Audience

Developers looking for an advanced Static Code Analysis solution

About Clair

Clair is an open-source project for the static analysis of vulnerabilities in application containers (currently including OCI and docker). Clients use the Clair API to index their container images and can then match it against known vulnerabilities. Our goal is to enable a more transparent view of the security of the container-based infrastructure. Thus, the project was named Clair after the French term which translates to clear, bright, and transparent. Manifests are Clair's representation of a container image. Clair leverages the fact that OCI Manifests and Layers are content-addressed to reduce duplicated work.

Integrations

API:
Yes, Clair offers API access

Ratings/Reviews

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Company Information

Clair
github.com/quay/clair

Videos and Screen Captures

Clair Screenshot 1
Other Useful Business Software
$300 Free Credits to Build on Google Cloud Icon
$300 Free Credits to Build on Google Cloud

New customers can spin up VMs, build with AI, and query data at no cost.

Put your $300 in credit toward real workloads, then keep building with free monthly usage for 20+ products. No commitment and no charge until you upgrade.
Start Free

Product Details

Platforms Supported
Cloud
Linux
Training
Documentation
Support
Online

Clair Frequently Asked Questions

Q: What kinds of users and organization types does Clair work with?
Q: What languages does Clair support in their product?
Q: What other applications or services does Clair integrate with?
Q: Does Clair have an API?
Q: What type of training does Clair provide?

Clair Product Features

Container Security

Container Stack Scanning Not Supported
View Container Metadata Not Supported
Image Vulnerability Detection Not Supported
Application Performance Tracking Not Supported
Centralized Policy Management Not Supported
Access Roles / Permissions Not Supported
Testing Not Supported
Reporting Not Supported

Static Code Analysis

Multiple Programming Language Support Not Supported
Standard Security/Industry Libraries Not Supported
Code Standardization / Validation Not Supported
Analytics / Reporting Not Supported
Provides Recommendations Not Supported
Vulnerability Management Not Supported