accuknox/CI/CD Scan by AccuKnox

Secure your CI/CD pipelines, powered by KubeArmor

View on GitHub

Trust Signals

Scorecard Score
not yet scored
Maintenance Recency
Stalelast commit Sep 11, 2024
License
None

Pinned Snippet

workflow.ymlSHA-pinned
uses: accuknox/report-action@2204f66adf7ad923ccd1973e5dc9282850441cb7 # v0.3.15

tags can be moved; commit SHAs can't. why a SHA?

namedescriptionrequireddefault
allScan for all events collected by KubeArmornotrue
systemScan for only system eventsnofalse
kubearmor_versionKubeArmor version to install (default: latest)no
knoxctl_versionknoxctl version to install (default: latest)no
policy_actionPolicy action (Audit or Block)noAudit
dryrunGenerate hardening security policies, but do not apply themnofalse
strictApply all the hardening policies (this might generate a lot of alerts)nofalse
policiesPath to user defined policiesno
ignore-alertsIgnore alerts (file, network or process)no
min-severitySet the minimum severity level (1-10)no
detailed-viewEnable/disable detailed view in final reportnotrue

no outputs