Skip to content

Starttoaster/trivy-operator-explorer

Repository files navigation

Trivy Operator Explorer

This is a web explorer that displays the reports generated by the Trivy Operator for Kubernetes.

Preview

Dashboard

Install

Pre-requisites

You will of course need Trivy Operator already installed. The latest version of this explorer should work with the latest version of Trivy Operator. This explorer gets its data directly from the reporting custom resources that Trivy Operator installs in the cluster, and updates as it runs its scans.

Install explorer

Install with the helm chart:

helm upgrade --install --create-namespace \
--repo "https://starttoaster.github.io/trivy-operator-explorer" \
-n trivy-explorer \
trivy-operator-explorer \
trivy-operator-explorer

Filters

Some dashboards have filters that can be set from clicking elements on the page, but the following can only be set manually from the URL query parameters for now. UI elements might be added for these over time.

Image filter

Parameters Description Example
hasfix Boolean to only view vulnerabilities that have a fix version, or not. hasfix=true, hasfix=false
resources Comma-separated list of resources to view vulnerabilities for. resources=curl,zlib1g
notresources Comma-separated list of resources to ignore vulnerabilities for. notresources=curl,zlib1g

Example URL: http://your.explorer.install/image?hasfix=true&resources=curl,zlib1g

TODO

See CONTRIBUTING.md if you'd like to contribute an item on this list. Please make an Issue if you would like to see something added to this list.

  • Dashboard for CIS/NSA/PSS compliance results, maybe made the home page, and move the images view to /images
  • SBOM dashboard
  • Graphical elements for setting the filters on the /image page