-
Notifications
You must be signed in to change notification settings - Fork 224
aquasecurity trivy Ideas Discussions
Pinned Discussions
Sort by:
Latest activity
Categories, most helpful, and community links
Categories
Community links
💡 Ideas Discussions
Share ideas for new features
-
You must be logged in to vote 💡 SPDX 3?
kind/featureCategorizes issue or PR as related to a new feature. scan/vulnerabilityIssues relating to vulnerability scanning -
You must be logged in to vote 💡 feat(compliance): Add support for CIS EKS Benchmark v1.8.0
kind/featureCategorizes issue or PR as related to a new feature. -
You must be logged in to vote 💡 Add support for CSAF v2.0 compliant
kind/featurerepoCategorizes issue or PR as related to a new feature. -
You must be logged in to vote 💡 Supply expected checksum to contrib/install.sh
kind/featureCategorizes issue or PR as related to a new feature. -
You must be logged in to vote 💡 Version pinning?
kind/featureCategorizes issue or PR as related to a new feature. -
You must be logged in to vote 💡 Improve security of contrib/install.sh by support validating the binaries with sigstore/cosign or provided checksum
kind/featureCategorizes issue or PR as related to a new feature. -
You must be logged in to vote 💡 Proposal: position-anchored tags to make tag tampering human-visible
kind/featureCategorizes issue or PR as related to a new feature. -
You must be logged in to vote 💡 Add riscv64 to release binaries and Docker images
kind/featureCategorizes issue or PR as related to a new feature. target/container-imageIssues relating to container image scanning -
You must be logged in to vote 💡 Add JSON Schema for
kind/feature.trivyignore.yamlconfiguration fileCategorizes issue or PR as related to a new feature. -
You must be logged in to vote 💡 GitHub Actions Workflow Security Audit — Post-Incident Hardening
kind/featureCategorizes issue or PR as related to a new feature. -
You must be logged in to vote 💡 Support for OWASP Risk Ratings in VEX documents
kind/featureCategorizes issue or PR as related to a new feature. scan/vulnerabilityIssues relating to vulnerability scanning -
You must be logged in to vote 💡 Add check for missing pipefail in Dockerfile
kind/featureCategorizes issue or PR as related to a new feature. scan/misconfigurationIssues relating to misconfiguration scanning target/filesystemIssues relating to filesystem scanning -
You must be logged in to vote 💡 Revisit AVD-AWS-0088 aws-s3-enable-bucket-encryption
kind/featureCategorizes issue or PR as related to a new feature. scan/misconfigurationIssues relating to misconfiguration scanning target/cloudIssues relating to cloud account scanning -
You must be logged in to vote 💡 Use Trivy as Bun Security Scanner
kind/featureCategorizes issue or PR as related to a new feature. scan/vulnerabilityIssues relating to vulnerability scanning -
You must be logged in to vote 💡 Add CSAF Support for the --vex oci flag
kind/featureCategorizes issue or PR as related to a new feature. scan/vulnerabilityIssues relating to vulnerability scanning -
You must be logged in to vote 💡 Add support for injecting additional volumes and volumeMounts on trivy helm chart
kind/featureCategorizes issue or PR as related to a new feature. target/kubernetesIssues relating to kubernetes cluster scanning -
You must be logged in to vote 💡 Bun support?
kind/featureCategorizes issue or PR as related to a new feature. -
You must be logged in to vote 💡 Feature: Option to use CVSS 4.0 for severity classification when available
kind/featureCategorizes issue or PR as related to a new feature. scan/vulnerabilityIssues relating to vulnerability scanning target/container-imageIssues relating to container image scanning -
You must be logged in to vote 💡 Support uv workspace project without root package
kind/featureCategorizes issue or PR as related to a new feature. scan/vulnerabilityIssues relating to vulnerability scanning target/filesystemIssues relating to filesystem scanning -
You must be logged in to vote 💡 Support for Perl
kind/featureCategorizes issue or PR as related to a new feature. scan/vulnerabilityIssues relating to vulnerability scanning -
You must be logged in to vote 💡 Parsing Gradle verification-metadata.xml files
kind/featureCategorizes issue or PR as related to a new feature. scan/vulnerabilityIssues relating to vulnerability scanning -
You must be logged in to vote 💡 Flag to filter non-vulnerabilities
kind/featureCategorizes issue or PR as related to a new feature. scan/vulnerabilityIssues relating to vulnerability scanning target/container-imageIssues relating to container image scanning -
You must be logged in to vote 💡 Scan GitHub Actions workflows for misconfiguration issues
kind/featureCategorizes issue or PR as related to a new feature. scan/misconfigurationIssues relating to misconfiguration scanning target/repositoryIssues relating to VCS repository scanning -
You must be logged in to vote 💡 Add support for misconfig to apko
kind/featureCategorizes issue or PR as related to a new feature. scan/misconfigurationIssues relating to misconfiguration scanning target/container-imageIssues relating to container image scanning -
You must be logged in to vote 💡 Rename
scan/sbom--list-all-pkgsto--scanners sbomIssues relating to SBOM