To analyze a resource in more detail, select View Asset to open the asset card. The card includes these tabs:
Tab | Description |
|---|---|
Overview | Provides a high-level summary of the resource's identity, security posture, and critical threats such as vulnerabilities or malware. It includes a health status of security scans and an interactive graph to visualize dependencies. |
Resource Explorer | Provides a breakdown of associated assets, featuring visual graphs for Assets per Namespace and Assets per K8S Category, along with a detailed table listing resource specifics such as asset name, type, category, and tags. |
Identity | Maps the permissions and access controls associated with the resource, illustrating relationships between its identity and associated roles or services. |
Configurations | Displays cloud configuration issues associated with the asset, tracking details such as severity and category. It also provides the raw Asset Configuration JSON for deep inspection of the asset's properties and metadata. |
Vulnerabilities | Provides a detailed breakdown of all detected security findings associated with the resource. It offers a centralized view to help assess and prioritize the remediation of known security issues. |
SBOM | Provides a comprehensive inventory of all software components and dependencies detected within the resource, tracking identification metadata and scan timing. |
Network | Summarizes the resource's connectivity and exposure by displaying networking metadata and security controls. It allows users to analyze traffic boundaries, firewall policies, and network rules governing the assets across the cloud or cluster network. |
Compliance | Evaluates the resource's adherence to regulatory requirements and industry benchmarks by presenting an overall security score. It provides a breakdown of audit results, highlighting which controls are met and which require immediate attention to mitigate risk. |
Note
Workloads context: The workloads section specifically identifies managed workloads, including Deployments, DaemonSets, StatefulSets, CronJobs, and ReplicaSets not managed by deployments, and jobs not managed by a CronJob.