Skip to content

Update: Docker Security Cheat Sheet #732

@segudev

Description

@segudev

What is missing or needs to be updated?

The static analysis section (Rule #9 ) is missing specific options for secrets detection.
It's a growing concern to mitigate supply chains attacks and needs specialized tools.

How should this be resolved?

Add a list with a few secrets detection tools

Metadata

Metadata

Assignees

Labels

ACK_OBTAINEDIssue acknowledged from core team so work can be done to fix it.UPDATE_CSIssue about the update/refactoring of a existing cheat sheet.

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions