Dev Tools · 1h ago
Kubernetes Security Profiles Operator reaches v1 with stable APIs
The Kubernetes Security Profiles Operator (SPO) graduated to v1.0.0 on June 26, freezing eight CRD APIs and passing a third-party security audit with no critical findings. The release stabilizes seccomp, SELinux, and AppArmor profile management as cluster-scoped objects, with conversion webhooks enabling seamless upgrades. Platform teams can now adopt SPO without worrying about API churn, though some fields like SelinuxProfile's permissive boolean have been renamed to a mode enum.
Meridian48 take
The v1 milestone removes a major adoption barrier, but the looming KEP 6061 could shift SPO's role from runtime distribution to profile authoring and lifecycle management.
Read the full reporting
Security Profiles Operator hits v1 with stable APIs and a hardening pass →
DEV Community
kubernetessecurity-profiles-operator