Problems, before they page you
Crash loops, failed pulls, pending pods and rollouts stuck on a broken version, in one list with alerts. Roll a stuck rollout back in one click.
Your clusters, at a glance. KubeCrow is a free, fast Kubernetes desktop app for macOS: browse pods and every resource, tail logs, open shells, edit YAML and manage Helm releases, with guard rails around production.

Every section of your cluster, from Workloads to Custom Resources, in a quick native-feeling app that stays out of your way.
Crash loops, failed pulls, pending pods and rollouts stuck on a broken version, in one list with alerts. Roll a stuck rollout back in one click.
Rollouts, rollbacks, scaling, restarts and warnings on one timeline, plus ConfigMap edits with before and after values.
One search across a whole namespace through your cluster’s Loki, including pods that were replaced. Start from a crashing pod’s error in one click.
Requests and limits against seven days of real use from Prometheus, with suggested values and the containers close to being OOM-killed.
Cluster, Workloads, Config, Network, Storage, Access Control and Custom Resources, with the columns and actions you expect.
Scans your AWS profiles and lists EKS clusters in every enabled region, grouped by account. Pick one and it's connected.
Mark clusters as protected or read-only. Risky actions ask first, and deletes need you to type the name.
Follow any container with time ranges, timestamps, search and pretty-printed JSON.
Open a terminal in any pod or node, and forward service ports to localhost with one click.
A proper code editor for any resource, plus inline editing for ConfigMap and Secret values.
Browse chart repos, install with a values editor, upgrade, and roll back to any revision, using your helm CLI.
Ocean, Midnight or Classic, following macOS light and dark. Jump anywhere from the command palette.
Real screens from the app, running against a local cluster.











KubeCrow isn't signed by Apple yet, so macOS blocks it the first time. One Terminal command clears that, and from then on it opens like any other app.
Get the .dmg from the Download button. It runs natively on Apple Silicon and Intel Macs.
Open the .dmg and drag the icon onto the Applications folder.
Paste the command from the box into Terminal. It removes the quarantine flag macOS adds to downloaded apps.
Launch it from Applications or Spotlight as usual, then sign in with Google or GitHub the first time. You only need the command again after installing a new version.
Needed if macOS says “KubeCrow is damaged and can't be opened” or “cannot be opened because Apple cannot check it”. The app isn't damaged; macOS just can't verify who made it.
xattr -dr com.apple.quarantine /Applications/KubeCrow.app
Why the extra step? Apps from outside the App Store need an Apple Developer ID signature and notarisation for macOS to open them silently. KubeCrow doesn't have those yet; they're on the roadmap, and this step will go away.
KubeCrow reads the same kubeconfig kubectl uses, so the clusters and sign-ins you already have just work.
How EKS discovery works · Permissions KubeCrow needs
~/.kube/config or $KUBECONFIG, switched from the top bar.gke-gcloud-auth-plugin.kubelogin.KubeCrow runs on your Mac and talks to the Kubernetes API with your own kubeconfig and permissions.
No agents, operators or add-ons. KubeCrow uses the Kubernetes API with the access your kubeconfig already has.
One exception: a node shell starts a short-lived privileged pod (busybox:1.36) in kube-system on that node, and deletes it when you close the tab.
KubeCrow connects only to:
Everything your KubeCrow account stores, and how to delete it: privacy policy.
Yes. KubeCrow is free. You sign in once with your Google or GitHub account; there’s no password to create and nothing to pay.
Your name, email address and profile photo (from Google or GitHub), your plan, when you last downloaded KubeCrow, and the names of the Macs you’re signed in on. Nothing about your clusters, kubeconfig or their data. You can sign a Mac out, or delete the account, at app.kubecrow.com.
Yes. KubeCrow is one universal app that runs natively on Apple Silicon (M1 and later) and Intel Macs, on macOS 13 Ventura or later.
Any cluster in your kubeconfig, the same file kubectl uses: Amazon EKS, Google GKE, Azure AKS, on-premises clusters, and local clusters such as minikube, kind or Docker Desktop. Exec authentication plugins work.
Sign in with AWS SSO or add access keys in Settings → AWS accounts, no AWS CLI needed, or let it use your ~/.aws profiles. It lists the EKS clusters in every region grouped by account and signs in to them for you.
No. There is no telemetry or analytics, and your clusters' data never leaves your Mac. KubeCrow talks only to your clusters' API servers, to AWS when you use EKS discovery, and to Prometheus or Loki running in your own clusters. Apart from that, it checks your KubeCrow sign-in with app.kubecrow.com and checks for updates by fetching a small file listing the latest version from GitHub, where KubeCrow is published.
You don't need kubectl or the AWS CLI: KubeCrow talks to the Kubernetes API directly using your kubeconfig, and signs in to Amazon EKS itself through an AWS account you add in Settings. Only the Helm views use the helm CLI.
Yes. Mark a cluster Protected and every change asks you to type the cluster's name first, or mark it Read-only to refuse changes and shells while you can still browse resources, read logs and port-forward.
KubeCrow isn't signed by Apple yet, so macOS quarantines it after download. Run xattr -dr com.apple.quarantine /Applications/KubeCrow.app once in Terminal, then open KubeCrow normally.
~/.kube/config or $KUBECONFIG, the same file kubectl uses.~/.aws profiles work too.brew install helm. Homebrew tools are found even when KubeCrow is opened from Finder.One universal app for Apple Silicon and Intel Macs.
Download for MacDownload coming soonDrag it into Applications, then clear macOS's quarantine flag once (until KubeCrow is signed by Apple).
xattr -dr com.apple.quarantine /Applications/KubeCrow.app
Sign in with Google or GitHub once. Your kubeconfig contexts are listed straight away; EKS clusters from your AWS profiles appear alongside.