Description

Helm Chart for slack-operator

Overview

IdentityNamespaceAutomountSecretsPermissionsWorkloadsRisk
controller-managerdefault90Critical

Numbers in the last two columns indicate how many bindings or workloads involve each ServiceAccount.


Identities

🤖 controller-manager

Namespace: default  |  Automount:

🔑 Permissions (9)

RoleResourceVerbsRiskTags
Role slack-operator-leader-election-rolecoordination.k8s.io/leasescreate · delete · get · list · patch · update · watchCriticalControlPlaneDisruption CriticalNamespace DenialOfService Tampering
Role slack-operator-leader-election-rolecore/configmapscreate · delete · get · list · patch · update · watchHighConfigMapAccess DataExposure InformationDisclosure PotentialPrivilegeEscalation Tampering
ClusterRole slack-operator-proxy-roleauthorization.k8s.io/subjectaccessreviewscreateMediumInformationDisclosure RBACQuery
ClusterRole slack-operator-proxy-roleauthentication.k8s.io/tokenreviewscreateMediumCredentialAccess InformationDisclosure RBACQuery
ClusterRole slack-operator-manager-roleslack.stakater.com/channelscreate · delete · get · list · patch · update · watchLow
ClusterRole slack-operator-manager-roleslack.stakater.com/channels/statusget · patch · updateLow
Role slack-operator-leader-election-rolecore/configmaps/statusget · patch · updateLow
Role slack-operator-leader-election-rolecore/eventscreate · patchLow
ClusterRole slack-operator-manager-rolecore/secretsget · listLow

⚠️ Potential Abuse (6)

The following security risks were found based on the above permissions:

📦 Workloads (0)

No workloads use this ServiceAccount.