External secret management for Kubernetes
RBAC Atlas is a curated database of identities and the Role Based Access Control (RBAC) policies associated with them in popular Kubernetes open-source projects. Each entry includes security annotations that highlight granted permissions, potential risks, and possible abuse scenarios.
Why is RBAC important? RBAC is the final layer of defense in Kubernetes security. If workloads are compromised and an identity is stolen, a misconfigured or overly permissive RBAC policy (common with Operators) can enable attackers to move laterally within your cluster, potentially leading to a complete Kubernetes cluster takeover.
RBAC Atlas is a collaborative project created by Lenin Alevski, and contributions of additional RBAC rules are welcome.
🚀 Top Risks
📦 Top Categories
database operator cluster sql storage argocd argoproj gitops kube-prometheus kubernetes postgres postgresql prometheus consumer ingress kafka keyvalue monitoring producer redis See All →
📜 All Projects
falco
v5.0.3Falco
filebeat
v8.5.1Official Elastic helm chart for Filebeat
flux2
v2.16.0A Helm chart for flux2
gatekeeper
v3.19.1A Helm chart for Gatekeeper
gitlab-runner
v0.77.2GitLab Runner
grafana
v9.2.2The leading tool for querying and visualizing time series and metrics.
grafana-operator
v4.9.21Grafana Operator is a Kubernetes operator that enables the installation and management of Grafana instances, dashboards and plugins.
harbor
v1.17.1An open source trusted cloud native registry that stores, signs, and scans content
ingress-nginx
v4.12.3Ingress controller for Kubernetes using NGINX as a reverse proxy and load balancer