{"repo":"aquasecurity/trivy-mcp","free":true,"listed":false,"github":"https://github.com/aquasecurity/trivy-mcp","clone":"git clone https://github.com/aquasecurity/trivy-mcp.git","description":"Trivy plugin for starting an MCP server","language":"Go","stars":47,"topics":["claude","cursor","mcp-server","security-scanner","trivy","vscode"],"license":"MIT","category":"mcp-servers","readme_excerpt":"Trivy MCP Server Plugin https://github.com/user-attachments/assets/125791b0-3164-4dcc-8fb3-e45481a9cbf7 This plugin starts a Model Context Protocol (MCP) server that integrates Trivy's security scanning capabilities with VS Code and other MCP-enabled tools. Features - Natural Language Scanning : Ask questions about security issues in natural language - Multiple Scan Types : - Filesystem scanning for local projects - Container image vulnerability scanning - Remote repository security analysis - Integration with Aqua Platform : Optional integration with Aqua Security's platform for enhanced scanning capabilities and assurance policy compliance - Flexible Transport : Support for stdio, streamable HTTP, and SSE (Server-Sent Events) transport protocols - IDE Integration : Seamless integration with VS Code, Cursor, JetBrains IDEs, and Claude Desktop Quick Start Installation Starting the Server Documentation For comprehensive documentation, please see the docs directory: - Installation Guide - Quick Start Guide - Configuration Options - IDE Integration - VS Code - Cursor - JetBrains IDE - Claude Desktop - Example Queries - Authentication Example Query After setting up the plugin and configuring your IDE, you can start asking security-related questions: For more examples, see the Example Queries page. License MIT License - see the LICENSE file for details.","default_branch":null,"files":null,"tree":[],"storefront":"/r/aquasecurity","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/aquasecurity/trivy-mcp/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}