3 ms·
cool! happy to hear that. if you have any ideas or comments about Kubescape, we would love to hear them
by jkaftzan 5y ago
cool! happy to hear that. if you have any ideas or comments about Kubescape, we would love to hear them
- gravypod 5y agoIf you could check for container signing and providence on all materials and make sure that only a single registry is being used (ex only `internal.company.com:443`) and make sure it's not possible to schedule pods with unsigned/untrusted containers that would be awesome.
- eris_agx 5y agoFor materials you can use syft https://github.com/anchore/syft https://github.com/anchore/syft
- jkaftzan 5y agointeresting, I'll send that to our dev team. BTW - you can suggest these things on Kubescape page @ Github and see status etc.
- deleted 5y ago[deleted]
- leeoniya 5y agos/providence/provenance
- dwertent 5y agoYes, we are working on integration with anchore :)