# Harbor

An open source trusted cloud native registry project that stores, signs, and scans content.

Repository: https://github.com/goharbor/harbor
Canonical: https://ross.abutalabs.com/products/harbor
Homepage: https://goharbor.io
Language: Go
License: Apache-2.0
License Family: permissive
Topics: cncf, container, registry, helm, cloud-native, containers, docker, kubernetes, cncf-project, container-management, container-registry, hacktoberfest
Last push: 2026-08-25T08:42:14+00:00
Link (homepage): https://goharbor.io
Link (site_page): https://goharbor.io/docs/latest/install-config
Link (site_page): https://goharbor.io/cli-docs
Link (site_page): https://goharbor.io/docs/2.15.0
Link (site_page): https://goharbor.io/docs/2.14.0

## Health v2 (maintenance only)
Score: 96/100 (v2, computed 2026-09-03T02:20:16.233290+00:00)
- activity 99, release rhythm 91, longevity 100
- inputs: {"age_days": 3870, "days_push": 8, "days_rel": 62, "gap_med": 30.0, "n_releases_24m": 21}
- flags: none
- formula: round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)

## Adoption (not part of the score)
Stars 29236, forks 5318 (observed 2026-08-28T04:11:53.197256+00:00)

## What it is
Harbor is an open source cloud native container registry that stores, signs, and scans container images and other OCI artifacts. It extends Docker Distribution with security, identity, and management features such as role-based access control, vulnerability scanning, content signing, and replication across registries.

## Use cases
- self-host a private docker registry for kubernetes
- scan container images for vulnerabilities before deployment
- sign and verify container images for supply chain security
- replicate images between multiple container registries
- manage multi-tenant container artifact projects with rbac
- integrate oidc authentication with a container registry
- deploy a highly available registry on kubernetes with helm

## When to choose
- you need a private, self-hosted registry with access control and audit trails
- you want vulnerability scanning and image signing built into your registry
- you run kubernetes or docker at scale and need reliable artifact storage close to your cluster
- you need to replicate images across registries or enforce content policies

## When to avoid
- you only need a simple registry without security or management features - plain Docker Distribution may suffice
- you prefer a fully managed registry service like ECR, GCR, or Docker Hub
- you do not want to operate the infrastructure required to run Harbor

## Facets
- artifact type: application
- maturity: stable
- function: object-storage, security, vulnerability-scanning, auth, authorization, api-gateway, self-hosted, developer-tools
- domain: cloud-computing, security, self-hosted
- platform: self-hosted, go, cloud
- tags: container-registry, image-signing, helm-chart, cncf-graduated, artifact-registry, replication, oci-distribution, vulnerability-scanning, rbac, docker-registry, containers, devops, kubernetes, docker, linux

## Member repositories
- goharbor/harbor (main) score 96
- goharbor/harbor-helm (infra) score 96

## Provenance
- Observed fields: from GitHub, fetched 2026-08-28T04:11:53.197256+00:00.
- Health v2: computed from the inputs above; adoption is never an input.
- Inferred fields (summary, facets, guidance): AI-extracted, prompt v1, taxonomy v1, on 2026-08-29T16:53:08.607573+00:00, confidence not recorded.
  - readme: https://github.com/goharbor/harbor (fetched 2026-08-28T04:11:53.197256+00:00, sha 6a2f65b7f4f7)
  - homepage: https://goharbor.io (fetched 2026-08-29T07:50:22.784339+00:00, sha c9151c22f871)
  - site_page: https://goharbor.io/docs/latest/install-config (fetched 2026-08-29T07:50:22.786878+00:00, sha 75dac995c498)
  - site_page: https://goharbor.io/cli-docs (fetched 2026-08-29T07:50:22.788762+00:00, sha f95e2d2541d1)
  - site_page: https://goharbor.io/docs/2.15.0 (fetched 2026-08-29T07:50:22.790490+00:00, sha 39f7db0336ef)
  - site_page: https://goharbor.io/docs/2.14.0 (fetched 2026-08-29T07:50:22.792214+00:00, sha 8dbc0fa392f0)
  - site_page: https://goharbor.io/docs/2.13.0 (fetched 2026-08-29T07:50:22.793912+00:00, sha e3dd3a898e9c)
  - site_page: https://goharbor.io/docs/2.12.0 (fetched 2026-08-29T07:50:22.796597+00:00, sha 7a98962cc67a)
  - site_page: https://goharbor.io/docs/2.11.0 (fetched 2026-08-29T07:50:22.799151+00:00, sha 3f0e25b194d5)
  - site_page: https://goharbor.io/docs/2.10.0 (fetched 2026-08-29T07:50:22.801326+00:00, sha b0a55944f06b)
- Data as of 2026-08-30T08:39:29.467469+00:00.
