nebari
nebari copied to clipboard
[enhancement] - add DEvSecOps to QHub CI
Description
We want to ensure that the QHub deployments are secure and that we can identify any potential vulnerabilities ASAP.
Suggestion
- Use a tool like kubescape within the CI
- Add documentation for folks deploying their own QHub instances on how to use / add kubescape
Context
DevSecOps benefits everyone - from the team developing QHub to the end-users and folks deploying QHub for their own use
c.c @magsol