(2)
OpenID Connect (OIDC) identity and OAuth 2.0 provider with pluggable connectors
3h
100K+
OpenFGA is an open source Fine Grained Authorization solution that implements Google's Zanzibar paper, helping you manage complex authorization rules in your applications.
3h
100K+
Grype is a vulnerability scanner for container images and filesystems. It provides fast and accurate vulnerability detection with support for multiple package ecosystems and output formats.
3h
100K+
Syft is a CLI tool and Go library for generating Software Bill of Materials (SBOM) from container images and filesystems with support for multiple output formats and package ecosystems.
3h
100K+
OPA is a policy engine that streamlines policy management across your stack for improved development, security and audit capability.
3h
100K+
TruffleHog is a secrets scanning tool that finds credentials, API keys, and sensitive data in git repositories, filesystems, S3 buckets, and more. Written in Go.
3h
100K+
Kyverno Readiness Checker is a component that checks the readiness of a Kyverno installation
3h
100K+
Lacework is cloud security for AWS, Azure, GCP and other public and private cloud.
25d
1B+
23
Docker Distribution registry for storing and distributing container images within Harbor
9h
100K+
SonarQube is a self-managed, automatic code review tool that systematically helps you deliver clean code.
9h
100K+
Notation is a CLI tool for signing and verifying OCI artifacts with trust policies and plugin-based key management.
9h
100K+
Tailscale lets you securely connect devices and containers without exposing them to the public internet.
3h
100K+
Kubernetes-native security toolkit that leverages Trivy to continuously scan your Kubernetes cluster for security issues.
3h
100K+
Sidecar for managing OPA instances in Kubernetes.
3h
100K+
Polaris is an open source policy engine for Kubernetes that validates and remediates resource configuration. It includes 30+ built in configuration policies, as well as the ability to build custom policies with JSON Schema. When run on the command line or as a mutating webhook, Polaris can automatically remediate issues based on policy criteria.
9h
100K+
Policy Controller for Kubernetes, built on Open Policy Agent.
9h
100K+
Gitleaks is a SAST tool for detecting and preventing hardcoded secrets like passwords, API keys, and tokens in git repos. Written in Go.
3h
100K+
A Kubernetes utility to identify optimal resource requests and limits using Vertical Pod Autoscalers.
9h
100K+
Apache APISIX is a dynamic, real-time, high-performance API Gateway.
3h
100K+
cert-manager trust-manager manages trust bundles in Kubernetes and OpenShift clusters
3h
50K+
The official image for monitoring systems, containers and applications with Netdata.
2h
500M+
570
The Kyverno Policy Reporter UI watches for PolicyReport Resources and displays information on a web based UI
3h
50K+
The AWS EKS Pod Identity Agent runs on Amazon EKS nodes and exchanges Kubernetes service account tokens for temporary AWS IAM credentials, providing pods with IAM roles without using IRSA or instance profiles.
3h
50K+
Envoy Rate Limit Service (ratelimit) is a Go/gRPC service that provides centralized rate limiting for Envoy and other proxies.
9h
50K+