Skip to main content

Container Registry Integration

CCC.K8S.CP05

The service can authenticate to private or public OCI-compatible registries and retrieve workload images with user-configured identities and credentials.

Related Threats

IDTitleDescription
CCC.K8S.TH04Untrusted Container Images are DeployedContainer images whose provenance, integrity, or vulnerability status is not verified may contain unsupported software, altered components, or embedded credentials and be admitted to the cluster. The image is then executed within the workload environment and can expose secrets, alter application data, or disrupt connected services.