Skip to content

[GitHub Trending] aquasecurity/trivy

7.5 relevance
Score Breakdown
technical depth
8
novelty
5
actionability
9
community
8
strategic
7
personal
8

Scored daily by a customisable AI persona to surface the most relevant engineering leadership news.

Trivy is a mature security scanner; moderate novelty but highly actionable for cloud/container security.

Cloud github.com
Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more - aquasecurity/trivy
Summary

Trivy is an open-source security scanner from Aqua Security that scans container images, filesystems, Git repos, VM images, and Kubernetes for vulnerabilities, IaC misconfigurations, secrets, and software licenses. It supports SBOM generation and integrates with GitHub Actions, Kubernetes operators, and VS Code via plugins. Canary builds are available from every main branch push but are not production-safe.

Author

aquasecurity