The concept is great, and I would love to ditch OrbStack for it. (OrbStack is slick. But their everything-shares-one-kernel-and-they-don’t-give-privileged-access model falls apart as soon as you try to do anything that doesn’t fit in their not-amazing sandbox. Even user namespaces don’t appear to work.) But, other than the actual core mostly working, Apple Containers was a buggy mess, and it was the only thing that made me frequently reboot the whole machine.