About Dockerfile Watch
Dockerfile Watch shows you a realistic Dockerfile snippet and asks you to pick the most dangerous
or non-reproducible line. Every day everyone gets the same challenge so you can compare results.
Topics include :latest tags, running as root, leaking secrets in ENV/ARG, unsafe
curl | sh chains, missing layer cleanup, and more.
Why it helps
- Build intuition for the most common Dockerfile security and reproducibility pitfalls.
- Learn how small authoring choices affect image size, caching, and runtime privilege.
- Use the related Dockerfile Linter & Best Practice Checker to audit the full file.
Runs locally in your browser. Progress is stored only in this browser.