trivy

v 0.50.4 Updated: 1 day, 19 hours ago

A Simple and Comprehensive Vulnerability Scanner for Containers, Suitable for CI

A Simple and Comprehensive Vulnerability Scanner for Containers, Suitable for CI. Trivy detects vulnerabilities of OS packages (Alpine, RHEL, CentOS, etc.) and application dependencies (Bundler, Composer, npm, yarn, etc.). Trivy is easy to use. Just install the binary and you're ready to scan. All you need to do for scanning is to specify a target such as an image name of the container.

https://github.com/aquasecurity/trivy

To install trivy, paste this in macOS terminal after installing MacPorts

sudo port install trivy

Add to my watchlist

Installations 1
Requested Installations 1