Skip to content
Security

v0.10.0: ExternalSecrets & RBAC Hardening

Production security audit — ExternalSecrets Operator with ClusterSecretStore for AWS Secrets Manager, comprehensive RBAC with least-privilege ServiceAccounts and RoleBindings, Prisma migration automation with K8s init container.

  • ExternalSecrets Operator — ClusterSecretStore + ExternalSecret CRDs for AWS Secrets Manager
  • RBAC — ServiceAccounts + least-privilege Roles + RoleBindings for all 11 workloads
  • Prisma migrate:deploy — production migration script + K8s init container on api-gateway
  • Storybook component stories — Card, PageHeader, EmptyState, AnimateIn, LoadingState, ErrorState