(2)
Kubescape is an open-source Kubernetes security platform designed to provide practical, end-to-end security for Kubernetes environments. It supports engineers and operators throughout the development and deployment lifecycle, offering tools for configuration scanning, vulnerability assessment, policy enforcement, network policy and seccomp validation, and runtime threat detection.
4h
100K+
Kubernetes-native security toolkit that leverages Trivy to continuously scan your Kubernetes cluster for security issues.
10h
100K+
Kyverno is a Kubernetes Native Policy Management engine.
10h
100K+
Docker Distribution registry for storing and distributing container images within Harbor
4h
100K+
Kyverno Readiness Checker is a component that checks the readiness of a Kyverno installation
4h
100K+
Syft is a CLI tool and Go library for generating Software Bill of Materials (SBOM) from container images and filesystems with support for multiple output formats and package ecosystems.
4h
100K+
Grype is a vulnerability scanner for container images and filesystems. It provides fast and accurate vulnerability detection with support for multiple package ecosystems and output formats.
4h
100K+
OpenID Connect (OIDC) identity and OAuth 2.0 provider with pluggable connectors
10h
100K+
TruffleHog is a secrets scanning tool that finds credentials, API keys, and sensitive data in git repositories, filesystems, S3 buckets, and more. Written in Go.
10h
100K+
Cilium Standalone DNS Proxy is an alpha component that provides independent DNS proxying capabilities, receiving policy rules from the Cilium agent via gRPC.
10h
100K+
OPA is a policy engine that streamlines policy management across your stack for improved development, security and audit capability.
4h
100K+
Vault is a tool for securely accessing secrets.
4h
100K+
OpenFGA is an open source Fine Grained Authorization solution that implements Google's Zanzibar paper, helping you manage complex authorization rules in your applications.
4h
100K+
This chart installs resources shared by all Istio revisions. This includes Istio CRDs.
4h
100K+
Sidecar for managing OPA instances in Kubernetes.
4h
100K+
Kubernetes-native security toolkit that leverages Trivy to continuously scan your Kubernetes cluster for security issues.
10h
100K+
Notation is a CLI tool for signing and verifying OCI artifacts with trust policies and plugin-based key management.
4h
100K+
Policy Controller for Kubernetes, built on Open Policy Agent.
10h
100K+
SonarQube is a self-managed, automatic code review tool that systematically helps you deliver clean code.
10h
100K+
Tailscale lets you securely connect devices and containers without exposing them to the public internet.
4h
100K+
The AWS EKS Pod Identity Agent runs on Amazon EKS nodes and exchanges Kubernetes service account tokens for temporary AWS IAM credentials, providing pods with IAM roles without using IRSA or instance profiles.
4h
100K+
A reverse proxy that provides authentication using OAuth2 and OIDC providers.
10h
100K+
cert-manager trust-manager manages trust bundles in Kubernetes and OpenShift clusters
4h
100K+
Apache APISIX is a dynamic, real-time, high-performance API Gateway.
10h
100K+
Gitleaks is a SAST tool for detecting and preventing hardcoded secrets like passwords, API keys, and tokens in git repos. Written in Go.
10h
100K+
Keycloak is a high performance Java-based identity and access management solution. It lets developers add an authentication layer to their applications with minimum effort.
10h
100K+
Polaris is an open source policy engine for Kubernetes that validates and remediates resource configuration. It includes 30+ built in configuration policies, as well as the ability to build custom policies with JSON Schema. When run on the command line or as a mutating webhook, Polaris can automatically remediate issues based on policy criteria.
4h
100K+
EFF's ACME client for obtaining and renewing TLS certificates from Let's Encrypt and any ACME-compatible CA.
10h
100K+
2
node-collector gathers file system and process information from Kubernetes cluster nodes for CIS benchmark compliance checking.
4h
100K+