Pod Security Policy Compliance Checklist Form
Complete this Pod Security Policy Compliance Checklist Form to assess your Kubernetes pod security settings. Review each item and indicate your level of compliance.
Are pods prevented from running as privileged?
*
Compliant
Non-Compliant
Not Applicable
Are privilege escalation and additional capabilities restricted?
*
Compliant
Non-Compliant
Not Applicable
Is the use of host network, host PID, and host IPC disallowed?
*
Compliant
Non-Compliant
Not Applicable
Are containers required to run as non-root users?
*
Compliant
Non-Compliant
Not Applicable
Is the root filesystem set as read-only?
*
Compliant
Non-Compliant
Not Applicable
Are only approved container images allowed?
*
Compliant
Non-Compliant
Not Applicable
Are secrets mounted as files and not as environment variables?
*
Compliant
Non-Compliant
Not Applicable
Are hostPath volumes disallowed?
*
Compliant
Non-Compliant
Not Applicable
Are resource limits (CPU, memory) enforced for all pods?
*
Compliant
Non-Compliant
Not Applicable
Additional comments or notes
Submit Compliance Checklist
Should be Empty: