The service automatically reconciles Kubernetes workload resources toward their user-declared state by scheduling, restarting, and replacing containers as needed.
Declarative Workload Orchestration
CCC.K8S.CP06
Related Threats
| ID | Title | Description |
|---|---|---|
| CCC.K8S.TH13 | Controllers Reconcile Unauthorized Cluster State | A controller or scheduled workload granted excessive scope may repeatedly create or restore unauthorized resources and configuration through its reconciliation loop. Manual remediation can then be overwritten, restoring unsafe cluster state that exposes workload data or interferes with service availability. |