Trivy logo

Trivy

Vulnerability Scanner for Containers, Suitable for CI
50
27
+ 1
0

What is Trivy?

It is a simple and comprehensive vulnerability scanner for containers and other artifacts. It detects vulnerabilities of OS packages (Alpine, RHEL, CentOS, etc.) and application dependencies (Bundler, Composer, npm, yarn, etc.). It is easy to use. Just install the binary and you're ready to scan. All you need to do for scanning is to specify a target such as an image name of the container.
Trivy is a tool in the Security category of a tech stack.
Trivy is an open source tool with 23.7K GitHub stars and 2.3K GitHub forks. Here’s a link to Trivy's open source repository on GitHub

Who uses Trivy?

Companies
15 companies reportedly use Trivy in their tech stacks, including Onefootball, Labs, and Modanisa.com.

Developers
35 developers on StackShare have stated that they use Trivy.

Trivy Integrations

Jenkins, GitHub Actions, Travis CI, CircleCI, and CentOS are some of the popular tools that integrate with Trivy. Here's a list of all 11 tools that integrate with Trivy.

Trivy's Features

  • Simple
  • Fast
  • Easy installation
  • High accuracy
  • Detect comprehensive vulnerabilities
  • Suitable for CI such as Travis CI, CircleCI, Jenkins, GitLab CI, etc
  • Support multiple formats

Trivy Alternatives & Comparisons

What are some alternatives to Trivy?
Postman
It is the only complete API development environment, used by nearly five million developers and more than 100,000 companies worldwide.
Postman
It is the only complete API development environment, used by nearly five million developers and more than 100,000 companies worldwide.
Stack Overflow
Stack Overflow is a question and answer site for professional and enthusiast programmers. It's built and run by you as part of the Stack Exchange network of Q&A sites. With your help, we're working together to build a library of detailed answers to every question about programming.
Google Maps
Create rich applications and stunning visualisations of your data, leveraging the comprehensiveness, accuracy, and usability of Google Maps and a modern web platform that scales as you grow.
Elasticsearch
Elasticsearch is a distributed, RESTful search and analytics engine capable of storing data and searching it in near real time. Elasticsearch, Kibana, Beats and Logstash are the Elastic Stack (sometimes called the ELK Stack).
See all alternatives
Related Comparisons
No related comparisons found

Trivy's Followers
27 developers follow Trivy to keep up with related blogs and decisions.