Jetstack Secure

Jetstack Secure 的开放源码组件。「Open source components of Jetstack Secure」

Github stars Tracking Chart

release-master
Go Reference
Go Report Card

Jetstack Secure

Jetstack Secure manages your machine identities across Cloud Native Kubernetes and OpenShift environments and builds a detailed view of the enterprise security posture.

This repo contains the open source in-cluster agent of Jetstack Secure, that sends data to the Jetstack Secure
SaaS
.

Wondering about Preflight? Preflight was the name for the project that was the foundation for the Jetstack Secure platform. It was a tool to perform configuration checks on a Kubernetes cluster using OPA's REGO policy. We decided to incorporate that functionality as part of the Jetstack Secure SaaS service, making this component a basic agent. You can find the old Preflight Check functionality in the git history ( tagged as preflight-local-check and you also check this documentation.

Installation

Please review the documentation
for the agent before getting started.

The released container images are cryptographically signed by
cosign, with
SLSA provenance and a
CycloneDX SBOM attached. For instructions on how to
verify those signatures and attachments, refer to
this guide.

Local Execution

To build and run a version from master:

go run main.go agent --agent-config-file ./path/to/agent/config/file.yaml -p 0h1m0s

You can find the example agent file
here.

You might also want to run a local echo server to monitor requests the agent
sends:

go run main.go echo

Metrics

The Jetstack-Secure agent exposes its metrics through a Prometheus server, on port 8081.
The Prometheus server is disabled by default but can be enabled by passing the --enable-metrics flag to the agent binary.

Main metrics

Overview
Name With Ownerjetstack/jetstack-secure
Primary LanguageGo
Program languageMakefile (Language Count: 4)
Platform
License:Apache License 2.0
所有者活动
Created At2019-11-06 11:55:36
Pushed At2025-06-04 06:33:27
Last Commit At2025-06-04 07:33:23
Release Count75
Last Release Namev1.5.0 (Posted on 2025-05-06 17:53:48)
First Release Namev0.1.8-alpha.1 (Posted on )
用户参与
Stargazers Count257
Watchers Count24
Fork Count25
Commits Count0.9k
Has Issues Enabled
Issues Count78
Issue Open Count12
Pull Requests Count394
Pull Requests Open Count6
Pull Requests Close Count175
项目设置
Has Wiki Enabled
Is Archived
Is Fork
Is Locked
Is Mirror
Is Private