Ross ROSS = Recommend OSS · open-source software intelligence for agents

edgelesssys/constellation resource

Constellation is a Kubernetes distribution for confidential computing, securing entire clusters on untrusted infrastructure. Constellation is in maintenance mode. New development continues in Contrast, which provides workload-level confidential computing using Confidential Containers. 👉 https://github.com/edgelesssys/contrast observed · 2026-08-28

github.com/edgelesssys/constellation · Go · NOASSERTION (other) · archived observed · 2026-08-28

Health v2 · maintenance only

10/100

  • Activity 63
  • Release rhythm 45
  • Longevity 100

Flags: archived no_license

How is this computed?

round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-02. Adoption (stars, forks) is never an input.

  • gap_med: 18.5
  • age_days: 1466
  • days_rel: 364
  • days_push: 223
  • n_releases_24m: 13

Full methodology

Adoption not part of the score

1096 stars · 62 forks observed · 2026-08-28

What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-30, confidence not recorded

Constellation is a Kubernetes distribution that runs entire clusters inside Confidential VMs (AMD SEV / Intel TDX), encrypting runtime memory, network traffic, and storage to shield workloads from untrusted cloud infrastructure. The project is now in maintenance mode; development continues in Edgeless Systems' Contrast.

Use cases

  • run a kubernetes cluster with always-encrypted memory on untrusted cloud infrastructure
  • move sensitive workloads from on-prem to the cloud while keeping data confidential
  • meet regulatory compliance requirements for encrypted kubernetes clusters
  • increase trustworthiness of SaaS offerings with verifiable confidential computing
  • encrypt pod-to-pod network traffic and persistent storage transparently
  • remove cloud admins and co-tenants from the trusted computing base

When to choose

  • you need cluster-wide confidential computing with CVMs on AMD SEV or Intel TDX
  • you want transparent encryption of kubernetes network, storage, and key management
  • you need verifiable attestation of your kubernetes infrastructure

When to avoid

  • you need actively maintained software with ongoing updates and support
  • you want workload-level confidential computing - use Contrast instead
  • you don't have access to confidential computing hardware or cloud CVM offerings

Facets

infra-config · maturity abandoned

container-orchestration security cryptography deployment cloud security cloud-computing privacy cloud go confidential-computing kubernetes-distribution confidential-vms amd-sev intel-tdx cluster-security maintenance-mode containers devops kubernetes linux

1 source

Member repositories

RepositoryRoleHealth v2
edgelesssys/constellationmain10

For agents

markdown · JSON · MCP: product_card(name="edgelesssys/constellation")

Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem