awesome-repositories.com
Blog
MCP
awesome-repositories.com

Descubre los mejores repositorios open-source con nuestra búsqueda potenciada por IA.

ExplorarBúsquedas curadasAlternativas open-sourceSoftware autohospedableBlogMapa del sitio
ProyectoAcerca deCómo clasificamosPrensaServidor MCP
Aviso legalPrivacidadTérminos
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
goharbor avatar

goharbor/harbor

0
View on GitHub↗
28,761 estrellas·5,266 forks·Go·Apache-2.0·14 vistasgoharbor.io↗

Harbor

Harbor is a self-hosted, enterprise-grade container registry platform designed to store, sign, and scan container images and cloud-native artifacts. It provides a centralized repository that integrates directly with Kubernetes environments to manage the full lifecycle of software artifacts, from initial storage to production deployment.

The platform distinguishes itself through a focus on security, governance, and multi-site availability. It features a pluggable vulnerability scanning framework that allows for the integration of various security engines, alongside content trust mechanisms that enforce digital signatures to ensure image authenticity. To support distributed infrastructure, it includes a cross-instance replication controller that synchronizes artifacts across geographic locations, ensuring high availability and disaster recovery.

Harbor manages access and organization through project-based workspaces, where granular role-based access control is enforced for users and groups. It integrates with external identity providers using standardized protocols like OIDC to streamline authentication. The system also provides comprehensive administrative capabilities, including audit logging, storage quota enforcement, and automated garbage collection to maintain registry health and performance.

The platform is built on a modular, microservices-based architecture that supports pluggable storage backends, allowing for flexibility across different cloud and local storage environments. It is designed for deployment within Kubernetes clusters, utilizing administrative APIs to facilitate programmatic management and integration with external CI/CD pipelines.

Features

  • Container Image Registries - Hosts and organizes container images and cloud-native artifacts in a centralized, secure repository.
  • Artifact Hosting - Hosts container images and cloud-native artifacts in a centralized, secure repository for production environments.
  • Kubernetes Deployment - Provides orchestration for installing registry services within Kubernetes clusters using package management tools.
  • Registry Replication - Automates the synchronization of container images across geographically distributed registry instances to ensure high availability.
  • Automated Artifact Lifecycle - Manages the full lifecycle of container artifacts, including creation, security scanning, and digital signing.
  • Container Security - Enforces container security through vulnerability scanning and digital signature verification for image authenticity.
  • Container Security - Performs automated vulnerability scanning and enforces image integrity through content signing and authenticity verification.
  • Role-Based Access Control - Enforces granular security by evaluating user permissions against project-level policies for all registry operations.
  • Vulnerability Scanning - Integrates modular security engines to perform automated vulnerability scanning on container images.
  • Storage Drivers - Implements pluggable storage drivers to support diverse local and cloud-based object storage backends.
  • Administrative APIs - Provides RESTful interfaces for programmatic management of registry resources and infrastructure configurations.
  • Artifact Repositories - Acts as a centralized storage solution for container images that integrates with Kubernetes to manage software lifecycles.
  • Artifact Distribution - Synchronizes container images between local and remote storage locations to ensure consistent artifact availability.
  • Multi-Site Replication - Synchronizes container images across multiple geographic locations to ensure high availability and disaster recovery.
  • Registry Management - Provides centralized management of registry settings and administrative policies to maintain system health.
  • Enterprise Identity Providers - Integrates with enterprise identity providers using OIDC to manage role-based access control for registry users.
  • OIDC Authentication Plugins - Delegates user authentication to external identity providers using the OpenID Connect protocol.
  • Project Organization - Groups container images into isolated, project-based workspaces with dedicated access controls and lifecycle rules.
  • Container Registries - Trusted cloud-native registry with scanning and replication.
  • Storage Management - Trusted registry for storing and scanning container images.
  • Cloud Native Infrastructure - Enterprise-grade OCI registry with permission and audit features.
  • Container Security - Trusted cloud-native container registry.
  • DevOps and Infrastructure - Trusted cloud-native registry for containers.
  • Relational Metadata Storage - Uses relational database schemas to maintain consistent storage of artifact manifests, permissions, and audit logs.
  • Webhook Notifications - Delivers automated event-driven updates to external services via webhooks when artifact statuses change.
  • Retention Policies - Automates the removal of outdated or unused artifact tags based on configurable retention policies.
  • Automated Garbage Collection - Reclaims storage space by automatically identifying and removing unreferenced data blobs and orphaned manifests.
  • Content Trust Mechanisms - Signs container images to guarantee origin and enforces policies preventing the deployment of unsigned artifacts.
  • Authentication and Authorization - Validates user identity through local or external databases to secure registry operations and data.
  • OIDC Identity Integrations - Supports secure authentication by integrating with external identity providers using OIDC protocols.
  • Webhook Event Notifications - Triggers asynchronous callbacks to external services upon artifact lifecycle events to facilitate CI/CD pipeline integration.
  • Governance Policies - Manages access controls, storage quotas, and audit logs for container artifacts within a cluster-based delivery pipeline.
  • Audit Logs - Tracks and records all repository activities to provide a comprehensive history for security and compliance.
  • Microservices Architectures - Decomposes registry functions into independent, containerized services to ensure modularity and scalability.
  • Project Quotas - Monitors and validates project storage usage to ensure uploads do not exceed defined capacity limits.

