Skip to content

Proposal: Add KubeArmor SLSA L3 and OpenSSF Scorecard Hardening (LFX Term 2)#1870

Merged
nate-double-u merged 3 commits into
cncf:mainfrom
HighnessAtharva:patch-2
May 4, 2026
Merged

Proposal: Add KubeArmor SLSA L3 and OpenSSF Scorecard Hardening (LFX Term 2)#1870
nate-double-u merged 3 commits into
cncf:mainfrom
HighnessAtharva:patch-2

Conversation

@HighnessAtharva
Copy link
Copy Markdown
Contributor

Adds a new mentorship project idea for KubeArmor covering SLSA Level 3 compliance and OpenSSF Scorecard hardening. The two tasks are combined into a single mentorship scope as they share overlapping mechanics around signed releases, build provenance, and artifact integrity.

Pre-task: Signed-Releases check via OpenSSF Scorecard.

CC: @rootxrishabh @daemon1024 @nyrahul @rksharma95

Reviewers: @nate-double-u

Added a new project idea for KubeArmor focusing on supply chain security compliance and OpenSSF Scorecard improvements, including detailed expected outcomes and required skills.

Signed-off-by: Atharva Shah <68660002+HighnessAtharva@users.noreply.github.com>
@nate-double-u
Copy link
Copy Markdown
Member

Thanks for this @HighnessAtharva!

@rootxrishabh @daemon1024 @nyrahul @rksharma95, could you each approve or 👍 this PR to confirm your (and the project's) participation?

@nate-double-u nate-double-u moved this from Inbox to Awaiting approvals/confirmations in LFX 2026 Term 2 program proposals Apr 30, 2026
Signed-off-by: Nate W <natew@cncf.io>
@nate-double-u nate-double-u moved this from Awaiting approvals/confirmations to CNCF Approved in LFX 2026 Term 2 program proposals May 3, 2026
Signed-off-by: Nate W <natew@cncf.io>
@nate-double-u nate-double-u merged commit 66c437f into cncf:main May 4, 2026
2 checks passed
@nate-double-u
Copy link
Copy Markdown
Member

LFX URL:

Followup, we only need 1 upstream issue in order to load this into the LFX platform. I'll add the first one listed, but if you'd like to update this with an umbrella issue I can make an update.

@nate-double-u nate-double-u moved this from CNCF Approved to Posted to LFX in LFX 2026 Term 2 program proposals May 4, 2026
@HighnessAtharva
Copy link
Copy Markdown
Contributor Author

LFX URL:

Followup, we only need 1 upstream issue in order to load this into the LFX platform. I'll add the first one listed, but if you'd like to update this with an umbrella issue I can make an update.

Yes please, that would be great. Also we'd like to add @AryanBakliwal to the list of mentors.

@nate-double-u
Copy link
Copy Markdown
Member

Also we'd like to add @AryanBakliwal to the list of mentors.

Please open a followup PR to make that update in the README.

@nate-double-u nate-double-u moved this from Posted to LFX to LFX Approved in LFX 2026 Term 2 program proposals May 5, 2026
@nate-double-u
Copy link
Copy Markdown
Member

You already have 4 mentors, 5 is a lot, can I ask why the program needs so many? (I do appreciate the enthusiasm, but I'd like to make sure that we're not overwhelming the mentee, and that each mentor has a role to play)

@nate-double-u nate-double-u moved this from LFX Approved to Listed in README in LFX 2026 Term 2 program proposals May 5, 2026
@nate-double-u nate-double-u moved this from Listed in README to Open for Applications in LFX 2026 Term 2 program proposals May 5, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

Status: Open for Applications

Development

Successfully merging this pull request may close these issues.

4 participants