Docker Desktop has run on microVMs since its 2016 launch
A Docker engineer recounts that Docker Desktop (originally Docker for Mac) was built on a custom-built lightweight VMM called hyperkit, developed from Docker's Mirage Unikernel libraries, running a minimal LinuxKit-based kernel. This architecture replaced VirtualBox, which had powered the earlier Docker Toolbox, and has since evolved into what the company now calls Docker VMM.
GoKawiil's interpretation of the reporting above, not reported fact.
The account suggests that what the industry currently markets as a novel 'microVM' security model, popularized by tools like Firecracker, was effectively already implemented inside Docker Desktop years earlier. This reframes current microVM hype as a rediscovery of design choices Docker made for practical reasons—minimalism, auditability, and native app behavior on Mac and Windows—rather than purely a security-driven innovation.
- Docker Desktop (formerly Docker for Mac) has used a custom lightweight VMM, hyperkit, since 2016.
- The design was built on Docker's Mirage Unikernel libraries and LinuxKit-based minimal kernels.
- This predates and resembles the architecture now popularized by microVM tools such as Firecracker.
Source: dave.recoil.org — Dave Scott, 2026-10-03
Published there as: “Docker has always used microVMs (well since 2016)”
Read the original report → The summary and analysis above are GoKawiil's own, written from reporting by the source above. Facts and quotes belong to the original publisher.