I am not sure if you'll be fine with this kind of solution, but I couldn't push to my Knot due to permission issues. The logs would print:
Unsafe AuthorizedKeysCommand "/etc/s6-overlay/scripts/keys-wrapper": bad ownership or modes for directory /etc
Adding this chmod resolved this, and it doesn't seem to impact the container as is.
I think this looks fine for now. I know a lot of people were having problems with this on Debian specifically.