udocker by indigo-dc

A basic user tool to execute simple docker containers in batch or interactive systems without root privileges.

created at April 28, 2016, 3:40 p.m.

Python

34 +0

1,371 +8

133 +0

GitHub
vagga by tailhook

Vagga is a containerization tool without daemons

created at Aug. 5, 2014, 9:43 p.m.

Rust

48 +0

1,864 +0

96 +0

GitHub
img by genuinetools

Standalone, daemon-less, unprivileged Dockerfile and OCI compatible container image builder.

created at Dec. 8, 2017, 6:17 p.m.

Go

51 +0

3,908 +1

231 +0

GitHub
container-diff by GoogleContainerTools

container-diff: Diff your Docker containers

created at Aug. 7, 2017, 7:29 p.m.

Go

65 +0

3,759 +1

234 +0

GitHub
portainer by portainer

Making Docker and Kubernetes management easy.

created at May 19, 2016, 8:15 p.m.

TypeScript

471 +0

31,062 +71

2,482 +3

GitHub
multidocker by marty90

Creates a system where users are forced to login in dedicated independent docker containers.

created at June 24, 2017, 3:07 p.m.

Dockerfile

4 +0

53 +0

9 +0

GitHub
docker-bench-security by docker

The Docker Bench for Security is a script that checks for dozens of common best-practices around deploying Docker containers in production.

created at May 11, 2015, 12:57 a.m.

Shell

234 +1

9,148 +21

1,017 +1

GitHub
bane by genuinetools

Custom & better AppArmor profile generator for Docker containers.

created at Oct. 8, 2015, 11:45 p.m.

Go

34 +0

1,183 +1

85 +0

GitHub
swarmpit by swarmpit

Lightweight mobile-friendly Docker Swarm management UI

created at Feb. 6, 2017, 9:46 a.m.

Clojure

68 +0

3,114 +8

285 +0

GitHub
moby by moby

The Moby Project - a collaborative project for the container ecosystem to assemble container-based systems

created at Jan. 18, 2013, 6:10 p.m.

Go

2,884 -5

68,759 +42

18,665 -1

GitHub
rkt by rkt

[Project ended] rkt is a pod-native container engine for Linux. It is composable, secure, and built on standards.

created at Nov. 11, 2014, 11:13 p.m.

Go

420 +0

8,822 -1

883 +0

GitHub
sysdig-container-ecosystem by draios

The Container Ecosystem Project

created at Oct. 21, 2015, 2:36 a.m.

Unknown languages

32 +0

112 +0

22 +0

GitHub
sockguard by buildkite

A proxy for docker.sock that enforces access control and isolated privileges

created at Dec. 2, 2017, 8:12 a.m.

Go

23 +0

143 +0

22 +0

GitHub
drydock by zuBux

drydock provides a flexible way of assessing the security of your Docker daemon configuration and containers using editable audit templates

created at Oct. 23, 2015, 2:57 p.m.

Python

8 +0

65 +0

9 +0

GitHub
container-compliance by OpenSCAP

Assessing compliance of a container

created at March 3, 2015, 6:51 p.m.

Shell

37 +0

237 +0

43 +0

GitHub
pyspaces by Friz-zy

Works with Linux namespaces througth glibc with pure python

created at April 12, 2015, 8:59 a.m.

Python

7 +0

88 +0

11 +0

GitHub
python-nsenter by zalando

Enter kernel namespaces from Python

created at Sept. 15, 2014, 11:35 a.m.

Python

44 +0

139 +0

21 +0

GitHub
subuser by subuser-security

Run programs on linux with selectively restricted permissions.

created at Feb. 9, 2014, 11:17 p.m.

Python

26 +0

890 +0

65 +0

GitHub
nsjail by google

A lightweight process isolation tool that utilizes Linux namespaces, cgroups, rlimits and seccomp-bpf syscall filters, leveraging the Kafel BPF language for enhanced security.

created at May 14, 2015, 9:42 p.m.

C++

88 -1

2,979 +9

274 +0

GitHub
bocker by p8952

Docker implemented in around 100 lines of bash

created at July 14, 2015, 10:33 p.m.

Shell

271 +0

11,295 +5

718 +1

GitHub