awesome-repositories.com
ब्लॉग
MCP
awesome-repositories.com

AI-संचालित खोज के साथ बेहतरीन ओपन-सोर्स रिपॉजिटरी खोजें।

एक्सप्लोर करेंक्यूरेटेड खोजेंओपन-सोर्स विकल्पसेल्फ-होस्टेड सॉफ्टवेयरब्लॉगसाइटमैप
प्रोजेक्टMCP सर्वरहमारे बारे मेंहम रैंकिंग कैसे करते हैंप्रेस
कानूनीगोपनीयताशर्तें
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
Back to controlplaneio/kubesec

Open-source alternatives to Kubesec

30 open-source projects similar to controlplaneio/kubesec, ranked by how many features they have in common. Compare stars, activity and what each one does to find the best Kubesec alternative.

  • falcosecurity/falcofalcosecurity का अवतार

    falcosecurity/falco

    8,670GitHub पर देखें↗

    Falco is an eBPF runtime security monitor and cloud native detection engine that identifies abnormal behavior and security threats across hosts and containers. It functions as a Linux kernel event auditor, capturing system calls and kernel events in real-time to detect malicious activity. The system distinguishes itself through a rule-based threat detection model that evaluates system activity against a library of community-maintained rules and custom security definitions. It enriches raw kernel events with container and Kubernetes metadata to provide observability into isolated environments

    C++cloud-nativecncfcncf-project
    GitHub पर देखें↗8,670
  • cyberark/kubiscancyberark का अवतार

    cyberark/KubiScan

    1,428GitHub पर देखें↗

    A tool to scan Kubernetes cluster for risky permissions

    Python
    GitHub पर देखें↗1,428
  • open-policy-agent/gatekeeperopen-policy-agent का अवतार

    open-policy-agent/gatekeeper

    4,228GitHub पर देखें↗

    Gatekeeper is a Kubernetes admission control and policy enforcement engine used to ensure cluster resources comply with organizational security and configuration standards. It intercepts API requests to validate or reject non-compliant resources before they are persisted in the cluster. The project uses a parameterized policy library and custom resource definitions to create reusable templates and enforcement rules. It distinguishes itself through a hub-and-spoke management model, allowing a controller in a management cluster to enforce policies across separate target clusters. Beyond admiss

    Go
    GitHub पर देखें↗4,228
  • stackrox/kube-linterstackrox का अवतार

    stackrox/kube-linter

    3,471GitHub पर देखें↗

    KubeLinter is a static analysis tool that checks Kubernetes YAML files and Helm charts to ensure the applications represented in them adhere to best practices.

    Go
    GitHub पर देखें↗3,471

AI सर्च

और अधिक बेहतरीन रिपॉजिटरी खोजें

अपनी ज़रूरत को सरल भाषा में बताएं — AI हजारों क्यूरेटेड ओपन-सोर्स प्रोजेक्ट्स को प्रासंगिकता के आधार पर रैंक करता है।

Find more with AI search
  • aquasecurity/kube-benchaquasecurity का अवतार

    aquasecurity/kube-bench

    8,078GitHub पर देखें↗

    kube-bench is a Kubernetes security benchmark scanner and configuration auditor. It verifies if a cluster adheres to the Center for Internet Security standards and other hardening guides to identify security misconfigurations and vulnerabilities. The tool operates as a containerized security scanner, utilizing host namespaces to analyze nodes and control plane components without requiring the installation of binaries directly on the host. It supports multiple Kubernetes distributions, applying environment-specific benchmarks to ensure auditing accuracy for managed services. The project cover

    Go
    GitHub पर देखें↗8,078
  • armosec/kubescapearmosec का अवतार

    armosec/kubescape

    11,482GitHub पर देखें↗

    Kubescape is a security platform for Kubernetes that provides tools for scanning clusters, configurations, and container images against industry compliance and security benchmarks. It functions as a suite of security utilities, including a compliance auditor, a misconfiguration scanner, and a container vulnerability scanner. The project differentiates itself through automated remediation and active enforcement. It can automatically patch operating system vulnerabilities in images and fix security errors within manifest files. It also utilizes an admission controller to block the deployment of

