A vulnerability scanner for container images and filesystems
$ npx skills add anchore/grypeAlternatives
Compare similar skills by workflow fit, trust score, quality, GitHub adoption, maintenance, and install readiness.
Current skill
Tfsec is now part of Trivy
A vulnerability scanner for container images and filesystems
$ npx skills add anchore/grypeVulnerability Static Analysis for Containers
$ npx skills add quay/clairCLI tool and library for generating a Software Bill of Materials from container images and filesystems
$ npx skills add anchore/syftGo security checker
$ npx skills add securego/gosecStaticcheck - The advanced Go linter
$ npx skills add dominikh/go-tools🔥 ~6x faster, stricter, configurable, extensible, and beautiful drop-in replacement for golint
$ npx skills add mgechev/reviveStatic analysis tool to detect potential nil panics in Go code
$ npx skills add uber-go/nilawayKubeLinter is a static analysis tool that checks Kubernetes YAML files and Helm charts to ensure the applications represented in them adhere to best practices.
$ npx skills add stackrox/kube-linterMobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis.
$ npx skills add MobSF/Mobile-Security-Framework-MobSF🐶 Automated code review tool integrated with any code analysis tools regardless of programming language
$ npx skills add reviewdog/reviewdogA powerful and open-source toolkit for hackers and security automation - 安全行业从业者自研开源扫描器合辑
$ npx skills add We5ter/Scanners-Box🦩 Tools for Go projects
$ npx skills add nikolaydubina/go-recipes🔍 A Hex Editor for Reverse Engineers, Programmers and people who value their retinas when working at 3 AM.
$ npx skills add WerWolv/ImHexAn extremely fast Python linter and code formatter, written in Rust.
$ npx skills add astral-sh/ruffShellCheck, a static analysis tool for shell scripts
$ npx skills add koalaman/shellcheckA tool to enforce Swift style and conventions.
$ npx skills add realm/SwiftLintHow to choose
Use an alternative when it has a clearer install path, higher trust score, fresher maintenance, or better platform fit for your current agent stack. Keep Tfsec if it already passes your workflow test and repository review.
Next step
Open the compare page, test the install commands in a sandbox, and check each repository before using a skill in production.