Kubernetes Operator based on the open-source container vulnerability scanner Trivy.
-
Updated
Jun 20, 2025 - Python
Kubernetes Operator based on the open-source container vulnerability scanner Trivy.
A hands-on lab toolkit for container security, from CIS-benchmark fundamentals to architectural trust governance. 12 production-grade labs covering image hardening, signing, supply chain attestation, admission control, and runtime debugging. Designed around reproducible, production-oriented container security scenarios.
In-process Tokio task supervisor: one job per key with queue/replace/reject admission, retries, graceful shutdown, and reliable final outcomes
Real-time serving of full-duplex interaction models: per-tick deadline scheduling + KV-budget admission control. Systems research.
Drop-in OpenAI- and Ollama-compatible LLM gateway that learns each backend's latency online and routes vLLM / SGLang / TGI / Ollama with SLO-aware admission. No engine patches.
Simulate value-aware token allocation across a task tree, choosing model tiers or preempting tasks within a declared budget.
A focused async bulkhead for Java that limits in-flight work and makes overload visible.
C++17 + CUDA orchestrator for running multiple LLM agents on one constrained GPU. `lmxd` daemon does NVML-seeded admission control to stop llama.cpp OOM crashes; `LayerStreamer` + `PinnedHostPool` show 22–32% wall-clock savings via double-buffered `cudaMemcpyAsync` on two CUDA streams. KV-swap helper included.
Admission control for human approvers — pressure-aware queueing, delegation, and auto-approval, governed by an LLM agent and validated by a deterministic policy engine.
Open-source, self-hosted virtual waiting room for websites and apps. FIFO admission, operator dashboard, and a Docker-based local Preview. Apache-2.0.
Chaosify is a Kubernetes security testing CLI that proves your admission controls, RBAC policies, network segmentation, and runtime detection actually work by running targeted tests against a live cluster and producing structured evidence.
Shared lifecycle admission protocol and reference policy kernel for DeepSeek Harness subagents.
LLM admission control with concurrency and in-flight token budgeting for predictable performance under contention.
Give an AI agent the keys to a real Kubernetes platform and watch it burn, then turn on the CNCF and agent-specific guardrails that stop it. Hands-on security workshop from AI Engineer World's Fair 2026.
QoS admission control and capacity intelligence for finite AI inference capacity
Splits a build across models from different vendors — each writes one file to a shared interface contract, another vendor reviews it, then it is started over HTTP to prove it runs.
Typed, zero-dependency bulkhead and bounded-concurrency library for Python asyncio, with FIFO queues, deadlines, metrics, and weighted capacity.
面向生产的 OpenResty 流量网关模板,支持热点活动流量保护、等待室准入、关键链路保护与可复用策 略控制。
SimpleTicketing is a lightweight digital ticketing system for non-profit organizations.
Agent Gate Incident Replay is a browser-runnable blackbox replay runtime for Agent incidents. It restores a real VM state in the browser with [v86](https://github.com/copy/v86), mounts an incident module, and replays the agent's actions against real runtime boundaries and real Agent Gate verdicts.
To associate your repository with the admission-control topic, visit your repo's landing page and select "manage topics."