Docker Scout
- Provides
image analysisto scan security vulnerabilities - Generates
actionable insightsover app security - Shift left the identification of securities flaws (early in the software development lifecycle)
- Free for
Docker-Sponsored Open Source(DSOS) projects https://www.docker.com/blog/docker-scout-software-supply-chain-solution-for-open-source-projects/ - A dashboard can be generated for pushed images (docker hub or any other registry integrated) and it's visible on https://scout.docker.com/reports/org/hvitoi/overview
Steps
AnalyzeRemediateEvaluate
Products
Scout: security scanBuildCloud: remote image build