The service always accepts OCI-compatible image references and executes their containerized workloads through a Kubernetes-compatible runtime.
OCI Container Image Execution
CCC.K8S.CP04
Related Threats
| ID | Title | Description |
|---|---|---|
| CCC.K8S.TH04 | Untrusted Container Images are Deployed | Container images whose provenance, integrity, or vulnerability status is not verified may contain unsupported software, altered components, or embedded credentials and be admitted to the cluster. The image is then executed within the workload environment and can expose secrets, alter application data, or disrupt connected services. |