Kubernetes operators can require high level access to the cluster. Badrobot therefore looks like a handy tool. It statically analyses manifests for high risk configurations such as lack of security restrictions on the deployed controller and the permissions of an associated clusterole.
https://github.com/controlplaneio/badrobot
https://github.com/controlplaneio/badrobot
GitHub
GitHub - controlplaneio/badrobot: BadRobot - Operator Security Audit Tool
BadRobot - Operator Security Audit Tool. Contribute to controlplaneio/badrobot development by creating an account on GitHub.
Kiota is a command line tool for generating an API client to call any OpenAPI described API you are interested in. The goal is to eliminate the need to take a dependency on a different API SDK for every API that you need to call
https://microsoft.github.io/kiota
https://github.com/microsoft/kiota
https://microsoft.github.io/kiota
https://github.com/microsoft/kiota
kiota
Welcome to Kiota
OpenAPI based HTTP Client code generator
👍1
Metlo is an open source API security platform. Endpoint discovery, detecting common HTTP issues (HSTS headers, PII in urls, etc.) and set up to run in CI if needed.
https://github.com/metlo-labs/metlo
https://github.com/metlo-labs/metlo
GitHub
GitHub - metlo-labs/metlo: Metlo is an open-source API security platform.
Metlo is an open-source API security platform. Contribute to metlo-labs/metlo development by creating an account on GitHub.
👍1
Paralus is an all-in-one Kubernetes access manager. User-level credentials, RBAC, SSO, audit logs. It enables controlled, audited access to Kubernetes infrastructure for your users, user groups, and services.
https://github.com/paralus/paralus
https://github.com/paralus/paralus
GitHub
GitHub - paralus/paralus: All-in-one Kubernetes access manager. User-level credentials, RBAC, SSO, audit logs.
All-in-one Kubernetes access manager. User-level credentials, RBAC, SSO, audit logs. - paralus/paralus
👍4
Murre is an on-demand, scaleable source of container resource metrics for Kubernetes. It fetches CPU & memory resource metrics directly from the kubelet and enriches the resources with the relevant Kubernetes requests and limits from each PodSpec.
https://github.com/groundcover-com/murre
https://github.com/groundcover-com/murre
GitHub
GitHub - groundcover-com/murre: Murre is an on-demand, scaleable source of container resource metrics for K8s.
Murre is an on-demand, scaleable source of container resource metrics for K8s. - groundcover-com/murre