Agent skill

Apple Container

by sickn33 in sickn33/agentic-awesome-skills

Build, run, and manage OCI/Linux containers as lightweight per-container VMs on Apple-silicon macOS using Apple's open-source container CLI, no Docker daemon required.

Apache-2.0Auto-check passedDevOps & Cloud

Install Apple Container

skills CLI
$ npx skills add sickn33/agentic-awesome-skills --skill apple-container -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install sickn33/agentic-awesome-skills apple-container --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/sickn33/agentic-awesome-skills.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/apple-container .claude/skills/apple-container && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
apple-container
GitHub stars
47k
Used in
1 other repo
Token cost
~2.5k tokens
SKILL.md length
1,155 words
Files
5 (incl. references)
Skills in repo
1,354
Repo updated
First seen
Licence
Apache-2.0

At a glance

Build, run, and manage OCI/Linux containers as lightweight per-container VMs on Apple-silicon macOS using Apple's open-source container CLI, no Docker daemon required.

  • Works in 3 steps: Download the latest signed installer… → Double-click the downloaded package and… → Start the services and confirm they are…
  • Tasks that involve Containers
  • SKILL.md covers When to Use, Safety Gate, Requirements and Setup, plus 4 more sections
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md

What it does

Apple Container is an agent skill from sickn33/agentic-awesome-skills. Build, run, and manage OCI/Linux containers as lightweight per-container VMs on Apple-silicon macOS using Apple's open-source container CLI, no Docker daemon required.

Its SKILL.md is about 2.5k tokens, which your agent loads only when the skill is triggered. The skill folder holds 5 other files, including reference files (for example `references/commands.md`, `references/concepts.md` and `references/configuration.md`).

It sits in DevOps & Cloud, covering Containers. It works with Docker, macOS and Linux. The repository describes itself as: AAS Core is the local, agent-first control plane for complete catalog discovery, agent-owned selection, stack validation, and planning, backed by 2,400+ agentic skills. Includes… The licence is Apache-2.0.

When your agent uses it

  • Tasks that involve Containers

Example prompts

  • “/apple-container”

Requirements

  • Docker

Workflow steps

3 steps, taken from the first numbered list in SKILL.md.

  1. Download the latest signed installer .pkg from the
  2. Double-click the downloaded package and follow the prompts, entering your admin
  3. Start the services and confirm they are healthy

What it can do on your machine

Read from SKILL.md and the folder at commit ec02547. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md (its code samples are bash).

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Links to these hosts (documentation or services it may open):

    • github.com

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Apple Container loads about 2.5k tokens when it runs, and up to ~31k if it reads all its reference files. Until then it costs about 46 tokens; SKILL.md has 1,155 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~46
When it runs · the whole SKILL.md, loaded when a task matches
~2.5k
With references · SKILL.md plus every file in references/, read only if the agent opens them
~31k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from sickn33/agentic-awesome-skills at commit ec02547, republished under its Apache-2.0 licence (© sickn33). 1,155 words, ~2,489 tokens.

Download SKILL.mdSave it as .claude/skills/apple-container/SKILL.md (or your agent's skills folder). This skill also uses 4 other files; get the full folder from GitHub.
name
apple-container
description
Build, run, and manage OCI/Linux containers as lightweight per-container VMs on Apple-silicon macOS using Apple's open-source container CLI, no Docker daemon required.
category
devops
risk
critical
source
https://github.com/sanjay3290/ai-skills/tree/main/skills/apple-container
source_repo
sanjay3290/ai-skills
source_type
community
date_added
2026-07-09
author
sanjay3290
tags
macos, containers, oci, apple-silicon
tools
claude, cursor, gemini
license
Apache-2.0

Apple container

When to Use

  • Use when building, running, or managing OCI/Linux containers on Apple-silicon macOS with Apple's open-source container CLI
  • Use when you want lightweight per-container VMs instead of a Docker daemon
  • Use when translating Docker-style workflows (build, run, exec, logs, networking) to Apple's container tooling

Apple's container is an open-source CLI for building, running, and managing OCI/Linux containers on Apple-silicon Macs. Each container runs inside its own lightweight virtual machine (backed by the Containerization framework and the Virtualization API), so there is no shared daemon like Docker — services run per-user via launchd. Images are standard OCI artifacts, so they interoperate with Docker registries and other OCI tooling. The CLI is deliberately Docker-like (container run, container build, and image ops under container image push/pull), but it is a distinct tool: do not assume Docker command paths, flags, defaults, or daemon behavior carry over (e.g. there is no container images/push/pull top-level command — image verbs live under container image).

