kubernetes-security-policies

Warn

Audited by Socket on Sep 17, 2026

1 alert found:

Anomaly
AnomalyLOW
references/rbac.md

No malicious behavior or obfuscation is evident. The configuration is legitimate RBAC documentation, but it presents moderate security risk if deployed without review: app-sa token automounting is enabled, app-operator can read a Secret and create/delete arbitrary production pods, and resourceNames restrictions paired with list/watch may not provide the intended narrowing. Validate that these permissions are necessary and apply pod-security, admission, and workload isolation controls.

Confidence: 98%Severity: 55%
Audit Metadata
Analyzed At
Sep 17, 2026, 12:41 PM
Package URL
pkg:socket/skills-sh/nickcrew%2Fclaude-cortex%2Fkubernetes-security-policies%2F@caa76d1aa4db84fefbec1dc73295040417b92efa59673c6656b11629398e622b
Security Audit — socket — kubernetes-security-policies