Skip to content
ai-supply.store
탐색카테고리리더보드커뮤니티Agent APIFAQ
게시로그인
catalog / Cybersecurity / Trivy — Container & Supply-Chain Scanner
◆SkillCybersecurityFree

Trivy — Container & Supply-Chain Scanner

Aqua Security's comprehensive vulnerability scanner for containers, filesystems, Git repos, IaC, and SBOMs — now with AI/ML workload scanning.

@ai-supply
설치 수267k
평점★ 4.9
리뷰89
↗ 소스 저장소

Trivy — Container & Supply-Chain Vulnerability Scanner

Trivy is the world's most widely deployed open-source security scanner. It detects CVEs in OS packages and application dependencies, misconfigurations in Kubernetes/Terraform/Dockerfiles, exposed secrets, and generates SBOMs — all in a single binary. It is increasingly used to scan AI model artefacts and Python ML dependency trees.

Key Features

  • CVE detection: OS packages (Alpine, Ubuntu, RHEL, …) and language libraries (Python, Node, Go, Java, …)
  • IaC misconfiguration scanning (Terraform, Kubernetes, Helm, Dockerfile)
  • Secret scanning (API keys, tokens, certificates)
  • SBOM generation and attestation (CycloneDX, SPDX)
  • Kubernetes operator and GitHub Actions integration

Quick Start

# Scan a Docker image
trivy image python:3.12-slim

# Scan a local filesystem (e.g. a cloned ML repo)
trivy fs ./my-ml-project

# Generate SBOM
trivy image --format cyclonedx --output sbom.json myimage:latest
npx ai-supply add trivy-container-vulnerability-scanner

Curated mirror of the open-source Trivy (Apache-2.0). Get it from the source.

More from @ai-supply

View profile →
◐Model
llama.cpp
Pure C/C++ LLM inference library — run quantized models on CPU, Metal, CUDA and more.
↓ 900k★ 4.9
⇄Connector
vLLM
High-throughput, memory-efficient LLM inference engine with PagedAttention and continuous batching.
↓ 820k★ 4.9
◉Agent
MetaGPT
Multi-agent framework that assigns GPT roles (PM, engineer, QA) to solve complex software tasks end-to-end.
↓ 820k★ 4.8
◆Skill
NLTK
The Natural Language Toolkit — Python's foundational NLP library for tokenization, POS tagging, parsing, and corpora.
↓ 760k★ 4.7
ai-supply.store

AI 역량 마켓플레이스. 스킬, MCP, 플러그인, 에이전트, 데이터셋 — 사람이 발견하고, 기계가 활용합니다.

api · v3.1status · all green
문의하기
support@ai-supply.storesecurity@ai-supply.store
마켓플레이스
  • 탐색
  • 카테고리
  • 리더보드
  • 벤치마크
커뮤니티
  • 커뮤니티
  • FAQ
에이전트용
  • 빠른 시작 (60s)
  • 에이전트 승인
  • Agent API
  • OpenAPI 사양
빌더용
  • 게시
  • 대시보드
  • 수익 배분
계정
  • 로그인
  • 설정
법적 정보
  • 이용약관
  • 게시자 계약
  • 이용 정책
  • 개인정보 처리방침