-
Notifications
You must be signed in to change notification settings - Fork 1
Expand file tree
/
Copy pathContainerFile
More file actions
83 lines (63 loc) · 2.79 KB
/
Copy pathContainerFile
File metadata and controls
83 lines (63 loc) · 2.79 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
# syntax=docker/dockerfile:1
# tinycode-container: tinycode (web mode) for Kubernetes/OpenShift
# Build: podman build -f ContainerFile --platform linux/amd64 -t ghcr.io/bobbyjohnstx/tinycode-container:latest .
# Multi-arch: podman build -f ContainerFile --platform linux/amd64,linux/arm64 ...
ARG TARGETARCH
ARG TINYCODE_REF=main
# Stage 1: Build tinycode binary from Go source
FROM registry.access.redhat.com/ubi9/ubi AS builder
ARG TARGETARCH
ARG TINYCODE_REF
RUN dnf install -y git make && dnf clean all
# Install Go
ARG GO_VERSION=1.27.1
RUN ARCH=$(uname -m) && \
case "$ARCH" in x86_64) GO_ARCH=amd64 ;; aarch64) GO_ARCH=arm64 ;; *) GO_ARCH=amd64 ;; esac && \
curl -fsSL "https://go.dev/dl/go${GO_VERSION}.linux-${GO_ARCH}.tar.gz" | tar -C /usr/local -xz
ENV PATH="/usr/local/go/bin:$PATH"
# Clone tinycode from GitHub (public repo)
RUN git clone https://github.com/bobbyjohnstx/tinycode.git /build/tinycode
WORKDIR /build/tinycode
RUN git checkout $TINYCODE_REF
# Build static binary (pure Go SQLite, no CGO needed)
RUN GOOS=linux GOARCH=$TARGETARCH CGO_ENABLED=0 \
go build -ldflags "-s -w" -o /build/tinycode-binary ./cmd/tinycode
# Stage 2: Runtime — UBI9 minimal with entrypoint
FROM registry.access.redhat.com/ubi9/ubi-minimal AS runtime
ARG TARGETARCH
RUN microdnf install -y shadow-utils tar gzip git-core python3.11 python3.11-pip nodejs npm && \
python3.11 -m pip install --no-cache-dir ansible-lint && \
microdnf clean all
# Create non-root user (UID 1001, GID 0 for OpenShift arbitrary UID support)
RUN useradd -u 1001 -r -g 0 -m -s /sbin/nologin tinycode && \
microdnf remove -y shadow-utils && microdnf clean all
# Copy tinycode binary
COPY --from=builder /build/tinycode-binary /usr/local/bin/tinycode
# Copy bundled plugins
COPY plugins/ /opt/tinycode-plugins/
# Copy entrypoint script
COPY entrypoint.sh /usr/local/bin/entrypoint.sh
RUN chmod +x /usr/local/bin/entrypoint.sh
# Stage bundled agents and skills in a non-PVC path.
# The entrypoint copies them into the PVC-mounted config dir on startup.
# (PVC at ~/.config/tinycode/ shadows anything COPY'd there at build time.)
COPY config/agent /opt/tinycode-defaults/agent
COPY config/skills /opt/tinycode-defaults/skills
ENV XDG_DATA_HOME=/home/tinycode/.local/share \
XDG_CONFIG_HOME=/home/tinycode/.config \
XDG_STATE_HOME=/home/tinycode/.local/state \
XDG_CACHE_HOME=/home/tinycode/.cache \
HOME=/home/tinycode \
SHELL=/bin/sh \
PATH="/home/tinycode/.local/bin:${PATH}"
RUN mkdir -p \
/home/tinycode/.local/share/tinycode \
/home/tinycode/.config/tinycode \
/home/tinycode/.local/state/tinycode \
/home/tinycode/.cache/tinycode && \
chown -R 1001:0 /home/tinycode && \
chmod -R g=u /home/tinycode
EXPOSE 4096
USER 1001
WORKDIR /home/tinycode
ENTRYPOINT ["/usr/local/bin/entrypoint.sh"]