One easy preliminary step is to add warnings to the CI if a public build fails due to missing released dependencies. The easiest first step would be to test whether the existing Dockefile currently builds at all. Optional: automatically output which versions of which dependency is missing.