kubearmor / KubeArmor

Runtime Security Enforcement System. Workload hardening/sandboxing and implementing least-permissive policies made easy leveraging LSMs (BPF-LSM, AppArmor).
https://kubearmor.io/
Apache License 2.0
1.49k stars 343 forks source link

Improve security clomonitor score #1353

Closed nyrahul closed 1 year ago

nyrahul commented 1 year ago

Current status CLOMonitor

### [KubeArmor](https://clomonitor.io/projects/cncf/kubearmor#kubearmor)
- [x] [Documentation - Roadmap](https://clomonitor.io/docs/topics/checks/#roadmap)  (thanks @rootxrishabh )
- [x] [License scanning](https://clomonitor.io/docs/topics/checks/#license-scanning)
- [x] [Artifact Hub badge](https://clomonitor.io/docs/topics/checks/#artifact-hub-badge)  (thanks @rootxrishabh )
- [x] [Community meeting](https://clomonitor.io/docs/topics/checks/#community-meeting)
- [x] [OpenSSF Scorecard badge](https://clomonitor.io/docs/topics/checks/#openssf-scorecard-badge)
- [ ] [Binary artifacts](https://clomonitor.io/docs/topics/checks/#binary-artifacts-from-openssf-scorecard)
- [ ] [Software bill of materials (SBOM)](https://clomonitor.io/docs/topics/checks/#software-bill-of-materials-sbom)
- [ ] [Signed releases](https://clomonitor.io/docs/topics/checks/#signed-releases-from-openssf-scorecard)
- [ ] [Token permissions](https://clomonitor.io/docs/topics/checks/#token-permissions-from-openssf-scorecard)
### [KubeArmor Client](https://clomonitor.io/projects/cncf/kubearmor#kubearmor-client)
- [x] [Contributing](https://clomonitor.io/docs/topics/checks/#contributing) (thanks @vishalrajofficial)
- [ ] [Maintainers](https://clomonitor.io/docs/topics/checks/#maintainers)
### [Policy Templates](https://clomonitor.io/projects/cncf/kubearmor#policy-templates)
- [x] [Contributing](https://clomonitor.io/docs/topics/checks/#contributing)
- [ ] [Maintainers](https://clomonitor.io/docs/topics/checks/#maintainers)
- [ ] [Contributor License Agreement](https://clomonitor.io/docs/topics/checks/#contributor-license-agreement)
- [x] [Developer Certificate of Origin](https://clomonitor.io/docs/topics/checks/#developer-certificate-of-origin)
### [kvm-service](https://clomonitor.io/projects/cncf/kubearmor#kvm-service)
- [x] [Contributing](https://clomonitor.io/docs/topics/checks/#contributing)
- [ ] [Maintainers](https://clomonitor.io/docs/topics/checks/#maintainers)
- [x] [Recent release](https://clomonitor.io/docs/topics/checks/#recent-release)
### [kastore](https://clomonitor.io/projects/cncf/kubearmor#kastore)
- [x] [Contributing](https://clomonitor.io/docs/topics/checks/#contributing)
- [ ] [Maintainers](https://clomonitor.io/docs/topics/checks/#maintainers)
- [ ] [Contributor License Agreement](https://clomonitor.io/docs/topics/checks/#contributor-license-agreement)
- [x] [Developer Certificate of Origin](https://clomonitor.io/docs/topics/checks/#developer-certificate-of-origin)
h4shk4t commented 1 year ago

Hello @nyrahul, is this a good first issue to start with? I would be interested to work on it if it is.

Ankurk99 commented 1 year ago

Hey @h4shk4t, yes this should be a good-first-issue. I am assigning the issue to you, if you need any help please ping.

vishalrajofficial commented 1 year ago

I am interested in contributing further to this issue. I would greatly appreciate it if you could assign me as well.

vishalrajofficial commented 1 year ago

I have submitted pull requests to the repositories of KubeArmor, policy-templates, and Kastore. In this regard, I humbly request your esteemed review of these contributions.

YashPimple commented 1 year ago

@nyrahul @Ankurk99 I am interested to contribute towards the projects and would like to get started with the above good first issue in KubeArmor

sarthaksarthak9 commented 1 year ago

@nyrahul I think community meeting is already in readme so we mark it as complete in above checkbar

vishalrajofficial commented 1 year ago

@Ankurk99 @nyrahul I've submitted pull requests to the kvm-service, kastore, and policy templates repositories. I would greatly appreciate it if you could review my contributions and provide suggestions for any necessary upgrades.

rootxrishabh commented 1 year ago

Score is at 83

swastik959 commented 1 year ago

@nyrahul hi I would like to contribute to this issue can you please assign it to me