containers[] .securityContext .capabilities .drop | index("ALL")

Drop all capabilities and add only those required to reduce syscall attack surface

Built with by controlplane