{"repo":"enclaver-io/enclaver","free":true,"listed":false,"github":"https://github.com/enclaver-io/enclaver","clone":"git clone https://github.com/enclaver-io/enclaver.git","description":"Open source toolkit created to enable easy adoption of software enclaves","language":"Rust","stars":164,"topics":["aws","confidential-computing","kubernetes","rust","secure-enclave","security"],"license":"Apache-2.0","category":"security-tools","readme_excerpt":"Enclaver is an open source toolkit created to enable easy adoption of software enclaves, for new and existing backend software. Enclaves provide several critical features for operating software which processes sensitive data, including: - Isolation: Enclaves enable a deny-by-default approach to accessing process memory. Software running in an enclave can expose interfaces for accessing specific data, while disallowing humans or other software on the same computer from reading arbitrary data from memory. - Attestation: Enclaves make it possible to determine the exact identity and configuration of software running in an enclave. - Network Restrictions: External communication is limited and controlled. The network policy is built into the image and therefore the software attestation. These demos show off how your apps can use these unique features to improve privacy and security: - Run a simple Python app that represents a microservice or security-centric function - Run Hashicorp Vault to fully isolate it after it's unsealed Project State Enclaver is currently in beta and should be used cautiously in production. Enclaver currently only supports AWS Nitro Enclaves; support for Azure Confidential VMs, GCP Confidential VMs, and arbitrary SGX and OP-TEE enclaves is on the roadmap. - Getting started guide - Deploy an enclave on AWS - Deploy an enclave on Kubernetes Architecture Read the architecture doc for the full details. Enclaver consists of 3 interrelated pieces of software: - e","default_branch":null,"files":null,"tree":[],"storefront":"/r/enclaver-io","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/enclaver-io/enclaver/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}