realshuting/kyverno
Kubernetes Native Policy Management
Kubernetes Native Policy Management
Kyverno policies based authorization ❤️
agent-sandbox enables easy management of isolated, stateful, singleton workloads, ideal for use cases like AI agent runtimes.
Powers the Kyverno playground
common package library for kyverno
Kubernetes Pod Security Standards implementation - https://github.com/kubernetes/enhancements/blob/master/keps/sig-auth/2579-psp-replacement/README.md
⚖️Technical Oversight Committee (TOC)
🔐CNCF Security Technical Advisory Group -- secure access, policy control, privacy, auditing, explainability and more!
A place for policy work group related proposals and prototypes.
☁️♮🏛 This repo contains several documents related to the operation of the CNCF. File non-technical issues related to CNCF here.
📜Fork for tracking CNCF projects
demo policies and resources
User docs and sample policies: https://kyverno.io
Alternate reports storage in Kubernetes outside etcd
Provides an API for ACL filtering and requesting of Kubernetes namespaces
Kyverno for any JSON!
Go microservice template for Kubernetes
Kyverno policies for security and best practices
Nirmata Office Hours for Kyverno, and all things Kubernetes Policy and Governance
Kyverno extension service for Notation and the AWS signer