Skip to content
@confidential-containers

Confidential Containers

logo

CII Best Practices

Welcome to Confidential Containers

Confidential Containers is an open source community working to enable cloud native confidential computing by leveraging Trusted Execution Environments to protect containers and data.

Goals:

  • Allow cloud native application owners to enforce application security requirements
  • Transparent deployment of unmodified containers
  • Support for multiple TEE and hardware platforms
  • A trust model which separates Cloud Service Providers (CSPs) from guest applications
  • Least privilege principles for the Kubernetes Cluster administration capabilities which impact delivering Confidential Computing for guest application or data inside the TEE.

Find out more

Get started

Join the community


cncf-logo

Confidential Containers is a Cloud Native Computing Foundation sandbox project.

Pinned Loading

  1. confidential-containers confidential-containers Public

    Confidential Containers Community

    327 73

  2. operator operator Public archive

    Operator to deploy confidential containers runtime

    Go 152 71

  3. guest-components guest-components Public

    Confidential Containers Guest Tools and Components

    Rust 116 143

  4. cloud-api-adaptor cloud-api-adaptor Public

    Ability to create Kata pods using cloud provider APIs aka the peer-pods approach

    Go 66 123

  5. trustee trustee Public

    Attestation and Secret Delivery Components

    Rust 142 142

  6. enclave-cc enclave-cc Public

    Process-based Confidential Container Runtime

    Go 85 42

Repositories

Showing 10 of 24 repositories
  • trustee Public

    Attestation and Secret Delivery Components

    confidential-containers/trustee’s past year of commit activity
    Rust 142 Apache-2.0 142 73 21 Updated Feb 18, 2026
  • cloud-api-adaptor Public

    Ability to create Kata pods using cloud provider APIs aka the peer-pods approach

    confidential-containers/cloud-api-adaptor’s past year of commit activity
    Go 66 Apache-2.0 123 200 (7 issues need help) 36 Updated Feb 17, 2026
  • td-shim Public

    Confidential Containers Shim Firmware

    confidential-containers/td-shim’s past year of commit activity
    Rust 120 70 30 11 Updated Feb 16, 2026
  • guest-components Public

    Confidential Containers Guest Tools and Components

    confidential-containers/guest-components’s past year of commit activity
    Rust 116 Apache-2.0 143 57 (1 issue needs help) 20 Updated Feb 16, 2026
  • confidentialcontainers.org Public

    Confidential Containers website

    confidential-containers/confidentialcontainers.org’s past year of commit activity
    SCSS 5 Apache-2.0 27 16 1 Updated Feb 14, 2026
  • trustee-operator Public

    Operator to manage the lifecycle of Trustee (KBS)

    confidential-containers/trustee-operator’s past year of commit activity
    Go 12 Apache-2.0 27 10 2 Updated Feb 12, 2026
  • charts Public

    The place for all helm charts related to Confidential Containers

    confidential-containers/charts’s past year of commit activity
    Shell 5 Apache-2.0 6 3 1 Updated Feb 5, 2026
  • operator Public archive

    Operator to deploy confidential containers runtime

    confidential-containers/operator’s past year of commit activity
    Go 152 Apache-2.0 71 59 (3 issues need help) 6 Updated Feb 1, 2026
  • confidential-containers Public

    Confidential Containers Community

    confidential-containers/confidential-containers’s past year of commit activity
    327 Apache-2.0 73 46 (1 issue needs help) 6 Updated Jan 23, 2026
  • kbs-types Public

    Rust (de)serializable types for KBS

    confidential-containers/kbs-types’s past year of commit activity
    Rust 2 Apache-2.0 34 0 0 Updated Jan 7, 2026

Most used topics

Loading…