Change the repository type filter
All
Repositories list
96 repositories
kubecon-24-eu-kubewarden
Publicpolicy-server
PublicWebhook server that evaluates WebAssembly policies to validate Kubernetes requestspolicy-sdk-go
PublicKubewarden Policy SDK for the Go programming languagekwctl
PublicGo-to CLI tool for Kubewarden userspod-privileged-policy
PublicA Kubewarden Policy that limits the ability to create privileged containershelm-charts
PublicHelm charts for the Kubewarden projectpod-ndots-policy
PublicPolicy that enforces the usage of ndots in the pod's DNS configuration- Replacement for the Kubernetes Pod Security Policy that controls the usage of /proc mount types
- A Kubewarden Pod Security Policy that controls usage of allowPrivilegeEscalation
- Kubewarden policy that ensures that namespaces have the required PSA labels
- GitHub actions used by the Kubewarden project
echo
PublicA Kubewarden Policy that echoes Kubernetes' AdmissionReview objectsvolumeMounts-policy
PublicA Kubewarden Policy that controls the usage of `volumeMounts`context-aware-demo
PublicA demo policy showing how to access Kubernetes resources at policy evaluation time- Replacement for the Kubernetes Pod Security Policy that controls the usage of host namespaces
ingress-policy
PublicPolicy to enforce requirements on Kubernetes Ingress resources.fleet-example
PublicExample of Rancher Fleet bundle for Kubewarden- A policy that prevents the creation of Service resources with type NodePort
opa-policy-template
Public templateA template repository to quickly port a Open Policy Agent policy to Kubewarden- Kubewarden policy designed to automatically propagate labels defined in a Kubernetes namespace to the associated resources within that namespace
verify-image-signatures
PublicA Kubewarden Policy that verifies all the signatures of the container images referenced by a Podselinux-psp-policy
PublicReplacement for the Kubernetes Pod Security Policy that controls the usage of SELinuxsysctl-psp-policy
PublicA Kubewarden policy that controls usage of sysctlsimage-cve-policy
PublicPolicy that validates workloads based on the vulnerability of the images they make use ofsafe-annotations-policy
PublicKubewarden policy that validates Kubernetes' resource annotations- Demo policy showing how to write a raw OPA validating policy
- Replacement for the Kubernetes Pod Security Policy that controls the usage of fsGroup in the pod security context
- Prevent the creation of Namespace under a Rancher Project that doesn't have any resource quota left
- Policy validates that there are no services with the same set of selectors
- Policy validates pods sharing processes PID namespace