By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
World of SoftwareWorld of SoftwareWorld of Software
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Search
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
Reading: Cedar Joins CNCF as a Sandbox Project
Share
Sign In
Notification Show More
Font ResizerAa
World of SoftwareWorld of Software
Font ResizerAa
  • Software
  • Mobile
  • Computing
  • Gadget
  • Gaming
  • Videos
Search
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Have an existing account? Sign In
Follow US
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
World of Software > News > Cedar Joins CNCF as a Sandbox Project
News

Cedar Joins CNCF as a Sandbox Project

News Room
Last updated: 2026/01/27 at 3:26 AM
News Room Published 27 January 2026
Share
Cedar Joins CNCF as a Sandbox Project
SHARE


Cedar, an open-source authorisation policy language and SDK, has officially joined the Cloud Native Computing Foundation (CNCF) as a Sandbox project.


Originally architected by Amazon Web Services (AWS), the project aims to provide a vendor-neutral standard for defining and enforcing fine-grained permissions in modern applications.


Managing access control in cloud-native environments has traditionally relied on hard-coded logic or general-purpose policy engines. Cedar solves this by allowing developers to express permissions as policies, effectively decoupling access control from application logic. This separation enables teams to update permissions without redeploying code, a pattern often referred to as policy-as-code.


The language supports common authorisation models, including Role-Based Access Control (RBAC), Attribute-Based Access Control (ABAC), and Relationship-Based Access Control (ReBAC). A distinguishing feature of Cedar is its focus on assurance and safety through formal verification. The language specification is formally verified using the Lean theorem prover, and its Rust implementation undergoes differential random testing against this formal specification. This mathematical rigour ensures that the policy engine behaves exactly as intended, a critical requirement for security-sensitive operations.


Beyond the core language, the project’s reliance on automated reasoning enables advanced tooling capabilities. Developers can use the policy validator to check for errors before deployment, ensuring that policies are consistent with the defined schema. This capability allows for the mathematical analysis of policies to answer questions such as whether a specific request would be allowed or denied, providing a higher level of confidence than traditional testing methods alone.


In the announcement, Lucas Käldström, Emeritus at Kubernetes SIG and WG co-chair and CNCF Ambassador, noted the balance inherent in the language’s design, stating: “What I appreciate the most about Cedar is the deep knowledge that is encoded into why it works the way it works… the careful balance between expressiveness and analyzability.”


The move to the CNCF places Cedar in the same ecosystem as the Open Policy Agent (OPA), a graduated CNCF project. While OPA and its language, Rego, are general-purpose tools capable of handling infrastructure, admission control, and application policies, Cedar is purpose-built specifically for application-level authorisation. Its design prioritises high-performance evaluation for applications with millions of users and resources. Additionally, Cedar’s native support for ReBAC aligns it with the Google Zanzibar model, offering an alternative to other Zanzibar-inspired open source projects like OpenFGA.


Since its initial open-source release, the language has seen adoption across various industries. Organisations such as Cloudflare, MongoDB, StrongDM, and Cloudinary have integrated the technology into their stacks. It also underpins AWS services like Amazon Verified Permissions and AWS Systems Manager. The project has begun integrating with other open source initiatives, including the Linux Foundation’s Janssen Project and the Kubernetes-Cedar-Authorizer.


By joining the CNCF, the project transitions to a vendor-neutral governance model. This shift is intended to foster a broader contributor base and facilitate deeper integration with the cloud native landscape. The roadmap for the project includes progressing from Sandbox to Incubation and eventually Graduated status, following the standard CNCF maturity lifecycle.

Sign Up For Daily Newsletter

Be keep up! Get the latest breaking news delivered straight to your inbox.
By signing up, you agree to our Terms of Use and acknowledge the data practices in our Privacy Policy. You may unsubscribe at any time.
Share This Article
Facebook Twitter Email Print
Share
What do you think?
Love0
Sad0
Happy0
Sleepy0
Angry0
Dead0
Wink0
Previous Article How to Create Stunning Social Media Videos Using AI Tools | How to Create Stunning Social Media Videos Using AI Tools |
Next Article China accounts for nearly half of ASML’s Q2 revenue despite curbs · TechNode China accounts for nearly half of ASML’s Q2 revenue despite curbs · TechNode
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Stay Connected

248.1k Like
69.1k Follow
134k Pin
54.3k Follow

Latest News

HP and the urgency of quantum resilience
HP and the urgency of quantum resilience
Mobile
Best Financial APIs for 2026  | HackerNoon
Best Financial APIs for 2026 | HackerNoon
Computing
Thu, 01/29/2026 – 18:00 – Editors Summary
News
Tech Workers Call on CEOs to Condemn ICE, Pressure Trump Admin to Back Off
Tech Workers Call on CEOs to Condemn ICE, Pressure Trump Admin to Back Off
News

You Might also Like

Thu, 01/29/2026 – 18:00 – Editors Summary

1 Min Read
Tech Workers Call on CEOs to Condemn ICE, Pressure Trump Admin to Back Off
News

Tech Workers Call on CEOs to Condemn ICE, Pressure Trump Admin to Back Off

8 Min Read
Assessing the Valuation of Cadence Design Systems (CDNS) After Recent Flat Returns and Mixed Growth Expectations
News

Assessing the Valuation of Cadence Design Systems (CDNS) After Recent Flat Returns and Mixed Growth Expectations

5 Min Read
Vladimir Putin’s war machine may finally be running out of fuel
News

Vladimir Putin’s war machine may finally be running out of fuel

8 Min Read
//

World of Software is your one-stop website for the latest tech news and updates, follow us now to get the news that matters to you.

Quick Link

  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact

Topics

  • Computing
  • Software
  • Press Release
  • Trending

Sign Up for Our Newsletter

Subscribe to our newsletter to get our newest articles instantly!

World of SoftwareWorld of Software
Follow US
Copyright © All Rights Reserved. World of Software.
Welcome Back!

Sign in to your account

Lost your password?