Brent Baude
Brent Baude
The CVE scan of a containers/images does require root privs because it has to mount a thinpool device. So while the scan itself does not need to be technically run...
Interesting notion. Just some initial thoughts. With aardvark-dns, we were careful to enforce name lookups based on network connectivity and to not return an answer that the 'asker' about something...
I would tend to agree with you @mheon ... we have no way to programmatically determine intent.
/approve /lgtm
/approve /lgtm
should this be moved to nv?