Privacy policy
Dockyard runs on your machine and talks only to your own Docker engine. There is no account, no cloud service and no telemetry, and it keeps no data of its own.
Last updated 2 October 2026
The short version
- The Dockyard app collects nothing about you and phones home to no one.
- It talks to the Docker engine on your machine through the socket you mount, and to nothing else.
- It reads
AGENTS.mdfiles from the repository you mount, read-only, and never writes to it. - It stores nothing: no database, no settings file, no history.
- This website uses no analytics and sets no cookies.
The Dockyard app
Dockyard is a web app you run yourself from a Docker container. The container serves the
interface to your browser at http://localhost:41739. The recommended command
publishes that port on 127.0.0.1 only, so the app is reachable from your own
machine and nowhere else.
The app contains no analytics, crash reporting, update checks or usage tracking, and it does not require or offer an account.
What the app reads and stores
- Your Docker engine. Through the mounted
/var/run/docker.sock, Dockyard lists and controls containers, Compose stacks, images and volumes, and streams logs, stats and terminal sessions. That information is shown in your browser and is not saved or sent anywhere. - Your repository. The folder you mount at
/workspaceis mounted read-only. Dockyard searches it forAGENTS.mdfiles when you open the agent map and shows their contents. It never modifies them. - Nothing else. Dockyard has no database and writes no state of its own, which is why removing and recreating the container loses nothing.
Security of the Docker socket
Access to the Docker socket is equivalent to root access on the host. Dockyard therefore has
no login and is designed to be used only from the same machine: it accepts requests
addressed to localhost only, rejects requests whose Origin does not
match, and requires a custom header on every state-changing request so other websites cannot
act on your behalf.
Keep the published port bound to 127.0.0.1. Do not expose it on a public or shared network interface.
Network requests
The Dockyard app itself makes no requests to the internet. The only outside traffic involved is traffic you start yourself:
- Pulling the Dockyard image from
ghcr.io, which is operated by GitHub. - Pulling an image from the Images page, which your Docker engine fetches from the registry you name.
This website
This site is static and hosted on GitHub Pages. It uses no analytics, sets no cookies and does not use local storage. Fonts are loaded from Google Fonts.
GitHub and Google may process standard request data such as your IP address when they
deliver this site and its fonts to you, under their own privacy policies. Pulling the
container image from ghcr.io is handled by GitHub in the same way.
Contact
Questions about this policy, or found something that does not match it? Open an issue on GitHub or email piyushdoorwar+dockyard@gmail.com.
If this policy changes, the new version will be published on this page with an updated date.