Do not perform privileged operations at runtime
Allow all user-owned directories to be bind-mounted by docker (so we don't have to know which user we'll be running as at runtime).
Allow all user-owned directories to be bind-mounted by docker (so we don't have to know which user we'll be running as at runtime).