drydock by zuBux

drydock provides a flexible way of assessing the security of your Docker daemon configuration and containers using editable audit templates

updated at March 12, 2023, 10:06 a.m.

Python

8 +0

63 +0

9 +0

GitHub
pyspaces by Friz-zy

Works with Linux namespaces througth glibc with pure python

updated at July 7, 2023, 2:15 p.m.

Python

7 +0

87 +0

12 +0

GitHub
python-nsenter by zalando

Enter kernel namespaces from Python

updated at Jan. 8, 2024, 6:38 a.m.

Python

44 +0

138 +0

21 +0

GitHub
container-compliance by OpenSCAP

Assessing compliance of a container

updated at Jan. 13, 2024, 11:53 p.m.

Shell

37 +0

239 +0

42 +0

GitHub
dgr by blablacar

Container build and runtime tool

updated at Feb. 7, 2024, 6:12 p.m.

Go

62 +0

247 +0

21 +0

GitHub
sysdig-container-ecosystem by draios

The Container Ecosystem Project

updated at March 15, 2024, 12:01 p.m.

Unknown languages

32 +0

108 +0

22 +0

GitHub
subuser by subuser-security

Run programs on linux with selectively restricted permissions.

updated at April 14, 2024, 2:26 p.m.

Python

26 +0

885 +0

65 +0

GitHub
runv by hyperhq

Hypervisor-based Runtime for OCI

updated at April 18, 2024, 1:10 p.m.

Go

43 +0

825 +0

129 +0

GitHub
footloose by weaveworks

Container Machines - Containers that look like Virtual Machines

updated at April 19, 2024, 10:16 a.m.

Go

67 +0

1,587 +0

123 +0

GitHub
libct by xemul

Linux containers control plane

updated at April 20, 2024, 11:25 a.m.

C

17 +0

105 +0

25 +0

GitHub
multidocker by marty90

Creates a system where users are forced to login in dedicated independent docker containers.

updated at May 3, 2024, 9:15 a.m.

Dockerfile

4 +0

51 +0

9 +0

GitHub
oci-seccomp-bpf-hook by containers

OCI hook to trace syscalls and generate a seccomp profile

updated at May 8, 2024, 8:10 a.m.

Go

14 +0

287 +0

34 +0

GitHub
lmctfy by google

lmctfy is the open source version of Google’s container stack, which provides Linux application containers.

updated at May 10, 2024, 10:10 a.m.

C++

250 +0

3,413 +0

237 +0

GitHub
cc-oci-runtime by intel

OCI (Open Containers Initiative) compatible runtime for Intel® Architecture

updated at May 10, 2024, 7:16 p.m.

C

44 +0

415 +0

59 +0

GitHub
railcar by oracle

RailCar: Rust implementation of the Open Containers Initiative oci-runtime

updated at May 10, 2024, 10:33 p.m.

Rust

52 +0

1,113 +0

102 +0

GitHub
Whaler by P3GLEG

Program to reverse Docker images into Dockerfiles

updated at May 12, 2024, 5:44 a.m.

Go

24 +0

1,028 +1

92 +0

GitHub
bane by genuinetools

Custom & better AppArmor profile generator for Docker containers.

updated at May 13, 2024, 6:25 a.m.

Go

34 +0

1,149 +2

85 +0

GitHub
lxroot by parke

A lightweight, flexible, and safer alternative to chroot and/or Docker.

updated at May 13, 2024, 7:43 a.m.

C++

8 +0

96 -1

9 +0

GitHub
warden by cloudfoundry-attic

Cloud Foundry - the open platform as a service project

updated at May 13, 2024, 6:13 p.m.

Ruby

119 +0

282 -1

110 +0

GitHub
vagga by tailhook

Vagga is a containerization tool without daemons

updated at May 15, 2024, 5:24 a.m.

Rust

49 +0

1,854 +1

96 +0

GitHub