Agent skill
trivy-scan
Scan containers and dependencies for vulnerabilities with Trivy
Install this agent skill to your Project
npx add-skill https://github.com/majiayu000/claude-skill-registry/tree/main/skills/other/other/trivy-scan
SKILL.md
Trivy Vulnerability Scanner
Scan container images, filesystems, and dependencies for vulnerabilities.
What To Do
-
Install:
choco install trivyorbrew install trivy -
Scan container image:
bashtrivy image --severity HIGH,CRITICAL --format json -o trivy-report.json myapp:latest -
Scan filesystem (NuGet/npm):
bashtrivy fs --severity HIGH,CRITICAL --scanners vuln . -
Scan IaC (Terraform, Helm, Dockerfile):
bashtrivy config --severity HIGH,CRITICAL . -
CI Integration:
yaml- script: trivy image --exit-code 1 --severity CRITICAL $(ACR_NAME).azurecr.io/$(IMAGE):$(TAG) displayName: "Container Scan"
Arguments
<image-or-path>: Container image or filesystem path--severity=<levels>: Filter (LOW, MEDIUM, HIGH, CRITICAL)
Recommended Agent Skills
Expand your agent's capabilities with these related and highly-rated skills.
agent-ops-spec
Manage specification documents in .agent/specs/. Use when user provides requirements, acceptance criteria, or feature descriptions that need to be tracked and validated against implementation.
agent-ops-state
Maintain .agent state files. Use at session start, after meaningful steps, and before concluding: read/update constitution/memory/focus/issues/baseline consistently.
agent-ops-spec
Manage specification documents in .agent/specs/. Use when user provides requirements, acceptance criteria, or feature descriptions that need to be tracked and validated against implementation.
agent-ops-testing
Test strategy, execution, and coverage analysis. Use when designing tests, running test suites, or analyzing test results beyond baseline checks.
agent-ops-testing
Test strategy, execution, and coverage analysis. Use when designing tests, running test suites, or analyzing test results beyond baseline checks.
agent-ops-state
Maintain .agent state files. Use at session start, after meaningful steps, and before concluding: read/update constitution/memory/focus/issues/baseline consistently.
Didn't find tool you were looking for?