aquasecurity / trivy-actionView external linksLinks
Runs Trivy as GitHub action to scan your Docker container image for vulnerabilities
☆1,196Updated this week
Alternatives and similar repositories for trivy-action
Users that are interested in trivy-action are comparing it to the libraries listed below
Sorting:
- Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more☆31,904Updated this week
- Kubernetes-native security toolkit☆1,779Updated this week
- Tfsec is now part of Trivy☆6,952Nov 10, 2025Updated 3 months ago
- A VS Code Extension for Trivy☆164Feb 7, 2026Updated last week
- Anchore container analysis and scan provided as a GitHub Action☆267Updated this week
- Kubernetes controller for GitHub Actions self-hosted runners☆6,004Feb 7, 2026Updated last week
- Sets up Terraform CLI in your GitHub Actions workflow.☆1,543Feb 5, 2026Updated last week
- A vulnerability scanner for container images and filesystems☆11,516Updated this week
- A set of GitHub actions for checking your projects for vulnerabilities.☆611Nov 5, 2025Updated 3 months ago
- Security configuration checks for popular cloud native applications and infrastructure.☆119Feb 16, 2022Updated 3 years ago
- A FAST Kubernetes manifests validator, with support for Custom Resources!☆2,923Oct 13, 2025Updated 4 months ago
- A Pluggable Terraform Linter☆5,615Updated this week
- GitHub Action to build and push Docker images with Buildx☆5,149Jan 29, 2026Updated 2 weeks ago
- GitHub Action to set up Docker Buildx☆1,265Jan 29, 2026Updated 2 weeks ago
- Checks whether Kubernetes is deployed according to security best practices as defined in the CIS Kubernetes Benchmark☆7,925Feb 6, 2026Updated last week
- Cloud cost estimates for Terraform in pull requests💰📉 Shift FinOps Left!☆12,125Updated this week
- Detect compliance and security violations across Infrastructure as Code to mitigate risk before provisioning cloud native infrastructure.☆5,206Nov 20, 2025Updated 2 months ago
- GitHub action for Hadolint, A Dockerfile linting tool☆259Sep 22, 2025Updated 4 months ago
- Code signing and transparency for containers and binaries☆5,649Updated this week
- External Secrets Operator reads information from a third-party service like AWS Secrets Manager and automatically injects the values as K…☆6,372Updated this week
- A GitHub Action for running the ZAP Full scan☆356Jan 30, 2026Updated 2 weeks ago
- GitHub Issue + Trivy Action☆56Jan 7, 2023Updated 3 years ago
- Container Image Linter for Security, Helping build the Best-Practice Docker Image, Easy to start☆3,219Jan 6, 2025Updated last year
- A GitHub action to help you scan your docker image for vulnerabilities☆222Jan 7, 2023Updated 3 years ago
- Superseded by https://github.com/aquasecurity/trivy-operator☆1,371Feb 3, 2026Updated last week
- Static checker for GitHub Actions workflow files☆3,578Feb 8, 2026Updated last week
- KubeLinter is a static analysis tool that checks Kubernetes YAML files and Helm charts to ensure the applications represented in them adh…☆3,394Feb 6, 2026Updated last week
- GitHub Action to extract metadata (tags, labels) from Git reference and GitHub events for Docker☆1,089Feb 3, 2026Updated last week
- Dockerfile linter, validate inline bash, written in Haskell☆11,947Jan 27, 2026Updated 2 weeks ago
- A Kubernetes controller and tool for one-way encrypted Secrets☆8,901Updated this week
- GitHub Action to use Docker Buildx Bake as a high-level build command☆283Feb 3, 2026Updated last week
- 🧵 CLI tool for directly patching container images!☆1,528Feb 7, 2026Updated last week
- Cosign Github Action☆182Jan 26, 2026Updated 2 weeks ago
- CLI tool and library for generating a Software Bill of Materials from container images and filesystems☆8,362Updated this week
- Actions for running CodeQL analysis☆1,478Updated this week
- GitHub Action to login against a Docker registry☆1,354Feb 5, 2026Updated last week
- A Github action for generating Terraform module documentation using terraform-docs and gomplate☆179Nov 20, 2025Updated 2 months ago
- ☆302Feb 3, 2026Updated last week
- Kubescape is an open-source Kubernetes security platform for your IDE, CI/CD pipelines, and clusters. It includes risk analysis, security…☆11,177Feb 4, 2026Updated last week