Live data from Hacker News

CNCF accepts Kubescape as its first security and compliance scanner project

sdxcentral.com

1–10 of 20 posts

Re: CNCF accepts Kubescape as its first security and compliance scanner project

#2
Kubescape, an end-to-end open-source Kubernetes security platform, embarks on a new journey. Kubescape, created by ARMO, will fully migrate to the CNCF. This coincides with the launch of ARMO Platform, a hosted, managed security solution powered by Kubescape.

Re: CNCF accepts Kubescape as its first security and compliance scanner project

#4

This seems to be an increasingly popular model: Make an open source project on the one hand and selling a hosted, managed version of the open source product on the other.

Well, it makes sense, you can outsource bug fixing and reporting for free.

You can test and use the software for free

Companies can outsource the responsibility of hosting.

Re: CNCF accepts Kubescape as its first security and compliance scanner project

#6

This seems to be an increasingly popular model: Make an open source project on the one hand and selling a hosted, managed version of the open source product on the other.

I don't think the model has existed long enough, especially through hard times, to make a judgement on if it's effective or not.

Re: CNCF accepts Kubescape as its first security and compliance scanner project

#8

This seems to be an increasingly popular model: Make an open source project on the one hand and selling a hosted, managed version of the open source product on the other.

Well, it makes sense, you can outsource bug fixing and reporting for free. You can test and use the software for free Companies can outsource the responsibility of hosting.

> Well, it makes sense, you can outsource bug fixing and reporting for free.

In the long term, maybe. In the short to medium term, most of the development ends up being done by the company who created the project.

I guess for simple stuff like typo bugs, people will submit PRs, and maybe organisations with weird use-cases will merge their integrations etc into the project, though.

Re: CNCF accepts Kubescape as its first security and compliance scanner project

#10

This seems to be an increasingly popular model: Make an open source project on the one hand and selling a hosted, managed version of the open source product on the other.

I don't think the model has existed long enough, especially through hard times, to make a judgement on if it's effective or not.

Yeah, I tend to agree. I guess we'll see which companies can make it work and what happens to the projects if they don't.
Post reply on HN