Add requirements to fix high severity rating vulnerabilities. For IaaC, to complement req.sec.run.001 For OSS, to complement and to align with RA1 modifications
Clarify IaaC requirments req.sec.bld.003: break into 2 requirements req.sec.del.001: replace "container scanning" by "container image scanning" in example
if an implementation-agnostic solution to have generic pod manifests that work with all possible multiplexers can be found, RA2 should mandate it, otherwise state alternative way out (ie operators to pick an implementation)