# Kyverno [![Tweet](https://img.shields.io/twitter/url/http/shields.io.svg?style=social)](https://twitter.com/intent/tweet?text=Cloud%20Native%20Policy%20Management.%20No%20new%20language%20required%21&url=https://github.com/kyverno/kyverno/&hashtags=kubernetes,devops) **Cloud Native Policy Management 🎉** [![Go Report Card](https://goreportcard.com/badge/github.com/kyverno/kyverno)](https://goreportcard.com/report/github.com/kyverno/kyverno) ![License: Apache-2.0](https://img.shields.io/github/license/kyverno/kyverno?color=blue) [![GitHub Repo stars](https://img.shields.io/github/stars/kyverno/kyverno)](https://github.com/kyverno/kyverno/stargazers) [![CII Best Practices](https://bestpractices.coreinfrastructure.org/projects/5327/badge)](https://bestpractices.coreinfrastructure.org/projects/5327) [![OpenSSF Scorecard](https://api.securityscorecards.dev/projects/github.com/kyverno/kyverno/badge)](https://securityscorecards.dev/viewer/?uri=github.com/kyverno/kyverno) [![SLSA 3](https://slsa.dev/images/gh-badge-level3.svg)](https://slsa.dev) [![Artifact HUB](https://img.shields.io/endpoint?url=https://artifacthub.io/badge/repository/kyverno)](https://artifacthub.io/packages/search?repo=kyverno) [![codecov](https://codecov.io/gh/kyverno/kyverno/branch/main/graph/badge.svg)](https://app.codecov.io/gh/kyverno/kyverno/branch/main) [![FOSSA Status](https://app.fossa.com/api/projects/git%2Bgithub.com%2Fkyverno%2Fkyverno.svg?type=shield)](https://app.fossa.com/projects/git%2Bgithub.com%2Fkyverno%2Fkyverno?ref=badge_shield) ![logo](img/Kyverno_Horizontal.png)

Kyverno is a policy engine designed for cloud native platform engineering teams. It enables security, automation, compliance, and governance using policy-as-code. Kyverno can validate, mutate, generate, and cleanup configurations using Kubernetes admission controls, background scans, and source code respository scans. Kyverno policies can also be used to verify OCI images, for software supply chain security. Kyverno policies can be managed as Kubernetes resources and do not require learning a new language. Kyverno is designed to work nicely with tools you already use like kubectl, kustomize, and Git.

Open Source Security Index - Fastest Growing Open Source Security Projects ## 📙 Documentation Kyverno installation and reference documents are available at [kyverno.io] (https://kyverno.io). 👉 **[Quick Start](https://kyverno.io/docs/introduction/#quick-start)** 👉 **[Installation](https://kyverno.io/docs/installation/)** 👉 **[Sample Policies](https://kyverno.io/policies/)** ## 🙋‍♂️ Getting Help We are here to help! 👉 For feature requests and bugs, file an [issue](https://github.com/kyverno/kyverno/issues). 👉 For discussions or questions, join the [Kyverno Slack channel](https://slack.k8s.io/#kyverno). 👉 For community meeting access, see [mailing list](https://kyverno.io/community/#community-meetings). 👉 To get follow updates ⭐️ [star this repository](https://github.com/kyverno/kyverno/stargazers). ## ➕ Contributing Thanks for your interest in contributing to Kyverno! Here are some steps to help get you started: ✔ Read and agree to the [Contribution Guidelines](/CONTRIBUTING.md). ✔ Browse through the [GitHub discussions](https://github.com/kyverno/kyverno/discussions). ✔ Read Kyverno design and development details on the [GitHub Wiki](https://github.com/kyverno/kyverno/wiki). ✔ Check out the [good first issues](https://github.com/kyverno/kyverno/labels/good%20first%20issue) list. Add a comment with `/assign` to request assignment of the issue. ✔ Check out the Kyverno [Community page](https://kyverno.io/community/) for other ways to get involved. ## Software Bill of Materials All Kyverno images include a Software Bill of Materials (SBOM) in [CycloneDX](https://cyclonedx.org/) JSON format. SBOMs for Kyverno images are stored in a separate repository at `ghcr.io/kyverno/sbom`. More information on this is available at [Fetching the SBOM for Kyverno](https://kyverno.io/docs/security/#fetching-the-sbom-for-kyverno). ## Contributors Kyverno is built and maintained by our growing community of contributors! Made with [contributors-img](https://contrib.rocks). ## License Copyright 2024, the Kyverno project. All rights reserved. Kyverno is licensed under the [Apache License 2.0](LICENSE). Kyverno is a [Cloud Native Computing Foundation (CNCF) Incubating project](https://www.cncf.io/projects/) and was contributed by [Nirmata](https://nirmata.com/?utm_source=github&utm_medium=repository).