Documentation
README
agentic-workflows-blueprint.workflow.performing-container-security-scanning-with-trivy
Goal
Run comprehensive Trivy-based container security scanning across images, filesystem sources, and configuration artifacts with policy-driven enforcement outputs.
Scope
- Applies to: Trivy scans for vulnerabilities, misconfigurations, secrets, and license findings.
- Does not cover: replacing runtime threat detection and incident response execution.
Triggers
- "Run full Trivy container security scan"
- "Scan image/filesystem/manifests with Trivy"
- "Generate SBOM and security findings from container artifacts"
- "Apply Trivy scanning in security verification flow"
Inputs
This is the opening of the README. Read the full README on GitHub.