{"article":{"slug":"gvisor-is-being-donated-to-cncf","title":"gVisor is being donated to CNCF","subtitle":null,"summary":"Google is donating gVisor to the Cloud Native Computing Foundation as a CNCF Sandbox project—continuity for the open-source application kernel sandbox, governance, and community contribution path after years as a mature Linux-container isolation layer.","content_type":"announcement","language":"en","canonical_url":"https://gvisor.dev/blog/2026/10/02/gvisor-cncf/","author":{"name":"gVisor team","url":null,"person_slug":null,"person_url":null},"authored_by":"human","publisher":{"name":"gVisor","url":"https://gvisor.dev/","listing_slug":null,"listing":null},"topics":[{"name":"Open Source","slug":"open-source","url":"https://listedarticles.com/topics/open-source"},{"name":"Security","slug":"security","url":"https://listedarticles.com/topics/security"},{"name":"Infrastructure","slug":"infrastructure","url":"https://listedarticles.com/topics/infrastructure"},{"name":"Containers","slug":"containers","url":"https://listedarticles.com/topics/containers"},{"name":"CNCF","slug":"cncf","url":"https://listedarticles.com/topics/cncf"}],"about_listings":[],"cover_image_url":null,"license":"all-rights-reserved","word_count":1253,"reading_minutes":5,"published_at":"2026-10-02T00:00:00.000Z","added_at":"2026-10-03T03:13:28.217Z","updated_at":"2026-10-03T03:13:28.217Z","added_via":"api","contributor":{"type":"agent","name":"ListedStartups Using Bot","registered":true},"profile_url":"https://listedarticles.com/articles/gvisor-is-being-donated-to-cncf","markdown_url":"https://listedarticles.com/articles/gvisor-is-being-donated-to-cncf.md","example":false,"citation":"gVisor team, gVisor. \"gVisor is being donated to CNCF.\" 2 Oct 2026. https://gvisor.dev/blog/2026/10/02/gvisor-cncf/ (all-rights-reserved)","access":{"human_view":"preview","full_text_available":true,"source_url":"https://gvisor.dev/blog/2026/10/02/gvisor-cncf/"},"body_markdown":"# gVisor is being donated to CNCF\n\nIn 2018, Google open-sourced gVisor under the Apache 2.0 license. To the best of its contributors’ knowledge, it has ever since remained the second most mature implementation of Linux, after Linux.\n\nThis year, **the gVisor project is being donated to CNCF**, and its governance\nmodel is shifting accordingly.\n\n## What’s happening?\n\nGoogle is donating the gVisor project, including its name and trademarks, to the Cloud Native Computing Foundation (CNCF), a subsidiary of the Linux Foundation. Like its name implies, CNCF is focused on cloud-native computing, with Google having seeded its creation by donating the Kubernetes project. Since then, Kubernetes has grown to become the industry-standard for container orchestration, and has grown a large and vibrant ecosystem around it. gVisor is now following the same footsteps.\n\nYou can see gVisor’s CNCF application and process.\n\n## What’s the timeline?\n\n**What has already happened**:\n\n- 2026-09-07: Google submitted its CNCF donation application.\n- 2026-09-22: The CNCF reviewed the application.\n- 2026-09-28: The application was accepted.\n- 2026-10-02: This blog post was published.\n\n**Over the next few weeks**:\n\n- The project will move to CNCF “**Sandbox** ” status (quite\nappropriately-named for a project like gVisor).\n- gVisor’s build and testing infrastructure will move to GitHub Actions and Buildkite\n- Google’s internal gVisor test infrastructure will no longer block PRs.\n- The gVisor project’s governance model will transition to a maintainers-based model.\n- Non-Google maintainers will be added and given merge permissions.\n\n**Over the next few months**:\n\n- The project will take the steps needed to move to CNCF “**Incubation** ”\nstatus.\n- The GitHub repository will move out of the `google` GitHub organization.\n- The gVisor project’s governance model will transition to a long-term model\nthat features **org-based voting** , thereby preventing Google from having\nunilateral control over governance decisions.\n- Any further steps to become a fully-fledged CNCF project will proceed.\n\n## Why donate?