- Set HOME=/root explicitly to prevent Nix installer from creating /homeless-shelter - Add Prepare environment step to clean up before Nix install - Disable sandbox explicitly (not available in Docker containers)