instrumenta / policies
A set of shared policies for use with Conftest and other Open Policy Agent tools
☆67Updated 3 years ago
Related projects ⓘ
Alternatives and complementary repositories for policies
- A kubectl plugin which triggers a Sysdig capture☆99Updated last year
- Evergreen policy to monitor Kubernetes APIs deprecations.☆114Updated 3 years ago
- A Helm plugin for testing Helm Charts using Open Policy Agent☆64Updated 2 years ago
- A CLI tool providing you with status & configuration of a Kubernetes cluster fleet☆108Updated last month
- Kubernetes operator that continuously syncs any set of Chart/Kustomize/Manifest fetched from S3/Git/GCS to your cluster☆70Updated 5 years ago
- Rego policies to monitor Kubernetes APIs deprecations.☆144Updated 3 years ago
- Kubectl plugin to launch a ssh socks proxy and use it☆47Updated 4 years ago
- A simple Amazon EKS manager for ephemeral clusters☆66Updated 2 years ago
- ☆27Updated 2 years ago
- A collection of RBAC recipes and tips & tricks☆43Updated 4 years ago
- Kubernetes operator for Falco that allows developers to manage rules for detecting intruders and backdoors☆68Updated 4 years ago
- conftest plugin that transforms k8s input object to be compatible with gatekeeper policies☆14Updated 9 months ago
- Execute Terraform on Kubernetes☆73Updated last year
- Recreation of common Pod Security Policy configuration in other common Kubernetes policy engines☆51Updated this week
- KubeTrivyExporter is Prometheus Exporter that collects all vulnerabilities detected by aquasecurity/trivy in the kubernetes cluster.☆52Updated last year
- A validating admission webhook to ensure compliant labels in your k8s cluster☆53Updated last year
- ☆47Updated 2 years ago
- Kubernetes operator which consolidates custom resources into `aws-auth` ConfigMap.☆39Updated 8 months ago
- Octant plugin for viewing Starboard security information☆57Updated 2 years ago
- Kubernetes Fury Distribution OPA Core Module: Policy enforcement for your Kubernetes Cluster☆38Updated 2 weeks ago
- GitOps by Commit Hash☆47Updated 4 years ago
- An application that regularly scans all containers in a Kubernetes cluster for vulnerabilities☆50Updated last year
- An example repo structure for GitOps with Kustomize☆131Updated 3 years ago
- Logs updates to Kubernetes Objects for storing and querying with Loki☆125Updated 5 months ago
- An admission controller service and kubectl plugin to handle container drift in K8s clusters☆125Updated 2 years ago
- A CLI tool providing memory & CPU recommendations for containerized apps☆51Updated 4 years ago
- Generate documentation from your Prometheus rules☆33Updated 2 years ago
- [alpha] Controller to override image sources in the event that an image cannot be pulled.☆115Updated 2 weeks ago
- Handles rolling upgrades for AWS ASGs on EKS☆44Updated 3 weeks ago
- Expose AWS service usage and limits to Prometheus☆47Updated 8 months ago