LFX Platform

Know more about LFX Platform

LFX Insights

Cloud Native Computing Foundation (CNCF)

The Cloud Native Computing Foundation (CNCF) is an open-source organization under the Linux Foundation that promotes the development and adoption of cloud-native technologies. It serves as a hub for projects that enable scalable, resilient, and portable applications in modern cloud environments.

234 projects

622,479 contributors

$42B

Kubernetes

Kubernetes (K8s) is an open-source system for automating deployment, scaling, and management of containerized applications.

Contributors

116,433

Organizations

21,977

Software value

$5.8B

Helm

Helm helps you manage Kubernetes applications — Helm Charts help you define, install, and upgrade even the most complex Kubernetes application.

Contributors

27,233

Organizations

5,546

Software value

$22M

OpenTelemetry

OpenTelemetry makes robust, portable telemetry a built-in feature of cloud-native software. OpenTelemetry provides a single set of APIs, libraries, agents, and collector services to capture distributed traces and metrics from your application. You can analyze them using Prometheus, Jaeger, and other observability tools.

Contributors

25,697

Organizations

5,383

Software value

$303M

Argo

Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes.

Contributors

23,320

Organizations

5,508

Software value

$118M

gRPC

gRPC is a modern open source high performance RPC framework that can run in any environment. It can efficiently connect services in and across data centers with pluggable support for load balancing, tracing, health checking and authentication. It is also applicable in last mile of distributed computing to connect devices, mobile applications and browsers to backend services.

Contributors

21,908

Organizations

5,709

Software value

$151M

Prometheus

Prometheus is an open-source systems monitoring and alerting toolkit originally built at SoundCloud. Since its inception in 2012, many companies and organizations have adopted Prometheus, and the project has a very active developer and user community. It is now a standalone open source project and maintained independently of any company.

Contributors

20,858

Organizations

5,306

Software value

$38M

Keycloak

Keycloak is an open source Identity and access management solution aimed at modern applications and services. It makes it easy to secure applications and services with little to no code. Keycloak is based on standard protocols with an aim toward modern use cases and the flexibility to integrate with other solutions and prevent vendor lock in. Supported protocols include: OAuth2, OpenID Connect, User Managed Access 2.0 (UMA) and SAML 2.0.

Contributors

17,061

Organizations

2,704

Software value

$3.5B

Fluentd

Fluentd is an open source data collector for unified logging layer. Fluentd allows you to unify data collection and consumption for a better use and understanding of data.

Contributors

13,582

Organizations

2,989

Software value

$168M

Istio

Istio extends Kubernetes to establish a programmable, application-aware network using the powerful Envoy service proxy. Working with both Kubernetes and traditional workloads, Istio brings standard, universal traffic management, telemetry, and security to complex deployments.

Contributors

13,519

Organizations

2,945

Software value

$428M

Cloud Native Computing Foundation (CNCF)

The Cloud Native Computing Foundation (CNCF) hosts critical components of the global technology infrastructure. CNCF brings together the world’s top developers, end users, and vendors and runs the largest open source developer conferences.

Contributors

12,635

Organizations

3,507

Software value

$3.5B

Podman Container Management Tool

Podman: A tool for managing OCI containers and pods.

Contributors

11,599

Organizations

3,037

Software value

$149M

Kubeflow

Kubeflow is an open source machine learning platform built on Kubernetes that makes deploying and managing ML workflows on Kubernetes simple, portable and scalable. It provides end-to-end orchestration of machine learning pipelines, model training, serving, and experiment tracking.

Contributors

10,614

Organizations

2,296

Software value

$433M

Envoy

ENVOY IS AN OPEN SOURCE EDGE AND SERVICE PROXY, DESIGNED FOR CLOUD-NATIVE APPLICATIONS.

Contributors

9,963

Organizations

2,191

Software value

$3.8B

Harbor

Harbor is an open source container image registry that secures images with role-based access control, scans images for vulnerabilities, and signs images as trusted.

Contributors

9,229

Organizations

2,155

Software value

$41M

Backstage

Backstage is an open platform for building developer portals that helps organizations streamline software development by centralizing technical documentation, APIs, services, and tools into a unified interface. It provides a microservices architecture, plugin system, and tools for service catalogs, documentation, and infrastructure management.

Contributors

8,002

Organizations

2,235

Software value

$127M

cert-manager

cert-manager is a Kubernetes add-on to automate the management and issuance of TLS certificates from various issuing sources.

Contributors

7,800

Organizations

2,766

Software value

$32M

Cilium

Cilium is an open source software for providing, securing and observing network connectivity between container workloads - cloud native, and fueled by the revolutionary Kernel technology eBPF.

Contributors

7,713

Organizations

2,187

Software value

$1.1B

Etcd

A distributed, reliable key-value store for the most critical data of a distributed system.

Contributors

7,622

Organizations

1,868

Software value

$69M

NATS

NATS.io is a simple, secure and high performance open source messaging system for cloud native applications, IoT messaging, and microservices architectures.

