Ecosyste.ms: Awesome
An open API service indexing awesome lists of open source software.
https://github.com/kyverno/kyverno
Cloud Native Policy Management
https://github.com/kyverno/kyverno
kubernetes policy-management
Last synced: 3 days ago
JSON representation
Cloud Native Policy Management
- Host: GitHub
- URL: https://github.com/kyverno/kyverno
- Owner: kyverno
- License: apache-2.0
- Created: 2019-02-04T16:25:48.000Z (almost 6 years ago)
- Default Branch: main
- Last Pushed: 2024-10-29T08:47:24.000Z (3 months ago)
- Last Synced: 2024-10-29T09:57:44.375Z (3 months ago)
- Topics: kubernetes, policy-management
- Language: Go
- Homepage: https://kyverno.io
- Size: 123 MB
- Stars: 5,676
- Watchers: 46
- Forks: 864
- Open Issues: 294
-
Metadata Files:
- Readme: README.md
- Changelog: CHANGELOG.md
- Contributing: CONTRIBUTING.md
- License: LICENSE
- Code of conduct: CODE_OF_CONDUCT.md
- Codeowners: CODEOWNERS
- Security: SECURITY-INSIGHTS.yml
- Governance: GOVERNANCE.md
- Roadmap: ROADMAP.md
Awesome Lists containing this project
- awesome-policy-as-code - Kyverno - A policy engine designed for Kubernetes. It can validate, mutate, and generate configurations using admission controls and background scans (Tools / Others)
- DevSecOps - https://github.com/kyverno/kyverno - the-badge) | (Policy as code)
- awesome-modern-devops - kyverno - Cloud-Native policy management tool. (Containers)
- awesome-repositories - kyverno/kyverno - Cloud Native Policy Management (Go)
- awesome-starts - kyverno/kyverno - Kubernetes Native Policy Management (Go)
- awesome-eks - Kyverno
- awesome-k8s-resources - Kyverno - Kyverno is a policy engine designed for Kubernetes. It can validate, mutate, and generate configurations using admission controls and background scans. (Tools and Libraries / Security and Compliance)
- awesome-software-supply-chain-security - Kyverno - ![GitHub stars](https://img.shields.io/github/stars/kyverno/kyverno?style=flat-square) - A policy engine designed for Kubernetes. It can validate, mutate, and generate configurations using admission controls and background scans. Kyverno policies are Kubernetes resources and do not require learning a new language. Kyverno is designed to work nicely with tools you already use like kubectl, kustomize, and Git. (Kubernetes Admission Controller)
README
# Kyverno [![Tweet](https://img.shields.io/twitter/url/http/shields.io.svg?style=social)](https://twitter.com/intent/tweet?text=Cloud%20Native%20Policy%20Management.%20No%20new%20language%20required%21&url=https://github.com/kyverno/kyverno/&hashtags=kubernetes,devops)
**Cloud Native Policy Management 🎉**
[![Go Report Card](https://goreportcard.com/badge/github.com/kyverno/kyverno)](https://goreportcard.com/report/github.com/kyverno/kyverno)
![License: Apache-2.0](https://img.shields.io/github/license/kyverno/kyverno?color=blue)
[![GitHub Repo stars](https://img.shields.io/github/stars/kyverno/kyverno)](https://github.com/kyverno/kyverno/stargazers)
[![CII Best Practices](https://bestpractices.coreinfrastructure.org/projects/5327/badge)](https://bestpractices.coreinfrastructure.org/projects/5327)
[![OpenSSF Scorecard](https://api.securityscorecards.dev/projects/github.com/kyverno/kyverno/badge)](https://securityscorecards.dev/viewer/?uri=github.com/kyverno/kyverno)
[![SLSA 3](https://slsa.dev/images/gh-badge-level3.svg)](https://slsa.dev)
[![Artifact HUB](https://img.shields.io/endpoint?url=https://artifacthub.io/badge/repository/kyverno)](https://artifacthub.io/packages/search?repo=kyverno)
[![codecov](https://codecov.io/gh/kyverno/kyverno/branch/main/graph/badge.svg)](https://app.codecov.io/gh/kyverno/kyverno/branch/main)
[![FOSSA Status](https://app.fossa.com/api/projects/git%2Bgithub.com%2Fkyverno%2Fkyverno.svg?type=shield)](https://app.fossa.com/projects/git%2Bgithub.com%2Fkyverno%2Fkyverno?ref=badge_shield)![logo](img/Kyverno_Horizontal.png)
Kyverno is a policy engine designed for cloud native platform engineering teams. It enables security, automation, compliance, and governance using policy-as-code. Kyverno can validate, mutate, generate, and cleanup configurations using Kubernetes admission controls, background scans, and source code respository scans. Kyverno policies can also be used to verify OCI images, for software supply chain security. Kyverno policies can be managed as Kubernetes resources and do not require learning a new language. Kyverno is designed to work nicely with tools you already use like kubectl, kustomize, and Git.## 📙 Documentation
Kyverno installation and reference documents are available at [kyverno.io] (https://kyverno.io).
👉 **[Quick Start](https://kyverno.io/docs/introduction/#quick-start)**
👉 **[Installation](https://kyverno.io/docs/installation/)**
👉 **[Sample Policies](https://kyverno.io/policies/)**
## 🙋♂️ Getting Help
We are here to help!
👉 For feature requests and bugs, file an [issue](https://github.com/kyverno/kyverno/issues).
👉 For discussions or questions, join the [Kyverno Slack channel](https://slack.k8s.io/#kyverno).
👉 For community meeting access, see [mailing list](https://kyverno.io/community/#community-meetings).
👉 To get follow updates ⭐️ [star this repository](https://github.com/kyverno/kyverno/stargazers).
## ➕ Contributing
Thanks for your interest in contributing to Kyverno! Here are some steps to help get you started:
✔ Read and agree to the [Contribution Guidelines](/CONTRIBUTING.md).
✔ Browse through the [GitHub discussions](https://github.com/kyverno/kyverno/discussions).
✔ Read Kyverno design and development details on the [GitHub Wiki](https://github.com/kyverno/kyverno/wiki).
✔ Check out the [good first issues](https://github.com/kyverno/kyverno/labels/good%20first%20issue) list. Add a comment with `/assign` to request assignment of the issue.
✔ Check out the Kyverno [Community page](https://kyverno.io/community/) for other ways to get involved.
## Software Bill of Materials
All Kyverno images include a Software Bill of Materials (SBOM) in [CycloneDX](https://cyclonedx.org/) JSON format. SBOMs for Kyverno images are stored in a separate repository at `ghcr.io/kyverno/sbom`. More information on this is available at [Fetching the SBOM for Kyverno](https://kyverno.io/docs/security/#fetching-the-sbom-for-kyverno).
## Contributors
Kyverno is built and maintained by our growing community of contributors!
Made with [contributors-img](https://contrib.rocks).
## License
Copyright 2024, the Kyverno project. All rights reserved. Kyverno is licensed under the [Apache License 2.0](LICENSE).
Kyverno is a [Cloud Native Computing Foundation (CNCF) Incubating project](https://www.cncf.io/projects/) and was contributed by [Nirmata](https://nirmata.com/?utm_source=github&utm_medium=repository).