Openshift
OpenShift Security Context Constraint (SCC)
PSP
Using pod security policies with CE
Kyverno
Kyverno policies block configurations that don't match a policy (enforce mode) or can generate policy violations (audit mode). It scans existing configurations and reports violations in the cluster.