Writing a container in a few lines of Go code, as seen at DockerCon 2017 and on O'Reilly Safari
-
Updated
Jul 13, 2026 - Go
Writing a container in a few lines of Go code, as seen at DockerCon 2017 and on O'Reilly Safari
A sophisticated low memory handler for Linux
a fast, rootless sandbox and virtual resource runtime. Run any workload in a real container, including an agent's tool-call or LLM-generated code.
BenchExec: A Framework for Reliable Benchmarking and Resource Measurement
eBPF-based Ethernet traffic monitor using TC, XDP, kprobes and cgroups
Kubernetes CPU limits make your apps (very) slow and costly. CPU throttling analyzed, with proof.
A simple educational linux container runtime.
Process isolation for Linux using namespaces, resource limits, cgroups, landlock and seccomp.
metric collectors for various stuff not (or poorly) handled by other monitoring daemons
Blazingly fast Linux syscall collector
Prometheus exporter for Pressure Stall Information (PSI) from Linux kernel.
Under Improvement
Toy container build from scratch in Go solely for learning purpose
A Docker/LXC/Kubernetes, database-free, lightweight container performance monitoring solution, perfect for ephemeral containers (e.g. containers used for DevOps automatic testing). Can also be used with InfluxDB, Prometheus and Grafana
Improve responsiveness during heavy swapping: keep amount of available memory
Pipe runc (OCI compatible) events to a stats TUI (Text User Interface).
Rust async child-process management for tokio: whole-tree kill-on-drop (no orphans), plus streaming, pipelines, timeouts, and supervision library.
To associate your repository with the cgroups topic, visit your repo's landing page and select "manage topics."