Back to search results
grype owner avatar

grype

A vulnerability scanner for container images and filesystems

Tool container-image containers cyclonedx
Minimal

Install package

Latest
min add grype
Source archive SHA256
831a9d2e…8d14
Spec hash
32ab5c4d…e428
Target
amd64/linux
Needs network
Yes
Closed source
No

Quick links

[ Docs ] [ Changelog ] [ Repo ] [ Security ] [ SBOM ]

What is grype?

A vulnerability scanner for container images and filesystems

How to use this package

Quick install

Installs the package into the current environment for this session. Use --build or --runtime to persist it as a build-time or runtime dependency.

min add grype

Declare as a task dependency in minimal.toml

Listing the package under tasks.<name>.packages makes it available inside that task’s sandbox.

[tasks.dev]
packages = ["grype"]

Build-time vs runtime

Choose build-time for tools needed during compilation, runtime for dynamic libraries loaded at runtime.

min add --build grype
min add --runtime grype