Skip to main content

ECI Container Group Does Not Contain Sensitive Environment Variables

ID: rule:aliyun:eci-containergroup-environment-no-specified-keys
Severity: high

Description

Ensures that ECI container groups do not have sensitive environment variables like passwords or access keys.

Reason for Violation

ECI container group contains sensitive environment variables, which may leak credentials.

Recommendation

Use Secrets or parameter store to manage sensitive environment variables.

Resource Types

  • ALIYUN::ECI::ContainerGroup