kubevious / kubevious/mock-data

Request to remove Appranix-related resources due to security scan alerts

Open
#3 0 comments 0 reactions 0 assignees View on GitHub
Dominant language
Shell
Stars
0
Forks
0
PR merge metrics
No merged PRs in 30d

Description

Hi @rubenhak ,

During internal security scanning at my company, we noticed that several files in the `mock-data` repository contain references to "Appranix" (CustomResourceDefinitions, annotations, operator samples, and resource names).

Since Appranix has been acquired and is no longer an active product/organization, these artifacts are now being flagged as potential security risks in our compliance and vulnerability scans.

Examples of flagged resources:
- appranix.yaml under various cluster-data namespaces
- CRDs referencing appranix.io
- Backup/restore operator resources containing Appranix labels/annotations
- Multiple YAMLs referencing appranix.io endpoints and resource types

To avoid false positives and supply‑chain alerts, could these Appranix‑related files be removed or sanitized?

We're not requesting functional changes to the project — only cleanup of outdated vendor-specific resources.

Thank you!

Contributor guide

No contributing guide indexed for this repository

Research direction

Start by locating the appranix.yaml files under the cluster-data namespaces, the Appranix-related CRDs, and the backup/restore operator YAMLs described in the issue. Review each reference to determine whether it should be removed or sanitized, then verify that the repository no longer contains the outdated Appranix resources, labels, annotations, endpoints, or resource types.

Written by the indexing model from the issue text.

Assessment

Tech stack
kubernetes
Domain
infrastructure
Issue type
Refactor
Difficulty
3/5
Estimated time
1-2 days
Activity status
Quiet
Clarity
Mostly clear
Newbie friendliness
45/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.