

I run everything in LXC containers because AFAIK using VMs mean you are limited on shared resources. If I want to use the iGPU for Plex and something else it would be locked to only work on the Plex VM. I mainly just have an unprivileged LXC and a second privileged LXC both running portainer that run most of my services.
Also you can link it to HomeAssistant so when you unzip you can set an automation to lock your door, dim your lights, play Kenny G, and activate your touchless tissue dispenser.