Matchboxmatchbox
← Back to match

kguardian

Auto-generates least-privilege Kubernetes NetworkPolicies and seccomp profiles from real pod traffic via eBPF.

Servicefreeglobal

kguardian is a free (for non-production use), open-source Kubernetes tool that uses eBPF to watch real pod traffic and syscalls, then auto-generates least-privilege NetworkPolicy, CiliumNetworkPolicy, and seccomp profiles from what it observes — no hand-authored rules. A policy can be audited against live traffic before enforcement, and the CLI always writes files for review rather than applying anything automatically. It's aimed at platform and security teams who want least-privilege Kubernetes security policies without writing rules by hand.

Categories
Kubernetes securityDevSecOpsnetwork security

Full match profile

Behind the summary, Matchbox keeps a richer profile of kguardian - the signals our matcher actually reads to decide when to surface it. It stays private; claim the listing to see and control it.

  • Problem & pain-point mapping
  • Who we surface it to (audience fit)
  • What it's a strong alternative to
  • Trust & credibility signals

Try Matchbox with your own problem

Describe what is not working - we’ll show you whether kguardian (or something else) actually fits.