hi,
I'm working as a tech lead in Shippable(https://shippable.com). The production use as specified by Docker is a set of guidelines that you should/must avoid for now, like not giving the sudo access inside the containers. Also, if the application running inside of the container itself has security holes than Docker really can't help in any way. You should take a look at this presentation by Jérôme Petazzoni (http://www.slideshare.net/jpetazzo/linux-containers-lxc-dock...) which makes the same point(and more).