ADRs tagged docker¶
Auto-generated by scripts/docs/generate-adr-by-tag.sh. Edit ADR Tags: lines to update.
33 ADR(s) carry this tag.
| ID | Title |
|---|---|
| ADR-0118 | FFmpeg patches ship as ordered series.txt, not a single carry |
| ADR-0451 | Local dev-MCP container for live probing |
| ADR-0698 | VMAFX Production Dockerfile — Multi-Arch, Image Signing, SBOM |
| ADR-0717 | vmafx-node — ffmpeg latest-tag pinning + ffmpeg-patches bundled into Dockerfile |
| ADR-0790 | Containerfile layer optimization — merge apt layer, strip build artifacts, no-cache-dir pip |
| ADR-0815 | Distroless Dockerfiles for vmafx-operator and vmafx-node |
| ADR-0878 | Trivy container scan baseline — production images run as non-root |
| ADR-0966 | Fix dev/Containerfile post-ADR-0700 libvmaf → core paths (Round 26 audit C.1) |
| ADR-1042 | Containerfile hardening — non-root USER + build-time DEBIAN_FRONTEND |
| ADR-1053 | Default docker-compose runtime to nvidia and expand GPU capabilities |
| ADR-1177 | Containerised self-hosted GitHub Actions runner for Intel Arc SYCL parity CI |
| ADR-1306 | Replace nvidia/cuda base images with digest-pinned Ubuntu and version-locked apt installation |
| ADR-1360 | Generate SYCL AOT images at compile time and fail the build when they are missing |
| ADR-1368 | Build and run the oneAPI release image on Debian 13 with pinned Intel packages |
| ADR-1492 | Tester image with one report command, hardware reports as tracked files |
| ADR-1503 | Every published tester artifact carries its licence texts, an attested SPDX SBOM and the source its copyleft parts require, and a gate refuses a file with no recorded licence |
| ADR-1505 | An Intel GPU tester image with a backend-neutral GPU section in the report |
| ADR-1509 | An NVIDIA GPU tester image that ships no NVIDIA file and measures every CUDA twin on a tester's GPU |
| ADR-1511 | An AMD GPU tester image that ships only the ROCm runtime files the HIP build loads, with the source of its LGPL parts |
| ADR-1513 | The production images, release assets and Python packages follow the tester licensing rules, checked by the same tool |
| ADR-1514 | The Go service images record every linked module's licence from the binary, and the node image ships a redistributable FFmpeg, a source-built rclone and the records of the libraries it copies |
| ADR-1517 | The production GPU images are built on Debian 13, ship only the vendor files libvmaf loads, and share the tester images' licence records |
| ADR-1564 | The dev container is pushed only into a private package, checked before every push |
| ADR-1578 | The rc.1 and rc.2 ROCm and node images are withdrawn; every other published rc image gets notices and a source companion |
| ADR-1589 | the Helm chart deploys vmafx-controller as its own one-replica workload, and the release publishes a licence-gated controller image |
| ADR-1591 | Publish every archive and image at the strongest compression its documented consumers open |
| ADR-1593 | the node image carries FUSE mount tools, and the Helm chart grants FUSE and the eBPF tracker per value |
| ADR-1594 | zstd image layers with a Docker Engine 23.0 floor, and zopfli for the Windows zips |
| ADR-1595 | Build and run what the push-only and release-only workflows publish, before they publish |
| ADR-1687 | Require the pull-request release legs through the aggregator |
| ADR-1700 | The tester selectors follow their own paths, not the full-mode fallback |
| ADR-1701 | Build and test the tester image every night on master |
| ADR-2796 | Every clang-tidy ratchet lane is a hosted, path-routed required check |