Contributors

7,596

Organizations

1,799

Software value

$84M

Flux

Flux is a tool that automatically ensures that the state of your Kubernetes cluster matches the configuration you’ve supplied in Git. It uses an operator in the cluster to trigger deployments inside Kubernetes, which means that you don’t need a separate continuous delivery tool.

Contributors

7,069

Organizations

2,182

Software value

$19M

k3s

K3s is a highly available, certified Kubernetes distribution designed for production workloads in unattended, resource-constrained, remote locations or inside IoT appliances.

Contributors

6,443

Organizations

1,989

Software value

$14M

Containerd

An industry-standard container runtime with an emphasis on simplicity, robustness and portability

Contributors

5,925

Organizations

1,697

Software value

$104M

Jaeger

Monitor and troubleshoot transactions in complex distributed systems. As on-the-ground microservice practitioners are quickly realizing, the majority of operational problems that arise when moving to a distributed architecture are ultimately grounded in two areas: networking and observability.

Contributors

5,672

Organizations

1,466

Software value

$42M

Thanos

Open source, highly available Prometheus setup with long term storage capabilities.

Contributors

4,962

Organizations

1,394

Software value

$22M

Dapr

Dapr is a portable, event-driven, runtime for building distributed applications across cloud and edge.

Contributors

4,912

Organizations

1,073

Software value

$57M

Crossplane

Crossplane is an open source Kubernetes add-on that enables platform teams to assemble infrastructure from multiple vendors, and expose higher level self-service APIs for application teams to consume, without having to write any code.

Contributors

4,701

Organizations

1,287

Software value

$726M

Open Policy Agent

Stop using a different policy language, policy model, and policy API for every product and service you use. Use OPA for a unified toolset and framework for policy across the cloud native stack. Whether for one service or for all your services, use OPA to decouple policy from the service's code so you can release, analyze, and review policies (which security and compliance teams love) without sacrificing availability or performance.

Contributors

4,530

Organizations

1,214

Software value

$257M

KEDA

KEDA is a Kubernetes-based event-driven autoscaler. KEDA determines how any container in Kubernetes should be scaled based on the number of events that need to be processed. KEDA is a single-purpose and lightweight component that can be added to any Kubernetes cluster. It works alongside standard Kubernetes components like the Horizontal Pod Autoscaler and can extend functionality without overwriting or duplication. With KEDA you can specify the that apps you want to scale in an event-driven way while other apps continue to function. This makes KEDA a flexible and safe option to run alongside other Kubernetes applications and frameworks.

Contributors

4,413

Organizations

1,173

Software value

$218M

Rook

Rook turns distributed storage systems into self-managing, self-scaling, self-healing storage services. It automates the tasks of a storage administrator: deployment, bootstrapping, configuration, provisioning, scaling, upgrading, migration, disaster recovery, monitoring, and resource management.

Contributors

4,345

Organizations

1,328

Software value

$12M

Meshery

Lifecycle, performance, and configuration management across any service mesh.

Contributors

4,202

Organizations

752

Software value

$279M

Distribution

A container registry project that is now a sandbox project from Docker.

Contributors

3,985

Organizations

1,348

Software value

$42M

Linkerd

Linkerd is a service mesh for Kubernetes and other frameworks. It makes running services easier and safer by giving you runtime debugging, observability, reliability, and security—all without requiring any changes to your code.

Contributors

3,974

Organizations

1,191

Software value

$114M

OAuth2 Proxy

OAuth2 Proxy is a reverse proxy and static file server that provides authentication using OAuth2 providers to secure HTTP endpoints. It acts as a middleware to protect web applications by requiring users to authenticate via an OAuth2 provider before accessing protected resources.

Contributors

3,874

Organizations

1,235

Software value

$4.5M

Knative

Knative is an Open-Source Enterprise-level solution to build Serverless and Event Driven Applications.

Contributors

3,741

Organizations

1,001

Software value

$755M

Strimzi

Strimzi provides a way to run an Apache Kafka cluster on Kubernetes in various deployment configurations.

Contributors

3,639

Organizations

864

Software value

$334M

External Secrets Operator

"External Secrets Operator (ESO) is a Kubernetes operator that integrates external secret management systems like AWS Secrets Manager, HashiCorp Vault, Google Secrets Manager, Azure Key Vault and many more. The operator reads information from external APIs and automatically injects the values into a Kubernetes Secret. ESO provides a user-friendly abstraction for the external API that stores the secrets for you. It allows you to manage access to the secret store for different tenants within your cluster and keeps the Kubernetes secrets in sync.

Contributors

3,617

Organizations

1,142

Software value

$9.1M

Atlantis

Atlantis is PR automation application that allows users to create PRs against a repository to run terraform via command comments.

Contributors

3,581

Organizations

1,043

Software value

$4.3M

Longhorn

Cloud native distributed block storage for Kubernetes

Contributors

3,533

Organizations

1,013

Software value

$437M

Kyverno

Kyverno is a policy engine designed for Kubernetes. With Kyverno, policies are managed as Kubernetes resources and no new language is required to write policies.

