OpenPKI, built by Ambord Tech
Certificate governance for Kubernetes. OpenPKI adds policy, approval workflows and a tamper-evident audit trail to the cert-manager you already run.
What it solves
cert-manager issues certificates, but it doesn't record who was allowed to request them, who approved them, or how you prove it a year later. As lifetimes shrink and supervisors tighten, that gap becomes an audit finding. OpenPKI closes it inside your own cluster, with keys that never leave it.
- Open-source core under Apache-2.0
- Works with your existing cert-manager
- Priced per governed identity, not per certificate
- First commercial release planned for early 2027
What Ambord Tech adds
We develop OpenPKI and offer the commercial tier for regulated and large-scale operations, together with rollout, policy design and support from the people who build it.
Become a design partner
OpenPKI is being built with a small number of regulated organisations. Details, features and the design-partner programme are on the product site.
Visit open-pki.com