tag-security icon indicating copy to clipboard operation
tag-security copied to clipboard

🔐CNCF Security Technical Advisory Group -- secure access, policy control, privacy, auditing, explainability and more!

Results 217 tag-security issues
Sort by recently updated
recently updated
newest added

Title: Introducing Kubescape project to TAG Security Speakers: Ben Hirschberg (@slashben) Description: We are the Kubescape project (https://github.com/armosec/kubescape). We want to become part of the CNCF familiy and contribute the...

usecase-presentation
triage-required

## Description: what's your idea? Solicit input, feedback, and collaboration on https://github.com/cncf/landscape-graph, specifically on Sub-Graph Modules related to software packages and threats (details below) ## Impact: Describe the customer impact...

proposal

**NOTE: We should let multiple folks review and approve this PR before merging** Fixes https://github.com/cncf/tag-security/issues/947 - Uses an existing GitHub Action from Marketplace: `necojackarc/[email protected]` to allow notifying non-collaborators / codeowners...

There is a tiny typo in chinese whitepaper which will mislead the readers to understand. So fix it ASAP.

Now that SecurityCon events for EU 2022 are wrap its time to prepare and plan for NA! This issue will track activities related to TAG Security events for upcoming year....

Q3-2022
Q4-2022

This project is Phase II for Issue #635 Cloud Native Security controls. This will be completed in collaboration with CCM from CSA. Scope - Mapping to existing frameworks and regulations...

help wanted
project
triage-required
Q4-2022

This PR adds Monero to the list of Supply Chain compromises Closes #822

Description: Revisit security assessment process to include the assessment of sub-projects of graduated projects by using [Cluster API](https://github.com/kubernetes-sigs/cluster-api/) sub-project of [Kubernetes](github.com/kubernetes/kubernetes) as a pilot Impact: This will create precedence on...

enhancement
project

Description: During the public CNSWPv2 RFC, a proposal was made to add a section about confidential computing and use cases it enables for cloud native. The comment was made too...

suggestion
whitepaper