Sca Trivy · AgentSecOps/SecOpsAgentKit

Scan container images and dependencies with Trivy

Runs Trivy to scan container images, filesystems, and IaC configs for CVEs and misconfigurations, and can generate an SBOM, useful for pre-deployment checks or CI/CD vulnerability gates.

Good for

  • Scan a container image for known CVEs
  • Detect IaC misconfigurations in Terraform or Kubernetes
  • Generate an SBOM in CycloneDX or SPDX format
Category
Coding

Open-source skills are maintained by their authors and listed as published, with attribution. Results depend on how well the skill fits your task and material.

A good place to start

Run Trivy on this Docker image and list critical and high severity vulnerabilities.

Make your next great thing.

Bring a question, a file, or an idea that’s not quite there yet.