Skip to content
OpenCatalogcurated by FLOSSK

Browse & filter

Filter by platform, license text, maturity, maintenance cadence, and editorial tags like privacy-focused or self-hosted. Search matches names, summaries, tags, and use cases.

20 tools match your filters

S3-compatible object storage for cloud-native and on-prem data lakes.

object-storages3kubernetesself-hosted

Cloud-native reverse proxy with automatic service discovery and Let’s Encrypt integration.

proxykubernetesdockertls

Cloud-native runtime security for Linux/Kubernetes: syscall and K8s audit rules with Falcoctl and ecosystem outputs.

kubernetesruntimecontainerscncfdetection

CIS Kubernetes benchmark checker: run checks against nodes, control plane, etcd, and policies with readable reports.

kubernetesciscompliancehardening

Penetration testing tool for Kubernetes clusters: active hunting modules for API exposure, services, and misconfigs.

kubernetespentestpurple-teamassessment

IaC scanner detecting security issues across Terraform, Kubernetes, Helm, Docker, and cloud APIs via OPA/Rego policies.

iacregopolicykubernetesdevsecops

General-purpose policy engine with Rego: unify authorization and config decisions across K8s, APIs, Terraform plans, and CI.

policyregokubernetesauthorizationcncf

Kubernetes-native policy engine using YAML (no Rego) for validate, mutate, generate, and image verification rules.

kubernetespolicyadmissioncncfdevsecops

Kubernetes security scanner for misconfigurations, RBAC, compliance frameworks (NSA/CIS), and image vulnerabilities.

kubernetescompliancedevsecopsscannercncf

CNCF eBPF-based observability for Kubernetes: gadgets for tracing DNS, TCP, exec, and security events from kubectl.

kubernetesebpfobservabilitycncfdebugging

CLI to audit Kubernetes manifests and clusters for security misconfigurations (capabilities, read-only root, privileged, etc.).

kubernetesmanifestsdevsecopsaudit

eBPF-based security observability and runtime enforcement: process/exec monitoring, network hooks, and kill primitives integrated with Cilium.

ebpfkubernetesruntime-securityciliumdetection

Kubernetes-native toolkit for ML: notebooks, training jobs, pipelines, tuning, and serving components you compose on-cluster.

mlopskubernetespipelinesplatform

Kubernetes serverless layer exposing instant APIs on databases.

kubernetesserverlessgraphql