{"author":"gojiberries","children":[{"author":"zxcvbn4038","children":[],"created_at":"2021-11-11T02:56:50.000Z","created_at_i":1636599410,"id":29183952,"options":[],"parent_id":29181577,"points":null,"story_id":29181577,"text":"I\u2019ve had a great experience with Trivy, very solid tool, very easy to write automation around.","title":null,"type":"comment","url":null},{"author":"jamesfinlayson","children":[{"author":"cpressland","children":[],"created_at":"2021-11-11T09:04:05.000Z","created_at_i":1636621445,"id":29185980,"options":[],"parent_id":29184032,"points":null,"story_id":29181577,"text":"Yes, we use AquaSec and it\u2019s absolutely the same engine. Trivy is so good we were tempted to drop AquaSec entirely as we only use it in our CI and this covers our requirements.","title":null,"type":"comment","url":null}],"created_at":"2021-11-11T03:07:18.000Z","created_at_i":1636600038,"id":29184032,"options":[],"parent_id":29181577,"points":null,"story_id":29181577,"text":"Is this what powers AquaSec?","title":null,"type":"comment","url":null},{"author":"efrecon","children":[],"created_at":"2021-11-11T07:28:06.000Z","created_at_i":1636615686,"id":29185379,"options":[],"parent_id":29181577,"points":null,"story_id":29181577,"text":"Trivy is good. It comes bundled with the harbor docker registry, meaning you get security analysis of your images and provide for some level of security as you can prevent pulling critical images (or whatever level you deem necessary).","title":null,"type":"comment","url":null},{"author":"Jabihjo","children":[],"created_at":"2021-11-11T13:57:05.000Z","created_at_i":1636639025,"id":29187849,"options":[],"parent_id":29181577,"points":null,"story_id":29181577,"text":"It seems that this does the same thing as Anchore. Is there a difference that I&#x27;m not seeing?\nAlso, I couldn&#x27;t find anything for Trivy that gives you a nice web UI like what Snyk does, or did I miss something there as well?","title":null,"type":"comment","url":null},{"author":"markuman123","children":[],"created_at":"2021-11-11T14:05:18.000Z","created_at_i":1636639518,"id":29187927,"options":[],"parent_id":29181577,"points":null,"story_id":29181577,"text":"it&#x27;s super easy to integrate in every ci&#x2F;cd pipeline","title":null,"type":"comment","url":null}],"created_at":"2021-11-10T22:05:45.000Z","created_at_i":1636581945,"id":29181577,"options":[],"parent_id":null,"points":41,"story_id":29181577,"text":null,"title":"Trivy: A scanner for vulnerabilities in containers, file systems, and Git repos","type":"story","url":"https://github.com/aquasecurity/trivy"}
