mindersec/minder-rules-and-profiles

The artifact signature rule doesn't expose any details about what failed

Closed this issue · 0 comments

Because the artifact_signature rule uses the deny-by-default model all we get from the evaluation in case it fails is denied. Especially for artifacts this is not ideal as we can't tell the user what changed in the artifact vs. the expected state unless they look at minder logs.