Security

Runtime security and vulnerability scanning: Falco and Trivy.

The security stack provides both preventive (Trivy: image scanning before pods run) and detective (Falco: syscall monitoring at runtime) security controls.