{
  "description": "AuditNetworkPolicy mirrors networking.k8s.io/v1.NetworkPolicy 1:1\nin spec shape. The kguardian-evaluator watches observed pod\ntraffic and reports flows that *would* be denied by this policy\nwithout actually dropping anything. Promote to enforced policy\nby re-applying the same spec under kind: NetworkPolicy.\n",
  "properties": {
    "apiVersion": {
      "type": "string"
    },
    "kind": {
      "type": "string"
    },
    "metadata": {
      "type": "object"
    },
    "spec": {
      "description": "NetworkPolicySpec \u2014 identical to networking.k8s.io/v1\nNetworkPolicy. See\nhttps://kubernetes.io/docs/reference/generated/kubernetes-api/v1.32/#networkpolicyspec-v1-networking-k8s-io\n",
      "properties": {
        "egress": {
          "items": {
            "type": "object",
            "x-kubernetes-preserve-unknown-fields": true
          },
          "type": "array"
        },
        "ingress": {
          "items": {
            "type": "object",
            "x-kubernetes-preserve-unknown-fields": true
          },
          "type": "array"
        },
        "podSelector": {
          "type": "object",
          "x-kubernetes-preserve-unknown-fields": true
        },
        "policyTypes": {
          "items": {
            "enum": [
              "Ingress",
              "Egress"
            ],
            "type": "string"
          },
          "maxItems": 2,
          "type": "array",
          "x-kubernetes-list-type": "set"
        }
      },
      "required": [
        "podSelector"
      ],
      "type": "object",
      "additionalProperties": false
    },
    "status": {
      "properties": {
        "evaluation": {
          "properties": {
            "flowsEvaluated": {
              "format": "int64",
              "type": "integer"
            },
            "flowsWouldDeny": {
              "format": "int64",
              "type": "integer"
            },
            "lastEvaluated": {
              "format": "date-time",
              "type": "string"
            },
            "topOffenders": {
              "items": {
                "properties": {
                  "count": {
                    "format": "int64",
                    "type": "integer"
                  },
                  "direction": {
                    "type": "string"
                  },
                  "dstPod": {
                    "type": "string"
                  },
                  "dstPort": {
                    "format": "int32",
                    "type": "integer"
                  },
                  "protocol": {
                    "type": "string"
                  },
                  "srcPod": {
                    "type": "string"
                  }
                },
                "type": "object",
                "additionalProperties": false
              },
              "maxItems": 50,
              "type": "array"
            }
          },
          "type": "object",
          "additionalProperties": false
        },
        "observedGeneration": {
          "format": "int64",
          "type": "integer"
        }
      },
      "type": "object",
      "additionalProperties": false
    }
  },
  "required": [
    "spec"
  ],
  "type": "object"
}
