Docker Claude Code — Security skill for Claude Code
new Run Claude Code in an isolated Docker container with multi-profile support, security hardening, best-practice defaults, a set of pre-installed plugin/skill bundles and remote dev support.
How to install Docker Claude Code
This entry records only its repository, not the path inside it, so there is no
exact command to give. Open gw0/docker-claude-code and copy the folder into
~/.claude/skills/, or the file into ~/.claude/agents/.
What Docker Claude Code does
[GitHub](https://github.com/gw0/docker-claude-code) · [GHCR](https://github.com/gw0/docker-claude-code/pkgs/container/docker-claude-code) · [Docker Hub](https://hub.docker.com/r/gw000/docker-claude-code)
Alternatives in Security
- Security Guardian — Comprehensive security analysis for RTK CLI tool, focusing on command injection, shell escaping, hook security 11.9k ★
- Portaljs Check Data Quality — Audit a local or remote tabular file (CSV/TSV) for common data quality issues 2.3k ★
- Trail Of Bits Claude-code-config — Opinionated production defaults from a top security firm: sandboxing, permissions, hooks, skills, MCP server c 1.6k ★
README
docker-claude-code - Dockerized Claude Code Sandbox
[GitHub](https://github.com/gw0/docker-claude-code) · [GHCR](https://github.com/gw0/docker-claude-code/pkgs/container/docker-claude-code) · [Docker Hub](https://hub.docker.com/r/gw000/docker-claude-code)
Run **Claude Code in an isolated Docker container** with multi-profile support, security hardening, best-practice defaults, a set of pre-installed plugin/skill bundles and remote dev support. Drop-in replacement for `claude` — a simple shell alias is all it takes.
- Drop-in replacement: Works exactly like
claude— same arguments, same workflow, just runcc1instead ofclaude, Linux and MacOS support. - Secure sandbox: Non-root user, all capabilities dropped, hardened seccomp profile, startup security scans (AgentShield + unicode), audit log at
~/.claude/audit-log.jsonl. - Multi-profile support: Per-profile persistent state in
~/.claude-to separate work and personal accounts, mix subscription and API key billing. - Best practices by default: Start in plan mode, optimized token usage, telemetry disabled, claude-powerline status line, pre-configured tool allowlist and denylist.
- Plugins and skills: SuperClaude, claude-skills, codemap, and 33+ antigravity-awesome-skills bundles pre-installed, enabled on demand via
/plugin. - Remote dev support: Mutagen bidirectional sync + Docker socket forwarding allow executing commands in a remote dev environment.
- Minimal and auditable: ~200 lines of shell + Dockerfile, no dependencies beyond Docker, small enough to read and modify — don't trust us, ask your AI to audit it.
Build
docker build -t docker-claude-code .
# or pull latest:
docker pull ghcr.io/gw0/docker-claude-code:main
docker pull gw000/docker-claude-code:main
Install
Download the shell alias script and hardened seccomp, customize profile names (`CLAUDE_PROFILES`), and source it in your shell:
mkdir -p ~/.config/docker-claude-code
...
Related Skills
ContAIned
A governed coding agent CLI built on Claude Code. Runs inside an isolated Docker container with operator-contr
Ccc Audit
Run npm audit + bundle size check + lint scan. Returns vulnerabilities, oversized bundles, and lint errors.
Claude Next
One-key handoff for deep Claude Code sessions. Independent fresh-context audit + drift check + forced uncertai
Simple Onboard
Fast read-only orientation on ANY repo (stack, structure, run/test commands) PLUS a R.Code-suitability verdict
Re Audit
Fix-review / re-audit. Takes a prior audit report + the current tree and classifies every prior finding FIXED
Engineering Fix
Applies engineering corrections from the last /engineering-audit run. Creates an isolated branch, applies chan
Related Agents
Amoa Docker Container Expert
Manages Docker containers for cross-platform development and isolated testing. Requires AI Maestro installed.
Production Docker Auditor
Audits Dockerfiles and container configuration for production hardening — multi-stage builds, non-root users,
Deploy To Staging
Use this agent PROACTIVELY when deploying applications to staging or QA environments. This includes running te