Average Ratings 0 Ratings

Total
ease
features
design
support

No User Reviews. Be the first to provide a review:

Write a Review

Average Ratings 0 Ratings

Total
ease
features
design
support

No User Reviews. Be the first to provide a review:

Write a Review

Description

Container images are made up of various layers and software packages that can be at risk of vulnerabilities, which may jeopardize the safety of both containers and applications. These security risks necessitate proactive measures, and Docker Scout serves as an effective tool to bolster the security of your software supply chain. By examining your images, Docker Scout creates a detailed inventory of the components, referred to as a Software Bill of Materials (SBOM). This SBOM is then compared against a constantly updated database of vulnerabilities to identify potential security flaws. Operating as an independent service, Docker Scout can be accessed through Docker Desktop, Docker Hub, the Docker CLI, and the Docker Scout Dashboard. Furthermore, it supports integrations with external systems, including container registries and CI platforms. Take the opportunity to uncover and analyze the structure of your images, ensuring that your artifacts conform to the best practices of the supply chain. By leveraging Docker Scout, you can maintain a robust defense against emerging threats in your software environment.

Description

DevSecOps Next Generation - Securing Your Binaries. Identify security flaws and license violations early in development and block builds that have security issues before deployment. Automated and continuous auditing and governance of software artifacts throughout the software development cycle, from code to production. Additional functionalities include: - Deep recursive scanning components, drilling down to analyze all artifacts/dependencies and creating a graph showing the relationships between software components. - On-Prem or Cloud, Hybrid, Multi-Cloud Solution - An impact analysis of how one issue in a component affects all dependent parts with a display chain displaying the impacts in a component dependency diagram. - JFrog's vulnerability database is continuously updated with new component vulnerabilities data. VulnDB is the industry's most comprehensive security database.

API Access

Has API No 

API Access

Has API No 

Screenshots View All

Screenshots View All

Integrations

Amazon Elastic Container Registry (ECR) Yes 
ArmorCode No 
Azure Container Registry Yes 
Boozang No 
Chainguard No 
Cider No 
CircleCI Yes 
GitHub Yes 
JFrog Artifactory Yes 
Kondukto No 
Mend.io No 
OpsLevel No 
OpsMx Enterprise for Spinnaker No 
Phoenix Security No 
Rezilion No 
SonarQube Server Yes 
Sysdig Monitor Yes 
Testlemon No 
Tromzo No 
Vulcan Cyber No 

Integrations

Amazon Elastic Container Registry (ECR) No 
ArmorCode Yes 
Azure Container Registry No 
Boozang Yes 
Chainguard Yes 
Cider Yes 
CircleCI No 
GitHub No 
JFrog Artifactory No 
Kondukto Yes 
Mend.io Yes 
OpsLevel Yes 
OpsMx Enterprise for Spinnaker Yes 
Phoenix Security Yes 
Rezilion Yes 
SonarQube Server No 
Sysdig Monitor No 
Testlemon Yes 
Tromzo Yes 
Vulcan Cyber Yes 

Pricing Details

$5 per month
Free Trial No 
Free Version Yes 

Pricing Details

No price information available.
Free Trial Yes 
Free Version Yes 

Deployment

Web-Based Yes 
On-Premises No 
iPhone App No 
iPad App No 
Android App No 
Windows No 
Mac No 
Linux No 
Chromebook No 

Deployment

Web-Based Yes 
On-Premises Yes 
iPhone App No 
iPad App No 
Android App No 
Windows Yes 
Mac Yes 
Linux Yes 
Chromebook No 

Customer Support

Business Hours Yes 
Live Rep (24/7) No 
Online Support Yes 

Customer Support

Business Hours Yes 
Live Rep (24/7) Yes 
Online Support Yes 

Types of Training

Training Docs Yes 
Webinars Yes 
Live Training (Online) No 
In Person Yes 

Types of Training

Training Docs Yes 
Webinars Yes 
Live Training (Online) No 
In Person Yes 

Vendor Details

Company Name

Docker

Founded

2013

Country

United States

Website

docs.docker.com/scout/

Vendor Details

Company Name

JFrog

Founded

2008

Country

United States

Website

jfrog.com/xray/

Product Features

Vulnerability Scanners

Asset Discovery No 
Black Box Scanning No 
Compliance Monitoring No 
Continuous Monitoring No 
Defect Tracking No 
Interactive Scanning No 
Logging and Reporting No 
Network Mapping No 
Perimeter Scanning No 
Risk Analysis No 
Threat Intelligence No 
Web Inspection No 

Product Features

Continuous Integration

Build Log No 
Change Management No 
Configuration Management No 
Continuous Delivery Yes 
Continuous Deployment Yes 
Debugging Yes 
Permission Management Yes 
Quality Assurance Management Yes 
Testing Management No 

DevOps

Approval Workflow Yes 
Dashboard No 
KPIs No 
Policy Management Yes 
Portfolio Management No 
Prioritization No 
Release Management No 
Timeline Management No 
Troubleshooting Reports Yes 

IT Security

Anti Spam No 
Anti Virus No 
Email Attachment Protection No 
Event Tracking No 
IP Protection No 
Internet Usage Monitoring No 
Intrusion Detection System No 
Spyware Removal No 
Two-Factor Authentication No 
Vulnerability Scanning Yes 
Web Threat Management Yes 
Web Traffic Reporting No 

Vulnerability Management

Asset Discovery Yes 
Asset Tagging Yes 
Network Scanning Yes 
Patch Management Yes 
Policy Management Yes 
Prioritization Yes 
Risk Management Yes 
Vulnerability Assessment Yes 
Web Scanning Yes 

Alternatives

aqua cloud Reviews

aqua cloud

aqua cloud GmbH