Contributors

3,489

Organizations

1,028

Software value

$95M

KubeVirt

KubeVirt technology addresses the needs of development teams that have adopted or want to adopt Kubernetes but possess existing Virtual Machine-based workloads that cannot be easily containerized. More specifically, the technology provides a unified development platform where developers can build, modify, and deploy applications residing in both Application Containers as well as Virtual Machines in a common, shared environment.

Contributors

3,466

Organizations

689

Software value

$3.3B

CoreDNS

CoreDNS is a DNS server. It is written in Go. It can be used in a multitude of environments because of its flexibility.

Contributors

3,087

Organizations

936

Software value

$4.3M

TiKV

A distributed transactional key-value database. Based on the design of Google Spanner and HBase, but simpler to manage and without dependencies on any distributed filesystem

Contributors

2,923

Organizations

721

Software value

$301M

Falco

Falco, the open source cloud-native runtime security project, is the defacto Kubernetes threat detection engine. Falco detects unexpected application behavior and alerts on threats at runtime.

Contributors

2,902

Organizations

779

Software value

$61M

Fluid Project

Fluid is an open, collaborative project to improve the user experience and inclusiveness of open source software. The Fluid community consists of an international team of partners, individuals, and institutions focused on designing inclusive, flexible, customizable, user-centered interfaces.

Contributors

2,809

Organizations

76

Software value

$90M

CloudNativePG

A comprehensive open source platform designed to seamlessly manage PostgreSQL databases within Kubernetes environments.

Contributors

2,663

Organizations

874

Software value

$82M

OpenEBS

OpenEBS is the leading storage solution for Kubernetes Kubernetes native; runs in userspace Open Source; no vendor lock-in The only multi cloud storage solution

Contributors

2,510

Organizations

674

Software value

$113M

Cloud Custodian

Cloud Custodian enables users to be well managed in the cloud. The simple YAML DSL allows you to easily define rules to enable a well-managed cloud infrastructure, that's both secure and cost optimized.

Contributors

2,434

Organizations

435

Software value

$40M

KubeEdge

KubeEdge is an open source system for extending native containerized application orchestration capabilities to hosts at Edge.It is built upon kubernetes and provides fundamental infrastructure support for network, app. deployment and metadata synchronization between cloud and edge.

Contributors

2,275

Organizations

400

Software value

$345M

Kserve

The mission of the Project is to develop a highly scalable and standards based model inference platform on Kubernetes for Trusted AI.

Contributors

2,148

Organizations

435

Software value

$229M

Dex

Dex is an identity service that uses OpenID Connect to drive authentication for other apps.

Contributors

2,103

Organizations

901

Software value

$2.5M

Telepresence

Telepresence is an open source tool that lets you run a single service locally, while connecting that service to a remote Kubernetes cluster.

Contributors

2,033

Organizations

640

Software value

$9M

Vitess

Vitess is a database solution for deploying, scaling and managing large clusters of open-source database instances. It currently supports MySQL and MariaDB. It’s architected to run as effectively in a public or private cloud architecture as it does on dedicated hardware. It combines and extends many important SQL features with the scalability of a NoSQL database

Contributors

1,948

Organizations

493

Software value

$88M

emissary-ingress

An open source ingress controller and API Gateway for Kubernetes.

Contributors

1,928

Organizations

661

Software value

$37M

MetalLB

MetalLB is a load-balancer implementation for bare metal Kubernetes clusters, using standard routing protocols.

Contributors

1,835

Organizations

572

Software value

$8.9M

LitmusChaos

Litmus is one of the most promising open source chaos engineering frameworks that takes into account proper chaos engineering principles while providing autonomy and extensibility to the users.

Contributors

1,778

Organizations

433

Software value

$57M

Flatcar

Flatcar Container Linux is a container-optimized Linux distribution focused on security, reliability and ease of maintenance. It provides an immutable Linux operating system designed to run containerized applications, with automated updates and minimal overhead.

Contributors

1,743

Organizations

446

Software value

$209M

SOPS

SOPS (Secrets OPerationS) is an editor in the form of a command-line tool and SDK designed to help manage encrypted files in a variety of structured (YAML, JSON, ENV, INI) and BINARY formats using a one of the supported Key Management Systems (KMS), PGP, or age.

Contributors

1,709

Organizations

758

Software value

$979K

Contour

Contour is a Kubernetes ingress controller using Envoy proxy.

Contributors

1,695

Organizations

480

Software value

$30M

Inclavare Containers

An innovation of container runtime with the novel approach of launching and attesting confidential container in hardware-enforced Trusted Execution Environment (TEE).

Contributors

1,649

Organizations

384

Software value

$130M

CRI-O

CRI-O is an implementation of the Kubernetes CRI (Container Runtime Interface) to enable using OCI (Open Container Initiative) compatible runtimes. It is a lightweight alternative to using Docker as the runtime for kubernetes. It allows Kubernetes to use any OCI-compliant runtime as the container runtime for running pods.

Contributors

1,623

Organizations

517

Software value

$145M

Looking for a project that’s not listed?