Grype
banner
grypeproject.bsky.social
Grype
@grypeproject.bsky.social
540 followers 980 following 260 posts
Grype is an open source vulnerability scanner for Software Bills of Material (SBOMs), containers, and filesystems. Created and maintained by Anchore https://github.com/anchore/grype
Posts Media Videos Starter Packs
We're LIVE! Join the Anchore Open Source team now to discuss Syft, Grype, and the latest in #OpenSourceSecurity. Ask your questions! https://www.youtube.com/watch?v=AU19ViNKy08
We're live in 5 minutes! Join the Anchore Open Source team now for an interactive discussion on our tools and roadmap.

https://www.youtube.com/watch?v=AU19ViNKy08
Going live in 1 hour! Tune into the Anchore Open Source stream for all things Syft, Grype, & open source security. #OpenSource

https://www.youtube.com/watch?v=AU19ViNKy08
Tomorrow! Get ready for our Anchore Open Source live stream at 12 PM PT. Dive into Syft, Grype, and more. Don't miss out! #DevSecOps

https://www.youtube.com/watch?v=AU19ViNKy08
Join the Anchore Open Source team this Thursday at 12 PM PT for our live stream! We'll cover issues, PRs, & roadmap. #SBOM #Vulnerability
https://www.youtube.com/watch?v=AU19ViNKy08
We're LIVE! The Anchore Open Source team is here to chat Syft, Grype, and all things #OpenSource. Jump in and say hi!
https://www.youtube.com/watch?v=b5MdzKb9Ypc
Live in 5 minutes! Join the Anchore Open Source stream NOW for all the Syft & Grype goodness. Your questions, our answers!
https://www.youtube.com/watch?v=b5MdzKb9Ypc
One hour until we go LIVE! Get your questions ready for the Anchore Open Source team – we're talking Syft, Grype & more! #DevTalk
https://www.youtube.com/watch?v=b5MdzKb9Ypc
Psst... tomorrow at 12 PM PT, the Anchore OS crew hits the airwaves! Get your Syft & Grype insights straight from the source. #Grype #Syft
https://www.youtube.com/watch?v=b5MdzKb9Ypc
Got Syft/Grype questions? Our Open Source team is live Thursday at 12 PM PT to tackle bugs, PRs, & future plans. Don't be a stranger! #SBOM
https://www.youtube.com/watch?v=b5MdzKb9Ypc
Hey, did you know grype has an "explain" option, that... "explains" vulnerabilities.
There's even a blog about it: https://anchore.com/blog/introducing-grype-explain/
#security #vulnerability
Missed the Syft/Grype insights? No worries! Catch the recording of our latest Open Source stream here: #SoftwareSupplyChain
Live SBOM & Security Fixes: Anchore Devs Improve Syft & Grype (September 11th)
Join our weekly *Open Source Security* live stream! Watch Anchore's Developer Relations and Engineering teams collaborate in real-time on crucial *Software Supply Chain Security* tools. This session focuses on improving *Syft* (for *SBOM* generation) and *Grype* (for *vulnerability scanning*), addressing community-raised issues and pull requests. Every Thursday, "Open Source Gardening" offers a transparent look into maintaining popular *open source security* projects. We'll dive into items marked 'needs discussion' and, time permitting, tackle other interesting contributions. Learn development best practices, understand the challenges of *SBOM* accuracy, and see how *vulnerability scanning* tools evolve. Whether you're a contributor, user, or just curious about *open source security*, tune in to learn and engage with the minds behind Anchore's OSS tools. *Agenda:* - Discuss and resolve issues/PRs tagged 'needs discussion'. - Tackle other high-priority or interesting community contributions for Syft, Grype, and related projects. *Resources & Learn More:* - Learn about SBOMs: [Link to Anchore's SBOM pillar page/guide if available] - Dive into Software Supply Chain Security: [Link to relevant Anchore pillar page/blog if available] - Syft on GitHub: https://github.com/anchore/syft - Grype on GitHub: https://github.com/anchore/grype - Join the Community Discussion: https://anchore.com/discourse - All Anchore Open Source Projects: https://github.com/anchore - Sign-up for the OSS Newsletter: https://get.anchore.com/anchore-community/ #OpenSourceSecurity #SBOM #SoftwareSupplyChainSecurity
www.youtube.com
We're LIVE! The Anchore Open Source team is here to chat Syft, Grype, and all things #OpenSource. Jump in and say hi!