Historial de estrellas

Gráfico del historial de estrellas de goharbor/harborGráfico del historial de estrellas de goharbor/harbor

Búsqueda con IA

Explora más repositorios increíbles

Describe lo que necesitas en lenguaje sencillo: la IA clasifica miles de proyectos open-source curados por relevancia.

Start searching with AI

Alternativas open-source a Harbor

Proyectos open-source similares, clasificados según cuántas características comparten con Harbor.
  • docker-archive-public/docker.labsAvatar de docker-archive-public

    docker-archive-public/docker.labs

    11,904Ver en GitHub↗

    This project is a comprehensive collection of tutorials and guided laboratories designed to teach containerization, networking, and security using Docker. It serves as a learning path for building portable images and executing isolated processes. The materials provide specific guides for managing container clusters and scaling services through Docker Swarm and overlay networks. It includes a security handbook for implementing image scanning and secret management, as well as laboratories dedicated to modernizing legacy applications by wrapping older software installers into containers. The co

    PHPcontainersdockerdocker-compose
    Ver en GitHub↗11,904
  • quay/clairAvatar de quay

    quay/clair

    11,012Ver en GitHub↗

    Clair is a container image vulnerability scanner and security analyzer. It performs static analysis of container images by matching package contents against vulnerability databases to identify security risks across different package formats and architectures. The project functions as both an image indexer and a vulnerability database manager. It processes container layers into intermediate representations to enable fast security lookups and synchronizes security metadata from multiple external sources to maintain a local registry. Capability areas include continuous security monitoring, whic

    Goclaircontainersdocker
    Ver en GitHub↗11,012
  • fluxcd/flux2Avatar de fluxcd

    fluxcd/flux2

    7,888Ver en GitHub↗

    Flux is a Kubernetes GitOps delivery tool used to automate application deployments by synchronizing cluster state with configurations stored in Git, OCI, or Helm repositories. It functions as a set of controllers that monitor desired state in external sources and continuously reconcile the live cluster to match those definitions. The system distinguishes itself through a multi-cluster management plane that coordinates application delivery across fleets of remote clusters from a central hub. It provides a dedicated mechanism for automated image updates, which scans container registries for new

    Gocontinuous-deliverygitopsgitops-toolkit
    Ver en GitHub↗7,888
  • wekan/wekanAvatar de wekan

    wekan/wekan

    20,971Ver en GitHub↗

    Wekan is an open-source, self-hosted Kanban project management tool used for organizing workflows through boards, lists, and cards. It is a real-time web application that allows teams to manage tasks on private infrastructure. The platform distinguishes itself with extensive data migration tools, specifically for importing boards and cards from Trello. It supports enterprise-grade identity integration via LDAP, OpenID Connect, and OAuth2, and offers flexible storage options including PostgreSQL as a primary relational backend and pluggable cloud storage for attachments. The system covers a w

    JavaScript
    Ver en GitHub↗20,971
Ver las 30 alternativas a Harbor→

Preguntas frecuentes

¿Qué hace goharbor/harbor?

Harbor is a self-hosted, enterprise-grade container registry platform designed to store, sign, and scan container images and cloud-native artifacts. It provides a centralized repository that integrates directly with Kubernetes environments to manage the full lifecycle of software artifacts, from initial storage to production deployment.

¿Cuáles son las características principales de goharbor/harbor?

Las características principales de goharbor/harbor son: Container Image Registries, Artifact Hosting, Kubernetes Deployment, Registry Replication, Automated Artifact Lifecycle, Container Security, Role-Based Access Control, Vulnerability Scanning.

¿Qué alternativas de código abierto existen para goharbor/harbor?

Las alternativas de código abierto para goharbor/harbor incluyen: docker-archive-public/docker.labs — This project is a comprehensive collection of tutorials and guided laboratories designed to teach containerization,… quay/clair — Clair is a container image vulnerability scanner and security analyzer. It performs static analysis of container… fluxcd/flux2 — Flux is a Kubernetes GitOps delivery tool used to automate application deployments by synchronizing cluster state with… wekan/wekan — Wekan is an open-source, self-hosted Kanban project management tool used for organizing workflows through boards,… quarkusio/quarkus — Quarkus is a Kubernetes-native Java framework designed for building high-performance, memory-efficient applications.… formbricks/formbricks — Formbricks is an open-source survey and feedback platform designed to help teams capture and analyze user insights…