Safety Gate

Container installation, service startup, image pulls, builds, runs, registry login, pushes, and resource cleanup change local or remote state. Explain the exact command, image registry, mounts, ports, privileges, and data-persistence impact, then obtain explicit user approval before executing it. Do not provide registry credentials, mount sensitive paths, or expose ports without the user's explicit instruction.

Requirements

  • Apple silicon only (M1 or later). Intel Macs are not supported.
  • macOS 26 (Tahoe) is the officially supported target. The maintainers do not support older macOS and typically will not fix issues that can't be reproduced on 26. The binary still runs on macOS 15 (Sequoia) but with reduced networking: only the single default subnet is available, and the container network group and --network flag error out. macOS-26-gated features are called out throughout the reference files.
  • Version: this skill documents the 1.0.0 release (the fullest feature set). The machine group, container cp, container export, container prune, container image prune, container registry list, and container system version were added in 1.0.0 (not in 0.7.1) — features that postdate 0.7.1 are flagged (1.0.0+) in the reference files. Run container --version and container <group> --help to see what your installed build supports.
  • Install by downloading the signed .pkg installer from the project's GitHub releases (apple/container) and running it. See references/concepts.md for the full requirements/compatibility matrix and how the VM-per-container model works.

Setup

Install the signed package, then start the background services once:

  1. Download the latest signed installer .pkg from the GitHub releases page.
  2. Double-click the downloaded package and follow the prompts, entering your admin password so it can place files under /usr/local. (There is no documented CLI installer invocation — installation is via the GUI package.)
  3. Start the services and confirm they are healthy:
bash
# Start the container services (container-apiserver + helpers via launchd). On first run it
# offers to install the default Linux kernel — accept it, or start non-interactively with
# `--disable-kernel-install` and add a kernel later via `container system kernel set`.
container system start

# Verify services are healthy
container system status

container system start must have run before any container/image/build command works — a connection/XPC error almost always means the services are stopped, so run it again. Stop and deregister the launchd services with container system stop (which takes only -p/--prefix). The startup flags for container system start (-a/--app-root, --install-root, --log-root, --enable-kernel-install/--disable-kernel-install, --timeout) are in references/configuration.md.

Upgrade / downgrade / uninstall use helper scripts in /usr/local/bin (stop first with container system stop): update-container.sh (add -v <version> to pin a version), and uninstall-container.sh -d to remove user data or -k to keep it. Full recipes in references/workflows.md.

Command groups at a glance

Invoke everything as container <group> <subcommand>. Container-lifecycle verbs (run, create, start, stop, exec, logs, inspect, list/ls, delete/rm, kill, stats) and build are top-level; image operations like push, pull, and tag live under container image. Run container <group> --help for exact flags, or read references/commands.md for the exhaustive matrix.

GroupWhat it doesExample
container lifecycleCreate, start, run, stop, exec, inspect, list, remove containerscontainer run --rm -it docker.io/library/alpine sh
buildBuild an OCI image from a Dockerfile in the builder VMcontainer build -t myapp:latest .
imageList, tag, inspect, remove, load/save, prune local images; push/pull to registriescontainer image ls
registryAuthenticate (login/logout/list) to OCI registriescontainer registry login ghcr.io
systemStart/stop/status services, logs, disk usage (df), DNS, kernel, propertiescontainer system status
networkCreate/list/remove container networks (macOS 26 only)container network create mynet
volumeCreate/list/inspect/remove persistent volumescontainer volume create data
builderManage the builder VM that runs container build (start/stop/status)container builder status
machine (1.0.0+)Persistent Linux "machine" environments (added in 1.0.0)container machine --help

Exact subcommand names, aliases, arguments, and flags for each group live in references/commands.md — consult it before running an unfamiliar command rather than guessing Docker-equivalent syntax.

Show full SKILL.md (417 more words)Show less

Navigating this skill

Read the reference file that matches the task; do not guess flags or behavior.

  • references/commands.md — exhaustive CLI reference: every command group, subcommand, alias, argument, and flag. Read this to construct any concrete container ... invocation, or to confirm a flag exists before using it.
  • references/concepts.md — architecture (VM-per-container, Containerization framework), system requirements and macOS 15 vs 26 differences, networking model, per-container IPs, security model, and a Docker-vs-container comparison. Read this to explain how or why something works, or when a Docker mental model gives the wrong answer.
  • references/configuration.md — the system service, config.toml / property model, default kernel, DNS domains, default registry, builder resources, and machine settings. Read this to change defaults, tune CPU/memory, point at a private registry, or manage the kernel.
  • references/workflows.md — copy-pasteable task recipes (run an image, build & push, wire up local DNS, mount a volume, expose ports) and troubleshooting for common failures. Read this first when the user wants to accomplish a concrete end-to-end task.

