# trivy installieren

Prüfe Installationswege, Executables, Metadaten und Sicherheitshinweise für trivy in AI-Agent-Workflows.

## Installation

```sh
sudo av install brew:trivy
```

Weitere Installationsbefehle:

### macOS

- Homebrew (100%):

```sh
brew install trivy
```

  Evidenz: local Homebrew formula metadata

- MacPorts (94%):

```sh
sudo port install trivy
```

  Evidenz: MacPorts ports tree: security/trivy/Portfile from https://api.github.com/repos/macports/macports-ports/git/trees/master?recursive=1

### Linux

- apk (92%):

```sh
sudo apk add trivy
```

  Evidenz: Alpine Linux edge package indexes: trivy from https://dl-cdn.alpinelinux.org/alpine/edge/testing/x86_64/APKINDEX.tar.gz

- dnf (92%):

```sh
sudo dnf install trivy
```

  Evidenz: Fedora Rawhide package metadata: trivy from https://dl.fedoraproject.org/pub/fedora/linux/development/rawhide/Everything/x86_64/os/repodata/13ee7b80cb813542594d4235c4a0b8695435d5ecf23dd3580bc7515ae1b6180d-primary.xml.zst

- Nix (92%):

```sh
nix profile install nixpkgs#trivy
```

  Evidenz: nixpkgs package indexes: pkgs/by-name/tr/trivy/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1

- pacman (92%):

```sh
sudo pacman -S trivy
```

  Evidenz: Arch Linux sync databases: trivy from https://geo.mirror.pkgbuild.com/extra/os/x86_64/extra.db.tar.gz

- zypper (92%):

```sh
sudo zypper install trivy
```

  Evidenz: openSUSE Tumbleweed package metadata: trivy from https://download.opensuse.org/tumbleweed/repo/oss/repodata/155b97171d05e27afd950b6fe0d55513ff38f4597110664535bceedc680bbe6fd459f0733718dcc21dcf0efc7c8250fd1390c73d4790b42e62fb2c16a87242e5-primary.xml.zst

### Windows

- Chocolatey (92%):

```sh
choco install trivy
```

  Evidenz: Chocolatey community package catalog: trivy from http://community.chocolatey.org/api/v2/Packages?$filter=IsLatestVersion&$select=Id&$top=1000&$skiptoken='11','tomcat'

- Scoop (92%):

```sh
scoop install main/trivy
```

  Evidenz: Scoop official bucket manifest trees: bucket/trivy.json from https://api.github.com/repos/ScoopInstaller/Main/git/trees/master?recursive=1

- winget (92%):

```sh
winget install --id AquaSecurity.Trivy -e
```

  Evidenz: Windows Package Manager source index: AquaSecurity.Trivy from https://cdn.winget.microsoft.com/cache/source.msix

## Paketfakten

- **Paketschlüssel:** brew:trivy
- **Paketmanager:** Homebrew
- **Paketmanager-Seite:** <https://formulae.brew.sh/formula/trivy>
- **Version:** 0.70.0
- **Quellzusammenfassung:** Vulnerability scanner for container images, file systems, and Git repos
- **Homepage:** <https://trivy.dev/>
- **Repository:** <https://github.com/aquasecurity/trivy>
- **Upstream-Dokumentation:** <https://trivy.dev/>
- **Lizenz:** Apache-2.0
- **Quellarchiv:** <https://github.com/aquasecurity/trivy/archive/refs/tags/v0.70.0.tar.gz>
- **Aktualisiert:** 2026-04-17T11:05:09Z
- **Generierte Quelle:** 2026-05-26T22:45:13+00:00

## Executables

- trivy (cli)
- trivy (Alias)

## Build-Abhängigkeiten

- go

## Installationsverhalten

- Post-install-Hook: nicht definiert
- Bottle: verfügbar auf arm64_linux, arm64_sequoia, arm64_sonoma, arm64_tahoe, sonoma, x86_64_linux

## Aktualität

- Seite generiert: 2026-05-26
- Manager-Version: 0.70.0
- Manager aktualisiert: 2026-04-17
- lokale Daten: ok
- Upstream-Repository: https://github.com/aquasecurity/trivy
- neueste erkannte Version: v0.70.0 (current)

## Sicherheitshinweise

broad file, network, media, or database tool signal. escape, surveillance, or offensive capability signal.

- **Geiger-Risiko:** red / medium
- broad file, network, media, or database tool signal
- escape, surveillance, or offensive capability signal
- infrastructure mutation or orchestration signal

## Verwandte Links

- [go](https://www.automicvault.com/pkg/brew/go/) - Build dependency declared by Homebrew.
- [cdxgen](https://www.automicvault.com/pkg/brew/cdxgen/) - Popular package that depends on this formula.
- [Secret-risk packages](https://www.automicvault.com/pkg/secret-risk-packages/)

## Quellen

- Nucleus package database
- Geiger risk classifier
- package-page enrichment
- package version freshness
- package relationship graph
- cross-ecosystem install command graph
