Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
8 changes: 8 additions & 0 deletions claude-code/.devcontainer/Dockerfile
Original file line number Diff line number Diff line change
Expand Up @@ -55,6 +55,13 @@ ARG GIT_DELTA_VERSION=0.18.2
# - git: version control
# - jq: JSON processing (firewall script, onboarding patch)
# - less: pager for git delta output
# - openssh-client: provides ssh-keygen, needed for SSH-format commit signing
# (gpg.format=ssh + commit.gpgsign=true, copied in via VS Code's
# dev.containers.copyGitConfig); also restores ssh/ssh-add. git only
# *Recommends* it, so --no-install-recommends drops it unless listed here.
# Hard-depends on libfido2, so FIDO2 hardware keys (YubiKey sk-ssh-ed25519)
# sign too. Must be in base: the sandbox firewall blocks deb.debian.org, so
# it can't be added at runtime (same reasoning as chromium). See issue #110.
# - sudo: privilege escalation for firewall setup
RUN --mount=type=cache,target=/var/cache/apt,sharing=locked \
--mount=type=cache,target=/var/lib/apt/lists,sharing=locked \
Expand All @@ -67,6 +74,7 @@ RUN --mount=type=cache,target=/var/cache/apt,sharing=locked \
git \
jq \
less \
openssh-client \
sudo

# npm global directory with proper permissions for node user
Expand Down
2 changes: 1 addition & 1 deletion claude-code/README.md
Original file line number Diff line number Diff line change
Expand Up @@ -17,7 +17,7 @@ Projects consume these pre-built images and control their own tool versions via
|-------|------|-----|
| OS | `node:24-trixie-slim` + system packages | Node is needed during the build (Playwright, npm globals) |
| Shell | Fish, Starship, fzf | Built-in syntax highlighting, autosuggestions, completions |
| Tools | git-delta, gh CLI, jq, nano, vim, wget, unzip, less, man-db, procps | Standard dev utilities |
| Tools | git-delta, gh CLI, jq, nano, vim, wget, unzip, less, man-db, procps, openssh-client | Standard dev utilities (`openssh-client` provides `ssh`/`ssh-keygen` — enables SSH-format commit signing) |
| Mise | The tool manager itself (not the tools) | Projects run `mise install` at container creation for their tool versions |
| rtk, ralphex | Always-latest from GitHub Releases | Dev infrastructure (like Claude Code) — no version pinning needed in projects |
| Claude Code | npm global install | npm avoids rate limiting that affects the native installer in parallel CI builds |
Expand Down