head to head · open source

dockle vs KubeHound

dockle has 3,297 GitHub stars, 170 forks, 53 open issues and last shipped 2 months ago. KubeHound has 1,004 stars, 67 forks, 30 open issues and last shipped 3 days ago. dockle leads on adoption by 228% (3,297 vs 1,004 stars). dockle is written in Go under Apache-2.0; KubeHound is written in Go under Apache-2.0. dockle has attracted 5% as many forks as stars, KubeHound 7%. KubeHound was the more recently maintained of the two, and both are self-hostable with no licence fee. The two share 2 topic tags (kubernetes, security-audit), so they are genuine substitutes rather than adjacent tools.

Two open source projects, one decision. Both are free and self-hostable — the differences are community size, license terms, language stack and release pace.

dockle ★ 3.3K KubeHound ★ 1.0K category Security & Privacy

← all 20902 open source comparisons

Side by side

dockle KubeHound
GitHub stars ★ 3.3K ★ 1.0K
License Apache-2.0 Apache-2.0
Written in Go Go
Last push 2026-08-10 2026-09-30
Forks ⑂ 170 ⑂ 67
Self-hosting Yes Yes
Data ownership Your server Your server

pick dockle if

  • You weight community size — 3.3K stars and counting
  • You want the Apache-2.0 license terms
  • Your stack matches Go
  • You value the larger contributor base for long-term maintenance

full dockle profile →

pick KubeHound if

  • You want the KubeHound feature set and don't need the biggest community
  • You prefer the Apache-2.0 license terms
  • Your stack matches Go
  • You evaluated both and KubeHound fits your workflow better

full KubeHound profile →

About dockle

Dockle is an open source container image linter written in Go that audits already built Docker images against security and best practice checkpoints, aimed at developers and DevSecOps teams who ship containers and want that audit to run automatically.

read the full dockle overview →

About KubeHound

KubeHound is an open source Go tool for Kubernetes security teams that automatically calculates attack paths between assets in a cluster and builds them into a queryable attack graph.

read the full KubeHound overview →

More in Security & Privacy

PayloadsAllTheThings ★ 81K Puter ★ 44K Mattermost ★ 39K Keycloak ★ 37K Tailscale ★ 37K HashiCorp Vault ★ 36K

Related comparisons

payloadsallthethings vs anthropic-cybersecurity-skills payloadsallthethings vs projectdiscovery payloadsallthethings vs pentagi payloadsallthethings vs pentestgpt payloadsallthethings vs osintgram payloadsallthethings vs vuls payloadsallthethings vs osv-scanner payloadsallthethings vs nettacker supabase vs better-auth keycloak vs jumpserver keycloak vs better-auth keycloak vs authelia keycloak vs authentik jumpserver vs better-auth jumpserver vs authelia better-auth vs authelia payloadsallthethings vs vault vaultwarden vs vault payloadsallthethings vs unkey payloadsallthethings vs phase payloadsallthethings vs keyshade puter vs vault mattermost vs vault keycloak vs vault

More Threat Detection & Response projects

Compare either of these against the rest of the Threat Detection & Response field.

dockle vs PayloadsAllTheThings dockle vs Anthropic-Cybersecurity-Skills dockle vs ProjectDiscovery dockle vs pentagi dockle vs PentestGPT dockle vs crowdsec dockle vs Osintgram dockle vs thc-hydra dockle vs vuls dockle vs osv-scanner dockle vs rengine dockle vs reconftw

Frequently asked questions

Is dockle or KubeHound more popular?

dockle has 3,297 GitHub stars and KubeHound has 1,004. dockle has the larger community by that measure.

Are dockle and KubeHound free?

Both are open source. dockle is licensed under Apache-2.0 and KubeHound under Apache-2.0. Neither carries a licence fee.

What is the difference between dockle and KubeHound?

dockle is written in Go and KubeHound in Go. The practical differences are community size, licence terms, language stack and release cadence — all compared in the table above.

Which should I choose, dockle or KubeHound?

Choose dockle if you want the larger community (3,297 stars) or its Apache-2.0 licence terms. Choose KubeHound if its feature set, stack or Apache-2.0 licence fits better. Both are self-hostable.