This report is auto-generated from the latest RBAC Atlas scan (2026-03-18). It analyzes the RBAC permissions of 257 Kubernetes open-source projects across 25451 manifest versions to provide a snapshot of the current cloud-native threat landscape.

At a Glance

MetricValue
Projects analyzed257
Total manifest versions25451
Avg service accounts per project2.11
Avg permission bindings per project30.19
Avg workloads per project3.5
Avg critical risks per project3.52
Avg high risks per project3.49
Avg medium risks per project2.2
Avg low risks per project20.97
Projects with critical risks171
Projects with no RBAC permissions54

Risk Distribution

Risk LevelCountPercentage
Critical90511.67%
High89811.58%
Medium5667.3%
Low538969.46%
Total7758

Top 10 RBAC Risk Tags

Risk TagOccurrences
InformationDisclosure1105
WildcardPermission938
Tampering863
ClusterWideAccess761
PotentialPrivilegeEscalation593
DataExposure528
Reconnaissance523
PrivilegeEscalation450
ResourceNameRestricted373
DenialOfService329

Top 10 Triggered Risk Rules

RuleOccurrences
Base Risk Level - Low6820
Base Risk Level - High758
Read ConfigMaps in a namespace256
Read secrets in a namespace239
Read secrets cluster-wide191
Base Risk Level - Medium177
Read ConfigMaps cluster-wide162
Modify ConfigMaps in a namespace158
List Namespaces (Cluster Reconnaissance)143
Read RBAC configuration cluster-wide136

Top 10 Riskiest Projects

Ranked by weighted risk score (critical×10 + high×5 + medium×2 + low×1), using only the latest version of each project.

ProjectVersionCriticalHighMediumLowScore
openebs3.9.09073301701495
victoria-metrics-distributed0.9.013117539764
longhorn1.9.2205637493
gitlab9.9.318109199447
eg-universal-agent-operator0.0.51624864360
gitlab-operator2.9.22067115359
kuadrant-operator1.4.2219494357
flux22.9.21830024354
victoria-metrics-k8s-stack0.9.81317598323
opentelemetry-kube-stack0.9.413913111312

Top 10 Projects by Permission Count

ProjectPermissions
openebs363
gitlab236
rook-ceph185
stackgres-operator181
victoria-metrics-distributed174
gateway-operator162
gitlab-operator148
opentelemetry-kube-stack146
edp-install142
victoria-metrics-k8s-stack133