diff --git a/examples/container-deny-escalation/src.rego b/examples/container-deny-escalation/src.rego index eb824b80..fb99e923 100644 --- a/examples/container-deny-escalation/src.rego +++ b/examples/container-deny-escalation/src.rego @@ -34,6 +34,10 @@ container_allows_escalation(c) { c.securityContext.allowPrivilegeEscalation == true } +container_allows_escalation(c) { + core.missing_field(c, "securityContext") +} + container_allows_escalation(c) { core.missing_field(c.securityContext, "allowPrivilegeEscalation") }