World Congress 2026 North America
rm -rf: Horror Stories From Unsandboxed AI Agents (and How Docker Fixes This)
Rishab Kumar
Staff Developer Evangelist @ Twilio
World Congress 2026 North America
World Congress 2026 North America
September 23–25, 2026 · San José, CA
Attend in person
Get ticketsWatch remotely
Pro
Can’t make it to San José? Watch this session live with Pro. You also get:
We have all been there. You need a database or a quick node environment, so you throw “FROM node:latest” into your Dockerfile and deploy. It works, but you have just introduced a black box into your Kubernetes cluster.
For the Developer, it’s a quick fix. For the Platform Engineer, it’s a nightmare.
Most upstream images from public registries are a roll of the dice. They come pre-packed with critical vulnerabilities, unknown binaries, and bloated libraries that you didn’t ask for and definitely don’t want running in your secure environment. In a world of Zero Trust, why are we trusting random upstream maintainers with the keys to our infrastructure?
In this session, we will dismantle the myth that “open source means secure” when it comes to container images. We will walk through the architecture of a truly Secure Software Delivery pipeline—one that establishes trust before a single line of code is committed. We will discuss:
Join us to learn how to bridge the gap between developer velocity and platform security, ensuring that the only thing running in your cluster is code you actually trust.
World Congress 2026 North America
Rishab Kumar
Staff Developer Evangelist @ Twilio
World Congress 2026 North America
Nicholas Muy
VP Engineering Platform and Security at Scrut.io
World Congress 2026 North America
Michal Salanci
Senior Systems Engineer at ESET Cybersecurity
World Congress 2026 North America
Eric Wang, Paul Zimmerman