Skip to content

Hostzero-GmbH/keycloak-operator

Secrets & Credentials

A Kubernetes operator that declaratively manages Keycloak resources via CRDs

Go Latest v0.9.0 · 1mo ago Security brief →

Features

  • Declarative management of Keycloak objects through Kubernetes Custom Resources
  • Full support for the Keycloak Admin API via definition fields
  • Automatic synchronization of client secrets to native Kubernetes Secrets
  • Hierarchical resource model (Instance → Realm → Clients/Users) enabling GitOps workflows

Recent releases

View all 13 releases →
Config change
v0.9.0 Breaking risk
Auth Breaking upgrade

Unified auth, TLS CAs, IdP token exchange, roleRef

Review required
v0.8.0 Breaking risk
Auth RBAC Breaking upgrade

Drift detection, IdP mapper CRD, public client Secret

Review required
v0.7.0 Mixed
Auth RBAC

CRD for flows + client scope support + bugfixes

Upgrade now
v0.6.1 Breaking risk
Breaking upgrade

Operator crash fix

Review required
v0.6.0 Breaking risk
Auth Dependencies

KeycloakRequiredAction, Alias Flow Bindings, Secret Config, Dependency Updates

Weekly OSS security release digest.

The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.

No spam, unsubscribe anytime.

About

Stars
80
Forks
16
Languages
Go Shell Makefile

Install & Platforms

Install via
helm

Beta — feedback welcome: [email protected]