udocker by indigo-dc

A basic user tool to execute simple docker containers in batch or interactive systems without root privileges.

created at April 28, 2016, 3:40 p.m.

Python

34 +0

1,223 +2

128 -1

GitHub
vagga by tailhook

Vagga is a containerization tool without daemons

created at Aug. 5, 2014, 9:43 p.m.

Rust

49 +0

1,852 +0

96 +0

GitHub
img by genuinetools

Standalone, daemon-less, unprivileged Dockerfile and OCI compatible container image builder.

created at Dec. 8, 2017, 6:17 p.m.

Go

52 +0

3,861 +1

229 +0

GitHub
container-diff by GoogleContainerTools

container-diff: Diff your Docker containers

created at Aug. 7, 2017, 7:29 p.m.

Go

64 +0

3,737 -1

231 +0

GitHub
portainer by portainer

Making Docker and Kubernetes management easy.

created at May 19, 2016, 8:15 p.m.

TypeScript

473 -1

28,962 +89

2,349 +3

GitHub
multidocker by marty90

Creates a system where users are forced to login in dedicated independent docker containers.

created at June 24, 2017, 3:07 p.m.

Dockerfile

4 +0

51 +1

9 +0

GitHub
docker-bench-security by docker

The Docker Bench for Security is a script that checks for dozens of common best-practices around deploying Docker containers in production.

created at May 11, 2015, 12:57 a.m.

Shell

237 +0

8,917 +13

994 +1

GitHub
bane by genuinetools

Custom & better AppArmor profile generator for Docker containers.

created at Oct. 8, 2015, 11:45 p.m.

Go

34 +0

1,147 +1

84 +0

GitHub
swarmpit by swarmpit

Lightweight mobile-friendly Docker Swarm management UI

created at Feb. 6, 2017, 9:46 a.m.

Clojure

67 +1

2,941 +12

275 -1

GitHub
moby by moby

The Moby Project - a collaborative project for the container ecosystem to assemble container-based systems

created at Jan. 18, 2013, 6:10 p.m.

Go

2,910 +1

67,781 +57

18,535 +3

GitHub
rkt by rkt

[Project ended] rkt is a pod-native container engine for Linux. It is composable, secure, and built on standards.

created at Nov. 11, 2014, 11:13 p.m.

Go

422 +0

8,823 -3

886 +0

GitHub
sysdig-container-ecosystem by draios

The Container Ecosystem Project

created at Oct. 21, 2015, 2:36 a.m.

Unknown languages

32 +0

108 +0

22 +0

GitHub
sockguard by buildkite

A proxy for docker.sock that enforces access control and isolated privileges

created at Dec. 2, 2017, 8:12 a.m.

Go

21 +0

143 +0

22 +0

GitHub
drydock by zuBux

drydock provides a flexible way of assessing the security of your Docker daemon configuration and containers using editable audit templates

created at Oct. 23, 2015, 2:57 p.m.

Python

8 +0

63 +0

9 +0

GitHub
container-compliance by OpenSCAP

Assessing compliance of a container

created at March 3, 2015, 6:51 p.m.

Shell

37 +0

239 +0

42 +0

GitHub
pyspaces by Friz-zy

Works with Linux namespaces througth glibc with pure python

created at April 12, 2015, 8:59 a.m.

Python

7 +0

87 +0

12 +0

GitHub
python-nsenter by zalando

Enter kernel namespaces from Python

created at Sept. 15, 2014, 11:35 a.m.

Python

44 +0

138 +0

21 +0

GitHub
subuser by subuser-security

Run programs on linux with selectively restricted permissions.

created at Feb. 9, 2014, 11:17 p.m.

Python

27 +0

885 +0

65 +0

GitHub
nsjail by google

A lightweight process isolation tool that utilizes Linux namespaces, cgroups, rlimits and seccomp-bpf syscall filters, leveraging the Kafel BPF language for enhanced security.

created at May 14, 2015, 9:42 p.m.

C++

91 +0

2,793 +10

264 +0

GitHub
bocker by p8952

Docker implemented in around 100 lines of bash

created at July 14, 2015, 10:33 p.m.

Shell

273 -2

11,129 +3

709 +0

GitHub