Container Grype · AgentSecOps/SecOpsAgentKit

Scan container images and SBOMs for known vulnerabilities

Uses Grype to scan container images, filesystems, and SBOMs for known CVEs, ranking findings by CVSS severity, EPSS exploit probability, and CISA KEV status to help prioritize remediation and CI/CD security gates.

Good for

  • Scan a Docker image for known CVEs
  • Set a severity threshold for a CI pipeline
  • Prioritize fixes using EPSS and KEV data
Category
Coding

Open-source skills are maintained by their authors and listed as published, with attribution. Results depend on how well the skill fits your task and material.

A good place to start

Scan the alpine:latest image with Grype and summarize the critical and high severity findings.

Make your next great thing.

Bring a question, a file, or an idea that’s not quite there yet.