Ingress resources define how traffic enters Kubernetes clusters. If misconfigured, they become open doors to downtime, data leaks, and attack surfaces. Pre-commit security hooks catch those mistakes before they ever touch the repo. They run locally, intercepting insecure manifests, weak TLS settings, unvalidated hostnames, and public paths that should be