🛡️ Trivy

2installs

This skill should be used when scanning container images, filesystems, or repositories for vulnerabilities using Trivy. Use for CVE detection, security analysis, vulnerability comparison across image versions, understanding scan output (severity levels, status fields), and batch scanning multiple im

QUICK INSTALL
npx playbooks add skill plinde/claude-plugins --skill trivy

About Trivy

This skill should be used when scanning container images, filesystems, or repositories for vulnerabilities using Trivy. Use for CVE detection, security analysis, vulnerability comparison across image versions, understanding scan output (severity levels, status fields), and batch scanning multiple im

The 39-word prompt provides structured security guidance — covering detailed methodology and consistent output formats. Install it in one command.

Use Cases

  • Auditing code for OWASP Top 10 vulnerabilities
  • Implementing authentication and authorization patterns
  • Reviewing API security, rate limiting, and input validation
  • Hardening infrastructure and dependency security

Example Prompts

Get started Help me use the Trivy skill effectively.

System Prompt (39 words)

This skill should be used when scanning container images, filesystems, or repositories for vulnerabilities using Trivy. Use for CVE detection, security analysis, vulnerability comparison across image versions, understanding scan output (severity levels, status fields), and batch scanning multiple im

Frequently Asked Questions

What is Trivy?

Trivy is a free security skill for AI coding agents. This skill should be used when scanning container images, filesystems, or repositories for vulnerabilities using Trivy. Use for CVE detection, security analysis, vulnerability comparison across image versions, understanding scan output (severity levels, status fields), and batch scanning multiple im. It provides a specialized system prompt that configures your agent with security expertise.

How do I use Trivy with Claude Code?

Run npx playbooks add skill plinde/claude-plugins --skill trivy in your terminal to install Trivy into your Claude Code session. It works immediately after installation.

Which AI coding agents work with Trivy?

Trivy is compatible with Claude Code, Cursor, GitHub Copilot, Windsurf, OpenClaw, Cline, and any AI agent that supports custom system prompts or .cursorrules files.

Is Trivy free to use?

Yes, Trivy is completely free and open source. The full source is available on GitHub at https://github.com/plinde/claude-plugins/tree/main/trivy/skills/trivy. You only need a subscription to the AI agent you use it with.

Related Skills

Get the best new skills
in your inbox

Weekly roundup of top Claude Code skills, MCP servers, and AI coding tips.