="$(apt-mark showmanual)" && apt-get update && apt-get install -y ca-certificates curl wget gnupg dirmngr --no-install-recommends && rm -rf /var/lib/apt/lists/* && export GNUPGHOME="$(mktemp -d)" && for key in 6A010C5166006599AA17F08146C2130DFD2497F5 ; do { gpg --batch --keyserver hkps://keys.openpgp.org --recv-keys "$key" && gpg --batch --fingerprint "$key"; } || { gpg --batch --keyserver keyserver.ubuntu.com --recv-keys "$key" && gpg --batch --fingerprint "$key"; } ; done && curl -fsSLO --compressed "https://yarnpkg.com/downloads/$YARN_VERSION/yarn-v$YARN_VERSION.tar.gz" && curl -fsSLO --compressed "https://yarnpkg.com/downloads/$YARN_VERSION/yarn-v$YARN_VERSION.tar.gz.asc" && gpg --batch --verify yarn-v$YARN_VERSION.tar.gz.asc yarn-v$YARN_VERSION.tar.gz && gpgconf --kill all && rm -rf "$GNUPGHOME" && mkdir -p /opt && tar -xzf yarn-v$YARN_VERSION.tar.gz -C /opt/ && ln -s /opt/yarn-v$YARN_VERSION/bin/yarn /usr/local/bin/yarn && ln -s /opt/yarn-v$YARN_VERSION/bin/yarnpkg /usr/local/bin/yarnpkg && rm yarn-v$YARN_VERSION.tar.gz.asc yarn-v$YARN_VERSION.tar.gz && apt-mark auto '.*' > /dev/null && { [ -z "$savedAptMark" ] || apt-mark manual $savedAptMark > /dev/null; } && find /usr/local -type f -executable -exec ldd '{}' ';' | awk '/=>/ { so = $(NF-1); if (index(so, "/usr/local/") == 1) { next }; gsub("^/(usr/)?", "", so); print so }' | sort -u | xargs -r dpkg-query --search | cut -d: -f1 | sort -u | xargs -r apt-mark manual && apt-get purge -y --auto-remove -o APT::AutoRemove::RecommendsImportant=false && yarn --version && rm -rf /tmp/* # buildkit |
| COPY docker-entrypoint.sh /usr/local/bin/ # buildkit |
| ENTRYPOINT ["docker-entrypoint.sh"] |
| CMD ["node"] |
| WORKDIR /app |
| ENV NODE_ENV=production PORT=3001 DATA_DIR=/app/data DATABASE_URL=file:/app/data/depot.db ENABLE_CLAMAV=1 CLAMD_SOCKET=/app/data/clamav/clamd.sock |
| /bin/sh -c apt-get update && apt-get install -y --no-install-recommends ca-certificates clamav clamav-daemon clamav-freshclam curl && rm -rf /var/lib/apt/lists/* |
| COPY dir:7293b5eeab76e17a7b94345625c8c012862b9c5954b860723de1b98af5171fbc in ./node_modules |
| COPY file:823229e599a55b123d0e59632dec38dc220854a1c3beff9fe076d1b4291d8d43 in ./package.json |
| COPY file:80a4595cc4b2254298d1f05fcce022dd93fecb971a85bcee29f425a8c77aee8e in ./tsconfig.json |
| COPY dir:7487dac5034a28e659a8f82a5e8fb8946c325573ff0283178b25897b732c5558 in ./server |
| COPY dir:d758306073f2a4ee4f05f93e63d1bf26f4b7e2f2c37e60a69e1a2b66f7d2c635 in ./prisma |
| COPY dir:9261da26393172bd0c3dc479a626788da15009321b7339d9977a67e9ffae8e05 in ./client/dist |
| COPY file:6fb15578853b48612c74cc1685eeb61d9ac4a570f6fcbaedc1a887b8d29df4b4 in ./version.json |
| COPY dir:b19cd8cb3a5f0ce13e147aaeefdf81de5f722ef641f3e6319e609a1d584f7d16 in ./clamav |
| COPY file:ee2c53db9e17befab70bce480579164400b813ef3c0fa0205924c664432845df in /usr/local/bin/docker-entrypoint.sh |
| /bin/sh -c chmod +x /usr/local/bin/docker-entrypoint.sh |
| /bin/sh -c mkdir -p /app/data && chown -R node:node /app |
| EXPOSE 3001 |
| VOLUME [/app/data] |
| HEALTHCHECK &{Test:[CMD-SHELL curl -fsS http://localhost:3001/api/health || exit 1] Interval:30s Timeout:5s StartPeriod:1m30s StartInterval:0s Retries:3} |
| ENTRYPOINT ["docker-entrypoint.sh"] |
| CMD ["npm" "start"] |
| LABEL org.alwisp.git-sha=ce3109af0ce908ba89249e490addd1e56521beb1 |
| LABEL org.alwisp.repo=jason/depot |
| LABEL org.alwisp.version=v1.24 |
Labels
| Key | Value |
|---|---|
| org.alwisp.git-sha | ce3109af0ce908ba89249e490addd1e56521beb1 |
| org.alwisp.repo | jason/depot |
| org.alwisp.version | v1.24 |