Report this

What is the reason for this report?

Are One-Click Install Apps "safe to use"?

Posted on August 17, 2018

Hello,

I usually spin up new Droplets for services, provision them with a script/manual actions to tighten security, and then manually install applications.

Today, for the first time really, I’ve been looking at the One-Click Install App library and realised this could cut some time out of the provisioning process.

However, while there is information around using the library, I can’t find any firm details or advice regarding security.

A few questions, if anyone can help:

  • Are One-Click Install App images “safe to use” by default?
  • What are the default security settings for these images?
  • Anything in particular to be aware of when using them?
  • Is there any official advice/best practices for provisioning/security, after creating a Droplet from an image?
  • What’s the intended use for these images? Are they meant to be used for production use, without necessarily requiring user modification of the base distribution image, or should they be reserved for quick development/experimentation?

Thank you in advance for any responses.

The developer cloud

Scale up as you grow — whether you're running one virtual machine or ten thousand.

Start building today

From GPU-powered inference and Kubernetes to managed databases and storage, get everything you need to build, scale, and deploy intelligent applications.