Skip to main content

What scrubctl Does

scrubctl helps move from live cluster output to clean, reviewable manifests.

It has three main responsibilities:

ResponsibilityWhat it means
ClassifyDecide whether a resource belongs in include, cleanup, review, or exclude
SanitizeRemove server-assigned metadata, status, runtime annotations, and other noisy fields
ExportWrite sanitized manifests and supporting files in a GitOps-ready archive

The CLI supports two operating styles:

ModeUse it when
Direct scrubYou have one manifest from a file, stdin, oc get, or kubectl get
Curated namespace scan/exportYou want a repeatable namespace-level export for known Kubernetes and OpenShift kinds

The direct scrub path accepts any Kubernetes kind. Namespace scan and export use a curated set so the archive is predictable and focused on application resources.