capa-vpc-peering-operator
v2023.12.11
1 Service Accounts
1 Workloads
4 Bindings
2 High
2 Low
Description
A Helm chart for CAPA VPC Peering Operator by AppsCode
Overview
Identity | Namespace | Automount | Secrets | Permissions | Workloads | Risk |
---|---|---|---|---|---|---|
capa-vpc-peering-operator | default | ❌ | — | 4 | 1 | High |
Numbers in the last two columns indicate how many bindings or workloads involve each ServiceAccount.
Identities
🤖 capa-vpc-peering-operator
Namespace: default
| Automount: ❌
🔑 Permissions (4)
Role | Resource | Verbs | Risk | Tags |
---|---|---|---|---|
ClusterRole capa-vpc-peering-operator | ec2.aws.kubedb.com/routes | * | High | ClusterWideAccess |
ClusterRole capa-vpc-peering-operator | ec2.aws.kubedb.com/securitygrouprules | * | High | ClusterWideAccess |
ClusterRole capa-vpc-peering-operator | controlplane.cluster.x-k8s.io/awsmanagedcontrolplanes | get · list · watch | Low | |
ClusterRole capa-vpc-peering-operator | ec2.aws.kubedb.com/vpcpeeringconnections | get · list · watch | Low |
⚠️ Potential Abuse (2)
The following security risks were found based on the above permissions:
📦 Workloads (1)
Kind | Name | Container | Image |
---|---|---|---|
Deployment | capa-vpc-peering-operator | capa-vpc-peering-operator | ghcr.io/appscode/capa-vpc-peering-operator:v0.0.4 |