Powered by: Allows bounty splitting:
Average time to first program response: 10
Average time to bounty awarded null: 514
Average time to report resolved:
Handle kubernetes
Managed program: true
Name: Kubernetes
Offers bounties: true
Offers swag: false
Response efficiency percentage: 88
Submission state: open
Url: https://hackerone.com/kubernetes
Website: https://kubernetes.io/
In scope: Asset identifier: Community Management & CommunicationsAsset type: OTHERAvailability requirement: Confidentiality requirement: Eligible for bounty: Eligible for submissions: trueInstruction: Kubernetes community management & communication tools are currently ineligible for bounty. Please avoid disruptions.
List of ineligible community assets:
- k8s.io event calendar: https://calendar.google.com/calendar/r?cid=Y2dudDM2NHZkOHM4NmhyMnBoYXBmamM2dWtAZ3JvdXAuY2FsZW5kYXIuZ29vZ2xlLmNvbQ
- kubernetes.slack.com
- @kubernetesio twitter handle
- Kubernetes meetup account
- kubeweekly news list: kube.news
- google groups mailing lists, e.g. https://groups.google.com/forum/#!forum/kubernetes-*
- subreddit: reddit.com/kubernetes
- youtube.com/kubernetescommunity
- Kubernetes zoom accounts
- stack overflow tag: https://stackoverflow.com/questions/tagged/kubernetesIntegrity requirements: Max severity: criticalAsset identifier: github.com/kubernetes-csiAsset type: SOURCE_CODEAvailability requirement: highConfidentiality requirement: highEligible for bounty: trueEligible for submissions: trueInstruction: Kubernetes CSI drivers & infrastructure. Not all repos are eligible for bounty.
Eligible for bounty:
- github.com/kubernetes-csi/external-provisioner
- github.com/kubernetes-csi/external-snapshotter
- github.com/kubernetes-csi/node-driver-registrar
- github.com/kubernetes-csi/livenessprobe
- github.com/kubernetes-csi/csi-release-tools
- github.com/kubernetes-csi/csi-lib-utils
- github.com/kubernetes-csi/kubernetes-csi.github.io
- github.com/kubernetes-csi/docs
Ineligible:
- github.com/kubernetes-csi/driver-registrar (deprecated)
- github.com/kubernetes-csi/csi-test
- github.com/kubernetes-csi/drivers (example code)
- github.com/kubernetes-csi/cluster-driver-registrar (deprecated)
- github.com/kubernetes-csi/external-attacher (alpha)
- github.com/kubernetes-csi/external-resizer (alpha)
- github.com/kubernetes-csi/csi-driver-host-path (not recommended for production)
- github.com/kubernetes-csi/csi-driver-iscsi (not stable)
- github.com/kubernetes-csi/csi-driver-nfs (not stable)
- github.com/kubernetes-csi/csi-driver-image-populator (not stable)
- github.com/kubernetes-csi/csi-driver-flex (not stable)
- github.com/kubernetes-csi/csi-driver-fibre-channel (not stable)
- github.com/kubernetes-csi/csi-lib-fc (not stable)
- github.com/kubernetes-csi/csi-lib-iscsi (not stable)Integrity requirements: highMax severity: criticalAsset identifier: github.com/kubernetes-retiredAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: Eligible for submissions: trueInstruction: The retired projects are no longer maintainedIntegrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes-clientAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: Kubernetes client libraries. The stable libraries are eligible for bounty, including:
- https://github.com/kubernetes-client/python
- https://github.com/kubernetes-client/java
Supporting libraries are also eligible:
- https://github.com/kubernetes-client/gen
- https://github.com/kubernetes-client/python-base
All other libraries are ineligible for bounty due to the alpha status or work in progress status.Integrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes-incubatorAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: Eligible for submissions: trueInstruction: The kubernetes-incubator process is deprecated.Integrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes-securityAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: Unauthorized access (read or write) to any repositories under the kubernetes-security github organization is eligible.Integrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes-sigsAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: Eligible for submissions: trueInstruction: Unless explicitly listed as an eligible asset, repositories under the kubernetes-sigs github org are not eligible for bounty.Integrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/apiAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: The canonical location of the Kubernetes API definition.Integrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/apiextensions-apiserverAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: API server for API extensions like CustomResourceDefinitionsIntegrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/apimachineryAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: Integrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/apiserverAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: Library for writing a Kubernetes-style API server.Integrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/autoscalerAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: Autoscaling components for Kubernetes
Integrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/cli-runtimeAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: Set of helpers for creating kubectl commands and plugins.Integrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/client-goAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: Go client for Kubernetes.Integrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/cloud-providerAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: cloud-provider defines the shared interfaces which Kubernetes cloud providers implement. These interfaces allow various controllers to integrate with any cloud provider in a pluggable fashion. Also serves as an issue tracker for SIG Cloud Provider.
Integrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/cloud-provider-alibaba-cloudAsset type: SOURCE_CODEAvailability requirement: highConfidentiality requirement: highEligible for bounty: Eligible for submissions: trueInstruction: CloudProvider for Alibaba Cloud
Vendor-specific plugins are not eligible for bounty. We recommend reporting vulnerabilities through the vendor's bug bounty program instead.Integrity requirements: highMax severity: criticalAsset identifier: https://github.com/kubernetes/cloud-provider-awsAsset type: SOURCE_CODEAvailability requirement: highConfidentiality requirement: highEligible for bounty: Eligible for submissions: trueInstruction: Vendor-specific plugins are not eligible for bounty. We recommend reporting vulnerabilities through the vendor's bug bounty program instead.Integrity requirements: highMax severity: criticalAsset identifier: https://github.com/kubernetes/cloud-provider-azureAsset type: SOURCE_CODEAvailability requirement: highConfidentiality requirement: highEligible for bounty: Eligible for submissions: trueInstruction: Cloud provider for Azure
Vendor-specific plugins are not eligible for bounty. We recommend reporting vulnerabilities through the vendor's bug bounty program instead.Integrity requirements: highMax severity: criticalAsset identifier: https://github.com/kubernetes/cloud-provider-gcpAsset type: SOURCE_CODEAvailability requirement: highConfidentiality requirement: highEligible for bounty: Eligible for submissions: trueInstruction: Vendor-specific plugins are not eligible for bounty. We recommend reporting vulnerabilities through the vendor's bug bounty program instead.Integrity requirements: highMax severity: criticalAsset identifier: https://github.com/kubernetes/cloud-provider-openstackAsset type: SOURCE_CODEAvailability requirement: highConfidentiality requirement: highEligible for bounty: Eligible for submissions: trueInstruction: Vendor-specific plugins are not eligible for bounty. We recommend reporting vulnerabilities through the vendor's bug bounty program instead.Integrity requirements: highMax severity: criticalAsset identifier: https://github.com/kubernetes/cloud-provider-sampleAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: Eligible for submissions: trueInstruction: Sample of how to build a cloud provider repo. This will build a Kubernetes image which deploys on bare metal. It uses the fake cloud provider. It consumes the K8s/K8s build artifact and adds to it the Cloud Controller Manager and CSI Daemon Set.
Example code.Integrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/cloud-provider-vsphereAsset type: SOURCE_CODEAvailability requirement: highConfidentiality requirement: highEligible for bounty: Eligible for submissions: trueInstruction: Kubernetes Cloud Provider for vSphere (Beta)
Vendor-specific plugins are not eligible for bounty. We recommend reporting vulnerabilities through the vendor's bug bounty program instead.Integrity requirements: highMax severity: criticalAsset identifier: https://github.com/kubernetes/cluster-bootstrapAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: Integrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/cluster-registryAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: Cluster Registry APIIntegrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/code-generatorAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: Generators for kube-like API typesIntegrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/communityAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: Eligible for submissions: trueInstruction: Kubernetes community contentIntegrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/component-baseAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: Shared code for kubernetes core componentsIntegrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/cri-apiAsset type: SOURCE_CODEAvailability requirement: highConfidentiality requirement: highEligible for bounty: trueEligible for submissions: trueInstruction: Container Runtime Interface (CRI) – a plugin interface which enables kubelet to use a wide variety of container runtimes.
