kubernetes / sig-security

Process documentation, non-code deliverables, and miscellaneous artifacts of Kubernetes SIG Security
Apache License 2.0
172 stars 57 forks source link

Security recommendation/hardening guide for applications that use Kubernetes client #121

Open AnshumanTripathi opened 4 months ago

AnshumanTripathi commented 4 months ago

Create a security recommendation/hardening guide for applications that use the Kubernetes client. This could include different use-cases like:

  1. Creating an application which runs kubectl commands.
  2. An application that uses the Kubernetes client
  3. A Kubernetes Operator
chadmcrowell commented 3 months ago

Hello, I'd like to contribute here. Just to be clear, the guide would focus on the security recommendations for applications interacting with the Kubernetes API? I can contribute in the following ways to recommend:

k8s-triage-robot commented 2 days ago

The Kubernetes project currently lacks enough contributors to adequately respond to all issues.

This bot triages un-triaged issues according to the following rules:

You can:

Please send feedback to sig-contributor-experience at kubernetes/community.

/lifecycle stale