gvisor

by google · Infrastructure

Application Kernel for Containers

New0 ratings19,238 starsActive
InfrastructureDeveloper ToolGoC++
Open project ↗↓ Download release-20260831.0GitHub⚑ Report
gvisor preview

About this project

What is gVisor? gVisor provides a strong layer of isolation between running applications and the host operating system. It is an application kernel that implements a Linux-like interface. Unlike Linux, it is written in a memory-safe language (Go) and runs in userspace. gVisor includes an Open Container Initiative (OCI) runtime called runsc that makes it easy to work with existing container tooling. The runsc runtime integrates with Docker and Kubernetes, making it simple to run sandboxed containers. What isn't gVisor? gVisor is not a syscall filter (e.g. seccomp-bpf), nor a wrapper over Linux isolation primitives (e.g. firejail, AppArmor, etc.). gVisor is also not a VM in the…

Technologies

ShellC++StarlarkGoAssemblycontainersdockerkernel

Project health

Actively maintained
Last update2 days ago
Contributors322
Latest releaserelease-20260831.0
Open issues & PRs871
LicenseApache-2.0
On GitHubsince 2018

GitHub

19,238
stars
1,974
forks
322
contributors
871
open issues & PRs
Go
language
2 days ago
last commit
View on GitHub ↗All releases ↗

Reviews

out of 5 · 0 ratings
★★★★★
0%
★★★★
0%
★★★
0%
★★
0%
0%
Sign in to write a review
No reviews yet
Be the first to review gvisor.

Built by

google
Imported from GitHub · not yet claimed on GitPalace
View developer pageSign in with GitHub to claim

Maintain google/gvisor? Claiming verifies admin access through your GitHub account and gives you control of this listing.

You might also like