Only a token test amount so far. The root filesystem is read-only by default, but without the whole Nix ecosystem, which is a little awkward (can't install packages even as root without changing that.) On the other hand, it comes with `distrobox` preinstalled, so it's easy enough to spin up a container and use that (including package installation.)