A network load-balancer implementation for Kubernetes using standard routing protocols
RBAC Atlas is a curated database of identities and the Role Based Access Control (RBAC) policies associated with them in popular Kubernetes open-source projects. Each entry includes security annotations that highlight granted permissions, potential risks, and possible abuse scenarios.
Why is RBAC important? RBAC is the final layer of defense in Kubernetes security. If workloads are compromised and an identity is stolen, a misconfigured or overly permissive RBAC policy (common with Operators) can enable attackers to move laterally within your cluster, potentially leading to a complete Kubernetes cluster takeover.
RBAC Atlas is a collaborative project created by Lenin Alevski, and contributions of additional RBAC rules are welcome. Check out the source on GitHub: rbac-scope (the CLI tool) and rbac-atlas (this website).
🚀 Top Risks
📦 Top Categories
monitoring operator kubernetes prometheus metric observability database edp alerting metrics timeseries metricsql tsdb victoriametrics ci kube-prometheus cluster argoproj gitops authentication See All →
📜 All Projects
metricbeat
v8.5.1Official Elastic helm chart for Metricbeat
metrics-server
v7.4.12Metrics Server aggregates resource usage data, such as container CPU and memory usage, in a Kubernetes cluster and makes it available via the Metrics API.
metrics-server
v3.13.0Metrics Server is a scalable, efficient source of container resource metrics for Kubernetes built-in autoscaling pipelines.
minio
v17.0.21MinIO(R) is an object storage server, compatible with Amazon S3 cloud storage service, mainly used for storing unstructured data (such as photos, videos, log files, etc.).
minio-operator
v4.3.7A Helm chart for MinIO Operator
monitoring-operator
v2026.1.15A Helm chart for monitoring-operator by AppsCode
mysql
v14.0.3MySQL is a fast, reliable, scalable, and easy to use open source relational database system. Designed to handle mission-critical, heavy-load production applications.
natz-operator
v0.9.5A helm chart for the natz-operator that provides NATS accounting.
netbox-operator
v1.1.73Operator to manage NetBox resources directly through Kubernetes