A vulnerability scanner for container images and filesystems
$ npx skills add anchore/grypeAlternatives
Compare similar skills by workflow fit, trust score, quality, GitHub adoption, maintenance, and install readiness.
Current skill
Vulnerability Static Analysis for Containers
A vulnerability scanner for container images and filesystems
$ npx skills add anchore/grypeCLI tool and library for generating a Software Bill of Materials from container images and filesystems
$ npx skills add anchore/syftKubeLinter is a static analysis tool that checks Kubernetes YAML files and Helm charts to ensure the applications represented in them adhere to best practices.
$ npx skills add stackrox/kube-linterSecurity risk analysis for Kubernetes resources
$ npx skills add controlplaneio/kubesecGo security checker
$ npx skills add securego/gosecStaticcheck - The advanced Go linter
$ npx skills add dominikh/go-toolsTfsec is now part of Trivy
$ npx skills add aquasecurity/tfsecπ₯ ~6x faster, stricter, configurable, extensible, and beautiful drop-in replacement for golint
$ npx skills add mgechev/reviveStatic analysis tool to detect potential nil panics in Go code
$ npx skills add uber-go/nilawayLightweight static analysis for many languages. Find bug variants with patterns that look like source code.
$ npx skills add semgrep/semgrepDockerfile linter, validate inline bash, written in Haskell
$ npx skills add hadolint/hadolintA static analysis security vulnerability scanner for Ruby on Rails applications
$ npx skills add presidentbeef/brakeman𦩠Tools for Go projects
$ npx skills add nikolaydubina/go-recipesCode security scanning tool (SAST) to discover, filter and prioritize security and privacy risks.
$ npx skills add Bearer/bearerπ A Hex Editor for Reverse Engineers, Programmers and people who value their retinas when working at 3 AM.
$ npx skills add WerWolv/ImHexAn extremely fast Python linter and code formatter, written in Rust.
$ npx skills add astral-sh/ruffHow to choose
Use an alternative when it has a clearer install path, higher trust score, fresher maintenance, or better platform fit for your current agent stack. Keep Clair if it already passes your workflow test and repository review.
Next step
Open the compare page, test the install commands in a sandbox, and check each repository before using a skill in production.