Continuous Compliance Monitoring
Your OPA Gatekeeper policies, surfaced in a unified dashboard. Track violations continuously, not just at deploy time.
The Challenge
"We already have OPA Gatekeeper policies, but tracking violations means digging through kubectl output and audit logs. I need a dashboard, not a terminal.
Gatekeeper enforces policies, but visibility into what's passing and what's failing requires tooling that most teams don't have.
Your Policies. One Dashboard.
Knodex integrates directly with OPA Gatekeeper. Annotate your ConstraintTemplates with a single annotation and they appear in the Knodex compliance dashboard, with violation counts, enforcement status, and constraint details. No pre-built templates to configure. No new policy language to learn. Bring your existing Gatekeeper policies, and Knodex gives you the monitoring layer on top.
Key Capabilities
Compliance monitoring built on what you already run
OPA Gatekeeper Integration
Knodex ingests your existing OPA Gatekeeper ConstraintTemplates. Add one annotation and they appear in the compliance dashboard. No migration, no duplication.
Annotation-Driven Visibility
Add knodex.io/compliance: "true" to any ConstraintTemplate. It surfaces in the dashboard with its description, constraints, and violation counts instantly.
Three Enforcement Actions
Deny blocks the request. Warn allows but logs. Dryrun records for audit only. Start with dryrun to assess impact, then escalate when confident.
Violation Dashboard
See all policy violations across your cluster at a glance. View by template, constraint, or resource. Track violation counts as they evolve.
Bring Your Own Policies
Write ConstraintTemplates in Rego, use community policies, or adapt existing ones. Knodex monitors whatever Gatekeeper enforces. It's your policy, your rules.
Continuous Monitoring
Violations are tracked continuously via Gatekeeper's audit cycle. The dashboard updates as resources change, not just at deploy time, but throughout the lifecycle.
Monitor Your Compliance Posture
You already have the policies. Now get the visibility.