komodorio / komodorio/validkube
Add KICS for k8s scanning
Open
- Dominant language
- TypeScript
- Stars
- 836
- Forks
- 63
- PR merge metrics
- No merged PRs in 30d
Description
It's great that you have trivy to highlight security issues, I'd suggest you'll add [KICS](https://github.com/checkmarx/kics) as well.
Will be happy to help if you want.
Contributor guide
Research direction
Start by examining how the existing Trivy security scanning is integrated in the repository and how Kubernetes YAML is passed to it. Then determine where KICS would fit alongside that flow and verify that KICS scanning is included for Kubernetes manifests when the work is complete.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- kubernetes, typescript
- Domain
- devops, security
- Issue type
- Feature
- Difficulty
- 4/5
- Estimated time
- 3-5 days
- Activity status
- Stale
- Clarity
- Mostly clear
- Newbie friendliness
- 25/100