Clair is an open source project for the static analysis of vulnerabilities in appc and docker containers.
Product | Market Share (%) |
---|---|
CoreOS Clair | 0.5% |
Wiz | 17.4% |
Prisma Cloud by Palo Alto Networks | 11.5% |
Other | 70.6% |
Vulnerability data is continuously imported from a known set of sources and correlated with the indexed contents of container images in order to produce lists of vulnerabilities that threaten a container. When vulnerability data changes upstream, the previous state and new state of the vulnerability along with the images they affect can be sent via webhook to a configured endpoint. All major components can be customized programmatically at compile-time without forking the project.
eBay, Veritas, Verizon, SalesForce
Author info | Rating | Review Summary |
---|---|---|
Red Hat Solution Architect at Seprol Computadores e Sistemas | 4.5 | I use CoreOS Clair to manage and secure the event file system. It's similar to Linux, featuring a good user interface, reliable availability, and robust security. Integration with CI/CD is strong, but support response could be faster. |
Lead Member Of Technical Staff at a tech vendor with 10,001+ employees | 4.0 | No summary available |