Hacker Timesnew | past | comments | ask | show | jobs | submitlogin

Sandstorm has some nice features, especially in regards to single-sign-on, automatically setting up a reverse proxy, automatically handling SSL certificates, etc.

But I really don't understand what the sandstorm runtime is bringing over just having a docker container. It's trying to reinvent docker, which seems weirdly out of scope for the problems it's trying to solve. Or even if docker isn't suitable you can still use OCI-compatible container images instead of a custom format?



Sandstorm and Docker are really totally different things.

https://sandstorm.io/news/2014-08-19-why-not-run-docker-apps


>We do often use Docker’s build tools in the process of building Sandstorm packages, simply because they provide a structured and reproducible way to gather an app and its dependencies into a chroot environment, which we can then package up.

It sounds like "we do use OCI-compatible images, but we wrap them in our own filetype". Which I suppose is fine.




Consider applying for YC's Summer 2026 batch! Applications are open till May 4

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: