description grype Overview

grype is a command-line tool for vulnerability scanning of container images and filesystems. It identifies vulnerabilities in open source dependencies and provides detailed reports. Its particularly useful for DevOps teams managing containerized applications. It's lightweight and fast, making it suitable for automated scanning in CI/CD pipelines.

It's built on Alpine Linux.

help grype FAQ

What is grype?
grype is a command-line tool for vulnerability scanning of container images and filesystems. It identifies vulnerabilities in open source dependencies and provides detailed reports. Its particularly useful for DevOps teams managing containerized applications. It's lightweight and fast, making it suitable for automated scanning in CI/CD pipelines. It's built on Alpine Linux.
How good is grype?
grype scores 7.1/10 (Good) on Lunoo, making it a well-rated option in the Software SAAS category.
What are the best alternatives to grype?
See our alternatives page for grype for a ranked list with scores. Top alternatives include: Snyk Open Source, JFrog Xray, OWASP Dependency-Check.
How does grype compare to Snyk Open Source?
See our detailed comparison of grype vs Snyk Open Source with scores, features, and an AI-powered verdict.
Is grype worth it in 2026?
With a score of 7.1/10, grype is a solid option in Software SAAS. See all Software SAAS ranked.

Reviews & Comments

Write a Review

lock

Please sign in to share your review

rate_review

Be the first to review

Share your thoughts with the community and help others make better decisions.

Save to your list

Create your first list and start tracking the tools that matter to you.

Track favorites
Get updates
Compare scores

Already have an account? Sign in

Compare Items

See how they stack up against each other

Comparing
VS
Select 1 more item to compare