nowfound

Alternatives

Products that do what StableBuild – make any Docker container deterministic does

Hi HN! I've posted this a few weeks back without much HN traction - today we've added a free community tier, so anyone can try it out. TL;DR: We’ve launched StableBuild, a new tool to easily freeze and pin Docker images, operating system packages, Python packages, and arbitrary build dependencies; in 5 lines of code: https://stablebuild.com . As the CTO at an ML startup w/ 75 people (https://edgeimpulse.com/) I’ve grown incredibly frustrated with non-deterministic builds. Last year basically every week one of our containers (we have 40+ unique ones in prod)…

  1. 1
    Habitus126

    An open source build flow tool for Docker

    2016

  2. 2DP

    Hi all! I've built a small tool to visualize how inefficient `docker pull` is, in preparation for standing up a new Docker registry + transport. It's bugged me for a while that updating one dependency with Docker drags along many other changes. It's a huge problem with Docker+robotics. With dozens or hundreds of dependencies, there's no "right" way to organize the layers that doesn't end up invalidating a bunch of layers on a single dependency update - and this is ignoring things like compiled code, embedded ML weights, etc. Even worse, many robotics deployments are on terrible internet,…

    Mar 2026 · dockerpull.com

  3. 3
    zero94

    One command to deploy Docker containers to your own server

    Apr 2026

  4. 4
    Refuse84

    Block vulnerable package installs for you and your AI

    Jun 2026 · refuse.dev

  5. 5DD
  6. 6FN
  7. 7WB

    Over the past few months, as we scaled our internal AI Agents, we hit a dead end: Running LLM-generated arbitrary code in Docker is basically running naked on security due to container escape risks. But using full traditional VMs takes minutes to boot and eats too much memory to support high-density concurrency. We loved the developer experience of SaaS sandboxes on the market, but they are closed-source, expensive, and have too high a barrier to entry for self-hosting. So, our team decided to build our own. After months of grinding, using RustVMM and KVM, we built a blazing-fast,…

    Apr 2026 · github.com

  8. 8LV

    Hello HN! We've been working on a new hypervisor https://kwarantine.xyz that can run strongly isolated containers. This is still a WIP, but we wanted to give the community an idea about our approach, its benefits, and various use cases it unlocks. Today, VMs are used to host containers, and make up for the lack of strong security as well as kernel isolation in containers. This work adds this missing security piece in containers. We plan on launching a free private beta soon. Meanwhile, we'd deeply appreciate any feedback, and happy to answer any questions here or on our slack…

    2021

  9. 9SH

    Hello everyone, I am the creator of Stable Horde, a free, open sourced, crowdsourced, distributed cluster of Stable Diffusion (AKA AI image generation) workers. This service is provided for free and without any small print. The only thing one needs to be aware of is that your prompt goes to someone else's computer to be created and then sent back with all the caveats that entails. The main difference from all the other Stable Diffusion webuis and services are: * This service is free for everyone, without credits. While we do have a kudos system, this is only used for priority and you can…

    2022 · stablehorde.net

  10. 10FF
  11. 11RC

    Hi HN, this is Cesar and Rodny, developers of an open-source container runtime called Sysbox, and co-founders of a startup called Nestybox (YC S20). We launched on HN almost a year ago and got excellent feedback then (https://news.ycombinator.com/item?id=24084758). Happy to say that over the past year, Sysbox has continued to gain traction, particularly for securing containers in production, CI/CD, and containerized dev environments. We wanted to announce an important new feature: integration between Sysbox and Kubernetes. As a quick refresher, Sysbox is a "runc" that…

    2021

  12. 12MB

    Hi, I spent the last year and a half writing a book on Docker and microservices, which was finally released on O'Reilly this week. "Using Docker: Developing and Deploying Software with Containers" takes a holistic approach, showing how containers can be used as the central artifact in a modern software development workflow. If anyone has any q's or feedback, please feel free to comment below. The book is available at: http://shop.oreilly.com/product/0636920035671.do (use code AUTHD for a discount)…

    2016

  13. 13RT

    Announcement: https://yzena.com/2024/04/rig-24.04.00-has-been-released/ Okay, it's not zero dependency, but it does only need a C99 compiler and some way to run a command. (C11 preferred, though.) Anyway, after more than three years of work, Rig is finally ready because it can build itself on non-Windows platforms. (Windows support only needs to figure out how to access the compiler.) Rig's website: https://rigbuild.dev/ That website has the docs as well, but for anyone who can contact me [1], feel free to do so if the docs are not sufficient for…

    2024 · git.yzena.com

  14. 14DF
  15. 15SA
  16. 16PW

    "Hi Hacker News, I’ve always found Docker to be overkill for simple Python deployments. It's heavy, complex for non-tech users, and often results in 500MB+ images for a 10KB script. That’s why I built Pygantry. It’s a minimalist 'container' engine based on Python venv but made portable and relocatable. Key features: Lightweight: A full 'shipped' app is usually < 20MB. Zero-Config: No daemon, no root, no Dockerfile complexity. Portable: Build once, zip it, and run it anywhere with a Python interpreter. Founder friendly: Built-in licensing and stealth modes for those building a business. I…

    Feb 2026 · github.com

  17. 17CA

    I built Cygnus because of a long standing frustration with the compromises needed to be made when choosing a deployment option for web applications. The ecosystem is fragmented into a few distinct camps, each sacrificing user experience or runtime compatibility to balance isolation, startup latency, and their own profit margins. Docker: Heavier and slower because it has to supervise more than web apps. Paying overhead you don't need. MicroVM's: Good isolation, but huge maintenance surface area and substantial overhead. Great for untrusted code, overkill for your own apps. Workerd: Tries to…

    Jul 2026 · cygnus.run

  18. 18LD

    2018 · github.com

  19. 19RZ
  20. 20NA

    Hi, over the past few months I've been working on this project: Numax is a small Rust runtime that does three things: it runs WebAssembly modules in a sandbox, has a built-in local key-value store, and syncs everything across nodes with CRDTs and gossip. Basically, you write a wasm module, run it on two machines, and they converge (I hope !). It's a decentralized system... I hope someone finds it interesting! There's a whitepaper I've put a lot into, and I think the code isn't bad either! I believe there's still room in this world for software that's fun and well made, and while building…

    Jun 2026 · github.com

  21. 21TR

    Hi HN, Today I'm showcasing Trunchbull, a benchmarking platform designed for authoring benchmarks and running them against different models. We have direct support for benchmarks that use the harbor authoring system, custom tool authoring via the vercel ai sdk and configuration limits. We've also already imported terminalbench 2.0, as a sort of proof of concept that our harbor task orchestrator works, although you currently need a paid account as we are provisioning sandbox environments. I've made several popular benchmarks publicly available for testing. You dont need an account or your…

    25d ago · trunchbull.dev

  22. 22IS

    Hey all, I'm working on a tool to make staging environments more accessible to software development teams - https:&#x2F;&#x2F;deploykumo.com. Here's a blog post describing it in more detail: https:&#x2F;&#x2F;reading.supply&#x2F;post&#x2F;10410725-30a6-41d3-aa3b-45568f32.... Let me know what you all think.

    2019

  23. 23WH
  24. 24SD

Ranked by how close each launch is in meaning, then by votes. Refine with a description →