deepfence / deepfence/ThreatMapper

[Graph integration] Improvement unified package-scanner code

Open
#760 0 comments 0 reactions 1 assignee Claimed by @gnmahanth View on GitHub
enhancement v2
Dominant language
TypeScript
Stars
5.3k
Forks
631
PR merge metrics
No merged PRs in 30d

Description

merge vulnerability mapper from ThreatMapper to package-scanner making it easier to run vulnerability scans using [syft](https://github.com/anchore/syft) and [grype](https://github.com/anchore/grype) from a single place

add option to run only sbom generation(syft) on agent and run grype on threatmapper console using command line flags

Contributor guide

Open the contributing guide

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.