netfetch
« Back to VersTracker
Description:
K8s tool to scan clusters for network policies and unprotected workloads
Type: Formula  |  Latest Version: 0.5.4@0  |  Tracked Since: Dec 26, 2025
Links: Homepage  |  GitHub  |  formulae.brew.sh
Stars: 450  |  Forks: 25  |  Language: Go  |  Category: Security
Tags: kubernetes security networking devops audit
Install: brew install netfetch
About:
Netfetch is a command-line tool designed to audit Kubernetes clusters for the presence of network policies and identify workloads that are not protected by them. By scanning namespaces and workloads, it highlights security gaps where pods are allowing unrestricted traffic. This provides developers and security teams with actionable insights to improve cluster network security posture.
Key Features:
  • Scans Kubernetes clusters for existing Network Policies
  • Identifies unprotected workloads lacking policy coverage
  • Provides actionable reports on security vulnerabilities
  • Supports scanning specific namespaces for targeted audits
Use Cases:
  • Auditing existing clusters to identify security compliance gaps
  • Pre-deployment checks to ensure new workloads have network policies
  • Security hardening of Kubernetes environments
Alternatives:
  • kube-linter – kube-linter focuses on static YAML analysis, whereas netfetch focuses on runtime cluster state regarding network policies.
  • polaris – Polaris offers broad best-practice checks, while netfetch specializes specifically in network policy coverage.
Version History
Detected Version Rev Change Commit
Dec 26, 2025 6:35pm 0.5.4 0 VERSION_BUMP 6f3e81f7
Oct 9, 2025 5:05pm 0 VERSION_BUMP 51803d76
Sep 15, 2025 7:49am 0 VERSION_BUMP 145822fe