FROM python:3.11.3 # Set up a new user named "user" with user ID 1000 RUN useradd -m -u 1000 user # Switch to the "user" user USER user # Set home to the user's home directory ENV HOME=/home/user \ PATH=/home/user/.local/bin:$PATH # Get secret SECRET_EXAMPLE and clone it as repo at buildtime RUN --mount=type=secret,id=SECRET_EXAMPLE,mode=0400,required=false #cat /run/secrets/SECRET_EXAMPLE WORKDIR /code RUN git clone https://huggingface.co/spaces/avfranco/ea4all-docker-demo WORKDIR /code/ea4all-docker-demo RUN pip install --no-cache-dir --upgrade -r requirements.txt #COPY ./requirements.txt /code/requirements.txt #RUN pip install --no-cache-dir --upgrade -r /code/requirements.txt # Set the working directory to the user's home directory WORKDIR $HOME/app # Copy the current directory contents into the container at $HOME/app setting the owner to the user COPY --chown=user . $HOME/app CMD ["python", "main.py"]