From that page:
Warning: Being a member of the docker group is equivalent to having root access.
Not a great way to limit privileges.
Warning: Being a member of the docker group is equivalent to having root access.
Not a great way to limit privileges.
For a single-user machine, it may be okay. But I don't trust Docker's security very much.
I suppose most of them will be needed in this case, and it's still a concern.
Just did want to remember to people about linux capabilities after read your comment:
man -k cap | grep capabilities