trivy
https://github.com/aquasecurity/trivy
Go
Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more
Triage Issues!
When you volunteer to triage issues, you'll receive an email each day with a link to an open issue that needs help in this project. You'll also receive instructions on how to triage issues.
Triage Docs!
Receive a documented method or class from your favorite GitHub repos in your inbox every day. If you're really pro, receive undocumented methods or classes and supercharge your commit history.
Go not yet supported6 Subscribers
Add a CodeTriage badge to trivy
Help out
- Issues
- feat(install): add -s flag to verify tarball against a user-supplied sha256 (#10589)
- feat(secret): support new stateless format for GitHub App installation tokens (#10591)
- fix(nodejs): silently skip subdirectory package.json files with invalid names
- Migrate to Helm v4
- refactor(misconf): use Helm v4 SDK loaders instead of custom tar parsing
- test(misconf): add test coverage for Helm Charts v3
- fix(nodejs): silently skip package.json files with invalid names
- ci: remove injection risk in goreleaser action
- feat(secret): support new stateless format for GitHub App installation tokens
- feat(install): support passing expected checksum to contrib/install.sh
- Docs
- Go not yet supported