Git Product home page Git Product logo

branevukmirovic / kubescape Goto Github PK

View Code? Open in Web Editor NEW

This project forked from kubescape/kubescape

1.0 0.0 0.0 100.86 MB

Kubescape is a K8s open-source tool providing a multi-cloud K8s single pane of glass, including risk analysis, security compliance, RBAC visualizer and image vulnerabilities scanning.

License: Apache License 2.0

Shell 0.18% Python 1.20% Go 98.09% PowerShell 0.17% Makefile 0.08% HTML 0.02% Batchfile 0.14% Dockerfile 0.13%

kubescape's Introduction

Version build Go Report Card Gitpod Ready-to-Code GitHub CNCF Twitter Follow

Kubescape

Kubescape logo

An open-source Kubernetes security platform for your IDE, CI/CD pipelines, and clusters

Kubescape is an open-source Kubernetes security platform. It includes risk analysis, security compliance, and misconfiguration scanning. Targeted at the DevSecOps practitioner or platform engineer, it offers an easy-to-use CLI interface, flexible output formats, and automated scanning capabilities. It saves Kubernetes users and admins precious time, effort, and resources.

Kubescape scans clusters, YAML files, and Helm charts. It detects misconfigurations according to multiple frameworks (including NSA-CISA, MITRE ATT&CK® and the CIS Benchmark).

Kubescape was created by ARMO and is a Cloud Native Computing Foundation (CNCF) sandbox project.

Demo

Please star ⭐ the repo if you want us to continue developing and improving Kubescape! 😀

Getting started

Experimenting with Kubescape is as easy as:

curl -s https://raw.githubusercontent.com/kubescape/kubescape/master/install.sh | /bin/bash

Learn more about:

Did you know you can use Kubescape in all these places?

Places you can use Kubescape: in your IDE, CI, CD, or against a running cluster.

Under the hood

Kubescape uses Open Policy Agent to verify Kubernetes objects against a library of posture controls.

By default, the results are printed in a console-friendly manner, but they can be:

  • exported to JSON or junit XML
  • rendered to HTML or PDF
  • submitted to a cloud service

It retrieves Kubernetes objects from the API server and runs a set of Rego snippets developed by ARMO.

Community

Kubescape is an open source project, we welcome your feedback and ideas for improvement. We are part of the Kubernetes community and are building more tests and controls as the ecosystem develops.

We hold community meetings on Zoom, on the first Tuesday of every month, at 14:00 GMT.

The Kubescape project follows the CNCF Code of Conduct.

Contributions

Thanks to all our contributors! Check out our CONTRIBUTING file to learn how to join them.


License

Copyright 2021-2023, the Kubescape Authors. All rights reserved. Kubescape is released under the Apache 2.0 license. See the LICENSE file for details.

Kubescape is a Cloud Native Computing Foundation (CNCF) sandbox project and was contributed by ARMO.

CNCF Sandbox Project

kubescape's People

Contributors

alegrey91 avatar amirmalka avatar anubhav06 avatar asim-bhatta avatar avinashupadhya99 avatar avineshtripathi avatar avnertzurarmo avatar bezbran avatar craigbox avatar daniel-grunbergerca avatar darkweaver87 avatar dwertent avatar fredbi avatar itscheithanya avatar kamalbuilds avatar kooomix avatar lioralafiarmo avatar matthyx avatar moshe-rappaport-ca avatar mrkrishnaagarwal avatar pwnb0y avatar rcohencyberarmor avatar rotemamsa avatar saptarshisarkar12 avatar shm12 avatar slashben avatar suhasgumma avatar vladklokun avatar xdavidel avatar yiscahlevysilas1 avatar

Stargazers

 avatar

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.