{{- if .Values.podSecurityPolicy }} {{- if .Values.podSecurityPolicy.enabled }} apiVersion: {{ include "cost-analyzer.podSecurityPolicy.apiVersion" . }} kind: PodSecurityPolicy metadata: name: {{ template "cost-analyzer.fullname" . }}-psp labels: {{ include "cost-analyzer.commonLabels" . | nindent 6 }} spec: privileged: false seLinux: rule: RunAsAny supplementalGroups: rule: RunAsAny runAsUser: rule: RunAsAny fsGroup: rule: RunAsAny volumes: - '*' {{- end }} {{- end }}