Launched May 12, 2026
Kheeper
Registry for Bootable Images
Subscription1,438 impressions#5 of its week
Push and pull bootable operating system images, fully configured, with your app layered on top. Config and secrets are encrypted to auto-updating hosts. OS security patches, dependency updates, app version bumps - all as simple as pushing an image.
Kheeper is a registry for bootable OS images that bundles software, config and infrastructure into a single encrypted artifact.
- for
- DevOps teams that need to ship bootable images with integrated config and secrets.
- pricing
- free
- license
- MIT
works withUbuntuKubernetesOCI
Key features
6 features of Kheeper
- Single artifact delivery — Combines software, config and infrastructure into one OCI image.
- Encrypted configuration — Stores deployment yaml and secrets encrypted inside the image.
- Boot on cloud and bare metal — Images can be booted directly on cloud providers or on physical servers.
- OCI compatible — Supports standard push and pull of OCI images.
- Integration with Kubernetes — Deploys via Kubernetes manifests stored in the image.
- Terraform support — Infrastructure definitions (e.g., nodes.tf) are included in the image.
Use cases
- Deploy a full stack app with OS, config and code via a single image
- Roll out OS security patches automatically through image updates
- Run consistent environments on both cloud VMs and bare-metal servers
Kheeper FAQ
How do I push a bootable image to Kheeper?+
Push your OCI image (e.g., from Docker or Buildah) to the Kheeper registry using standard OCI push commands.
Can I store Kubernetes deployment files in the image?+
Yes, Kheeper encrypts deployment yaml and other config files inside the image.
Does Kheeper support booting on bare metal?+
Yes, images stored in Kheeper can be used to boot both cloud instances and bare-metal machines.
Is the configuration data encrypted?+
All configuration and secret data embedded in the image are encrypted by Kheeper.
Summarized by DevHunt from kheeper.com · Sep 28, 2026. Details may change; check the official site.