1"use strict";(self.webpackChunkhelm_www=self.webpackChunkhelm_www||[]).push([["14707"],{87611(e,t,a){a.r(t),a.d(t,{assets:()=>s,contentTitle:()=>l,default:()=>m,frontMatter:()=>o,metadata:()=>i,toc:()=>u});var i=a(38817),n=a(74848),r=a(28453);let o={title:"Helm Security Audit Results",authors:["mattfarina"],date:"2019-11-04"},l,s={authorsImageUrls:[void 0]},u=[];function c(e){let t={a:"a",blockquote:"blockquote",p:"p",...(0,r.R)(),...e.components};return(0,n.jsxs)(n.Fragment,{children:[(0,n.jsx)(t.p,{children:"Today, the Helm Maintainers are proud to announce that we have successfully completed a 3rd party security audit for Helm 3. Helm has been recommended for public deployment."}),"\n",(0,n.jsxs)(t.p,{children:["A security audit is part of the graduation criteria for CNCF projects. Specifically, the ",(0,n.jsx)(t.a,{href:"https://github.com/cncf/toc/blob/main/process/graduation_criteria.adoc#graduation-stage",children:"graduation criteria"})," says:"]}),"\n",(0,n.jsxs)(t.blockquote,{children:["\n",(0,n.jsxs)(t.p,{children:["Have completed an independent and third party security audit with results published of similar scope and quality as the following example (including critical vulnerabilities addressed): ",(0,n.jsx)(t.a,{href:"https://github.com/envoyproxy/envoy#security-audit",children:"https://github.com/envoyproxy/envoy#security-audit"})," and all critical vulnerabilities need to be addressed before graduation."]}),"\n"]})]})}function m(e={}){let{wrapper:t}={...(0,r.R)(),...e.components};return t?(0,n.jsx)(t,{...e,children:(0,n.jsx)(c,{...e})}):c(e)}},28453(e,t,a){a.d(t,{R:()=>o,x:()=>l});var i=a(96540);let n={},r=i.createContext(n);function o(e){let t=i.useContext(r);return i.useMemo(function(){return"function"==typeof e?e(t):{...t,...e}},[t,e])}function l(e){let t;return t=e.disableParentContext?"function"==typeof e.components?e.components(n):e.components||n:o(e.components),i.createElement(r.Provider,{value:t},e.children)}},38817(e){e.exports=JSON.parse('{"permalink":"/blog/2019/11/04/helm-security-audit-results","editUrl":"https://github.com/helm/helm-www/blob/main/blog/2019-11-04-helm-security-audit-results.md","source":"@site/blog/2019-11-04-helm-security-audit-results.md","title":"Helm Security Audit Results","description":"Today, the Helm Maintainers are proud to announce that we have successfully completed a 3rd party security audit for Helm 3. Helm has been recommended for public deployment.","date":"2019-11-04T00:00:00.000Z","tags":[],"readingTime":2.33,"hasTruncateMarker":true,"authors":[{"name":"Matt Farina","page":{"permalink":"/blog/authors/mattfarina"},"socials":{"github":"https://github.com/mattfarina","linkedin":"https://www.linkedin.com/in/matthewfarina/","website":"https://mattfarina.com/"},"imageURL":"https://github.com/mattfarina.png","key":"mattfarina"}],"frontMatter":{"title":"Helm Security Audit Results","authors":["mattfarina"],"date":"2019-11-04"},"unlisted":false,"prevItem":{"title":"Helm Community Management","permalink":"/blog/2019/11/11/community-management"},"nextItem":{"title":"Helm Vulnerability: Client Loading and Packaging Chart Directory Containing Malicious Symlinked Content [CVE-2019-18658]","permalink":"/blog/2019/10/30/helm-symlink-security-notice"}}')}}]);
Line numbers count LF bytes from the start of the resource, as the search results do. Vendor segments are library code the classifier recognised; they are stored but not indexed. Bytes are shown as Latin1 characters, one per byte.