
headscale
An open source, self-hosted implementation of the Tailscale control server

An open source, self-hosted implementation of the Tailscale control server

Declarative policy engine that enables authorization and policy enforcement across services, Kubernetes, Terraform, Docker, and APIs using the Rego…

OpenID Connect (OIDC) identity and OAuth 2.0 provider with pluggable connectors

Real-time cloud-native runtime security agent for Linux that monitors syscalls and container/Kubernetes metadata to detect anomalous behavior and…

Static analysis tool for infrastructure as code that detects cloud misconfigurations, vulnerabilities, and secrets across Terraform, Kubernetes,…

Checks whether Kubernetes is deployed according to security best practices as defined in the CIS Kubernetes Benchmark

Multi-cloud security auditing tool that leverages cloud provider APIs to gather configuration data, assess security posture, and generate HTML…

Analyze AWS environments for security misconfigurations, audit IAM policies, map network topology, and identify unused resources with a comprehensive…

Identity-aware proxy providing secure, just-in-time access to hosts with session controls, dynamic credential management, and OIDC integration.

Declarative DNS management tool with a JavaScript-compatible DSL for automating DNS record changes across 64+ providers, enabling GitOps workflows…

KubeLinter is a static analysis tool that checks Kubernetes YAML files and Helm charts to ensure the applications represented in them adhere to best…

Automating situational awareness for cloud penetration tests.

Workload identity platform that attests running services, issues SPIFFE IDs/SVIDs, and enables mTLS and JWT authentication for Kubernetes,…

A tool to use AWS IAM credentials to authenticate to a Kubernetes cluster

AWS IAM security assessment tool that scans policies for least-privilege violations, identifies data exfiltration, privilege escalation, and…

A powerful testing tool for Kubernetes clusters.

Security auditing tool for AWS environments

A tool for quickly evaluating IAM permissions in AWS.