This issue proposes expanding this repository into a comprehensive security policy library, specifically for Kubernetes and cloud-native technologies. We currently have limited policies, and the goal is to leverage Rego and Common Expression Language (CEL) for a wider range of security controls.
We can cover recommendations from relevant CIS Benchmarks (e.g., CIS Kubernetes Benchmark, Dockerfile benchmarks, etc) and other Software-Supply-Chain-Security best practices to ensure secure infrastructure and applications.