Skip to content
Merged
Show file tree
Hide file tree
Changes from 2 commits
Commits
Show all changes
37 commits
Select commit Hold shift + click to select a range
e57a38f
feat(docs): Kubeflow Security Self-Assessment
andreyvelich Jul 10, 2025
3596a9f
Fix text
andreyvelich Jul 10, 2025
6006d88
Update security/README.md
andreyvelich Jul 16, 2025
0014119
Update security/self-assessment.md
andreyvelich Jul 16, 2025
1e4b918
Add OpenSSF for Katib + Notebooks
andreyvelich Jul 16, 2025
77ae442
Add model registry pyproject
andreyvelich Jul 17, 2025
630d15a
Update security/self-assessment.md
andreyvelich Jul 17, 2025
0983612
Update security/self-assessment.md
andreyvelich Jul 17, 2025
4fdca82
Update security/self-assessment.md
andreyvelich Jul 17, 2025
b8a0117
Update security/self-assessment.md
andreyvelich Jul 17, 2025
3fc9314
Update security/self-assessment.md
andreyvelich Jul 17, 2025
419c9cf
Update Kubeflow Overview
andreyvelich Jul 24, 2025
a83497a
Update security/self-assessment.md
andreyvelich Jul 24, 2025
8f78a07
Update security/self-assessment.md
andreyvelich Jul 24, 2025
f9ca8bd
Update security/self-assessment.md
andreyvelich Jul 24, 2025
593770f
Update security/self-assessment.md
andreyvelich Jul 24, 2025
8c5a266
Update security/self-assessment.md
andreyvelich Jul 24, 2025
7568c06
Update RBAC for Spark
andreyvelich Jul 24, 2025
7cce8e1
Update security/self-assessment.md
andreyvelich Jul 24, 2025
1c20c8c
Update Actors for KFP
andreyvelich Aug 6, 2025
2d6ca5b
Add Launcher info
andreyvelich Aug 7, 2025
716d1d7
Update security/self-assessment.md
andreyvelich Aug 7, 2025
b5c65ad
Update security/self-assessment.md
andreyvelich Aug 7, 2025
58b085d
Fix text
andreyvelich Aug 7, 2025
9be0da4
Update security/self-assessment.md
andreyvelich Aug 7, 2025
c623cbf
Update security/self-assessment.md
andreyvelich Aug 7, 2025
3981077
Update security/self-assessment.md
andreyvelich Aug 7, 2025
680c54d
Update security/self-assessment.md
andreyvelich Aug 7, 2025
fcab16c
Update security/self-assessment.md
andreyvelich Aug 7, 2025
afa93f6
Update security/self-assessment.md
andreyvelich Aug 7, 2025
25f36fe
Update security/self-assessment.md
andreyvelich Aug 7, 2025
aba1a1e
Remove non-k8s deployment
andreyvelich Aug 7, 2025
1d6f69e
Update security/self-assessment.md
andreyvelich Aug 7, 2025
ac2bfa3
Update security/self-assessment.md
andreyvelich Aug 7, 2025
4fe84df
Update security/self-assessment.md
andreyvelich Aug 7, 2025
d1b1389
Group SBOMs by project
andreyvelich Aug 8, 2025
7509106
Update SBOM for Notebooks v1
andreyvelich Aug 18, 2025
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
4 changes: 0 additions & 4 deletions security/OWNERS

This file was deleted.

26 changes: 16 additions & 10 deletions security/README.md
Original file line number Diff line number Diff line change
@@ -1,20 +1,26 @@
# Kubeflow Security Team
# Kubeflow Security

This folder contains information regarding the newly formed (January 2023) Kubeflow Security Team.
This folder contains information regarding the Kubeflow security.

Since this team is just beginning, there is a lot of work to be done.
If you are a security professional, and you are a Kubeflow User we encourage you to get involved with the Kubeflow Security Team.
## Security Self-Assessment

## Get Involved
The security self-assessment document is determining gaps in Kubeflow security,
and preparing the security documentation for Kubeflow users.

- **Join** the [CNCF Slack Workspace](https://www.kubeflow.org/docs/about/community/#kubeflow-slack-channels) and the [`#kubeflow-platform`](https://app.slack.com/client/T08PSQ7BQ/C073W572LA2) channel.
- **Attend** the _Kubeflow Manifests WG_ meeting ([meeting notes](https://docs.google.com/document/d/1je_qzoJCAVXndxeJAgA8cdugvYZfsgrAi7HP_WDeUN0/edit), [community calendar](https://www.kubeflow.org/docs/about/community/#kubeflow-community-calendars)).
- [Kubeflow Security Self-Assessment](self-assessment.md).

## Security Audit

Kubeflow participate in 3rd party security audit. You can find the audit results here:

## Roadmap
- TODO (andreyvelich): Add document once it is published.

Please see the [Kubeflow Security Team Roadmap](ROADMAP.md) for more information.
## Get Involved

- **Join** the [CNCF Slack Workspace](https://www.kubeflow.org/docs/about/community/#kubeflow-slack-channels) and the [`#kubeflow-platform`](https://app.slack.com/client/T08PSQ7BQ/C073W572LA2) channel.
- **Attend** the _Kubeflow Manifests WG_ meeting ([meeting notes](https://docs.google.com/document/d/1je_qzoJCAVXndxeJAgA8cdugvYZfsgrAi7HP_WDeUN0/edit), [community calendar](https://www.kubeflow.org/docs/about/community/#kubeflow-community-calendars)).
Copy link
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Suggested change
- **Attend** the _Kubeflow Manifests WG_ meeting ([meeting notes](https://docs.google.com/document/d/1je_qzoJCAVXndxeJAgA8cdugvYZfsgrAi7HP_WDeUN0/edit), [community calendar](https://www.kubeflow.org/docs/about/community/#kubeflow-community-calendars)).
- **Attend** the _Kubeflow Platform (manifests & security) WG_ meeting ([meeting notes](https://docs.google.com/document/d/1je_qzoJCAVXndxeJAgA8cdugvYZfsgrAi7HP_WDeUN0/edit), [community calendar](https://www.kubeflow.org/docs/about/community/#kubeflow-community-calendars)).

Copy link
Member Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

@juliusvonkohout We haven't established the Platform or Security WG yet as part of this discussion: #837

Can we agree on the new WG, SIG, or Committee, and update the README after it ?

cc @kimwnasptd @thesuperzapper

Copy link
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

This i also how we call the meeting on the website and calendar entry.

Copy link
Member Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Yes, but we haven't established this working group yet. Can we officially create this working group here, and then update this doc ?

Copy link
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Done #896 CC @kimwnasptd


## Policies and Procedures
## Work in Progress Documents

We are actively working to finalize the Policies and Procedures for the Kubeflow Security Team.

Expand Down
14 changes: 0 additions & 14 deletions security/ROADMAP.md

This file was deleted.

4 changes: 4 additions & 0 deletions security/images/ai-lifecycle-kubeflow.drawio.svg
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Binary file added security/images/katib.png
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Binary file added security/images/model-registry.png
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Binary file added security/images/pipelines.png
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Binary file added security/images/spark-operator.png
Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

@andreyvelich This image needs an update with new SparkConnect CRD. I can raise a PR once this is merged or send you the new image to you directly

Copy link
Member Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Sure! @vara-bonthu Please send me the updated diagram once it is ready.

Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Binary file added security/images/trainer.png
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Loading