A cloud-native runtime security enforcement engine for Kubernetes workloads—hardened with eBPF and Linux Security Modules.
Platform Design, Technical Documentation
Cloud Native Security
Open-Source (CNCF Sandbox Project)
https://kubearmor.io/
KubeArmor is an open-source, CNCF Sandbox–hosted runtime Kubernetes security enforcement engine designed for cloud-native workloads. It leverages eBPF and Linux Security Modules (LSMs)—like AppArmor, SELinux, and BPF-LSM—to proactively harden workloads, sandboxing them against security threats by enforcing user-defined policies at runtime.
This redesign emphasizes security-first UX, clearer policy understanding, and documentation that aligns visuals and functionality with KubeArmor’s powerful runtime enforcement features—bringing clarity and confidence to users from developers to security engineers.