eBPF-based Networking, Security, and Observability
RBAC Atlas is a curated database of identities and the Role Based Access Control (RBAC) policies associated with them in popular Kubernetes open-source projects. Each entry includes security annotations that highlight granted permissions, potential risks, and possible abuse scenarios.
Why is RBAC important? RBAC is the final layer of defense in Kubernetes security. If workloads are compromised and an identity is stolen, a misconfigured or overly permissive RBAC policy (common with Operators) can enable attackers to move laterally within your cluster, potentially leading to a complete Kubernetes cluster takeover.
RBAC Atlas is a collaborative project created by Lenin Alevski, and contributions of additional RBAC rules are welcome.
🚀 Top Risks
📦 Top Categories
operator monitoring kubernetes database prometheus cluster observability metrics metric sql edp storage redis metricsql timeseries tsdb victoriametrics gitlab postgres git See All →
📜 All Projects
cloudflare-operator
v1.5.1Helm chart for Cloudflare Operator
cloudnative-pg
v0.26.0CloudNativePG Operator Helm Chart
codebase-operator
v2.28.0-SNAPSHOT.26A Helm chart for KubeRocketCI Codebase Operator
codebase-operator
v2.28.0A Helm chart for KubeRocketCI Codebase Operator
commons-operator
v0.2.0Commons operator of Kubedoop
confluence
v2.0.4A chart for installing Confluence Data Center on Kubernetes
consul
v1.8.1Official HashiCorp Consul Chart
coredns
v1.43.2CoreDNS is a DNS server that chains plugins and provides Kubernetes DNS Services
cost-analyzer
v2.8.2Kubecost Helm chart - monitor your cloud costs!