1 Service Accounts
1 Workloads
3 Bindings
3 Low
Description
Master chart to deploy and configure the Compliance Operator
Overview
| Identity | Namespace | Automount | Secrets | Permissions | Workloads | Risk |
|---|---|---|---|---|---|---|
sa-compliance | openshift-compliance | ❌ | — | 3 | 1 | Low |
Numbers in the last two columns indicate how many bindings or workloads involve each ServiceAccount.
Identities
🤖 sa-compliance
Namespace: openshift-compliance | Automount: ❌
🔑 Permissions (3)
| Role | Resource | Verbs | Risk | Tags |
|---|---|---|---|---|
ClusterRole sa-compliance-clusterrole | operators.coreos.com/clusterserviceversions | get · list · patch | Low | |
ClusterRole sa-compliance-clusterrole | operators.coreos.com/installplans | get · list · patch | Low | |
ClusterRole sa-compliance-clusterrole | operators.coreos.com/subscription | get · list · patch | Low |
⚠️ Potential Abuse (1)
The following security risks were found based on the above permissions:
📦 Workloads (1)
| Kind | Name | Container | Image |
|---|---|---|---|
| Job | check-operator-status | check-operator | registry.redhat.io/openshift4/ose-cli |