grype-syft-sbom-scanner

Installation
SKILL.md

Grype + Syft SBOM Scanner

Trigger / When to Use

Use this skill when the user wants SBOM-first vulnerability management, container image scanning, package inventory, or repeatable vulnerability scans using Anchore open-source tools Syft and Grype.

Good trigger phrases:

  • "generate an SBOM and scan it"
  • "scan this container with Grype"
  • "compare vulnerabilities between two images"
  • "produce CycloneDX or SPDX"
  • "scan a directory or archive for CVEs"
  • "make vulnerability results reproducible from SBOM"

Core Capabilities

Installs
2
GitHub Stars
70
First Seen
Aug 18, 2026
grype-syft-sbom-scanner — seaworld008/commonly-used-high-value-skills