    Go
    GitHub पर देखें↗11,482
  • aquasecurity/trivyaquasecurity का अवतार

    aquasecurity/trivy

    36,462GitHub पर देखें↗

    Trivy is a comprehensive security scanner designed to identify vulnerabilities and misconfigurations across container images, filesystems, and infrastructure as code files. It functions as a software composition analysis tool and an infrastructure security scanner, providing automated checks for CI/CD pipelines and cloud environments to ensure the integrity of the software supply chain. The tool distinguishes itself through a modular, plugin-based architecture that allows for the independent inspection of diverse targets. It utilizes a declarative policy engine to evaluate configurations agai

    Gocontainersdevsecopsdocker
    GitHub पर देखें↗36,462
  • appvia/kraneappvia का अवतार

    appvia/krane

    740GitHub पर देखें↗

    Kubernetes RBAC static analysis & visualisation tool

    Ruby
    GitHub पर देखें↗740
  • kinvolk/inspektor-gadgetkinvolk का अवतार

    kinvolk/inspektor-gadget

    2,859GitHub पर देखें↗

    Inspektor Gadget is a set of tools and framework for data collection and system inspection on Kubernetes clusters and Linux hosts using eBPF

    C
    GitHub पर देखें↗2,859
  • snyk-labs/helm-snyksnyk-labs का अवतार

    snyk-labs/helm-snyk

    43GitHub पर देखें↗

    Check images in your charts for vulnerabilities

    TypeScript
    GitHub पर देखें↗43
  • shopify/kubeauditShopify का अवतार

    Shopify/kubeaudit

    1,937GitHub पर देखें↗

    kubeaudit helps you audit your Kubernetes clusters against common security controls

    Go
    GitHub पर देखें↗1,937
  • kubestellar/consolekubestellar का अवतार

    kubestellar/console

    115GitHub पर देखें↗

    World's first fully integrated and fully Automated Kubernetes management and orchestration solution

    TypeScript
    GitHub पर देखें↗115
  • external-secrets/external-secretsexternal-secrets का अवतार

    external-secrets/external-secrets

    6,697GitHub पर देखें↗

    External Secrets Operator reads information from a third-party service like AWS Secrets Manager and automatically injects the values as Kubernetes Secrets.

    Goexternal-secretshacktoberfestkubernetes
    GitHub पर देखें↗6,697
  • corneliusweig/rakkesscorneliusweig का अवतार

    corneliusweig/rakkess

    1,400GitHub पर देखें↗

    Review Access - kubectl plugin to show an access matrix for server resources

    Go
    GitHub पर देखें↗1,400
  • aquasecurity/kube-hunteraquasecurity का अवतार

    aquasecurity/kube-hunter

    5,064GitHub पर देखें↗

    Kube-hunter is a security scanner and vulnerability hunter for Kubernetes clusters. It operates as a cloud-native penetration tool designed to identify security weaknesses, infrastructure misconfigurations, and exploitable gaps by simulating attacker techniques. The tool distinguishes itself through a dual-mode scanning engine that executes both remote external probes and internal network scans. It features identity-based impersonation, allowing it to use service account tokens and pod identities to simulate security access from specific cluster roles and determine the potential blast radius

    Python
    GitHub पर देखें↗5,064
  • dormstern/segspecdormstern का अवतार

    dormstern/segspec

    15GitHub पर देखें↗

    Static analysis from configs → Kubernetes NetworkPolicies in seconds

    Go
    GitHub पर देखें↗15
  • deepfence/threatmapperdeepfence का अवतार

    deepfence/ThreatMapper

    5,282GitHub पर देखें↗

    ThreatMapper is a cloud native application protection platform and infrastructure security scanner. It functions as a vulnerability management system and cloud workload telemetry collector designed to monitor workloads and detect security risks across cloud and container environments. The platform distinguishes itself through a network traffic visualizer that uses machine learning to classify communication patterns and a graph-based attack mapping system to identify high-risk paths between vulnerabilities and network dependencies. Its broader capabilities cover cloud infrastructure complianc

    TypeScriptcloud-nativecloudsecuritycnapp
    GitHub पर देखें↗5,282
  • madhuakula/kubernetes-goatmadhuakula का अवतार

    madhuakula/kubernetes-goat

    5,686GitHub पर देखें↗

    Kubernetes Goat is a security training environment designed for practicing the identification and exploitation of common vulnerabilities within an intentionally insecure cluster. It provides a controlled setting to simulate system exploitations, including container escapes, role misconfigurations, and server-side requests. The project utilizes scenario-based vulnerability deployment to create specific security flaws. It includes utilities for environment management that allow the cluster to be restored to a clean baseline by removing vulnerable scenarios, service accounts, and role bindings.

