Description

A Helm chart for Kubevious

Overview

IdentityNamespaceAutomountSecretsPermissionsWorkloadsRisk
kubevious-parserdefault11Critical
kubevious-backenddefault21Low

Numbers in the last two columns indicate how many bindings or workloads involve each ServiceAccount.


Identities

🤖 kubevious-parser

Namespace: default  |  Automount:

🔑 Permissions (1)

RoleResourceVerbsRiskTags
ClusterRole kubevious-parser/get · list · watchCriticalClusterStructure ClusterWideAccess ClusterWideLogAccess ClusterWideSecretAccess ConfigMapAccess (+15 more)

⚠️ Potential Abuse (19)

The following security risks were found based on the above permissions:

📦 Workloads (1)

KindNameContainerImage
Deploymentkubevious-parserkubeviouskubevious/parser:1.2.2

🤖 kubevious-backend

Namespace: default  |  Automount:

🔑 Permissions (2)

RoleResourceVerbsRiskTags
ClusterRole kubevious-backendkubevious.io/changepackagesdelete · get · list · watchLow
ClusterRole kubevious-backendkubevious.io/validationstatescreate · delete · get · list · updateLow

⚠️ Potential Abuse (1)

The following security risks were found based on the above permissions:

📦 Workloads (1)

KindNameContainerImage
Deploymentkubevious-backendkubeviouskubevious/backend:1.2.2