Trivy icon

Trivy

Launches an MCP server to act as a gateway to Trivy vulnerability scanning.

About

The Trivy plugin starts an experimental MCP Server, providing a gateway for IDEs like VSCode to interact with Trivy. This enables vulnerability and misconfiguration scanning of filesystems, images, and repositories directly within the development environment. Currently under active development, it offers both stdio and SSE HTTP transport options for integration.

Key Features

  • Provides command-line options for configuration.
  • Starts an MCP Server for Trivy.
  • Supports stdio and SSE HTTP transport.
  • Integrates with VSCode for vulnerability scanning.
  • 10 GitHub stars
  • Enables filesystem, image, and repository scanning.

Use Cases

  • Scanning local projects for vulnerabilities directly within VSCode.
  • Identifying vulnerabilities in remote repositories.
  • Analyzing container images for security issues.
Craft Better Prompts with AnyPrompt
Sponsored