Policy As Code Opa Kyverno

Policy as code for Kubernetes and infrastructure: authoring Kyverno ClusterPolicy rules, OPA Rego in a Gatekeeper ConstraintTemplate, and Conftest checks, plus Pod Security Standards enforcement, policy unit testing, and an owned exception register with expiry dates. Use when privileged containers or pods without resource limits must be rejected at admission rather than reported, when admission policies need tests so a rule cannot silently stop matching, or when choosing between Kyverno and OPA Gatekeeper.

mchittineni Updated

File contents

mchittineni/cloud-platform-skills/tree/main/.agents/skills/policy-as-code-opa-kyverno commit e00d7c5bdb

Frequently asked questions

npx skillmds@latest add mchittineni/policy-as-code-opa-kyverno