DigiNews

Tech Watch by Johan Denoyer

← Back to articles

Show HN: Kloak, A secret manager that keeps K8s workload away from secrets

Quality: 8/10 Relevance: 9/10

Summary

Kloak is an agentless secret management tool for Kubernetes that uses eBPF to intercept HTTPS traffic at the network edge and replace real credentials with placeholders before they reach applications. This design ensures applications never see the actual secrets, reducing leakage risk even if a process is compromised. It offers Kubernetes-native operation, zero-code changes, fine-grained host controls, and an AGPL-3.0 open-source license, with a Helm-based quick start and a kernel-level data plane for low overhead.

🚀 Service construit par Johan Denoyer