Skip to content

Entry

Trivy

Appears in 9 awesome lists

A Simple and Comprehensive Vulnerability Scanner for Containers and other Artifacts, Suitable for CI. Trivy detects vulnerabilities of OS packages (Alpine, RHEL, CentOS, etc.) and application dependencies (Bundler, Composer, npm, yarn, etc.). Checks containers and filesystems.

Open github.comaquasecurity/trivy

Found in these lists

Awesome Cloud Native

Section: Security & Compliance · Scanner for vulnerabilities in container images, file systems, and Git repositories, as well as for configuration issues and hard-coded secrets.

FreshScore 87

Awesome Cybersecurity Blue Team

Section: DevSecOps · Simple and comprehensive vulnerability scanner for containers and other artifacts, suitable for use in continuous integration pipelines.

StaleScore 53

Awesome Devsecops

Section: Infrastructure as Code Analysis · Aqua Security - Simple and comprehensive vulnerability scanner for containers.

StaleScore 52

Awesome Docker

Section: Image Scanning & SBOM · Aqua Security's open source simple and comprehensive vulnerability scanner for containers (suitable for CI).

FreshScore 92

Awesome Stars

Section: Go · Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

SlowScore 58

awesome-kubernetes-security

Section: Open Source Projects · A Simple and Comprehensive Vulnerability Scanner for Containers, Suitable for CI

StaleScore 45

Awesome Security

Section: DevOps · A simple and comprehensive vulnerability scanner for containers and other artifacts, suitable for CI.

SlowScore 70

Static Analysis

Section: Multiple languages · A Simple and Comprehensive Vulnerability Scanner for Containers and other Artifacts, Suitable for CI. Trivy detects vulnerabilities of OS packages (Alpine, RHEL, CentOS, etc.) and application dependencies (Bundler, Composer, npm, yarn, etc.). Checks containers and filesystems.

FreshScore 91

awesome-go

Section: Security Tools · Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

FreshScore 81

Snyk

copyright: — Snyk Code finds security vulnerabilities based on AI. Its speed of analysis allow us to analyse your code in real time and deliver results when you hit the save button in your IDE. Supported languages are Java, JavaScript, Python, PHP, C#, Go and TypeScript. Integrations with GitHub,…

In 14 listsDetails

Darkmoon

🟢⚠️ — Autonomous AI penetration-testing platform that orchestrates specialized web, AD, Kubernetes, CMS, and framework agents through an MCP-controlled Docker toolbox with local privacy-tokenization for sensitive target data. — note: GPL-3.0 licensed; heavy Docker/LLM stack, use only for…;…

In 10 listsDetails

blackbox

Safely store secrets in Git/Mercurial. Provides tooling to automatically encrypt secrets like passwords.

In 8 listsDetails

Keycloak

🆓 Open-source Identity and Access Management. Supports OIDC, OAuth 2 and SAML 2, LDAP and AD directories, password policies.

In 7 listsDetails

Checkov

Static analysis for infrastructure as code manifests (Terraform, Kubernetes, Cloudformation, Helm, Dockerfile, Kustomize) find security misconfiguration and fix them.

In 7 listsDetails

brood-box

🟢 — Experimental runner for coding agents in hardware-isolated microVMs with copy-on-write workspace snapshots, egress profiles, selective secret forwarding, and file-by-file review before applying changes. (Stacklok) — note: APIs and behavior are explicitly experimental; workspace-mode=direct…

In 6 listsDetails

syft

star:8295 A CLI tool and Go library for generating a Software Bill of Materials (SBOM) from container images and filesystems.

In 6 listsDetails

cosign

Container signing, verification, and transparency log for OCI artifacts.

In 6 listsDetails