(2)
Mounts secrets, keys, and certificates from external stores (AWS Secrets Manager, Azure Key Vault, GCP Secret Manager, HashiCorp Vault) into Kubernetes pods as files via the CSI volume API.
2h
10K+
Pinniped CLI is a command-line utility for interacting with Pinniped
9h
10K+
Helm chart for the Tailscale Kubernetes Operator, which manages Tailscale resources including ingress, egress, subnet routers, and proxies within a cluster.
2h
10K+
Backend API service for the Calico Whisker network flow visualization UI.
3h
10K+
An open-source Helm Chart Repository server with support for cloud and local storage backends.
3h
10K+
Calico FlexVolume driver installer for secure connections from Kubernetes pods to local daemons.
3h
10K+
CSI node driver registrar repackaged by Calico to register the Calico CSI driver with the kubelet.
3h
10K+
A Prometheus exporter that publishes certificate expirations from disk and Kubernetes secrets
3h
10K+
Harbor - An open source trusted cloud native registry that stores, signs, and scans content
2h
10K+
Manages Tailscale resources on a Kubernetes cluster, including exposing Services on a tailnet and running Tailscale subnet routers, exit nodes, and proxies.
8h
10K+
A Model Context Protocol server that connects AI assistants and LLM-powered IDEs to the StackHawk application security testing platform.
2h
10K+
Find and fix vulnerabilities in code, dependencies, containers, and infrastructure as code
9h
10K+
A Model Context Protocol server that connects AI assistants and LLM-powered IDEs to the Zscaler Zero Trust Exchange platform.
2h
10K+
The Amazon EKS Pod Identity Webhook is a Kubernetes mutating admission webhook that injects AWS IAM Roles for Service Accounts (IRSA) credentials into pods, letting workloads assume an IAM role via a projected service account token instead of long-lived credentials.
3h
10K+
stunnel is a TLS proxy that adds SSL/TLS encryption to TCP services with no native TLS support, forwarding plaintext traffic between clients and backends without modifying the underlying application.
2h
9.0K
Kubernetes Pod Security Standards implemented as Kyverno policies.
8h
8.9K
Falco is a CNCF-graduated cloud-native runtime security tool that uses a modern eBPF probe to monitor syscalls and detect anomalous application and container behavior in real time.
9h
3.6K