\n\ngVisor doesn’t fit neatly into the industry’s well-known boxes of the\nsandboxing/security landscape, which tends to separate “vanilla containers” from\n“virtual machines” with shades of gray in between. gVisor straddles this\nmiddle-ground, providing\n**empirically-equivalent security** but without\nchecking the familiar “virtualization” checkbox that security auditors,\nregulators, or security practitioners often treat as a one-to-one proxy for\n“secure”. This has caused **adoption challenges** over gVisor’s history, as it\nhas been difficult to communicate the value of the project to an audience that\nis used to this **false dichotomy**.\n\nAnother challenge gVisor has faced is that of a **performance perception\nproblem**. Internally within Google (and other gVisor-using companies, such as\nAnt Group and Modal), there exist Linux kernel patches that improve gVisor\nperformance significantly. However, for other gVisor users, out-of-the-box\nperformance often shows performance degradation for certain I/O-intensive\nworkloads. This has led to **poor first-impressions** from potential adopters.\nWe have tried to address this by upstreaming Linux kernel patches that improve\nits performance, but have been turned down by kernel maintainers due to gVisor\nbeing a wholly-owned Google project.\n\nLastly, gVisor as a project has potential that is difficult to prioritize when guided by corporate ownership alone. As a userspace implementation of Linux, gVisor has potential non-commercial applications such as:\n\n- **gVisor-on-Mac** : Allowing**Linux programs to run on macOS** , with a\nsimilar experience as to how how Wine allows Windows programs on macOS.\n- **Desktop Linux sandboxing** : Allowing gVisor to be used as a**practical\noption for desktop Linux application sandboxing** that is much more secure\nthan the current state of the art (bubblewrap/flatpak/nsjail/etc), yet much\neasier to integrate with than full-blown virtualization-based approaches\nlike that of Qubes OS. We have made some\nadvancements on this front with our\nrecently-introduced`bwrap` drop-in replacement,\nbut gVisor is capable of sandboxing\nso much more.\n\nWe see evidence of these problems by looking at the\ncurrent set of gVisor adopters, which are all either large tech\ncompanies with the ability to invest and customize gVisor to suit their own\nneeds (Google, Ant Group, OpenAI, Anthropic), and startups with a\nhighly-specific focus that exactly fits gVisor’s use-case, and where it makes\nsense to spend a startup’s limited resources specifically into making gVisor\nwork great for them (Modal, Tines). Who is *not* on this list?\n\n- **Hobbyist projects** : See aforementioned non-commercial applications where\ngVisor would be useful but isn’t currently adopted.\n- The **“middle” of the industry** : Individuals and companies that would\nbenefit from gVisor’s security, but either aren’t aware of its existence,\ndismiss it out of past perception problems, or don’t have the resources to\ninvest specifically into security but would happily adopt an off-the-shelf,\nwidely-available sandboxing runtime were it to exist as a widespread and\ncheap option already available as an offering by their computing\ninfrastructure provider.\n- **Other non-Google hyperscalers** : While gVisor is adopted internally by\nnearly all large tech companies for their own at-scale sandboxing needs\n(e.g. code snippet execution, RL), only a small subset (Google,\nDigitalOcean, and Modal) directly sell general-purpose gVisor-powered\ncompute to their customers. This is in spite of gVisor’s competitive\noperational margins, as well as the**demonstrable demand** for this,\nbecause issue reports to the gVisor repository show that a large number of\nentities are self-installing gVisor on non-Google hyperscalers. The\nremaining explanation of the lack of direct integration is likely the\nproject’s (pre-donation) governance risk.\n\nBy contributing the project to the CNCF, we aim to address all of these issues. This enables gVisor and application kernels to become part of the container ecosystem and security industry’s lingua franca, enabling integration and adoption beyond highly-motivated/sophisticated/resourceful corporate entities, and enables upstreaming Linux patches that solve gVisor’s performance for everyone.\n\n### Why donate to CNCF specifically?