The official Helm chart to deploy Apache Airflow, a platform to programmatically author, schedule, and monitor workflows
RBAC Atlas is a curated database of identities and the Role Based Access Control (RBAC) policies associated with them in popular Kubernetes open-source projects. Each entry includes security annotations that highlight granted permissions, potential risks, and possible abuse scenarios.
Why is RBAC important? RBAC is the final layer of defense in Kubernetes security. If workloads are compromised and an identity is stolen, a misconfigured or overly permissive RBAC policy (common with Operators) can enable attackers to move laterally within your cluster, potentially leading to a complete Kubernetes cluster takeover.
RBAC Atlas is a collaborative project created by Lenin Alevski, and contributions of additional RBAC rules are welcome. Check out the source on GitHub: rbac-scope (the CLI tool) and rbac-atlas (this website).
🚀 Top Risks
📦 Top Categories
monitoring operator prometheus kubernetes metric database cluster alerting gitops argoproj kube-prometheus observability argocd storage sql gitlab metrics security timeseries ci See All →
📜 All Projects
airflow-operator
v0.3.0The Kubedoop operator for Apache airflow
ais-operator
v2.13.0A Helm chart for Kubernetes
alertmanager
v1.32.0The Alertmanager handles alerts sent by client applications such as the Prometheus server.
Helm chart to deploy altinity-clickhouse-operator. The ClickHouse Operator creates, configures and manages ClickHouse clusters running on Kubernetes.
apm-server
v8.5.1Official Elastic helm chart for Elastic APM Server
appmesh-prometheus
v1.0.3App Mesh Prometheus Helm chart for Kubernetes
appmesh-spire-agent
v1.0.7SPIRE Agent Helm chart for AppMesh mTLS support on Kubernetes
argo-cd
v9.4.0A Helm chart for Argo CD, a declarative, GitOps continuous delivery tool for Kubernetes.
argo-events
v2.4.20A Helm chart for Argo Events, the event-driven workflow automation framework
argo-rollouts
v2.40.5A Helm chart for Argo Rollouts
argocd-image-updater
v1.0.5A Helm chart for Argo CD Image Updater, a tool to automatically update the container images of Kubernetes workloads which are managed by Argo CD
authentik
v2023.10.7authentik is an open-source Identity Provider focused on flexibility and versatility
authorino-operator
v0.22.0Kubernetes operator for managing Authorino instances, a K8s-native AuthN/AuthZ service to protect your APIs.
aws-cloudwatch-metrics
v0.0.11A Helm chart to deploy aws-cloudwatch-metrics project
aws-for-fluent-bit
v0.1.35A Helm chart to deploy aws-for-fluent-bit project
base
v1.29.0-alpha.0Helm chart for deploying Istio cluster resources and CRDs
bitpoke
v1.8.19The Bitpoke App for WordPress provides a versatile dashboard to create, deploy, scale, manage and monitor WordPress sites in a Kubernetes cluster.
bitwarden-crd-operator
v0.17.0Deploy the Bitwarden CRD Operator
capa-vpc-peering-operator
v2023.12.11A Helm chart for CAPA VPC Peering Operator by AppsCode
capsule
v0.12.4A Helm chart to deploy the Capsule Operator for easily implementing, managing, and maintaining mutitenancy and access control in Kubernetes.
capsule-proxy
v0.10.1Helm Chart for Capsule Proxy, addon for Capsule, the multi-tenant Operator
cd-pipeline-operator
v2.26.0A Helm chart for KubeRocketCI CD Pipeline Operator
cd-pipeline-operator
v2.27.0-SNAPSHOT.1A Helm chart for KubeRocketCI CD Pipeline Operator
cert-manager
v1.20.0-alpha.0A Helm chart for cert-manager
cilium
v1.19.0-pre.0eBPF-based Networking, Security, and Observability
cloudflare-operator
v1.8.0Helm chart for Cloudflare Operator
cloudnative-pg
v0.27.0CloudNativePG Operator Helm Chart
codebase-operator
v2.29.1A Helm chart for KubeRocketCI Codebase Operator
codebase-operator
v2.30.0-SNAPSHOT.1A Helm chart for KubeRocketCI Codebase Operator
commons-operator
v0.3.0Commons operator of Kubedoop
Master chart to deploy and configure the Compliance Operator
confluence
v2.0.9A chart for installing Confluence Data Center on Kubernetes
consul
v1.9.3Official HashiCorp Consul Chart
coredns
v1.45.2CoreDNS is a DNS server that chains plugins and provides Kubernetes DNS Services
cost-analyzer
v2.9.6Kubecost Helm chart - monitor your cloud costs!
crossplane
v2.1.3Crossplane is an open source Kubernetes add-on that enables platform teams to assemble infrastructure from multiple vendors, and expose higher level self-service APIs for application teams to consume.
dash0-operator
v0.99.1The Dash0 Operator makes observability easy for every Kubernetes setup, simply install the operator into your cluster to get OpenTelemetry data flowing from your applications and infrastructure to Dash0.
datadog
v3.164.1Datadog Agent
datadog-operator
v2.18.0-dev.1Datadog Operator
deployment
v1.0.47The Universal Deployment Helm Chart
dns-operator
v0.15.0Kubernetes operator responsible for reconciling DNS Record custom resources.
docker-machine-operator
v2024.7.9A Helm chart for Docker Machine Operator by AppsCode
The Kubedoop operator for Apache DolphinScheduler
doris-operator
v25.7.0Doris Operator for creating, configuring and managing Doris clusters (dcr) and Doris disaggregated clusters (ddc).
dynatrace-operator
v1.8.0The Dynatrace Operator Helm chart for Kubernetes and OpenShift
easy-olm-operator
v0.0.1an operator that makes olm easy to use outside of openshift
eck-operator
v3.2.0Elastic Cloud on Kubernetes (ECK) operator
eclipse-che
v7.114.0A Helm chart for deploying Eclipse Che on a Kubernetes
edp-headlamp
v0.23.2A Helm chart for KubeRocketCI Headlamp