diff --git a/charts/kube-state-metrics/values.yaml b/charts/kube-state-metrics/values.yaml index 9b9326989998..e168fd5fa023 100644 --- a/charts/kube-state-metrics/values.yaml +++ b/charts/kube-state-metrics/values.yaml @@ -214,7 +214,14 @@ securityContext: enabled: true runAsGroup: 65534 runAsUser: 65534 + runAsNonRoot: true fsGroup: 65534 + allowPrivilegeEscalation: false + capabilities: + drop: + - ALL + seccompProfile: + type: RuntimeDefault ## Specify security settings for a Container ## Allows overrides and additional options compared to (Pod) securityContext