pizzabits / secrets-snitcher
Public300 lines eBPF tool that shows which pods are reading your K8s secrets and how often.
A monitoring tool for Kubernetes clusters that tracks how often pods access secret files to detect suspicious patterns like compromised workloads repeatedly reading tokens.
How It Works
You're running apps in a shared cluster and worry about sneaky programs stealing secrets, so you find this simple watcher tool.
You run an easy installer script that sets up the secret watcher right inside your cluster.
It takes about 30 seconds to wake up and start quietly watching every time apps touch secret files.
You connect from your laptop to see a live report of which apps are reading secrets and how often.
You add a pretend naughty app that grabs secrets non-stop to practice spotting trouble.
The report jumps out with the bad app hammering secrets thousands of times a second, screaming 'not normal!'
You've got eyes on your secrets now, catching weird access early and keeping your cluster secure.
Star Growth
Repurpose is a Pro feature
Generate ready-to-use prompts for X threads, LinkedIn posts, blog posts, YouTube scripts, and more -- with full repo context baked in.
Unlock RepurposeSimilar repos coming soon.