**State** Security features are not enforced by default **Feature Idea** Enforce some easy to implement security features by default: - `automountServiceAccountToken ` should be set to false by default - ...