Checkov #659
checkov.yaml
on: schedule
Checkov
/
Checkov Scan
58s
Annotations
11 errors
Checkov / Checkov Scan:
daemonset.yaml#L27
CKV_K8S_37: "Minimize the admission of containers with capabilities assigned"
|
Checkov / Checkov Scan:
daemonset.yaml#L27
CKV_K8S_15: "Image Pull Policy should be Always"
|
Checkov / Checkov Scan:
daemonset.yaml#L27
CKV_K8S_29: "Apply security context to your pods and containers"
|
Checkov / Checkov Scan:
daemonset.yaml#L27
CKV_K8S_20: "Containers should not run with allowPrivilegeEscalation"
|
Checkov / Checkov Scan:
daemonset.yaml#L27
CKV_K8S_38: "Ensure that Service Account Tokens are only mounted where necessary"
|
Checkov / Checkov Scan:
daemonset.yaml#L27
CKV_K8S_28: "Minimize the admission of containers with the NET_RAW capability"
|
Checkov / Checkov Scan:
daemonset.yaml#L27
CKV_K8S_43: "Image should use digest"
|
Checkov / Checkov Scan:
daemonset.yaml#L27
CKV_K8S_31: "Ensure that the seccomp profile is set to docker/default or runtime/default"
|
Checkov / Checkov Scan:
daemonset.yaml#L27
CKV_K8S_30: "Apply security context to your containers"
|
Checkov / Checkov Scan:
daemonset.yaml#L27
CKV_K8S_40: "Containers should run as a high UID to avoid host conflict"
|
Checkov / Checkov Scan
CodeQL Action major versions v1 and v2 have been deprecated. Please update all occurrences of the CodeQL Action in your workflow files to v3. For more information, see https://github.blog/changelog/2025-01-10-code-scanning-codeql-action-v2-is-now-deprecated/
|