Sign inSign up
91 - 115 of 115 available results.
HARDENED IMAGE

A Prometheus exporter that publishes certificate expirations from disk and Kubernetes secrets

10h

50K+

HARDENED IMAGE

Kubernetes CSI driver that injects the SPIFFE Workload API socket into workload pods as an ephemeral inline volume.

10h

50K+

HELM CHART

Helm chart for the Tailscale Kubernetes Operator, which manages Tailscale resources including ingress, egress, subnet routers, and proxies within a cluster.

9h

50K+

HARDENED IMAGE

Handshake service for kernel TLS consumers

10h

50K+

HARDENED IMAGE

CSI node driver registrar repackaged by Calico to register the Calico CSI driver with the kubelet.

10h

50K+

HELM CHART

Apache APISIX is a dynamic, real-time, high-performance API Gateway.

3h

10K+

HARDENED IMAGE

Kubeseal is the client side tool for Sealed Secrets to encrypt secrets.

3h

10K+

HARDENED IMAGE

Pinniped CLI is a command-line utility for interacting with Pinniped

10h

10K+

HARDENED IMAGE

Socket CLI scans npm, pnpm, and yarn projects for supply-chain security risks -- malicious packages, typosquats, and known vulnerabilities -- from the command line and CI pipelines.

10h

10K+

3

HARDENED IMAGE

Find and fix vulnerabilities in code, dependencies, containers, and infrastructure as code

10h

10K+

HARDENED IMAGE

Calico FlexVolume driver installer for secure connections from Kubernetes pods to local daemons.

10h

10K+

HARDENED IMAGE

Manages Tailscale resources on a Kubernetes cluster, including exposing Services on a tailnet and running Tailscale subnet routers, exit nodes, and proxies.

10h

10K+

HELM CHART

Harbor - An open source trusted cloud native registry that stores, signs, and scans content

9h

10K+

HARDENED IMAGE

A Model Context Protocol server that connects AI assistants and LLM-powered IDEs to the StackHawk application security testing platform.

10h

10K+

HARDENED IMAGE

Envoy external authorization service that moves OIDC/OAuth2 token acquisition out of application code and into the Istio mesh

10h

10K+

HARDENED IMAGE

A Model Context Protocol server that connects AI assistants and LLM-powered IDEs to the Zscaler Zero Trust Exchange platform.

9h

10K+

HARDENED IMAGE

Falco is a CNCF-graduated cloud-native runtime security tool that uses a modern eBPF probe to monitor syscalls and detect anomalous application and container behavior in real time.

10h

10K+

HARDENED IMAGE

The Amazon EKS Pod Identity Webhook is a Kubernetes mutating admission webhook that injects AWS IAM Roles for Service Accounts (IRSA) credentials into pods, letting workloads assume an IAM role via a projected service account token instead of long-lived credentials.

4h

10K+

HARDENED IMAGE

stunnel is a TLS proxy that adds SSL/TLS encryption to TCP services with no native TLS support, forwarding plaintext traffic between clients and backends without modifying the underlying application.

10h

10K+

HELM CHART

Kubernetes Pod Security Standards implemented as Kyverno policies.

9h

10K+

HARDENED IMAGE

The AWS provider for the Secrets Store CSI Driver fetches secrets from AWS Secrets Manager and AWS Systems Manager Parameter Store and mounts them into Kubernetes pods as files, supporting both IRSA and EKS Pod Identity authentication.

3h

10K+

HARDENED IMAGE

OPA REST server that enforces Rego migration policies for the Forklift VM migration operator.

3h

10K+

HARDENED IMAGE

Kubernetes controller that watches Ory Oathkeeper Rule custom resources and renders them into the access rules ConfigMap or file that Ory Oathkeeper consumes.

3h

9.0K

HELM CHART

trust-manager manages TLS trust bundles in Kubernetes and OpenShift clusters.

9h

5.1K

HARDENED IMAGE

Packages the Secrets Store CSI Driver CustomResourceDefinitions together with kubectl, so a cluster can register SecretProviderClass and SecretProviderClassPodStatus before the driver itself is deployed.

3h

1.8K