Flavio Castelli

Results 244 comments of Flavio Castelli

I think we need to better define the problem this policy attempts to solve before we start writing/extending the policy. Maybe we could create a brand new policy that looks...

I'm fine not having the changelog inside of git, but I would definitely want it inside of the GH Releases page

I agree, this would provide some useful insights. I've one concern about collecting these information: > Kubewarden policies installed > Kubewarden policies version installed We definitely need that, but I...

Closing, we are now using release drafter

We should update to a more recent version of the library, like 1.2.1. This version has now a license (which happens to be MIT)

This filed is coming from the policy template, this should be set only once: when the policy has been created for the 1st time. Hence, I don't think we need...

> I am working on this. @geeksambhu thanks for your help! How do you plan to fix that, are you going to fix all the entries manually or provide some...

Everything is done, except for the pod-runtime policy. This policy is written using Swift, but we want to rewrite that using Rust/Go as tracked by https://github.com/kubewarden/pod-runtime-class-policy/issues/15 We are going to...

Worth a look, something we could leverage: https://github.com/open-policy-agent/cert-controller

Instead of updating all our policies targeting Pods to cover for high order resources, we might consider doing something like [Kyverno aug-gen rules](https://main.kyverno.io/docs/writing-policies/autogen/)