apiVersion: apps/v1 kind: Deployment metadata: name: actions-runner spec: selector: matchLabels: app: actions-runner template: metadata: labels: app: actions-runner spec: containers: - name: actions-runner hostname: kube-runner image: actions-runner securityContext: privileged: true # Add this line to allow running Docker resources: requests: memory: "128Mi" cpu: "500m" limits: memory: "256Mi" cpu: "1000m" env: - name: GITEA_INSTANCE_URL value: "https://git.kluster.moll.re" - name: GITEA_RUNNER_REGISTRATION_TOKEN valueFrom: secretKeyRef: name: actions-runner-secret key: runner-token - name: GITEA_RUNNER_LABELS value: k8s