* [Open Policy Agent v1.17.0](https://github.com/open-policy-agent/opa) – General-purpose policy engine for unified, context-aware policy enforcement across various systems. * [Pepr v1.2.1](https://github.com/defenseunicorns/pepr) – Type safe Kubernetes middleware simplifying management with TypeScript-based controllers and fluent APIs. * [vArmor v0.10.2](https://github.com/bytedance/vArmor) – Cloud-native container sandbox using AppArmor, BPF LSM, and Seccomp to harden containers and reduce kernel attack surface. * [agentsh v0.20.3](https://github.com/canyonroad/agentsh) – Secure policy-enforced execution gateway that intercepts file, network, process, and signal activity and emits structured audit events. * [opa-envoy-plugin v1.17.0-envoy](https://github.com/open-policy-agent/opa-envoy-plugin) – Extends OPA to enforce fine-grained, context-aware policies for Envoy via the External Authorization gRPC API.