summaryrefslogtreecommitdiffstats
path: root/pkgs
diff options
context:
space:
mode:
authorAnderson Torres <torres.anderson.85@protonmail.com>2020-10-13 10:40:35 -0300
committerGitHub <noreply@github.com>2020-10-13 10:40:35 -0300
commitf67893d8aca32957a1e73a8848fc30de4a46df34 (patch)
tree74f1d4a430a3fc89318fd378958361ad350b78f7 /pkgs
parentc181dca8c628e4e1733835fdcac078b01fbe6613 (diff)
parentaa7a16a72f16926ab0f6e284c416d73034d5c747 (diff)
Merge pull request #99407 from 06kellyjac/init_trivy
trivy: init at 0.11.0
Diffstat (limited to 'pkgs')
-rw-r--r--pkgs/tools/admin/trivy/default.nix36
-rw-r--r--pkgs/top-level/all-packages.nix2
2 files changed, 38 insertions, 0 deletions
diff --git a/pkgs/tools/admin/trivy/default.nix b/pkgs/tools/admin/trivy/default.nix
new file mode 100644
index 000000000000..80920c56bbec
--- /dev/null
+++ b/pkgs/tools/admin/trivy/default.nix
@@ -0,0 +1,36 @@
+{ lib, buildGoModule, fetchFromGitHub }:
+
+buildGoModule rec {
+ pname = "trivy";
+ version = "0.11.0";
+
+ src = fetchFromGitHub {
+ owner = "aquasecurity";
+ repo = pname;
+ rev = "v${version}";
+ sha256 = "0mqzs0yjlqpsn2540kgl4gn77qjg3kfls1zwgjfxy66lazic3f1h";
+ };
+
+ vendorSha256 = "1jmmx83c0qbqyppx0w8d9djz2j2i7dgibq9lb3vhdz78wc40zywy";
+
+ buildFlagsArray = [
+ "-ldflags="
+ "-s"
+ "-w"
+ "-X main.version=v${version}"
+ ];
+
+ meta = with lib; {
+ description = "A simple and comprehensive vulnerability scanner for containers, suitable for CI";
+ longDescription = ''
+ Trivy is a simple and comprehensive vulnerability scanner for containers
+ and other artifacts. A software vulnerability is a glitch, flaw, or
+ weakness present in the software or in an Operating System. Trivy detects
+ vulnerabilities of OS packages (Alpine, RHEL, CentOS, etc.) and
+ application dependencies (Bundler, Composer, npm, yarn, etc.).
+ '';
+ homepage = src.meta.homepage;
+ license = licenses.asl20;
+ maintainers = with maintainers; [ jk ];
+ };
+}
diff --git a/pkgs/top-level/all-packages.nix b/pkgs/top-level/all-packages.nix
index e9a5665f52ca..6f75ab62977e 100644
--- a/pkgs/top-level/all-packages.nix
+++ b/pkgs/top-level/all-packages.nix
@@ -3394,6 +3394,8 @@ in
tridactyl-native = callPackage ../tools/networking/tridactyl-native { };
+ trivy = callPackage ../tools/admin/trivy { };
+
trompeloeil = callPackage ../development/libraries/trompeloeil { };
uudeview = callPackage ../tools/misc/uudeview { };