Nix Store Sharing in Containers Risks and GC Concerns
Summary Sharing the Nix store (/nix) between containers can eliminate repeated package downloads and speed up workflows, but it introduces security, reproducibility, and garbage‑collection concerns that must be managed carefully. Root Cause The Nix store is designed as an immutable, content‑addressed database of build outputs. Containers that write to /nix can corrupt the store’s immutability … Read more