kumahq/kuma
🐻 The multi-zone service mesh for containers, Kubernetes and VMs. Built with Envoy. CNCF Sandbox Project. observed · 2026-08-28
Health v2 · maintenance only
94/100
- Activity 99
- Release rhythm 85
- Longevity 100
How is this computed?
round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-03. Adoption (stars, forks) is never an input.
- gap_med: 0.0
- age_days: 2730
- days_rel: 23
- days_push: 7
- n_releases_24m: 117
Adoption not part of the score
3995 stars · 368 forks observed · 2026-08-28
What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-29, confidence not recorded
Kuma is a CNCF Sandbox, Envoy-based service mesh that provides L4-L7 connectivity, discovery, security (mTLS), observability, and traffic control across Kubernetes and VM workloads. It supports single- and multi-zone deployments across clouds with automatic policy propagation and multi-mesh multi-tenancy.
Use cases
- secure microservices with mutual TLS across clusters
- run a service mesh spanning both Kubernetes and VMs
- manage traffic routing, retries, and circuit breaking between services
- observe service traffic with metrics, logs, and distributed tracing
- connect services across multiple zones, clusters, and clouds
- apply zero-trust security policies to east-west traffic
- expose services through built-in or delegated gateways
When to choose
- you need a multi-zone or multi-cluster service mesh across Kubernetes and VMs
- you want Envoy-powered mesh features without requiring Envoy expertise
- you need multi-tenancy with multiple isolated meshes
- you want a CNCF-neutral project with broad policy support (mTLS, rate limiting, observability)
When to avoid
- you run a single small Kubernetes cluster where native Kubernetes networking suffices
- you are already standardized on another service mesh like Istio or Linkerd
- you cannot operate sidecar proxies or a control plane
- you need a lightweight mesh for very simple, low-traffic deployments
Facets
application · maturity stable
networking security monitoring api-gateway service-discovery cryptography rate-limiting microservices cloud-computing networking security infrastructure-as-code self-hosted cloud go service-mesh envoy sidecar-proxy mtls zero-trust multi-zone control-plane cncf traffic-management observability containers devops kubernetes docker linux
9 sources
- readme: https://github.com/kumahq/kuma · fetched 2026-08-28 · e53ad00f98aa
- homepage: https://kuma.io/install · fetched 2026-08-29 · deb6f2b84318
- site_page: https://kuma.io/features · fetched 2026-08-29 · 15a07e1f9bf9
- site_page: https://kuma.io/docs · fetched 2026-08-29 · 1d1febeeb88d
- site_page: https://kuma.io/docs/latest/introduction/install · fetched 2026-08-29 · 751bec952748
- site_page: https://kuma.io/docs/changelog · fetched 2026-08-29 · 3c530b423073
- site_page: https://kuma.io/docs/2.14.x/production/upgrades-tuning/upgrade-notes · fetched 2026-08-29 · b548bfe01215
- site_page: https://kuma.io/docs/2.14.x/quickstart/kubernetes-demo · fetched 2026-08-29 · 86f477ba37a3
- site_page: https://kuma.io/docs/2.14.x/quickstart/universal-docker-demo · fetched 2026-08-29 · 98a482db6e37
Member repositories
| Repository | Role | Health v2 |
|---|---|---|
| kumahq/kuma | main | 94 |
For agents
Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem