Skip to content
cloud-security

Gatekeeper

OPA Gatekeeper

Definition

OPA Gatekeeper is an admission controller webhook for Kubernetes that enforces Open Policy Agent (OPA) policies as Kubernetes-native constraints. Security teams define ConstraintTemplates (Rego policy logic) and Constraint resources (specific policy instances) to prevent workloads from violating security policies at admission time.

Gatekeeper enables policy-as-code for Kubernetes security, enforcing controls like disallowing privileged containers, requiring resource limits, and restricting allowed image registries.


Ship secure code faster

Crash Override integrates security into the developer workflow. No context switching, no waiting on reviews.