Back to Skills

container-grype

aiskillstore
Updated 7 days ago
17 views
162
7
162
View on GitHub
Othercontainer-securityvulnerability-scanningscasbomcvsscvedockergrype

About

This skill scans container images and filesystems for vulnerabilities using Grype, integrating CVSS, EPSS, and CISA KEV data for risk prioritization. It's designed for CI/CD pipeline integration, SBOM analysis, and generating security reports in formats like JSON and SARIF. Use it to implement automated vulnerability scanning and threshold-based security gating in your development workflow.

Quick Install

Claude Code

Recommended
Primary
npx skills add aiskillstore/marketplace -a claude-code
Plugin CommandAlternative
/plugin add https://github.com/aiskillstore/marketplace
Git CloneAlternative
git clone https://github.com/aiskillstore/marketplace.git ~/.claude/skills/container-grype

Copy and paste this command in Claude Code to install this skill

GitHub Repository

aiskillstore/marketplace
Path: skills/agentsecops/container-grype
0
ai-skillsclaudeclaude-codeclaude-skillscodexcodex-skills

Related Skills

container-hadolint

Other

This Claude Skill performs automated Dockerfile security linting using Hadolint, checking for misconfigurations, hardcoded secrets, and violations of the CIS Docker Benchmark. It's designed to integrate shift-left security into CI/CD pipelines and developer workflows. Use it to enforce container best practices and get remediation guidance directly within your development process.

View skill

sca-trivy

Other

The `sca-trivy` skill performs comprehensive security scanning using Aqua Trivy, identifying vulnerabilities in container images, dependencies across multiple languages, and Infrastructure-as-Code configurations. It integrates into CI/CD pipelines, outputs results in SARIF format, and can generate SBOMs. Use it to automate vulnerability detection and prioritize fixes by CVSS score within your development workflow.

View skill

container-grype

Other

This Claude Skill scans container images and filesystems for vulnerabilities using Grype, integrating CVSS, EPSS, and CISA KEV data for risk assessment. It's designed for CI/CD pipeline integration, SBOM analysis, and generating actionable security reports. Use it to implement vulnerability scanning and prioritize remediation within your development workflow.

View skill

secrets-gitleaks

Other

This Claude Skill detects hardcoded secrets like API keys and credentials in git repositories using Gitleaks. It combines regex patterns and entropy analysis for scanning codebases and git history. Use it to prevent leaks via pre-commit hooks, integrate scanning into CI/CD, and audit for compliance.

View skill