{"repo":"aquasecurity/trivy","free":true,"listed":false,"github":"https://github.com/aquasecurity/trivy","clone":"git clone https://github.com/aquasecurity/trivy.git","description":"Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more","language":"Go","stars":37466,"topics":["security","security-tools","docker","containers","vulnerability-scanners","vulnerability-detection","vulnerability","golang","go","kubernetes"],"license":"Apache-2.0","category":"deployment-docker-iac","readme_excerpt":"[![GitHub Release][release-img]][release] [![Test][test-img]][test] [![Go Report Card][go-report-img]][go-report] [![License: Apache-2.0][license-img]][license] [![GitHub Downloads][github-downloads-img]][release] ![Docker Pulls][docker-pulls] [📖 Documentation][docs] Trivy ([pronunciation][pronunciation]) is a comprehensive and versatile security scanner. Trivy has scanners that look for security issues, and targets where it can find those issues. Targets (what Trivy can scan): - Container Image - Filesystem - Git Repository (remote) - Virtual Machine Image - Kubernetes Scanners (what Trivy can find there): - OS packages and software dependencies in use (SBOM) - Known vulnerabilities (CVEs) - IaC issues and misconfigurations - Sensitive information and secrets - Software licenses Trivy supports most popular programming languages, operating systems, and platforms. For a complete list, see the [Scanning Coverage] page. To learn more, go to the [Trivy homepage][homepage] for feature highlights, or to the [Documentation site][docs] for detailed information. Quick Start Get Trivy Trivy is available in most common distribution channels. The full list of installation options is available in the [Installation] page. Here are a few popular examples: - brew install trivy - docker run aquasec/trivy - Download binary from - See [Installation] for more Trivy is integrated with many popular platforms and applications. The complete list of integrations is available in the [Ecosystem] page.","default_branch":null,"files":null,"tree":[],"storefront":"/r/aquasecurity","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/aquasecurity/trivy/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}