Elastic Cloud on Kubernetes (ECK) operator
RBAC Atlas is a curated database of identities and the Role Based Access Control (RBAC) policies associated with them in popular Kubernetes open-source projects. Each entry includes security annotations that highlight granted permissions, potential risks, and possible abuse scenarios.
Why is RBAC important? RBAC is the final layer of defense in Kubernetes security. If workloads are compromised and an identity is stolen, a misconfigured or overly permissive RBAC policy (common with Operators) can enable attackers to move laterally within your cluster, potentially leading to a complete Kubernetes cluster takeover.
RBAC Atlas is a collaborative project created by Lenin Alevski, and contributions of additional RBAC rules are welcome.
🚀 Top Risks
📦 Top Categories
operator monitoring kubernetes database prometheus cluster observability metrics metric sql edp storage redis metricsql timeseries tsdb victoriametrics gitlab postgres git See All →
📜 All Projects
eclipse-che
v7.108.0A Helm chart for deploying Eclipse Che on a Kubernetes
edp-headlamp
v0.24.0-SNAPSHOT.5A Helm chart for KubeRocketCI Headlamp
edp-headlamp
v0.23.0A Helm chart for KubeRocketCI Headlamp
edp-install
v3.13.0-SNAPSHOT.4A Helm chart for KubeRocketCI Platform
edp-install
v3.12.0A Helm chart for KubeRocketCI Platform
A Helm chart for Kubernetes installation of eG Universal agent Operator
elasticsearch
v8.5.1Official Elastic helm chart for Elasticsearch
etcd
v12.0.18etcd is a distributed key-value store designed to securely store data across a cluster. etcd is widely used in production on account of its reliability, fault-tolerance and ease of use.
external-dns
v9.0.3ExternalDNS is a Kubernetes addon that configures public DNS servers with information about exposed Kubernetes services to make them discoverable.