# Kyverno

**Canonical:** https://apis.io/providers/kyverno/  
**Website:** https://kyverno.io/  
**APIs profiled:** 9

Kyverno is a Kubernetes native policy management engine for security, automation, and governance. It uses Kubernetes admission controllers to validate, mutate, and generate configurations using policies written as Kubernetes resources.

## Kin Score — 29.8 / 100 (thin)

Scored 2026-08-20 under rubric 0.12.0. Trend: flat (+0.0 from 29.8).

| Facet | Score |
|---|---|
| Discoverability | 64.8 |
| Contract Quality | 54.8 |
| Governance | 9.8 |
| Contract Governance | 9.8 |
| Operational Transparency | 36.8 |
| Developer Ergonomics | 26.2 |
| Commercial Clarity | 0.0 |
| Access Clarity | 0.0 |

Regulatory layer — **Insurance**: 16.7 (matched via tags).

## Agent readiness — 36.2 (agent-ready)

| Dimension | Value |
|---|---|
| Spec Presence | yes |
| Agentic Access | derived |
| Reversibility Documented | na |
| MCP Server | no |
| Auth Clarity | no |
| Idempotency | na |
| Error Semantics | verified |
| OpenAPI Examples | partial |
| Rate Limit Signal | documented |
| Event Surface Described | no |
| Agent Skills | no |
| Well Known Catalog | no |
| Consent Identity | no |
| Agent Card | no |
| Dry Run Mode | na |

## Access

Freemium — onboarding: unknown, pricing: freemium, trial: no (confidence: medium).

## APIs (9)

- **Kyverno** — Kyverno is a Kubernetes-native policy engine that runs as a dynamic admission controller to validate, mutate, and generate Kubernetes resources using policies written as Kuberne...
- **Kyverno CLI** — The Kyverno CLI provides a command-line interface for applying and testing Kyverno policies against Kubernetes resources outside of a cluster. It can be used in CI/CD pipelines ...
- **Kyverno ClusterPolicyReports API** — Cluster-scoped policy report endpoints
- **Kyverno Health API** — Health and readiness endpoints
- **Kyverno Namespaces API** — Namespace listing endpoints
- **Kyverno Policies API** — Policy listing and detail endpoints
- **Kyverno PolicyReports API** — Namespaced policy report endpoints
- **Kyverno Results API** — Policy result query endpoints
- **Kyverno Sources API** — Policy source listing endpoints

## Agentic access (1)

- **Kyverno Agentic Access** — 13 operations

## Security (1)

- **Kyverno Domain Security** — TLSv1.3 · HSTS

## Plans (1)

- **Kyverno Plans Pricing**

## Tags

Cloud-Native, Governance, Kubernetes, Policy Management, Security

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/providers/kyverno/). Scores are computed from the provider's own public artifacts under a published rubric.
