Kyverno, created by Nirmata, makes it simple to secure, automate, and manage your infrastructures and applications using Kubernetes-native YAML and CEL. Easy-to-learn and powered by the CNCF community.
Kyverno, created by Nirmata is the Kubernetes-native policy engine designed to simplify security, compliance, and automation by letting you manage policies the same way you manage your cluster.
As the industry's leading policy engine, here's how Kyverno compares with other policy engines.
| Feature | ||
|---|---|---|
| Policy Language | ||
| Ease of Adoption | ||
| Policy Types |
From policy creation to enforcement, testing to reporting, and everything in between, get comprehensive Kubernetes governance and compliance with Kyverno.
Extends and completes Kubernetes policy types for comprehensive platform engineering capabilities.
Executes Kubernetes-style policies on any JSON payload using CLI or SDK for universal compatibility.
OpenReports compatible producers, routers, and dashboards for comprehensive policy compliance visibility.
Timebound and fine-grained exception management decoupled from policies for flexible governance.
CLI for seamless integrations into CI/CD and Infrastructure as Code (Terraform, etc.) pipelines.
Comprehensive tooling for declarative unit tests and end-to-end behavioral policy validation.
Enhanced performance with Common Expression Language for faster policy, evaluation and execution.
Full version control integration with GitOps workflows for policy lifecycle management.
Comprehensive security policy templates and best practices for zero-trust architectures.
Deploy Kyverno in your Kubernetes cluster within minutes and start writing policies using simple, familiar YAML.
Powering policy management for organizations worldwide
Join 1000+ organizations using Kyverno in production environments
Join us
The Linux Foundation® (TLF) has registered trademarks and uses trademarks. For a list of TLF trademarks, see Trademark Usage.