Live SBOM & Security Fixes: Anchore Devs Improve Syft & Grype (September 11th)
Join our weekly *Open Source Security* live stream! Watch Anchore's Developer Relations and Engineering teams collaborate in real-time on crucial *Software Supply Chain Security* tools. This session focuses on improving *Syft* (for *SBOM* generation) and *Grype* (for *vulnerability scanning*), addressing community-raised issues and pull requests. Every Thursday, "Open Source Gardening" offers a transparent look into maintaining popular *open source security* projects. We'll dive into items marked 'needs discussion' and, time permitting, tackle other interesting contributions. Learn development best practices, understand the challenges of *SBOM* accuracy, and see how *vulnerability scanning* tools evolve. Whether you're a contributor, user, or just curious about *open source security*, tune in to learn and engage with the minds behind Anchore's OSS tools. *Agenda:* - Discuss and resolve issues/PRs tagged 'needs discussion'. - Tackle other high-priority or interesting community contributions for Syft, Grype, and related projects. *Resources & Learn More:* - Learn about SBOMs: [Link to Anchore's SBOM pillar page/guide if available] - Dive into Software Supply Chain Security: [Link to relevant Anchore pillar page/blog if available] - Syft on GitHub: https://github.com/anchore/syft - Grype on GitHub: https://github.com/anchore/grype - Join the Community Discussion: https://anchore.com/discourse - All Anchore Open Source Projects: https://github.com/anchore - Sign-up for the OSS Newsletter: https://get.anchore.com/anchore-community/ #OpenSourceSecurity #SBOM #SoftwareSupplyChainSecurity
www.youtube.com
Live in 5 minutes! Join the Anchore Open Source stream NOW for all the Syft & Grype goodness. Your questions, our answers!
Live SBOM & Security Fixes: Anchore Devs Improve Syft & Grype (September 11th)
Join our weekly *Open Source Security* live stream! Watch Anchore's Developer Relations and Engineering teams collaborate in real-time on crucial *Software Supply Chain Security* tools. This session focuses on improving *Syft* (for *SBOM* generation) and *Grype* (for *vulnerability scanning*), addressing community-raised issues and pull requests. Every Thursday, "Open Source Gardening" offers a transparent look into maintaining popular *open source security* projects. We'll dive into items marked 'needs discussion' and, time permitting, tackle other interesting contributions. Learn development best practices, understand the challenges of *SBOM* accuracy, and see how *vulnerability scanning* tools evolve. Whether you're a contributor, user, or just curious about *open source security*, tune in to learn and engage with the minds behind Anchore's OSS tools. *Agenda:* - Discuss and resolve issues/PRs tagged 'needs discussion'. - Tackle other high-priority or interesting community contributions for Syft, Grype, and related projects. *Resources & Learn More:* - Learn about SBOMs: [Link to Anchore's SBOM pillar page/guide if available] - Dive into Software Supply Chain Security: [Link to relevant Anchore pillar page/blog if available] - Syft on GitHub: https://github.com/anchore/syft - Grype on GitHub: https://github.com/anchore/grype - Join the Community Discussion: https://anchore.com/discourse - All Anchore Open Source Projects: https://github.com/anchore - Sign-up for the OSS Newsletter: https://get.anchore.com/anchore-community/ #OpenSourceSecurity #SBOM #SoftwareSupplyChainSecurity
www.youtube.com
One hour until we go LIVE! Get your questions ready for the Anchore Open Source team – we're talking Syft, Grype & more! #DevTalk
Live SBOM & Security Fixes: Anchore Devs Improve Syft & Grype (September 11th)
Join our weekly *Open Source Security* live stream! Watch Anchore's Developer Relations and Engineering teams collaborate in real-time on crucial *Software Supply Chain Security* tools. This session focuses on improving *Syft* (for *SBOM* generation) and *Grype* (for *vulnerability scanning*), addressing community-raised issues and pull requests. Every Thursday, "Open Source Gardening" offers a transparent look into maintaining popular *open source security* projects. We'll dive into items marked 'needs discussion' and, time permitting, tackle other interesting contributions. Learn development best practices, understand the challenges of *SBOM* accuracy, and see how *vulnerability scanning* tools evolve. Whether you're a contributor, user, or just curious about *open source security*, tune in to learn and engage with the minds behind Anchore's OSS tools. *Agenda:* - Discuss and resolve issues/PRs tagged 'needs discussion'. - Tackle other high-priority or interesting community contributions for Syft, Grype, and related projects. *Resources & Learn More:* - Learn about SBOMs: [Link to Anchore's SBOM pillar page/guide if available] - Dive into Software Supply Chain Security: [Link to relevant Anchore pillar page/blog if available] - Syft on GitHub: https://github.com/anchore/syft - Grype on GitHub: https://github.com/anchore/grype - Join the Community Discussion: https://anchore.com/discourse - All Anchore Open Source Projects: https://github.com/anchore - Sign-up for the OSS Newsletter: https://get.anchore.com/anchore-community/ #OpenSourceSecurity #SBOM #SoftwareSupplyChainSecurity
