31 - 60 of 93 available results.
HARDENED IMAGE

OpenFGA is an open source Fine Grained Authorization solution that implements Google's Zanzibar paper, helping you manage complex authorization rules in your applications.

2h

100K+

HELM CHART

A Kubernetes utility to identify optimal resource requests and limits using Vertical Pod Autoscalers.

2h

100K+

HARDENED IMAGE

OPA is a policy engine that streamlines policy management across your stack for improved development, security and audit capability.

2h

100K+

HARDENED IMAGE

Grype is a vulnerability scanner for container images and filesystems. It provides fast and accurate vulnerability detection with support for multiple package ecosystems and output formats.

2h

100K+

HARDENED IMAGE

OpenID Connect (OIDC) identity and OAuth 2.0 provider with pluggable connectors

2h

100K+

HARDENED IMAGE

Syft is a CLI tool and Go library for generating Software Bill of Materials (SBOM) from container images and filesystems with support for multiple output formats and package ecosystems.

9h

100K+

HARDENED IMAGE

TruffleHog is a secrets scanning tool that finds credentials, API keys, and sensitive data in git repositories, filesystems, S3 buckets, and more. Written in Go.

2h

100K+

HARDENED IMAGE

The Kyverno Command Line Interface (CLI) is designed to validate and test policy behavior to resources prior to adding them to a cluster.

2h

100K+

HARDENED IMAGE

SonarQube is a self-managed, automatic code review tool that systematically helps you deliver clean code.

2h

100K+

HARDENED IMAGE

Docker Distribution registry for storing and distributing container images within Harbor

2h

100K+

HARDENED IMAGE

Notation is a CLI tool for signing and verifying OCI artifacts with trust policies and plugin-based key management.

2h

100K+

HELM CHART

A reverse proxy that provides authentication using OAuth2 and OIDC providers.

2h

50K+

HELM CHART

Vault is a tool for securely accessing secrets.

2h

50K+

HARDENED IMAGE

Tailscale lets you securely connect devices and containers without exposing them to the public internet.

2h

50K+

HARDENED IMAGE

Polaris is an open source policy engine for Kubernetes that validates and remediates resource configuration. It includes 30+ built in configuration policies, as well as the ability to build custom policies with JSON Schema. When run on the command line or as a mutating webhook, Polaris can automatically remediate issues based on policy criteria.

2h

50K+

HARDENED IMAGE

Kyverno Readiness Checker is a component that checks the readiness of a Kyverno installation

2h

50K+

HELM CHART

OpenID Connect (OIDC) identity and OAuth 2.0 provider with pluggable connectors

2h

50K+

HARDENED IMAGE

Gitleaks is a SAST tool for detecting and preventing hardcoded secrets like passwords, API keys, and tokens in git repos. Written in Go.

2h

50K+

HELM CHART

Kyverno is a Kubernetes Native Policy Management engine.

2h

50K+

HARDENED IMAGE

Sidecar for managing OPA instances in Kubernetes.

2h

50K+

HARDENED IMAGE

A Kubernetes utility to identify optimal resource requests and limits using Vertical Pod Autoscalers.

2h

50K+

HARDENED IMAGE

Kubernetes-native security toolkit that leverages Trivy to continuously scan your Kubernetes cluster for security issues.

2h

50K+

HARDENED IMAGE

Apache APISIX is a dynamic, real-time, high-performance API Gateway.

2h

50K+

HARDENED IMAGE

Policy Controller for Kubernetes, built on Open Policy Agent.

2h

50K+

HARDENED IMAGE

Certificate signing request agent for integrating cert-manager with Istio

2h

50K+

HELM CHART

Monitoring and observability tool for Kubernetes policy reports

2h

50K+

HELM CHART

This chart installs resources shared by all Istio revisions. This includes Istio CRDs.

2h

50K+

HARDENED IMAGE

AWS Private CA is an AWS service that can setup and manage private CAs, as well as issue private certificates.

2h

50K+

HARDENED IMAGE

The Kyverno Policy Reporter UI watches for PolicyReport Resources and displays information on a web based UI

2h

50K+

HARDENED IMAGE

The AWS EKS Pod Identity Agent runs on Amazon EKS nodes and exchanges Kubernetes service account tokens for temporary AWS IAM credentials, providing pods with IAM roles without using IRSA or instance profiles.

2h

50K+