edgelesssys/constellation resource
Constellation is a Kubernetes distribution for confidential computing, securing entire clusters on untrusted infrastructure. Constellation is in maintenance mode. New development continues in Contrast, which provides workload-level confidential computing using Confidential Containers. 👉 https://github.com/edgelesssys/contrast observed · 2026-08-28
Health v2 · maintenance only
10/100
- Activity 63
- Release rhythm 45
- Longevity 100
Flags: archived no_license
How is this computed?
round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-02. Adoption (stars, forks) is never an input.
- gap_med: 18.5
- age_days: 1466
- days_rel: 364
- days_push: 223
- n_releases_24m: 13
Adoption not part of the score
1096 stars · 62 forks observed · 2026-08-28
What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-30, confidence not recorded
Constellation is a Kubernetes distribution that runs entire clusters inside Confidential VMs (AMD SEV / Intel TDX), encrypting runtime memory, network traffic, and storage to shield workloads from untrusted cloud infrastructure. The project is now in maintenance mode; development continues in Edgeless Systems' Contrast.
Use cases
- run a kubernetes cluster with always-encrypted memory on untrusted cloud infrastructure
- move sensitive workloads from on-prem to the cloud while keeping data confidential
- meet regulatory compliance requirements for encrypted kubernetes clusters
- increase trustworthiness of SaaS offerings with verifiable confidential computing
- encrypt pod-to-pod network traffic and persistent storage transparently
- remove cloud admins and co-tenants from the trusted computing base
When to choose
- you need cluster-wide confidential computing with CVMs on AMD SEV or Intel TDX
- you want transparent encryption of kubernetes network, storage, and key management
- you need verifiable attestation of your kubernetes infrastructure
When to avoid
- you need actively maintained software with ongoing updates and support
- you want workload-level confidential computing - use Contrast instead
- you don't have access to confidential computing hardware or cloud CVM offerings
Facets
infra-config · maturity abandoned
container-orchestration security cryptography deployment cloud security cloud-computing privacy cloud go confidential-computing kubernetes-distribution confidential-vms amd-sev intel-tdx cluster-security maintenance-mode containers devops kubernetes linux
1 source
- readme: https://github.com/edgelesssys/constellation · fetched 2026-08-28 · ec9f5fc2145f
Member repositories
| Repository | Role | Health v2 |
|---|---|---|
| edgelesssys/constellation | main | 10 |
For agents
markdown · JSON · MCP: product_card(name="edgelesssys/constellation")
Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem