Charts
5 chartsStacks charts
Hardened Helm charts in the stacks category. Each deploys our hardened image pinned by its signed digest, with production defaults.
0 CVE
identity-stack
Hardened, operator-free self-hosted SSO/identity stack: Keycloak (OIDC/SAML identity provider) + PostgreSQL (Keycloak's database) + oauth2-proxy (an auth proxy you place in front of any upstream app to authenticate users against Keycloak), wired together so you get single sign-on in front of your apps out of the box.
chart v0.0.5 · app v1.0.0
StacksstandardUnknown0 CVE
lgtm-stack
Hardened, operator-free LGTM observability superset in one install: Loki (logs) + Grafana (the single pane) + Tempo (traces) + VictoriaMetrics (Prometheus-compatible metrics) + an OpenTelemetry Collector (OTLP ingest) + Alertmanager.
chart v0.0.4 · app v1.0.0
StacksstandardUnknown0 CVE
logging-stack
Hardened, operator-free logging stack: Loki + Grafana + Vector, wired together for cluster log aggregation and browsing.
chart v0.0.4 · app v1.0.0
StacksstandardUnknown0 CVE
observability-stack
Hardened, operator-free observability stack: Prometheus + Grafana + Alertmanager + kube-state-metrics + node-exporter + cAdvisor, wired together for metrics, alerting, and populated Kubernetes dashboards.
chart v0.0.4 · app v1.0.0
StacksstandardUnknown0 CVE
tracing-stack
Hardened, operator-free distributed tracing stack: Tempo (trace store/query) + Grafana (Tempo datasource + trace exploration) + an OpenTelemetry Collector gateway that receives OTLP from your apps and forwards spans to Tempo.
chart v0.0.4 · app v1.0.0
StacksstandardUnknown