www.youtube.com
Psst... tomorrow at 12 PM PT, the Anchore OS crew hits the airwaves! Get your Syft & Grype insights straight from the source. #Grype #Syft
Live SBOM & Security Fixes: Anchore Devs Improve Syft & Grype (September 11th)
Join our weekly *Open Source Security* live stream! Watch Anchore's Developer Relations and Engineering teams collaborate in real-time on crucial *Software Supply Chain Security* tools. This session focuses on improving *Syft* (for *SBOM* generation) and *Grype* (for *vulnerability scanning*), addressing community-raised issues and pull requests. Every Thursday, "Open Source Gardening" offers a transparent look into maintaining popular *open source security* projects. We'll dive into items marked 'needs discussion' and, time permitting, tackle other interesting contributions. Learn development best practices, understand the challenges of *SBOM* accuracy, and see how *vulnerability scanning* tools evolve. Whether you're a contributor, user, or just curious about *open source security*, tune in to learn and engage with the minds behind Anchore's OSS tools. *Agenda:* - Discuss and resolve issues/PRs tagged 'needs discussion'. - Tackle other high-priority or interesting community contributions for Syft, Grype, and related projects. *Resources & Learn More:* - Learn about SBOMs: [Link to Anchore's SBOM pillar page/guide if available] - Dive into Software Supply Chain Security: [Link to relevant Anchore pillar page/blog if available] - Syft on GitHub: https://github.com/anchore/syft - Grype on GitHub: https://github.com/anchore/grype - Join the Community Discussion: https://anchore.com/discourse - All Anchore Open Source Projects: https://github.com/anchore - Sign-up for the OSS Newsletter: https://get.anchore.com/anchore-community/ #OpenSourceSecurity #SBOM #SoftwareSupplyChainSecurity
www.youtube.com
Got Syft/Grype questions? Our Open Source team is live Thursday at 12 PM PT to tackle bugs, PRs, & future plans. Don't be a stranger! #SBOM
Live SBOM & Security Fixes: Anchore Devs Improve Syft & Grype (September 11th)
Join our weekly *Open Source Security* live stream! Watch Anchore's Developer Relations and Engineering teams collaborate in real-time on crucial *Software Supply Chain Security* tools. This session focuses on improving *Syft* (for *SBOM* generation) and *Grype* (for *vulnerability scanning*), addressing community-raised issues and pull requests. Every Thursday, "Open Source Gardening" offers a transparent look into maintaining popular *open source security* projects. We'll dive into items marked 'needs discussion' and, time permitting, tackle other interesting contributions. Learn development best practices, understand the challenges of *SBOM* accuracy, and see how *vulnerability scanning* tools evolve. Whether you're a contributor, user, or just curious about *open source security*, tune in to learn and engage with the minds behind Anchore's OSS tools. *Agenda:* - Discuss and resolve issues/PRs tagged 'needs discussion'. - Tackle other high-priority or interesting community contributions for Syft, Grype, and related projects. *Resources & Learn More:* - Learn about SBOMs: [Link to Anchore's SBOM pillar page/guide if available] - Dive into Software Supply Chain Security: [Link to relevant Anchore pillar page/blog if available] - Syft on GitHub: https://github.com/anchore/syft - Grype on GitHub: https://github.com/anchore/grype - Join the Community Discussion: https://anchore.com/discourse - All Anchore Open Source Projects: https://github.com/anchore - Sign-up for the OSS Newsletter: https://get.anchore.com/anchore-community/ #OpenSourceSecurity #SBOM #SoftwareSupplyChainSecurity
www.youtube.com
Want to influence the direction of Grype? 🚀 Tell us how you use it and what improvements you'd like to see! Your feedback matters! Survey here: https://forms.gle/hvgpNeZadLfFhCf69
#Grype #Security #OpenSource
Hey, did you know grype has an "explain" option, that... "explains" vulnerabilities.
There's even a blog about it: https://anchore.com/blog/introducing-grype-explain/
#security #vulnerability
Want to influence the direction of Grype? 🚀 Tell us how you use it and what improvements you'd like to see! Your feedback matters! Survey here: https://forms.gle/hvgpNeZadLfFhCf69
#Grype #Security #OpenSource
Think of your SBOM as an everything-bagel. 🥯 We find the moldy bits (vulns). Our friend Grant finds the cilantro (unwanted licenses 🌿). One #SBOM, no nasty surprises! See how it works:
https://www.youtube.com/watch?v=RVyryb8f5GQ