(2)
OpenFGA is an open source Fine Grained Authorization solution that implements Google's Zanzibar paper, helping you manage complex authorization rules in your applications.
2h
100K+
OpenID Connect (OIDC) identity and OAuth 2.0 provider with pluggable connectors
2h
100K+
Grype is a vulnerability scanner for container images and filesystems. It provides fast and accurate vulnerability detection with support for multiple package ecosystems and output formats.
2h
100K+
OPA is a policy engine that streamlines policy management across your stack for improved development, security and audit capability.
2h
100K+
Syft is a CLI tool and Go library for generating Software Bill of Materials (SBOM) from container images and filesystems with support for multiple output formats and package ecosystems.
2h
100K+
Lacework is cloud security for AWS, Azure, GCP and other public and private cloud.
19d
1B+
23
TruffleHog is a secrets scanning tool that finds credentials, API keys, and sensitive data in git repositories, filesystems, S3 buckets, and more. Written in Go.
6h
100K+
Kyverno Readiness Checker is a component that checks the readiness of a Kyverno installation
6h
100K+
Docker Distribution registry for storing and distributing container images within Harbor
2h
100K+
SonarQube is a self-managed, automatic code review tool that systematically helps you deliver clean code.
6h
100K+
Notation is a CLI tool for signing and verifying OCI artifacts with trust policies and plugin-based key management.
2h
100K+
Tailscale lets you securely connect devices and containers without exposing them to the public internet.
2h
100K+
Sidecar for managing OPA instances in Kubernetes.
2h
100K+
Kubernetes-native security toolkit that leverages Trivy to continuously scan your Kubernetes cluster for security issues.
2h
100K+
Please refer to the docker/ucp image for more information
6y
500M+
4
Polaris is an open source policy engine for Kubernetes that validates and remediates resource configuration. It includes 30+ built in configuration policies, as well as the ability to build custom policies with JSON Schema. When run on the command line or as a mutating webhook, Polaris can automatically remediate issues based on policy criteria.
6h
100K+
Policy Controller for Kubernetes, built on Open Policy Agent.
6h
100K+
Gitleaks is a SAST tool for detecting and preventing hardcoded secrets like passwords, API keys, and tokens in git repos. Written in Go.
2h
50K+
Apache APISIX is a dynamic, real-time, high-performance API Gateway.
6h
50K+
The official image for monitoring systems, containers and applications with Netdata.
19h
500M+
570
A Kubernetes utility to identify optimal resource requests and limits using Vertical Pod Autoscalers.
6h
50K+
cert-manager trust-manager manages trust bundles in Kubernetes and OpenShift clusters
6h
50K+
The Kyverno Policy Reporter UI watches for PolicyReport Resources and displays information on a web based UI
6h
50K+
Envoy Rate Limit Service (ratelimit) is a Go/gRPC service that provides centralized rate limiting for Envoy and other proxies.
2h
50K+