Install Rancher Server to manage Kubernetes clusters across providers.
RBAC Atlas is a curated database of identities and the Role Based Access Control (RBAC) policies associated with them in popular Kubernetes open-source projects. Each entry includes security annotations that highlight granted permissions, potential risks, and possible abuse scenarios.
Why is RBAC important? RBAC is the final layer of defense in Kubernetes security. If workloads are compromised and an identity is stolen, a misconfigured or overly permissive RBAC policy (common with Operators) can enable attackers to move laterally within your cluster, potentially leading to a complete Kubernetes cluster takeover.
RBAC Atlas is a collaborative project created by Lenin Alevski, and contributions of additional RBAC rules are welcome. Check out the source on GitHub: rbac-scope (the CLI tool) and rbac-atlas (this website).
🚀 Top Risks
📦 Top Categories
monitoring operator prometheus kubernetes metric database cluster alerting gitops argoproj kube-prometheus observability argocd storage sql gitlab metrics http php web See All →
📜 All Projects
raven-operator
v0.21.0A Helm chart for Raven Operator
redis
v25.3.2Redis(R) is an open source, advanced key-value store. It is often referred to as a data structure server since keys can contain strings, hashes, lists, sets and sorted sets.
redis-enterprise-operator
v8.0.10-21A Helm chart for Redis Enterprise Operator for Kubernetes
redpanda
v25.3.2Redpanda is the real-time engine for modern apps.
bind a resource to a resource
rook-ceph
v1.19.2File, Block, and Object Storage Services for your Cloud-Native Environment
runtime-sensors
v101.5.0Helm chart for the deployment of JFrog Runtime Security Agents within a Kubernetes environment.
sbom-operator
v0.41.0Catalogue all images of a Kubernetes cluster to multiple targets with Syft
secret-operator
v0.3.0The Kubedoop Secret Operator
slack-operator
v0.0.39Helm Chart for slack-operator
sm-operator
v2.0.1A Helm chart to install the Bitwarden Secrets Manager operator.
snapscheduler
v3.5.0An operator to take scheduled snapshots of Kubernetes persistent volumes
solr-operator
v0.9.1The Solr Operator enables easy management of Solr resources within Kubernetes.
sonar-operator
v3.3.0A Helm chart for KubeRocketCI Sonar Operator
sonar-operator
v3.4.0-SNAPSHOT.12A Helm chart for KubeRocketCI Sonar Operator
sonarqube
v2026.1.0SonarQube is a self-managed, automatic code review tool that systematically helps you deliver clean code. As a core element of our Sonar solution, SonarQube integrates into your existing workflow and detects issues in your code to help you perform continuous code inspections of your projects. The tool analyses 30+ different programming languages and integrates into your CI pipeline and DevOps platform to ensure that your code meets high-quality standards.
sops-secrets-operator
v0.25.2Helm chart deploys sops-secrets-operator
spark-k8s-operator
v0.3.0The Kubedoop operator for Apache Spark k8s
The official Helm chart to deploy Apache Spark, an unified engine for large-scale data analytics
stackgres-operator
v1.18.6StackGres Operator
superset-operator
v0.3.0The Kubedoop operator for Apache Superset
tekton-custom-task
v0.2.0A Helm chart for Tekton Custom Tasks
tekton-custom-task
v0.3.0-SNAPSHOT.10A Helm chart for Tekton Custom Tasks
telegraf-ds
v1.1.46Telegraf is an agent written in Go for collecting, processing, aggregating, and writing metrics.
tempo-distributed
v1.61.3Grafana Tempo in MicroService mode
terraform-cloud-operator
v2.5.0Official Helm chart for HCP Terraform Operator for Kubernetes.
thanos
v17.3.1Thanos is a highly available metrics system that can be added on top of existing Prometheus deployments, providing a global query view across all Prometheus installations.
tigera-operator
v3.31.4Installs the Tigera operator for Calico
tigera-operator
v2.13.2Helm chart to install the Tigera Operator for managing Calico.
traefik
v39.1.0-ea.1A Traefik based Kubernetes ingress controller
trident-operator
v100.2602.0A Helm chart for deploying NetApp’s Trident CSI storage provisioner using the Trident Operator.
trino-operator
v0.2.0The Kubedoop operator for Trino
trivy-operator
v0.32.1Keeps security report resources updated
vals-operator
v0.8.1This helm chart installs the Digitalis Vals Operator to manage and sync secrets from supported backends into Kubernetes. ## About Vals-Operator Here at Digitalis we love vals, it’s a tool we use daily to keep secrets stored securely. Inspired by this tool, we have created an operator to manage Kubernetes secrets. vals-operator syncs secrets from any secrets store supported by vals into Kubernetes. Also, vals-operator supports database secrets as provider by HashiCorp Vault Secret Engine.
vault
v0.32.0Official HashiCorp Vault Chart
vault-secrets-operator
v1.3.0Official Vault Secrets Operator Chart
vcluster
v0.33.0-alpha.0vcluster - Virtual Kubernetes Clusters
vcluster-eks
v0.19.10vcluster - Virtual Kubernetes Clusters (eks)
vcluster-k0s
v0.19.10vcluster - Virtual Kubernetes Clusters (k0s)
vcluster-k8s
v0.19.10vcluster - Virtual Kubernetes Clusters (k8s)
vcluster-pro
v0.2.1-alpha.0vcluster-pro - Virtual Kubernetes Clusters
vcluster-pro-eks
v0.2.1-alpha.0vcluster-pro - Virtual Kubernetes Clusters (eks)
vcluster-pro-k0s
v0.2.1-alpha.0vcluster-pro - Virtual Kubernetes Clusters (k0s)
vcluster-pro-k8s
v0.2.1-alpha.0vcluster-pro - Virtual Kubernetes Clusters (k8s)
vcluster-runtime
v0.0.1-alpha.2vcluster-runtime - Virtual Kubernetes Clusters
velero
v11.4.0A Helm chart for velero
victoria-metrics-agent
v0.33.0VictoriaMetrics Agent - collects metrics from various sources and stores them to VictoriaMetrics
victoria-metrics-distributed
v0.32.0A Helm chart for Running VMCluster on Multiple Availability Zones
victoria-metrics-k8s-stack
v0.72.4Kubernetes monitoring on VictoriaMetrics stack. Includes VictoriaMetrics Operator, Grafana dashboards, ServiceScrapes and VMRules