/
2025-04-01 SIG Security Minutes

2025-04-01 SIG Security Minutes

 

Community Attendees:

@Gaurav Kumar

@Phil Porras

@Rahul

Community Attendees:

LF Staff:

Agenda

Antitrust Policy

  • Action Items Review

  • IaC scanning results discussion

  • Vault Integration discussion (TODO)

  • Discussing about Security Blueprint approach (TODO)

Minutes

 

Topic 1

  • checkov scan .. findings remediation .. checkov doesn’t provide severity for the findings in the open source version

  • KICS checkmarx vs checkov

Action items

Verify if checkov provides severity for the findings in the open source version @Rahul
KICS Checkmarx vs Checkov