Linux sandboxing tool using user namespaces to let unprivileged users isolate processes without root.
Category: container-runtime Β· clear
Containerization platform that packages and runs applications in isolated lightweight containers using Go.
Command-line interface for communicating with Kubernetes clusters via the API.
Container runtime launcher for macOS and Linux that manages Docker or containerd with minimal configuration.
Go tool that defines and runs multi-container Docker applications via YAML configuration.
Launch Linux virtual machines with automatic file sharing and port forwarding, similar to WSL2.
Go command-line tool for managing OCI containers and pods without requiring a daemon.
Vulnerability scanner for container images, filesystems, Git repos, and Kubernetes in Go.
Command-line tool for pushing, pulling, and managing OCI artifacts in container registries without Docker.
Command-line tool to quickly spin up lightweight Kubernetes clusters (k3s) inside Docker containers.
Docker CLI plugin for building images with BuildKit, enabling multi-platform and advanced caching.
Go-based CLI for defining and managing local Kubernetes development environments as code.
Run a local Kubernetes cluster inside Docker containers for development and testing.
Go CLI for declaratively creating and managing local Kubernetes clusters with Kind, k3d, Minikube, or Docker Desktop.
Run GitHub Actions workflows locally in Docker containers without pushing to GitHub.
Python implementation of Docker Compose specification for orchestrating Podman containers without a daemon.
Command-line client for managing OpenShift Kubernetes clusters and containerized applications.
Go command-line tool for signing and verifying OCI container images using Sigstore's keyless infrastructure.
Command-line utility for managing container images across registries without requiring root or a daemon.
Virtual Distributed Ethernet switch and networking toolkit for connecting virtual machines and emulators.
User-mode networking for unprivileged Linux network namespaces, enabling rootless containers to access the network without root privileges.
Create and run Linux containers via lightweight VMs on macOS, from Apple.
Local single-node Kubernetes cluster runtime for development and testing.
Go command-line tool for inspecting, copying, and manipulating container images and registries without requiring Docker.
Go CLI tool that generates Software Bill of Materials (SBOM) from container images and filesystems.
Go command-line vulnerability scanner for container images and filesystems with CVE detection.
Go client to provision and manage Docker hosts locally and on cloud providers.
Terminal UI for Docker and Docker Compose, written in Go for interactive container and service management.
Additional guest agent binaries for Lima virtual machines, enabling advanced features beyond the default installation.
Fast, low-memory OCI container runtime and C library for running Linux containers per the OCI specification.
Go command-line tool for iterative Kubernetes app development with automated build, push, and deployment.
C daemon that monitors OCI containers and relays I/O between container managers and runtimes.