Change the repository type filter
All
Repositories list
108 repositories
kwctl
PublicGo-to CLI tool for Kubewarden userssbomscanner
Publiccapabilities-psp-policy
PublicA Pod Security Policy that controls Container Capabilities- Replacement for the Kubernetes Pod Security Policy that controls the usage of host namespaces
apparmor-psp-policy
PublicA Kubewarden Pod Security Policy that controls usage of AppArmor profiles- A Kubewarden Policy that controls the usage of Pod runtimeClass
context-aware-demo
PublicA demo policy showing how to access Kubernetes resources at policy evaluation time- Policy validates that there are no services with the same set of selectors
labels-policy
PublicValidates labelsvolumeMounts-policy
PublicA Kubewarden Policy that controls the usage of `volumeMounts`- A policy that detects webhook services used by admission controller that are accidentally exposed outside of the cluster
user-group-psp-policy
PublicThis Kubewarden Policy is a replacement for the Kubernetes Pod Security Policy that controls containers user and groups- A Kubewarden Policy that detects secrets (ssh private keys, API tokens, etc) leaked via environment variables
- A Kubewarden Pod Security Policy that controls usage of allowPrivilegeEscalation
raw-validation-policy
PublicDemo policy showing how to write a raw validating policy- A Kubewarden Policy that detects usage of deprecated and dropped Kubernetes resources
- Replacement for the Kubernetes Pod Security Policy that controls the allowed `flexVolume` drivers
selinux-psp-policy
PublicReplacement for the Kubernetes Pod Security Policy that controls the usage of SELinuxpod-ndots-policy
PublicPolicy that enforces the usage of ndots in the pod's DNS configuration- Policy that validates and adjusts the usage of StorageClasses in PersistentVolumeClaims
priority-class-policy
PublicValidates Pod's priority class- Replacement for the Kubernetes Pod Security Policy that controls the usage of fsGroup in the pod security context
pod-privileged-policy
PublicA Kubewarden Policy that limits the ability to create privileged containerssleeping-policy
PublicA test policy that simulates long running policy evaluationspolicy-server
PublicWebhook server that evaluates WebAssembly policies to validate Kubernetes requests- A Kubewarden Policy that controls the usage of environment variables
verify-image-signatures
PublicA Kubewarden Policy that verifies all the signatures of the container images referenced by a Pod