Go Apache-2.0

clair

Vulnerability Static Analysis for Containers

Q

quay

Dernière activité 28 sept. 2026
quay/clair

11,1 k

étoiles

1,2 k

forks

59

issues ouvertes

claircontainersdockergokubernetesocioci-imagestatic-analysisvulnerabilities

Ce README est souvent en anglais.

Clair

Docker Repository on Quay PkgGoDev IRC Channel

Note: The main branch may be in an unstable or even broken state during development. Please use releases instead of the main branch in order to get stable binaries.

Clair Logo

Clair is an open source project for the static analysis of vulnerabilities in application containers (currently including OCI and docker).

Clients use the Clair API to index their container images and can then match it against known vulnerabilities.

Our goal is to enable a more transparent view of the security of container-based infrastructure. Thus, the project was named Clair after the French term which translates to clear, bright, transparent.

The book contains all the documentation on Clair's architecture and operation.

Community

Contributing

See CONTRIBUTING for details on submitting patches and the contribution workflow.

License

Clair is under the Apache 2.0 license. See the LICENSE file for details.

Projets similaires

A vulnerability scanner for container images and filesystems

Gocontainer-imagecontainerscyclonedx
Aanchore
13 k étoiles891

Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

Gocontainersdevsecopsdocker
Aaquasecurity
38,1 k étoiles717

Container Image Linter for Security, Helping build the Best-Practice Docker Image, Easy to start

Gocontainersdockergo
Ggoodwithtech
3,3 k étoiles169