What scrubctl Does
scrubctl helps move from live cluster output to clean, reviewable manifests.
It has three main responsibilities:
| Responsibility | What it means |
|---|---|
| Classify | Decide whether a resource belongs in include, cleanup, review, or exclude |
| Sanitize | Remove server-assigned metadata, status, runtime annotations, and other noisy fields |
| Export | Write sanitized manifests and supporting files in a GitOps-ready archive |
The CLI supports two operating styles:
| Mode | Use it when |
|---|---|
| Direct scrub | You have one manifest from a file, stdin, oc get, or kubectl get |
| Curated namespace scan/export | You want a repeatable namespace-level export for known Kubernetes and OpenShift kinds |
The direct scrub path accepts any Kubernetes kind. Namespace scan and export use a curated set so the archive is predictable and focused on application resources.