- trivy + scan2html report generator in one image
- Vulnerability DBs saved in the image for offline use
- Local VEX Hub and reports browser
./build.shScan image ubuntu:20.04 from Docker Hub:
docker run --rm \
-v $(pwd)/reports:/opt/reports/ \
--network trivy-network \
trivy-html ubuntu 20.04Optional environment variables:
SCAN_IMAGE(or first positional parameter)SCAN_TAG(or second positional parameter, defaultlatest)SCAN_FLAGS(trivy image scan flags)
- aquasecurity/trivy - Apache-2.0
- fatihtokus/scan2html - Apache-2.0
- nginx - BSD-2-Clause