Key rules

  • This is not Docker. The CLI resembles Docker, but flags, defaults, and daemon behavior differ. Verify syntax in references/commands.md instead of assuming Docker equivalence.
  • Always ensure services are up first. Run container system start (and confirm with container system status) before any container/image/build command; connection errors usually mean the services are stopped.
  • Images are standard OCI artifacts and interoperate with Docker registries and other OCI tools. Image references that omit a registry default to docker.io (configurable via the registry.domain property — see references/configuration.md).
  • Each container gets its own IP address on its network (one lightweight VM per container). There is no shared Docker bridge; reach a container directly by its IP, or set up a local DNS domain (container system dns create ..., admin required) for name-based access.
  • container network requires macOS 26. On macOS 15 only the single default subnet is available and the network command group is unavailable — see references/concepts.md.
  • Use fully-qualified image references when precision matters (e.g. docker.io/library/alpine rather than bare alpine) to avoid ambiguity about the source registry.

Limitations

  • Apple Container requires Apple silicon and has materially different support and networking behavior across macOS releases; verify the installed CLI version before relying on a flag.
  • OCI images and registry content are third-party inputs. Inspect and trust the image source before pulling or running it.
  • This skill does not make container workloads safe by default: mounts, published ports, privileged settings, registry credentials, and cleanup can expose or destroy data.
  • Stop before uninstalling, pruning, deleting containers, volumes, or images, and require explicit approval for each destructive action.

© sickn33, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 4 other files (references) in skills/apple-container of sickn33/agentic-awesome-skills.

  • SKILL.md
  • references/commands.md
  • references/concepts.md
  • references/configuration.md
  • references/workflows.md

Open the folder on GitHubat commit ec02547

Used in 1 other repository

We found 5 copies of this SKILL.md (exact, near-identical or edited) in other folders, from 1 other GitHub owner. This page covers the copy in sickn33/agentic-awesome-skills, which our catalogue first saw on October 7, 2026.

Compare with similar skills

Apple Container next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Apple Container compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Apple Container this skillsickn33/agentic-awesome-skills47k1 repos~2.5kAutomated safety check: PassApache-2.0
.NET Crash Dump Collectiondotnet/skills5.6k2 repos~1.1kAutomated safety check: PassMIT
Agentdock User Guideuvwt/agentdock1.2k—~1.6kAutomated safety check: PassApache-2.0
Setup Review Sandboxnrwl/nx29k—~1.8kAutomated safety check: NotesMIT
Reproduce Issuenrwl/nx29k—~2.6kAutomated safety check: NotesMIT
Osx Tuningdimetron/pi-go207—~1.6kAutomated safety check: NotesMIT

Similar skills

  • Official

    Configures automatic crash dumps or captures dumps from running processes for modern .NET apps on Linux, macOS and Windows, including Docker and Kubernetes.

    5.6k GitHub starsUsed in 2 repos~1.1k tokens
    DevOps & CloudAuto-check passed
  • Agentdock User Guide

    uvwt/agentdock

    当用户询问 AgentDock 是什么、如何使用、配置在哪里、不同平台或安装方式怎样修改配置并生效、如何重启或验证配置、如何发现并配置 Codex/Claude/Grok 等 Coding Agent 的 ACP,以及常见运行问题时使用;覆盖 macOS Desktop、Windows Desktop、Linux 服务、Docker 和直接运行二进制,不用于源码开发与贡献流程。

    1.2k GitHub stars~1.6k tokensUpdated yesterday
    DevOps & CloudAuto-check passed
  • One-time setup of the sandbox prerequisites used by the reproduce-issue skill and the reproduce-verifier agent — Docker, the isolation runtime (gVisor on Linux / Colima on macOS), healthy container…

    29k GitHub stars~1.8k tokensUpdated today
    DevOps & CloudAuto-check: notes
  • The single skill for reproducing an nx issue. An agent skill from nrwl/nx.

    29k GitHub stars~2.6k tokensUpdated today
    DevOps & CloudAuto-check: notes
  • Osx Tuning

    dimetron/pi-go

    Tune macOS resource limits and sysctls for best performance with Go development, Docker/OrbStack, and Linux VMs.

    207 GitHub stars~1.6k tokensUpdated 7 days ago
    DevOps & CloudAuto-check: notes
  • Docker Patterns

    affaan-m/ECC

    Docker and Docker Compose patterns for local development, hardened CLI installer harnesses, container security, networking, volumes, and multi-service orchestration.

