-
Notifications
You must be signed in to change notification settings - Fork 25
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Audit containerized environments #361
Comments
Related: #366 |
/sig stack-guidance |
Testing if project assignment works: |
/project SIG-Stack-Guidance New |
/priority backlog |
/assign |
Reviewed in sig-sg meeting 2022-06-27:
|
Issues go stale after 90d of inactivity. If this issue is safe to close now please do so with /lifecycle stale |
/remove-lifecycle stale |
Is your feature request related to a problem? Please describe.
As a user of Thoth, I would like to submit my container image to Thoth services and Thoth should give me results of analyses that will tell me if content in the containerized environment is known and if there are any issues associated with the container image and its security.
Describe the solution you'd like
Extend container image analyses so that it not only explores what is present in the containerized environment, but can judge if the container image is find with respect to its content, libraries installed, provenance, and so.
Describe alternatives you've considered
Let users validate their container images, but that is too prone to errors.
Related: thoth-station/micropipenv#206
Related: https://discuss.python.org/t/pip-installation-reports/12316
The text was updated successfully, but these errors were encountered: