path # lines of code policySetDefinitions/regulatorycompliance-nzism/deploy-initiative.ps1 46 Scripts/Confirm-PolicyDefinitionIsValid.ps1 56 Scripts/Invoke-ScriptTests.ps1 42 Scripts/Out-PolicyInventoryToCsvFile.ps1 50 Scripts/Format-BulkPolicies.ps1 81 Scripts/Out-FormattedPolicyDefinition.ps1 82 Scripts/Format-PolicyDefinition.ps1 509 policyDefinitions/Kubernetes/ensure-read-only-access-to-root-filesystem-in-a-kubernetes-cluster/template.yaml 33 policyDefinitions/Kubernetes/ensure-read-only-access-to-root-filesystem-in-a-kubernetes-cluster/constraint.yaml 10 policyDefinitions/Kubernetes/kubernetes-clusters-should-disable-automounting-api-credentials/template.yaml 21 policyDefinitions/Kubernetes/kubernetes-clusters-should-disable-automounting-api-credentials/constraint.yaml 10 policyDefinitions/Kubernetes/allowed-external-ips/examples-good/example_good.yaml 14 policyDefinitions/Kubernetes/allowed-external-ips/examples-violations/violation.yaml 14 policyDefinitions/Kubernetes/allowed-external-ips/template.yaml 29 policyDefinitions/Kubernetes/allowed-external-ips/rego/src.rego 10 policyDefinitions/Kubernetes/allowed-external-ips/constraint.yaml 12 policyDefinitions/Kubernetes/container-disallowed-capabilities/examples-good/example_good.yaml 21 policyDefinitions/Kubernetes/container-disallowed-capabilities/examples-violations/violation.yaml 21 policyDefinitions/Kubernetes/container-disallowed-capabilities/template.yaml 49 policyDefinitions/Kubernetes/container-disallowed-capabilities/rego/src.rego 26 policyDefinitions/Kubernetes/container-disallowed-capabilities/constraint.yaml 12 policyDefinitions/Kubernetes/allowed-users/examples-good/example_good.yaml 21 policyDefinitions/Kubernetes/allowed-users/examples-violations/violation.yaml 21 policyDefinitions/Kubernetes/allowed-users/template.yaml 151 policyDefinitions/Kubernetes/allowed-users/rego/src.rego 86 policyDefinitions/Kubernetes/allowed-users/constraint.yaml 23 policyDefinitions/Kubernetes/flexvolume-drivers/examples-good/example_good.yaml 22 policyDefinitions/Kubernetes/flexvolume-drivers/examples-violations/violation.yaml 22 policyDefinitions/Kubernetes/flexvolume-drivers/template.yaml 35 policyDefinitions/Kubernetes/flexvolume-drivers/rego/src.rego 17 policyDefinitions/Kubernetes/flexvolume-drivers/constraint.yaml 12 policyDefinitions/Kubernetes/allowed-proc-mount-types/examples-good/example_good.yaml 16 policyDefinitions/Kubernetes/allowed-proc-mount-types/examples-violations/violation.yaml 16 policyDefinitions/Kubernetes/allowed-proc-mount-types/template.yaml 60 policyDefinitions/Kubernetes/allowed-proc-mount-types/rego/src.rego 43 policyDefinitions/Kubernetes/allowed-proc-mount-types/constraint.yaml 12 policyDefinitions/Kubernetes/host-network-ports/examples-good/example_good.yaml 18 policyDefinitions/Kubernetes/host-network-ports/examples-violations/violation.yaml 18 policyDefinitions/Kubernetes/host-network-ports/template.yaml 45 policyDefinitions/Kubernetes/host-network-ports/rego/src.rego 24 policyDefinitions/Kubernetes/host-network-ports/constraint.yaml 14 policyDefinitions/Kubernetes/do-not-allow-container-privilege-escalation-in-kubernetes-cluster/template.yaml 33 policyDefinitions/Kubernetes/do-not-allow-container-privilege-escalation-in-kubernetes-cluster/constraint.yaml 10 policyDefinitions/Kubernetes/container-allowed-capabilities/examples-good/example_good.yaml 22 policyDefinitions/Kubernetes/container-allowed-capabilities/examples-violations/violation.yaml 21 policyDefinitions/Kubernetes/container-allowed-capabilities/template.yaml 59 policyDefinitions/Kubernetes/container-allowed-capabilities/rego/src.rego 36 policyDefinitions/Kubernetes/container-allowed-capabilities/constraint.yaml 13 policyDefinitions/Kubernetes/allowed-seccomp-profiles/examples-good/example_good.yaml 17 policyDefinitions/Kubernetes/allowed-seccomp-profiles/examples-violations/violation.yaml 17 policyDefinitions/Kubernetes/allowed-seccomp-profiles/template.yaml 51 policyDefinitions/Kubernetes/allowed-seccomp-profiles/rego/src.rego 32 policyDefinitions/Kubernetes/allowed-seccomp-profiles/constraint.yaml 12 policyDefinitions/Kubernetes/do-not-allow-sharing-of-host-process-id-and-ipc-namespaces-in-a-kubernetes-cluster/template.yaml 23 policyDefinitions/Kubernetes/do-not-allow-sharing-of-host-process-id-and-ipc-namespaces-in-a-kubernetes-cluster/constraint.yaml 10 policyDefinitions/Kubernetes/allowed-volume-types/examples-good/example_good.yaml 17 policyDefinitions/Kubernetes/allowed-volume-types/examples-violations/violation.yaml 24 policyDefinitions/Kubernetes/allowed-volume-types/template.yaml 32 policyDefinitions/Kubernetes/allowed-volume-types/rego/src.rego 14 policyDefinitions/Kubernetes/allowed-volume-types/constraint.yaml 12 policyDefinitions/Kubernetes/allowed-host-paths/examples-good/example_good.yaml 22 policyDefinitions/Kubernetes/allowed-host-paths/examples-violations/violation.yaml 22 policyDefinitions/Kubernetes/allowed-host-paths/template.yaml 91 policyDefinitions/Kubernetes/allowed-host-paths/rego/src.rego 71 policyDefinitions/Kubernetes/allowed-host-paths/constraint.yaml 12 policyDefinitions/Kubernetes/forbidden-sysctl-interfaces/examples-good/example_good.yaml 18 policyDefinitions/Kubernetes/forbidden-sysctl-interfaces/examples-violations/violation.yaml 18 policyDefinitions/Kubernetes/forbidden-sysctl-interfaces/template.yaml 34 policyDefinitions/Kubernetes/forbidden-sysctl-interfaces/rego/src.rego 16 policyDefinitions/Kubernetes/forbidden-sysctl-interfaces/constraint.yaml 12 policyDefinitions/Kubernetes/selinux/examples-good/example_good.yaml 20 policyDefinitions/Kubernetes/selinux/examples-violations/violation.yaml 20 policyDefinitions/Kubernetes/selinux/template.yaml 64 policyDefinitions/Kubernetes/selinux/rego/src.rego 39 policyDefinitions/Kubernetes/selinux/constraint.yaml 12 policyDefinitions/Kubernetes/enforce-apparmor-profile/examples-good/example_good.yaml 13 policyDefinitions/Kubernetes/enforce-apparmor-profile/examples-violations/violations.yaml 13 policyDefinitions/Kubernetes/enforce-apparmor-profile/template.yaml 36 policyDefinitions/Kubernetes/enforce-apparmor-profile/rego/src.rego 17 policyDefinitions/Kubernetes/enforce-apparmor-profile/constraint.yaml 12 policyDefinitions/Kubernetes/block-usage-of-the-default-namespace-in-a-kubernetes-cluster/template.yaml 24 policyDefinitions/Kubernetes/block-usage-of-the-default-namespace-in-a-kubernetes-cluster/constraint.yaml 10