Skip to main content

sca-trivy

Enables comprehensive vulnerability scanning for containers and dependencies, ensuring security compliance and risk management.

Install this skill

or
90/100

Security score

The sca-trivy skill was audited on Mar 5, 2026 and we found 10 security issues across 1 threat category. Review the findings below before installing.

Categories Tested

Security Issues

low line 20

External URL reference

SourceSKILL.md
20- https://aquasecurity.github.io/trivy/
low line 21

External URL reference

SourceSKILL.md
21- https://owasp.org/www-project-dependency-check/
low line 22

External URL reference

SourceSKILL.md
22- https://nvd.nist.gov/
low line 23

External URL reference

SourceSKILL.md
23- https://www.cisa.gov/sbom
low line 452

External URL reference

SourceSKILL.md
452- [Trivy Official Documentation](https://aquasecurity.github.io/trivy/)
low line 453

External URL reference

SourceSKILL.md
453- [OWASP Dependency Check](https://owasp.org/www-project-dependency-check/)
low line 454

External URL reference

SourceSKILL.md
454- [NVD - National Vulnerability Database](https://nvd.nist.gov/)
low line 455

External URL reference

SourceSKILL.md
455- [CISA SBOM Guidelines](https://www.cisa.gov/sbom)
low line 456

External URL reference

SourceSKILL.md
456- [CWE-1104: Use of Unmaintained Third-Party Components](https://cwe.mitre.org/data/definitions/1104.html)
low line 457

External URL reference

SourceSKILL.md
457- [OWASP Top 10 - Vulnerable and Outdated Components](https://owasp.org/Top10/)
Scanned on Mar 5, 2026
View Security Dashboard