Skip to content
@openclarity

OpenClarity

Cloud native application security and observability
OpenClarity logo

OpenClarity is a suite of open source projects built to enhance the security and observability of cloud native applications and infrastructure.

OpenClarity delivers:

  • Agentless detection and managements of vulnerabilities, exploits, malware and misconfigurations for virtual machines and container images
  • Capabilities for runtime scans of Kubernetes and CI/CD pipelines
  • Comprehensive API security for internal and third-party APIs

VM Security

VMClarity is a tool for agentless detection and management of virtual machine Software Bill Of Materials (SBOM) and security threats such as vulnerabilities, exploits, malware, rootkits, misconfigurations, and leaked secrets.

vm-clarity-diagram

Key Capabilities:

  • SBOM analysis
  • Package and OS vulnerability detection
  • Exploit detection
  • Leaked secret detection
  • Malware detection
  • Misconfiguration detection
  • Rootkit detection

Kubernetes Security

KubeClarity is a tool for detection and management of software bills of materials (SBOMs) and vulnerabilities in container images and filesystems. It scans both runtime Kubernetes clusters and CI/CD pipelines for enhanced software supply-chain security.

kube-clarity-diagram

Key Capabilities:

  • SBOM and vulnerability detection
  • Comprehensive dashboard for SBOM analysis
  • Pluggable architecture

API Security

APIClarity is a tool that helps you visualize and identify potential risks around API usage in your cloud native environments. It helps build the OpenAPI specifications for all APIs in your environment, then helps track drift, shadow or zombie usage for those APIs. You can then use this information to build your application security posture.

api-clarity-diagram

Key Capabilities:

  • Quick and easy API visibility and analysis
  • Comprehensive dashboard to monitor APIs
  • Designed for developers, loved by security teams

Pinned Loading

  1. vmclarity vmclarity Public

    VMClarity is a tool for agentless detection and management of Virtual Machine Software Bill Of Materials (SBOM) and vulnerabilities

    Go 92 22

  2. kubeclarity kubeclarity Public

    KubeClarity is a tool for detection and management of Software Bill Of Materials (SBOM) and vulnerabilities of container images and filesystems

    Go 1.3k 157

  3. apiclarity apiclarity Public

    An API security tool to capture and analyze API traffic, test API endpoints, reconstruct Open API specification, and identify API security risks. 

    Go 493 64

Repositories

Showing 10 of 20 repositories
  • vmclarity Public

    VMClarity is a tool for agentless detection and management of Virtual Machine Software Bill Of Materials (SBOM) and vulnerabilities

    openclarity/vmclarity’s past year of commit activity
    Go 92 Apache-2.0 22 72 (7 issues need help) 13 Updated Jun 26, 2024
  • grype-server Public

    Running Grype scanner as a K8s server

    openclarity/grype-server’s past year of commit activity
    Go 12 Apache-2.0 3 0 1 Updated Jun 25, 2024
  • openclarity.io Public

    openclarity.io

    openclarity/openclarity.io’s past year of commit activity
    TypeScript 4 Apache-2.0 4 2 13 Updated Jun 24, 2024
  • vmclarity-tools-base Public

    base image with scanner tools for VMClarity

    openclarity/vmclarity-tools-base’s past year of commit activity
    Dockerfile 1 Apache-2.0 1 0 0 Updated Jun 21, 2024
  • .github Public

    Org-wide GitHub configurations

    openclarity/.github’s past year of commit activity
    0 Apache-2.0 10 2 0 Updated Jun 21, 2024
  • freshclam-mirror Public

    A private ClamAV freshclam mirror server which periodically syncs signatures using freshclam.

    openclarity/freshclam-mirror’s past year of commit activity
    Dockerfile 1 Apache-2.0 0 0 0 Updated Jun 21, 2024
  • yara-rule-server Public

    YARA rule server download and compile rules into one binary file.

    openclarity/yara-rule-server’s past year of commit activity
    Go 1 Apache-2.0 0 0 0 Updated Jun 21, 2024
  • simple-controller-runtime Public

    A simple implementation similar to the Kubernetes controller runtime which can be used to create controllers for both kubernetes and non-kubernetes resources.

    openclarity/simple-controller-runtime’s past year of commit activity
    Go 0 Apache-2.0 0 0 0 Updated Jun 19, 2024
  • wasm-filters Public

    Envoy Wasm filter for traffic tracing used in APIClarity.

    openclarity/wasm-filters’s past year of commit activity
    Go 11 Apache-2.0 5 0 0 Updated Jun 19, 2024
  • speculator Public

    A library for reconstructing OpenAPI specification from traffic of HTTP transactions.

    openclarity/speculator’s past year of commit activity
    Go 8 Apache-2.0 7 0 2 Updated Jun 19, 2024