Trivy icon
Trivy icon

Trivy

Scanner for vulnerabilities in container images, file systems, and Git repositories, as well as for configuration issues and hard-coded secrets.

Demo: Vulnerability detection

Cost / License

Platforms

  • Mac
  • Linux
  • Docker
-
No reviews
1like
0comments
0news articles

Features

Suggest and vote on features

Properties

  1.  Security-focused

Features

  1. Docker icon  Support for Docker
  2.  Kubernetes
  3.  Golang

 Tags

Trivy News & Activities

Highlights All activities

Recent activities

Show all activities

Trivy information

  • Developed by

    IL flagaquasecurity
  • Licensing

    Open Source (Apache-2.0) and Free product.
  • Written in

  • Alternatives

    15 alternatives listed
  • Supported Languages

    • English

GitHub repository

  •  30,781 Stars
  •  2,864 Forks
  •  220 Open Issues
  •   Updated  
View on GitHub

Popular alternatives

View all
Trivy was added to AlternativeTo by sr00 on and this page was last updated .
No comments or reviews, maybe you want to be first?
Post comment/review

Featured in Lists

A list with 13 apps by b4st1en without a description.

List by b4st1en with 13 apps, updated

What is Trivy?

Trivy (tri pronounced like trigger, vy pronounced like envy) is a simple and comprehensive scanner for vulnerabilities in container images, file systems, and Git repositories, as well as for configuration issues. Trivy detects vulnerabilities of OS packages (Alpine, RHEL, CentOS, etc.) and language-specific packages (Bundler, Composer, npm, yarn, etc.). In addition, Trivy scans Infrastructure as Code (IaC) files such as Terraform, Dockerfile and Kubernetes, to detect potential configuration issues that expose your deployments to the risk of attack. Trivy also scans hardcoded secrets like passwords, API keys and tokens. Trivy is easy to use. Just install the binary and you're ready to scan.

Official Links