An open source, general-purpose policy engine.
-
Updated
Feb 25, 2023 - Go
The Open Policy Agent (OPA, pronounced “oh-pa”) is an open source, general-purpose policy engine that unifies policy enforcement across the stack. OPA provides a high-level declarative language that lets you specify policy as code and simple APIs to offload policy decision-making from your software. You can use OPA to enforce policies in microservices, Kubernetes, CI/CD pipelines, API gateways, and more.
What is OPA
An open source, general-purpose policy engine.
Gatekeeper - Policy Controller for Kubernetes
Policy and data administration, distribution, and real-time updates on top of Open Policy Agent
A curated list of OPA related tools, frameworks and articles
Cloud-native authorization for modern applications and APIs
The OPA Gatekeeper policy library.
A policy management tool for interacting with Gatekeeper
Integrations, examples, and proof-of-concepts that are not part of OPA proper.
A plugin to enforce OPA policies with Envoy
Open source components of Jetstack Secure
Open source compliance tool for development platforms.
Scan Kubernetes resource files , and helm charts for security configurations issues and best practices.
Sidecar for managing OPA on top of Kubernetes.
Simple message routing system that receives input messages through a webhook interface and can enforce actions using predefined outputs via integrations.
Style guide for Rego
S3 Reverse Proxy with GET, PUT and DELETE methods and authentication (OpenID Connect and Basic Auth)
A set of curated exercises to help you prepare for the CKS exam
MagTape Policy-as-Code for Kubernetes