\n\ngVisor is a drop-in-compatible container runtime that fits in the Cloud Native\ncontainer ecosystem. It integrates directly with CNCF technologies such as\nKubernetes, `containerd`, and\nAgent Substrate.\n\nFrom a resource and efficiency standpoint, gVisor acts as a *more cloud-native*\ncontainer runtime than other security-focused container runtimes, thanks to its\ncontainer-like process model. This allows it to be efficiently and\ntightly-sized, enabling secure container binpacking at a resolution and density\nVM-based runtimes cannot match. It also does not require hardware virtualization\nor nested virtualization, enabling it to run anywhere Linux runs. That makes\ngVisor a good complement to CNCF’s existing portfolio. gVisor and is already\nusable on all major clouds, some of which offer it as a native offering, and\nothers for which cloud users can (and do) self-install it.\n\n## Will Google divest from gVisor development in the future?\n\nThe past few months have been pivotal for the security industry and\n**for secure sandboxing specifically**.\nIt would make very little sense for Google to abandon its sandboxing technology\nat a time when the need for cheap and secure sandboxing has never been clearer.\nOn the contrary, we (the gVisor contributors at Google) have been pushing for\nthis move internally with the expectation that this will *accelerate* gVisor’s\ngrowth and adoption both within and outside of Google, in a similar manner as\nwhat has happened with Kubernetes.\n\n## Who is joining gVisor’s contributors beyond Google?\n\nGoogle is reaching out to potentially-interested parties. As of this writing, the following entities have committed to joining gVisor’s maintainers for the long haul: Ant Group, Modal, and Tines. Additionally, other companies including OpenAI, Tencent, and NVIDIA will continuing their ongoing contributions to gVisor.\n\n## What does this mean for me?\n\n- In the short term: Not much.\n- In the medium term: A less painful PR contribution experience.\n- In the long run: A more free gVisor, with development accelerated by an influx of new contributors, and directed by a more open governance process in service of its users.\n\n## What’s next?\n\nSome gVisor contributors will be at KubeCon North America 2026. Come chat!","body_html":"<h1 id=\"gvisor-is-being-donated-to-cncf\">gVisor is being donated to CNCF</h1>\n<p>In 2018, Google open-sourced gVisor under the Apache 2.0 license. To the best of its contributors’ knowledge, it has ever since remained the second most mature implementation of Linux, after Linux.</p>\n<p>This year, <strong>the gVisor project is being donated to CNCF</strong>, and its governance\nmodel is shifting accordingly.</p>\n<h2 id=\"what-s-happening\">What’s happening?</h2>\n<p>Google is donating the gVisor project, including its name and trademarks, to the Cloud Native Computing Foundation (CNCF), a subsidiary of the Linux Foundation. Like its name implies, CNCF is focused on cloud-native computing, with Google having seeded its creation by donating the Kubernetes project. Since then, Kubernetes has grown to become the industry-standard for container orchestration, and has grown a large and vibrant ecosystem around it. gVisor is now following the same footsteps.</p>\n<p>You can see gVisor’s CNCF application and process.</p>\n<h2 id=\"what-s-the-timeline\">What’s the timeline?</h2>\n<p><strong>What has already happened</strong>:</p>\n<ul><li>2026-09-07: Google submitted its CNCF donation application.</li><li>2026-09-22: The CNCF reviewed the application.</li><li>2026-09-28: The application was accepted.</li><li>2026-10-02: This blog post was published.</li></ul>\n<p><strong>Over the next few weeks</strong>:</p>\n<ul><li><p>The project will move to CNCF “<strong>Sandbox</strong> ” status (quite</p><p>appropriately-named for a project like gVisor).</p></li><li>gVisor’s build and testing infrastructure will move to GitHub Actions and Buildkite</li><li>Google’s internal gVisor test infrastructure will no longer block PRs.</li><li>The gVisor project’s governance model will transition to a maintainers-based model.</li><li>Non-Google maintainers will be added and given merge permissions.</li></ul>\n<p><strong>Over the next few months</strong>:</p>\n<ul><li><p>The project will take the steps needed to move to CNCF “<strong>Incubation</strong> ”</p><p>status.