{"repo":"raffis/gitops-zombies","free":true,"listed":false,"github":"https://github.com/raffis/gitops-zombies","clone":"git clone https://github.com/raffis/gitops-zombies.git","description":"Identify kubernetes resources which are not managed by GitOps","language":"Go","stars":112,"topics":["flux","flux2","cli","gitops","kubernetes","drift-detection"],"license":"Apache-2.0","category":"deployment-docker-iac","readme_excerpt":"GitOps zombies Find kubernetes resources which are not managed via GitOps (flux2). Wether you are migrating to a GitOps workflow or have pruning disabled. This tool will help in either case. How does it work? gitops-zombies discovers all apis installed on a cluster and identifies resources which are not part of a flux Kustomization or a HelmRelease. It also acknowledges the following facts: Ignores resources which are owned by a parent resource (For example pods which are created by a deployment) Ignores resources which are considered dynamic (metrics, leases, events, endpoints, ...) Filter out resources which are created by the apiserver itself (like default rbacs) Filters secrets which are managed by other parties including helm or ServiceAccount tokens Checks if the referenced HelmRelease or Kustomization exists Checks if resources are still part of the kustomization inventory Supports cross cluster kustomizations Installation For Linux and Mac OS users: For windows download the .exe from the latest stable release. How to use A more advanced call might include a filter like the following to exclude certain resources which are considered dynamic (besides the builtin exclusions): Also you might want to exclude some specific resources based on their names. It can be achieved through a YAML configuration: myconfig.yaml: CLI reference","default_branch":null,"files":null,"tree":[],"storefront":"/r/raffis","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/raffis/gitops-zombies/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}