tag-security
                                
                                
                                
                                    tag-security copied to clipboard
                            
                            
                            
                        🔐CNCF Security Technical Advisory Group -- secure access, policy control, privacy, auditing, explainability and more!
Title: Introducing Kubescape project to TAG Security Speakers: Ben Hirschberg (@slashben) Description: We are the Kubescape project (https://github.com/armosec/kubescape). We want to become part of the CNCF familiy and contribute the...
## Description: what's your idea? Solicit input, feedback, and collaboration on https://github.com/cncf/landscape-graph, specifically on Sub-Graph Modules related to software packages and threats (details below) ## Impact: Describe the customer impact...
**NOTE: We should let multiple folks review and approve this PR before merging** Fixes https://github.com/cncf/tag-security/issues/947 - Uses an existing GitHub Action from Marketplace: `necojackarc/[email protected]` to allow notifying non-collaborators / codeowners...
Signed-off-by: Liran Tal
There is a tiny typo in chinese whitepaper which will mislead the readers to understand. So fix it ASAP.
Now that SecurityCon events for EU 2022 are wrap its time to prepare and plan for NA! This issue will track activities related to TAG Security events for upcoming year....
This project is Phase II for Issue #635 Cloud Native Security controls. This will be completed in collaboration with CCM from CSA. Scope - Mapping to existing frameworks and regulations...
This PR adds Monero to the list of Supply Chain compromises Closes #822
Description: Revisit security assessment process to include the assessment of sub-projects of graduated projects by using [Cluster API](https://github.com/kubernetes-sigs/cluster-api/) sub-project of [Kubernetes](github.com/kubernetes/kubernetes) as a pilot Impact: This will create precedence on...
Description: During the public CNSWPv2 RFC, a proposal was made to add a section about confidential computing and use cases it enables for cloud native. The comment was made too...