Hacker News new | ask | show | jobs
by urlichsanais 901 days ago
Hi there, I'm from the Trivy team -- you can scan the misconfiguration of container images i.e. Dockerfile, with Trivy as well.

However, without the source code being open source, you cannot really check what anyone is up to -- thus, don't just use any container image on DockerHub