    275k GitHub starsUsed in 1 repo~3.7k tokens
    DevOps & CloudAuto-check: notes

More from sickn33/agentic-awesome-skills

All 1,354 skills in this repo
  • Liuguang Banlan UI

    sickn33/agentic-awesome-skills

    Implements an interface in one of two named color modes, iridescent white or colorful black, from a parameterized starter that reports measured color intensity.

    47k GitHub starsUsed in 1 repo~2.5k tokens
    Auto-check passed
  • User Thoughts Memory

    sickn33/agentic-awesome-skills

    Saves a user's project decisions, rules and preferences into a project-local mdbase so later sessions and other agents can recover the intent.

    47k GitHub starsUsed in 1 repo~2.5k tokens
    Auto-check passed
  • Using LWC Memory and Graphs

    sickn33/agentic-awesome-skills

    Keeps project decisions, research and verified results available across coding-agent sessions through LWC memory, a document Wiki graph and a CodeGraph code index.

    47k GitHub starsUsed in 1 repo~2k tokens
    Auto-check passed
  • Find Complementary Founders

    sickn33/agentic-awesome-skills

    Guides an agent through assessing its own owner for cofounder fit, publishing an approved profile, and ranking complementary profiles other agents published for their owners.

    47k GitHub starsUsed in 1 repo~4.8k tokens
    Auto-check passed
  • Cline Pilot

    sickn33/agentic-awesome-skills

    Acts as a proxy for the Cline CLI, dispatching coding tasks one at a time, monitoring runs by hard evidence, relaying decisions to you and learning per-project preferences.

    47k GitHub starsUsed in 1 repo~4.6k tokens
    Auto-check passed
  • Content Creator

    sickn33/agentic-awesome-skills

    Drafts and reviews audience-specific content from supplied brand examples, with local scripts for brand voice and SEO diagnostics, channel templates and a content calendar.

    47k GitHub starsUsed in 1 repo~2.5k tokens
    Auto-check passed

Categories

Questions about Apple Container

What does Apple Container do?

Build, run, and manage OCI/Linux containers as lightweight per-container VMs on Apple-silicon macOS using Apple's open-source container CLI, no Docker daemon required. Apple Container is an agent skill from sickn33/agentic-awesome-skills. Build, run, and manage OCI/Linux containers as lightweight per-container VMs on Apple-silicon macOS using Apple's open-source container CLI, no Docker daemon required.

When should I use Apple Container?

Apple Container fits situations like: tasks that involve Containers.

How do I install Apple Container in Claude Code?

Run `npx skills add sickn33/agentic-awesome-skills --skill apple-container -a claude-code`. Or copy the skill folder (skills/apple-container in sickn33/agentic-awesome-skills) into .claude/skills/apple-container in your project. Claude Code loads it when a task matches its description.

How do I install Apple Container in Codex?

Run `npx skills add sickn33/agentic-awesome-skills --skill apple-container -a codex`. Or copy the skill folder (skills/apple-container in sickn33/agentic-awesome-skills) into .agents/skills/apple-container in your project. Codex loads it when a task matches its description.

Can I use Apple Container in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add sickn33/agentic-awesome-skills --skill apple-container -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/apple-container, .gemini/skills/apple-container, .github/skills/apple-container and .opencode/skills/apple-container in your project.

What does Apple Container need to run?

SKILL.md names no scripts, command-line tools or credentials: Apple Container is instructions for the agent only. Our summary lists: Docker.

Does Apple Container access the network?

SKILL.md names 1 domain. As links in the text: github.com. This is read from the text; nothing was executed.

Is Apple Container safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Apple Container use?

Apple Container is published under the Apache-2.0 licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Apple Container use?

About 2.5k tokens (SKILL.md is roughly 10k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 29k tokens, read only when the agent opens those files.

What are the alternatives to Apple Container?

Skills that share tags, products or a category with Apple Container: .NET Crash Dump Collection (dotnet/skills, 5.6k stars), Agentdock User Guide (uvwt/agentdock, 1.2k stars), Setup Review Sandbox (nrwl/nx, 29k stars) and Reproduce Issue (nrwl/nx, 29k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Apple Container?

sickn33 (a GitHub user) maintains it in sickn33/agentic-awesome-skills, which has 47,343 GitHub stars. The repository holds 1,354 skills in this directory. The repository was last updated on October 7, 2026.

Source: sickn33/agentic-awesome-skills on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.