From 2f5e51a1b4a8a8abbe0c9bf3b6f2d9239cee2afc Mon Sep 17 00:00:00 2001 From: Bastien Chanot Date: Sun, 5 Jul 2026 22:57:48 +0200 Subject: [PATCH] docs: sync README base-image reference (1.28 -> 1.30-alpine) --- README.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/README.md b/README.md index 4d79c21..9b9d928 100644 --- a/README.md +++ b/README.md @@ -88,7 +88,7 @@ WCAG AA contrast. Focus visible. Semantic HTML. Production currently serves the static files directly from the VPS's native nginx (which also terminates TLS). The repo additionally maintains a hardened -container path (`bchanot-web`, `nginxinc/nginx-unprivileged:1.28-alpine`, +container path (`bchanot-web`, `nginxinc/nginx-unprivileged:1.30-alpine`, digest-pinned, runs as uid 101 on port 8080) for when a containerized deploy is preferred: the host port is set via `PORT` (default 8080) and bound to `127.0.0.1`, so all traffic goes through the front proxy.