trivy-action VS sast-scan

Compare trivy-action vs sast-scan and see what are their differences.

trivy-action

Runs Trivy as GitHub action to scan your Docker container image for vulnerabilities (by aquasecurity)

sast-scan

Fully open-source SAST scanner supporting a range of languages and frameworks. Integrates with major CI pipelines and IDE such as Azure DevOps, Google CloudBuild, VS Code and Visual Studio. No server required! (by AppThreat)
InfluxDB - Power Real-Time Data Analytics at Scale
Get real-time insights from all types of time series data with InfluxDB. Ingest, query, and analyze billions of data points in real-time with unbounded cardinality.
www.influxdata.com
featured
SaaSHub - Software Alternatives and Reviews
SaaSHub helps you find the best software and product alternatives
www.saashub.com
featured
trivy-action sast-scan
3 1
685 115
3.6% -
7.3 10.0
6 days ago over 3 years ago
Shell Python
Apache License 2.0 MIT License
The number of mentions indicates the total number of mentions that we've tracked plus the number of user suggested alternatives.
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.

trivy-action

Posts with mentions or reviews of trivy-action. We have used some of these posts to build our list of alternatives and similar projects. The last one was on 2022-08-25.
  • How to Stop Rampant Kubernetes Cluster Growth
    3 projects | dev.to | 25 Aug 2022
    To examine images in a running state both before and after the image is checked into a registry, these tools, i.e. trivy by Aqua Security, are frequently incorporated into CI/CD processes. Malicious behavior and unfulfilled policy requirements can mark an image for registry deletion or prevent check-in entirely.
  • Episode 89: myNewsWrap – SAP and Microsoft
    2 projects | dev.to | 18 Jun 2022
    Security Scanning with GitHub Action for Trivy
  • SecYourIT
    6 projects | dev.to | 7 Dec 2021
    AquaSecurity/Trivy-Action to scan the file system and the dependencies for vulnerabilities

sast-scan

Posts with mentions or reviews of sast-scan. We have used some of these posts to build our list of alternatives and similar projects. The last one was on 2021-12-07.
  • SecYourIT
    6 projects | dev.to | 7 Dec 2021
    AppThreat/sast-scan-action to perform Static Application Security Testing

What are some alternatives?

When comparing trivy-action and sast-scan you can also consider the following projects:

featured

secyourit - Time to get your project some action, security action

opni - Multi Cluster Observability with AIOps

verify-action - Verify the authenticity of your commits with CodeNotary.io

actions - A set of GitHub actions for checking your projects for vulnerabilities

trivy - Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

sane-scan-pdf - Sane command-line scan-to-pdf script on Linux with OCR and deskew support

secyourit.