Integrity requirements: highMax severity: criticalAsset identifier: https://github.com/kubernetes/csi-apiAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: Integrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/csi-translation-libAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: Staging repo for CSI Migration/Translation libraries
Integrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/dashboardAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: General-purpose web UI for Kubernetes clusters
Integrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/dnsAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: Kubernetes DNS serviceIntegrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/enhancementsAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: Eligible for submissions: trueInstruction: Features tracking repo for Kubernetes releases
Integrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/examplesAsset type: SOURCE_CODEAvailability requirement: mediumConfidentiality requirement: mediumEligible for bounty: Eligible for submissions: trueInstruction: Kubernetes application example tutorialsIntegrity requirements: mediumMax severity: criticalAsset identifier: https://github.com/kubernetes/fraktiAsset type: SOURCE_CODEAvailability requirement: highConfidentiality requirement: highEligible for bounty: Eligible for submissions: trueInstruction: The hypervisor-based container runtime for Kubernetes.
Vendor-specific plugins are not eligible for bounty. We recommend reporting vulnerabilities through the vendor's bug bounty program instead.Integrity requirements: highMax severity: criticalAsset identifier: https://github.com/kubernetes/fundingAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: Eligible for submissions: trueInstruction: Funding requests for project infrastructure, events, and consulting.Integrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/gengoAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: Gengo library for code generation.Integrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/git-syncAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: A sidecar app which clones a git repo and keeps it in sync with the upstream.Integrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/ingress-gceAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: Eligible for submissions: trueInstruction: Ingress controller for Google Cloud
Vendor-specific plugins are not eligible for bounty. We recommend reporting vulnerabilities through the vendor's bug bounty program instead.Integrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/ingress-nginxAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: NGINX Ingress Controller for Kubernetes
Integrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/k8s.ioAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: Kubernetes files for various *.k8s.io sitesIntegrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/klogAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: Forked from golang/glog
Leveled execution logs for Go (fork of https://github.com/golang/glog)Integrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/komposeAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: Go from Docker Compose to Kubernetes
Integrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/kopsAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: Kubernetes Operations (kops) - Production Grade K8s Installation, Upgrades, and Management
Integrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/kube-aggregatorAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: Aggregator for Kubernetes-style API servers: dynamic registration, discovery summarization, secure proxyIntegrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/kube-controller-managerAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: kube-controller-manager component configsIntegrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/kube-deployAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: A place for cluster deployment automation
Integrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/kube-openapiAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: Kubernetes OpenAPI spec generation & servingIntegrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/kube-proxyAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: kube-proxy component configsIntegrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/kube-schedulerAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: kube-scheduler component configsIntegrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/kube-state-metricsAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: Add-on agent to generate and expose cluster-level metrics.
Integrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/kubeadmAsset type: SOURCE_CODEAvailability requirement: highConfidentiality requirement: highEligible for bounty: trueEligible for submissions: trueInstruction: Aggregator for issues filed against kubeadm
Integrity requirements: highMax severity: criticalAsset identifier: https://github.com/kubernetes/kubectlAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: Issue tracker and mirror of kubectl code
Integrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/kubeletAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: kubelet component configsIntegrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/kubernetesAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: Production-Grade Container Scheduling and ManagementIntegrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/kubernetes-anywhereAsset type: SOURCE_CODEAvailability requirement: highConfidentiality requirement: highEligible for bounty: Eligible for submissions: trueInstruction: {concise,reliable,cross-platform} turnup of Kubernetes clusters
DEPRECATEDIntegrity requirements: highMax severity: criticalAsset identifier: https://github.com/kubernetes/kubernetes-template-projectAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: Eligible for submissions: trueInstruction: A template for starting new projects on the github.com/kubernetes organizationIntegrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/legacy-cloud-providersAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: Eligible for submissions: trueInstruction: This repository hosts the legacy in-tree cloud providers. Out-of-tree cloud providers can consume packages in this repo to support legacy implementations of their Kubernetes cloud provider.
