Trivy
Comprehensive, fast scanner for vulnerabilities in container images, filesystems, and git repos.
Open the official app on trivy.dev
This tool is hosted by its maintainers. Click below to open trivy.dev in a new tab — it's their official demo.
Browse security tools →What's next with Trivy?
Choose how you want to get started.
Use it free
Open the official tool or demo — no account needed.
Self-host it
Run the open-source version on your own infrastructure.
What is Trivy?
Trivy is a free container vulnerability scanner tool used by professionals and enthusiasts.
How it works
How Trivy works — see the article below for details on this security tools tool.
How to use it
- 1Open the Trivy tool, enter your input, and get your result instantly.
What it can do
- container vulnerability scanner
Use cases
Assumptions and limitations
Assumptions
- source: https://github.com/aquasecurity/trivy
- license: Apache-2.0 — free to use
- privacy: Self-hosted — you control your data
Limitations
- For authorized use only — use on systems you own or have explicit permission to test.
- Self-hosted — requires setup, maintenance, and your own infrastructure.
- Relies on an external source (github.com); availability depends on that service.
- Focused on the security tools category: Comprehensive, fast scanner for vulnerabilities in container images, filesystems, and git repos..
Understanding the result
Comprehensive, fast scanner for vulnerabilities in container images, filesystems, and git repos.
Tool details
- Clearly flagged when a network request is needed.
- No account, no sign-up, and no tracking of your content.
- Powered by (Apache-2.0).
- Built with
- (aquasecurity/trivy)
- License
- Apache-2.0
- Runs locally
- No — requires a network request
- Verification
- Not yet verified
- Input
- Query
- Output
- Text
Built with aquasecurity/trivy. OpenToolVault provides the discovery and browser interface while crediting the original project maintainers.
- Built with
- License
- Apache-2.0
Open-source project
OpenToolVault is an independent directory. We are not affiliated with or endorsed by this project.
References
- / — GitHub Repository
Upstream project · GitHub
- Apache-2.0 License
Upstream project