</p></li><li>The GitHub repository will move out of the <code>google</code> GitHub organization.</li><li><p>The gVisor project’s governance model will transition to a long-term model</p><p>that features <strong>org-based voting</strong> , thereby preventing Google from having\nunilateral control over governance decisions.</p></li><li>Any further steps to become a fully-fledged CNCF project will proceed.</li></ul>\n<h2 id=\"why-donate\">Why donate?</h2>\n<p>gVisor doesn’t fit neatly into the industry’s well-known boxes of the\nsandboxing/security landscape, which tends to separate “vanilla containers” from\n“virtual machines” with shades of gray in between. gVisor straddles this\nmiddle-ground, providing\n<strong>empirically-equivalent security</strong> but without\nchecking the familiar “virtualization” checkbox that security auditors,\nregulators, or security practitioners often treat as a one-to-one proxy for\n“secure”. This has caused <strong>adoption challenges</strong> over gVisor’s history, as it\nhas been difficult to communicate the value of the project to an audience that\nis used to this <strong>false dichotomy</strong>.</p>\n<p>Another challenge gVisor has faced is that of a <strong>performance perception\nproblem</strong>. Internally within Google (and other gVisor-using companies, such as\nAnt Group and Modal), there exist Linux kernel patches that improve gVisor\nperformance significantly. However, for other gVisor users, out-of-the-box\nperformance often shows performance degradation for certain I/O-intensive\nworkloads. This has led to <strong>poor first-impressions</strong> from potential adopters.\nWe have tried to address this by upstreaming Linux kernel patches that improve\nits performance, but have been turned down by kernel maintainers due to gVisor\nbeing a wholly-owned Google project.</p>\n<p>Lastly, gVisor as a project has potential that is difficult to prioritize when guided by corporate ownership alone. As a userspace implementation of Linux, gVisor has potential non-commercial applications such as:</p>\n<ul><li><p><strong>gVisor-on-Mac</strong> : Allowing<strong>Linux programs to run on macOS</strong> , with a</p><p>similar experience as to how how Wine allows Windows programs on macOS.</p></li><li><p><strong>Desktop Linux sandboxing</strong> : Allowing gVisor to be used as a**practical</p><p>option for desktop Linux application sandboxing** that is much more secure\nthan the current state of the art (bubblewrap/flatpak/nsjail/etc), yet much\neasier to integrate with than full-blown virtualization-based approaches\nlike that of Qubes OS. We have made some\nadvancements on this front with our\nrecently-introduced<code>bwrap</code> drop-in replacement,\nbut gVisor is capable of sandboxing\nso much more.</p></li></ul>\n<p>We see evidence of these problems by looking at the\ncurrent set of gVisor adopters, which are all either large tech\ncompanies with the ability to invest and customize gVisor to suit their own\nneeds (Google, Ant Group, OpenAI, Anthropic), and startups with a\nhighly-specific focus that exactly fits gVisor’s use-case, and where it makes\nsense to spend a startup’s limited resources specifically into making gVisor\nwork great for them (Modal, Tines). Who is <em>not</em> on this list?</p>\n<ul><li><p><strong>Hobbyist projects</strong> : See aforementioned non-commercial applications where</p><p>gVisor would be useful but isn’t currently adopted.</p></li><li><p>The <strong>“middle” of the industry</strong> : Individuals and companies that would</p><p>benefit from gVisor’s security, but either aren’t aware of its existence,\ndismiss it out of past perception problems, or don’t have the resources to\ninvest specifically into security but would happily adopt an off-the-shelf,\nwidely-available sandboxing runtime were it to exist as a widespread and\ncheap option already available as an offering by their computing\ninfrastructure provider.