The clusterrolebinding cert-manager-webhook-hetzner:read-secrets is dangerous. It allows this webhook to read all secrets in the cluster. It only needs a rolebinding and could (maybe optionally) restrict the name of the secret.
Are you interested in a PR?
The clusterrolebinding
cert-manager-webhook-hetzner:read-secretsis dangerous. It allows this webhook to read all secrets in the cluster. It only needs a rolebinding and could (maybe optionally) restrict the name of the secret.Are you interested in a PR?