WharfEye
Container inspection, security auditing, performance · Go
WharfEye inspects running containers, audits their security configuration, and recommends performance fixes, across Docker, Podman, and containerd. It runs as an interactive terminal dashboard or a browser dashboard, and auto-detects whichever runtime is present.
What it does
- Live CPU, memory, and network metrics per container.
- Security misconfiguration checks based on the CIS Docker Benchmark and NIST SP 800-190.
- Performance recommendations from observed container metrics.
- Interactive TUI dashboard and a browser-based web dashboard.
- JSON output, plus HTML and CSV report export.
- Auto-detects Docker, Podman (rootful and rootless), and containerd.
Install
git clone https://github.com/mathesh-me/wharfeye.git
cd wharfeye
make build
Usage
# interactive terminal dashboard
wharfeye
# browser dashboard at http://localhost:9090
wharfeye web
# container status and metrics
wharfeye status
# security scan (add a container name for detailed advice)
wharfeye security
# performance recommendations
wharfeye recommend
# full report
wharfeye report --export html
Every command supports --format json for scripted use, and --runtime docker|podman|containerd to pick a runtime.