Description

Catalogue all images of a Kubernetes cluster to multiple targets with Syft

Overview

IdentityNamespaceAutomountSecretsPermissionsWorkloadsRisk
sbom-operatordefault31Low

Numbers in the last two columns indicate how many bindings or workloads involve each ServiceAccount.


Identities

🤖 sbom-operator

Namespace: default  |  Automount:

🔑 Permissions (3)

RoleResourceVerbsRiskTags
ClusterRole sbom-operatorcore/namespaceslistLow
ClusterRole sbom-operatorcore/podsget · list · update · watchLow
ClusterRole sbom-operatorcore/secretsgetLow

⚠️ Potential Abuse (1)

The following security risks were found based on the above permissions:

📦 Workloads (1)

KindNameContainerImage
Deploymentsbom-operatorsbom-operatorghcr.io/ckotzbauer/sbom-operator:@sha256:3f147ea6fb3c22699c53b4b21a1363e261bd99d65c990291dfdb3afc6b46db05