FIPS Package Dependency Management
How to secure your container images with GitLab and Grype

How to secure your container images with GitLab and Grype

7/28/2021 · Dan Luhring

What this post added

This post introduces Grype as a container image vulnerability scanner integrated into GitLab's Container Scanning feature. It details Grype's deep inspection capabilities for identifying vulnerabilities in container images and explains how to configure it via `.gitlab-ci.yml`. The post also announces the deprecation of Grype in favor of the Trivy scanner in future GitLab versions.

Read the original post ↗