-
Notifications
You must be signed in to change notification settings - Fork 3k
aquasecurity trivy Ideas Discussions
Pinned Discussions
Sort by:
Latest activity
Categories, most helpful, and community links
Categories
Community links
💡 Ideas Discussions
Share ideas for new features
-
You must be logged in to vote 💡 Add support for misconfig to apko
kind/featureCategorizes issue or PR as related to a new feature. scan/misconfigurationIssues relating to misconfiguration scanning target/container-imageIssues relating to container image scanning -
You must be logged in to vote 💡 Optional --explain / --trace mode to reduce CI debugging friction
kind/featureCategorizes issue or PR as related to a new feature. -
You must be logged in to vote 💡 Allow to specify a path in trusted_registries data (KSV-0125)
kind/featureCategorizes issue or PR as related to a new feature. scan/misconfigurationIssues relating to misconfiguration scanning target/filesystemIssues relating to filesystem scanning -
You must be logged in to vote 💡 Use CNA-provided severity if available when using severities from the NVD
kind/featureCategorizes issue or PR as related to a new feature. scan/vulnerabilityIssues relating to vulnerability scanning -
You must be logged in to vote 💡 Add support for Alibaba Cloud Linux
kind/featureCategorizes issue or PR as related to a new feature. scan/vulnerabilityIssues relating to vulnerability scanning target/container-imageIssues relating to container image scanning -
You must be logged in to vote 💡 Maven proxy support from settings.xml
kind/featureCategorizes issue or PR as related to a new feature. -
You must be logged in to vote 💡 Multiple ignorefiles are not being used
kind/featureCategorizes issue or PR as related to a new feature. -
You must be logged in to vote 💡 Respect .trivyignore in a git repository when scanning with 'trivy repository'
triage/supportIndicates an issue that is a support question. -
You must be logged in to vote 💡 Poetry license scanning / SBOM license scanning
kind/featureCategorizes issue or PR as related to a new feature. -
You must be logged in to vote 💡 Add Trivy Version, Trivy-DB date/version, Java-DB date/version to output
kind/featureCategorizes issue or PR as related to a new feature. scan/vulnerabilityIssues relating to vulnerability scanning -
You must be logged in to vote 💡 Support multiple output formats in single trivy invocation
kind/featureCategorizes issue or PR as related to a new feature. scan/vulnerabilityIssues relating to vulnerability scanning target/filesystemIssues relating to filesystem scanning -
You must be logged in to vote 💡 Add a dependency file tree
kind/featureCategorizes issue or PR as related to a new feature. scan/vulnerabilityIssues relating to vulnerability scanning target/filesystemIssues relating to filesystem scanning -
You must be logged in to vote 💡 Virtual Machine Image Compliance Scanning (VM, VMDK, AWS AMI)
kind/featureCategorizes issue or PR as related to a new feature. -
You must be logged in to vote 💡 Using a dependency graph to evaluate Terraform configuration in static analysis
kind/featureCategorizes issue or PR as related to a new feature. scan/misconfigurationIssues relating to misconfiguration scanning -
You must be logged in to vote 💡 provide TLS configuration for VEX Hub repositories
kind/featureCategorizes issue or PR as related to a new feature. scan/vulnerabilityIssues relating to vulnerability scanning target/container-imageIssues relating to container image scanning -
You must be logged in to vote 💡 Exit with error only on specified severities
kind/featureCategorizes issue or PR as related to a new feature. -
You must be logged in to vote 💡 Log "ignore finding rule='' range=''" for avd's in .trivyignore.yaml
kind/featureCategorizes issue or PR as related to a new feature. -
You must be logged in to vote 💡 Add tags field to each cloud resource
kind/featureCategorizes issue or PR as related to a new feature. scan/misconfigurationIssues relating to misconfiguration scanning -
You must be logged in to vote 💡 Consider including GitHub malware advisories to detect compromises like Shai-Hulud
kind/featureCategorizes issue or PR as related to a new feature. scan/vulnerabilityIssues relating to vulnerability scanning -
You must be logged in to vote 💡 Support scanning dev dependencies in Composer
kind/featureCategorizes issue or PR as related to a new feature. scan/vulnerabilityIssues relating to vulnerability scanning target/filesystemIssues relating to filesystem scanning -
You must be logged in to vote 💡 feat(java): Support for Maven 4 settings.xml
kind/featureCategorizes issue or PR as related to a new feature. target/filesystemIssues relating to filesystem scanning -
You must be logged in to vote 💡 Ability to specify cyclonedx format version
kind/featureCategorizes issue or PR as related to a new feature. -
You must be logged in to vote 💡 Add support for
kind/featurepixiinstallations withpixi.lockfiles andpyproject.tomlorpixi.tomlCategorizes issue or PR as related to a new feature. -
You must be logged in to vote 💡 Bitbucket Pipe Abandoned
kind/featureCategorizes issue or PR as related to a new feature. -
You must be logged in to vote 💡 Add support for ECR Dualstack endpoints
kind/featureCategorizes issue or PR as related to a new feature. scan/vulnerabilityIssues relating to vulnerability scanning target/cloudIssues relating to cloud account scanning