Description

Catalogue all images of a Kubernetes cluster to multiple targets with Syft

Overview

IdentityNamespaceAutomountSecretsPermissionsWorkloadsRisk
sbom-operatordefault41Low

Numbers in the last two columns indicate how many bindings or workloads involve each ServiceAccount.


Identities

🤖 sbom-operator

Namespace: default  |  Automount:

🔑 Permissions (4)

RoleResourceVerbsRiskTags
ClusterRole sbom-operatorcore/configmapscreate · delete · get · listLow
ClusterRole sbom-operatorcore/namespaceslistLow
ClusterRole sbom-operatorcore/podsget · list · update · watchLow
ClusterRole sbom-operatorcore/secretsgetLow

⚠️ Potential Abuse (1)

The following security risks were found based on the above permissions:

📦 Workloads (1)

KindNameContainerImage
Deploymentsbom-operatorsbom-operatorghcr.io/ckotzbauer/sbom-operator:0.30.0