Vendor-specific plugins are not eligible for bounty. We recommend reporting vulnerabilities through the vendor's bug bounty program instead.Integrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/metricsAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: Kubernetes metrics-related API types and clientsIntegrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/minikubeAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: Run Kubernetes locally
Integrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/node-apiAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: Integrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/node-problem-detectorAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: This is a place for various problem detectors running on the Kubernetes nodes.
Integrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/orgAsset type: SOURCE_CODEAvailability requirement: highConfidentiality requirement: highEligible for bounty: trueEligible for submissions: trueInstruction: Meta configuration for Kubernetes Github Org
Integrity requirements: highMax severity: criticalAsset identifier: https://github.com/kubernetes/perf-testsAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: Eligible for submissions: trueInstruction: Performance tests and benchmarks
Integrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/publishing-botAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: Code behind the robot to publish from staging to real repositories.Integrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/releaseAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: Release infrastructure for Kubernetes and related components
Integrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/repo-infraAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: Kubernetes repository infrastucture tools
Integrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/sample-apiserverAsset type: SOURCE_CODEAvailability requirement: mediumConfidentiality requirement: mediumEligible for bounty: Eligible for submissions: trueInstruction: Reference implementation of an apiserver for a custom Kubernetes API.
Example code.Integrity requirements: mediumMax severity: criticalAsset identifier: https://github.com/kubernetes/sample-cli-pluginAsset type: SOURCE_CODEAvailability requirement: mediumConfidentiality requirement: mediumEligible for bounty: Eligible for submissions: trueInstruction: Sample kubectl pluginIntegrity requirements: mediumMax severity: criticalAsset identifier: https://github.com/kubernetes/sample-controllerAsset type: SOURCE_CODEAvailability requirement: mediumConfidentiality requirement: mediumEligible for bounty: Eligible for submissions: trueInstruction: Repository for sample controller. Complements sample-apiserverIntegrity requirements: mediumMax severity: criticalAsset identifier: https://github.com/kubernetes/securityAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: Eligible for submissions: trueInstruction: Kubernetes Security Process and Security Committee docsIntegrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/sig-releaseAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: Repo for SIG release
Integrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/steeringAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: Eligible for submissions: trueInstruction: The Kubernetes Steering CommitteeIntegrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/test-infraAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: Test infrastructure for the Kubernetes project.Integrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/utilsAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: Non-Kubernetes-specific utility libraries which are consumed by multiple projects.Integrity requirements: Max severity: criticalAsset identifier: https://github.com/kubernetes/websiteAsset type: SOURCE_CODEAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: Kubernetes website and documentation repo:Integrity requirements: Max severity: criticalAsset identifier: https://storage.googleapis.com/kubernetes-release/Asset type: OTHERAvailability requirement: highConfidentiality requirement: highEligible for bounty: trueEligible for submissions: trueInstruction: Kubernetes release artifacts download server.
Write access or modification of assets are eligible for bounty. Please DO NOT modify production artifacts. If you need a test target, you can use a test artifact such as `addons/test/crinit/2017-11-17/crinit`Integrity requirements: highMax severity: criticalAsset identifier: k8s.gcr.ioAsset type: OTHERAvailability requirement: highConfidentiality requirement: highEligible for bounty: trueEligible for submissions: trueInstruction: Our official container repository (an alias to gcr.io/google-containers).
The ability to write to or modify containers in the repository are in scope. Please DO NOT modify production containers. If you need a test target, please use a test image such as fakegitserver.Integrity requirements: highMax severity: criticalAsset identifier: k8s.ioAsset type: URLAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: Kubernetes nginx server.Integrity requirements: Max severity: criticalAsset identifier: kubernetes-csi.github.ioAsset type: URLAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: Kubernetes CSI documentation site.Integrity requirements: Max severity: criticalAsset identifier: kubernetes.ioAsset type: URLAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: Main kubernetes website, hosted by netlify.Integrity requirements: Max severity: criticalAsset identifier: prow.k8s.ioAsset type: URLAvailability requirement: Confidentiality requirement: Eligible for bounty: trueEligible for submissions: trueInstruction: Kubernetes build & test infrastructure.
Please limit automated scanning to 1qps.Integrity requirements: Max severity: critical