(2)
Vault is a tool for securely accessing secrets via a unified interface and tight access control.
2y
500M+
1.2K
CA injector component for cert-manager
9h
1M+
The OpenSCAP program is a command line tool that allows users to load, scan, validate, edit, and export SCAP documents.
3h
1M+
2
Trivy is a comprehensive and versatile security scanner. Trivy has scanners that look for security issues, and targets where it can find those issues.
3h
500K+
Controller component for cert-manager
9h
500K+
Vault is a tool for securely accessing secrets.
9h
500K+
2
Keycloak is a high performance Java-based identity and access management solution. It lets developers add an authentication layer to their applications with minimum effort.
9h
500K+
External Secrets Operator is a Kubernetes operator that integrates external secret management systems like AWS Secrets Manager, HashiCorp Vault, Google Secrets Manager, Azure Key Vault, IBM Cloud Secrets Manager, Akeyless, CyberArk Secrets Manager, Pulumi ESC and many more
3h
500K+
2
A minimal Cert Manager webhook image
3h
500K+
CA injector component cert-manager image
9h
500K+
Harbor scanner adapter that wraps the Trivy vulnerability scanner to provide a REST API for scanning container images.
9h
100K+
Kyverno is a Kubernetes-native policy engine for validating, mutating, and generating Kubernetes resources using YAML policies.
9h
100K+
Istio CNI installer image and daemonset for Kubernetes environments
3h
100K+
Kyverno is a component that continuously monitors and enforces policies on existing resources in the cluster, ensuring ongoing compliance.
9h
100K+
Kyverno Reports Controller is a component that continuously monitors and enforces policies on existing resources in a Kubernetes
9h
100K+
Kyverno is a component that continuously monitors and enforces policies on existing resources in the cluster, ensuring ongoing compliance.
3h
100K+
Kyverno is a component that continuously monitors and enforces policies on existing resources in a kubernetes cluster, ensuring ongoing compliance.
9h
100K+
Harbor Job Service is the asynchronous task execution component of Harbor registry that handles background operations like replication, garbage collection, vulnerability scanning, and retention policies.
3h
100K+
A minimal HTTP service providing management APIs for Docker registry operations like garbage collection and health monitoring
9h
100K+
Calico controller manager that reconciles IPAM, network policy, and Calico CRD state.
9h
100K+
a small HTTP proxy for a single upstream, that can perform RBAC authorization against the Kubernetes API using SubjectAccessReview.
3h
100K+
Workload agent that attests to SPIRE Server and issues SPIFFE workload identities to local processes.
9h
100K+
Kubescape is an open-source Kubernetes security platform designed to provide practical, end-to-end security for Kubernetes environments. It supports engineers and operators throughout the development and deployment lifecycle, offering tools for configuration scanning, vulnerability assessment, policy enforcement, network policy and seccomp validation, and runtime threat detection.
3h
100K+
Central SPIRE control plane that issues and manages SPIFFE workload identities.
9h
100K+
ClamAV is an open source (GPLv2) anti-virus toolkit, designed especially for e-mail scanning on mail gateways.
3h
100K+
11
Istio control plane component that configures proxies and handles service discovery
3h
100K+
A reverse proxy that provides authentication using OAuth2 and OIDC providers.
9h
100K+
The Kyverno Command Line Interface (CLI) is designed to validate and test policy behavior to resources prior to adding them to a cluster.
3h
100K+
Istioctl image for managing Istio deployments
9h
100K+