This should be the same reasoning as wireguard-tools, but afaik the DNScrypt functionality is entirely missing without this package.
https://packages.fedoraproject.org/pkgs/dnscrypt-proxy/dnscrypt-proxy/
layering it also requires no extra dependencies
You should be able to run it from a privileged container.
Metadata Update from @ngompa: - Issue tagged with: kinoite
Closing as this is the kind of daemon / services that you should be able to run from a container.
Metadata Update from @siosm: - Issue close_status updated to: Won't fix - Issue status updated to: Closed (was: Open)