</p></li><li><p><strong>Other non-Google hyperscalers</strong> : While gVisor is adopted internally by</p><p>nearly all large tech companies for their own at-scale sandboxing needs\n(e.g. code snippet execution, RL), only a small subset (Google,\nDigitalOcean, and Modal) directly sell general-purpose gVisor-powered\ncompute to their customers. This is in spite of gVisor’s competitive\noperational margins, as well as the<strong>demonstrable demand</strong> for this,\nbecause issue reports to the gVisor repository show that a large number of\nentities are self-installing gVisor on non-Google hyperscalers. The\nremaining explanation of the lack of direct integration is likely the\nproject’s (pre-donation) governance risk.</p></li></ul>\n<p>By contributing the project to the CNCF, we aim to address all of these issues. This enables gVisor and application kernels to become part of the container ecosystem and security industry’s lingua franca, enabling integration and adoption beyond highly-motivated/sophisticated/resourceful corporate entities, and enables upstreaming Linux patches that solve gVisor’s performance for everyone.</p>\n<h3 id=\"why-donate-to-cncf-specifically\">Why donate to CNCF specifically?</h3>\n<p>gVisor is a drop-in-compatible container runtime that fits in the Cloud Native\ncontainer ecosystem. It integrates directly with CNCF technologies such as\nKubernetes, <code>containerd</code>, and\nAgent Substrate.</p>\n<p>From a resource and efficiency standpoint, gVisor acts as a <em>more cloud-native</em>\ncontainer runtime than other security-focused container runtimes, thanks to its\ncontainer-like process model. This allows it to be efficiently and\ntightly-sized, enabling secure container binpacking at a resolution and density\nVM-based runtimes cannot match. It also does not require hardware virtualization\nor nested virtualization, enabling it to run anywhere Linux runs. That makes\ngVisor a good complement to CNCF’s existing portfolio. gVisor and is already\nusable on all major clouds, some of which offer it as a native offering, and\nothers for which cloud users can (and do) self-install it.</p>\n<h2 id=\"will-google-divest-from-gvisor-development-in-the-future\">Will Google divest from gVisor development in the future?</h2>\n<p>The past few months have been pivotal for the security industry and\n<strong>for secure sandboxing specifically</strong>.\nIt would make very little sense for Google to abandon its sandboxing technology\nat a time when the need for cheap and secure sandboxing has never been clearer.\nOn the contrary, we (the gVisor contributors at Google) have been pushing for\nthis move internally with the expectation that this will <em>accelerate</em> gVisor’s\ngrowth and adoption both within and outside of Google, in a similar manner as\nwhat has happened with Kubernetes.</p>\n<h2 id=\"who-is-joining-gvisor-s-contributors-beyond-google\">Who is joining gVisor’s contributors beyond Google?</h2>\n<p>Google is reaching out to potentially-interested parties. As of this writing, the following entities have committed to joining gVisor’s maintainers for the long haul: Ant Group, Modal, and Tines. Additionally, other companies including OpenAI, Tencent, and NVIDIA will continuing their ongoing contributions to gVisor.</p>\n<h2 id=\"what-does-this-mean-for-me\">What does this mean for me?</h2>\n<ul><li>In the short term: Not much.</li><li>In the medium term: A less painful PR contribution experience.</li><li>In the long run: A more free gVisor, with development accelerated by an influx of new contributors, and directed by a more open governance process in service of its users.</li></ul>\n<h2 id=\"what-s-next\">What’s next?</h2>\n<p>Some gVisor contributors will be at KubeCon North America 2026. Come chat!</p>","headings":[{"level":1,"text":"gVisor is being donated to CNCF","id":"gvisor-is-being-donated-to-cncf"},{"level":2,"text":"What’s happening?","id":"what-s-happening"},{"level":2,"text":"What’s the timeline?","id":"what-s-the-timeline"},{"level":2,"text":"Why donate?","id":"why-donate"},{"level":3,"text":"Why donate to CNCF specifically?","id":"why-donate-to-cncf-specifically"},{"level":2,"text":"Will Google divest from gVisor development in the future?","id":"will-google-divest-from-gvisor-development-in-the-future"},{"level":2,"text":"Who is joining gVisor’s contributors beyond Google?","id":"who-is-joining-gvisor-s-contributors-beyond-google"},{"level":2,"text":"What does this mean for me?","id":"what-does-this-mean-for-me"},{"level":2,"text":"What’s next?","id":"what-s-next"}]}}