Kubernetes v1.33 rolls in a snazzy beta feature: control over supplemental group merging in containers. It sharpens security by exposing those sneaky implicit GIDs. But don't get too cozy—this power comes with strings. You’ll need CRI runtimes that play nice, or your pods will get the boot on unsupported nodes. Sneaky access issues? Not on Kubernetes's watch.









