ov-layers/skills/docker-ce/SKILL.md
Docker CE engine with buildx and compose plugins from the official Docker repository. Use when working with Docker, container builds, or Docker Compose.
npx skillsauth add overthinkos/overthink-plugins docker-ceInstall this skill globally with one command. Works with Claude Code, Cursor, and Windsurf.
3 of 9 scanners reported clean
Some scanners were skipped, did not run, or reported a non-clean status. Review each row below.
| Property | Value |
|----------|-------|
| Install files | layer.yml, tasks: |
RPM (from docker-ce-stable repo): containerd.io, docker-buildx-plugin, docker-ce, docker-ce-cli, docker-compose-plugin
rpm: (Fedora — Docker's yum repo), pac: (Arch — docker metapackage from extra), deb: — via distro-version tag sections debian:13: and ubuntu:24.04: because the upstream apt repo URL differs per distro codename (https://download.docker.com/linux/debian trixie vs .../ubuntu noble). Each tag section declares its own repos: block with the correct URL + GPG key; packages (docker-ce, docker-ce-cli, containerd.io, docker-buildx-plugin, docker-compose-plugin) are identical. See /ov:layer "distro-version tag sections".
# image.yml
my-image:
layers:
- docker-ce
bazzite-ai (disabled)/ov-layers:container-nesting — Alternative podman-based nested container support/ov-layers:kubernetes — Sibling kubectl/Helm commonly paired with docker-ce/ov-layers:github-actions — Sibling layer needing a container engine for act runs/ov:build — Build the bootc image including docker-ce packages/ov:vm — Run the bootc image as a VM to test the docker engineUse when the user asks about:
docker-ce layer or Docker repository setup/ov:test — declarative testing (tests: block, ov image test, ov test)tools
OpenCharly CLI (charly) binary installed into container/VM images for in-container use. Use when working with charly binary deployment inside containers, native D-Bus support, or the full charly toolchain (charly binary + virtualization + gocryptfs + socat).
development
Operator CachyOS workstation profile — a kind:local template + target:local deploy that installs the full dev stack (30 candies) onto a CachyOS host via ShellExecutor. Lives in the overthinkos/cachyos submodule. MUST be invoked before editing or applying the charly-cachyos workstation profile.
tools
Fedora box with the full charly toolchain using shared candies. Rootless-first — runs as uid=1000 with passwordless sudo (no root, no cap_add: ALL). Same candy list as charly-arch. Includes NVIDIA GPU runtime. MUST be invoked before building, deploying, configuring, or troubleshooting the charly-fedora box.
tools
Arch Linux box with the full charly toolchain. Rootless-first — runs as uid=1000 with passwordless sudo (no root, no cap_add: ALL). Composes /charly-coder:charly-mcp so the box is reachable as an MCP gateway on port 18765. NVIDIA GPU runtime composed in. MUST be invoked before building, deploying, configuring, or troubleshooting the charly-arch box.