kntrl - Secure Your CI/CD Pipelines

An open-source, eBPF-powered runtime agent that monitors and prevents Poisoned Pipeline Execution (PPE) attacks in real-time.

Get Started
CI/CD Pipeline Screenshot

Key Features

Single Binary

Deploy `kntrl` as a lightweight, standalone binary for easy setup and minimal overhead.

OPA-Supported Engine

Leverage Open Policy Agent (OPA) to enforce custom security policies effortlessly.

eBPF Powered

Utilizes eBPF to monitor kernel calls and secure pipelines at the system level.

Real-Time Detection & Prevention

Instantly detects and blocks anomalous behavior as it happens.

GitHub Action

Seamlessly integrates with GitHub Actions to secure your workflows.

Open Source

Fully transparent, community-driven, released as an open source under Apache2 License.