    HTML
    GitHub पर देखें↗5,686
  • freelensapp/freelensfreelensapp का अवतार

    freelensapp/freelens

    5,185GitHub पर देखें↗

    Freelens is a graphical web dashboard for Kubernetes cluster administration and monitoring. It provides a centralized interface for managing container orchestration environments, featuring a log aggregator for simultaneous multi-pod log viewing, a resource visualizer for mapping system dependencies via force-directed graphs, and a security auditor for reviewing vulnerability reports and certificate expiration dates. The project integrates a generative artificial intelligence operator to automate complex administrative tasks and translate requests into cluster configurations. It further distin

    TypeScriptcloud-nativecontainersdevops
    GitHub पर देखें↗5,185
  • controlplaneio/badrobotcontrolplaneio का अवतार

    controlplaneio/badrobot

    229GitHub पर देखें↗

    BadRobot - Operator Security Audit Tool

    Go
    GitHub पर देखें↗229
  • cilium/ciliumcilium का अवतार

    cilium/cilium

    23,806GitHub पर देखें↗

    Cilium is a networking, security, and observability platform for containerized environments that leverages kernel-level data paths to process traffic. By executing programs directly within the Linux kernel, it provides high-performance packet filtering, routing, and load balancing without the need for traditional user-space proxies or context switching. The platform distinguishes itself through identity-based security enforcement, which filters traffic based on service labels rather than volatile IP addresses. It integrates containerized workloads with external physical or virtual infrastruct

    Gobpfcncfcni
    GitHub पर देखें↗23,806
  • ascit31/dark-moonA

    ASCIT31/Dark-Moon

    0GitHub पर देखें↗
    GitHub पर देखें↗0
  • chan9390/aws-mfa-enforceChan9390 का अवतार

    Chan9390/aws-mfa-enforce

    13GitHub पर देखें↗

    Serverless function to automate enforcement of Multi-Factor Authentication (MFA) to all AWS IAM users with access to AWS Management Console.

    JavaScript
    GitHub पर देखें↗13
  • aquasecurity/trivy-operatoraquasecurity का अवतार

    aquasecurity/trivy-operator

    1,890GitHub पर देखें↗

    Kubernetes-native security toolkit

    Go
    GitHub पर देखें↗1,890
  • cert-manager/trust-managerC

    cert-manager/trust-manager

    0GitHub पर देखें↗
    GitHub पर देखें↗0
  • checkmarx/kicscheckmarx का अवतार

    checkmarx/kics

    2,649GitHub पर देखें↗

    Find security vulnerabilities, compliance issues, and infrastructure misconfigurations early in the development cycle of your infrastructure-as-code with KICS by Checkmarx.

    Open Policy Agent
    GitHub पर देखें↗2,649
  • cedar-policy/cedarcedar-policy का अवतार

    cedar-policy/cedar

    1,316GitHub पर देखें↗
    Rust
    GitHub पर देखें↗1,316
  • clastix/capsuleclastix का अवतार

    clastix/capsule

    2,097GitHub पर देखें↗

    Multi-tenancy and policy-based framework for Kubernetes.

    Go
    GitHub पर देखें↗2,097
  • aquasecurity/trivy-actionaquasecurity का अवतार

    aquasecurity/trivy-action

    1,209GitHub पर देखें↗
    Shelldevsecopsgithub-actionsscanner
    GitHub पर देखें↗1,209
  • anchore/syftanchore का अवतार

    anchore/syft

    8,399GitHub पर देखें↗

    Syft is a software bill of materials generator, container image scanner, and software dependency catalog. It analyzes container images and filesystems to produce comprehensive inventories of installed packages and dependencies in standard formats. Additionally, it serves as a software attestation tool and an SBOM format converter. The project distinguishes itself through the ability to create cryptographically signed attestations for software inventories to ensure provenance and integrity. It also provides the capability to transform software bills of materials between different industry sche

    Gocontainerscyclonedxdocker
    GitHub पर देखें↗8,399