kubernetes-security-policies
Warn
Audited by Socket on Sep 17, 2026
1 alert found:
AnomalyAnomalyreferences/rbac.md
LOWAnomalyLOW
references/rbac.md
No malicious behavior or obfuscation is evident. The configuration is legitimate RBAC documentation, but it presents moderate security risk if deployed without review: app-sa token automounting is enabled, app-operator can read a Secret and create/delete arbitrary production pods, and resourceNames restrictions paired with list/watch may not provide the intended narrowing. Validate that these permissions are necessary and apply pod-security, admission, and workload isolation controls.
Confidence: 98%Severity: 55%
Audit Metadata