Aqua Security, which offers cloud-native security, launched its Trivy Partner Connect program. This initiative expands the commercial ecosystem around Trivy, its open-source vulnerability and misconfiguration scanner.
The first two partners to join the program are Echo and Minimus, both of which set to deliver secure-by-design image solutions that align with Trivy’s mission of empowering developers and security teams through open, trusted tools. Trivy Partner Connect includes a structured framework for commercial vendors to build, integrate and collaborate, bringing new capabilities to the Trivy user base while fostering sustainable, open-source development.
“Trivy Partner Connect represents our commitment to the millions of developers and security teams who rely on Trivy around the world every day,” said Aqua’s VP of open source, Itay Shakury. “For our global community of users, this program ensures continued investment in reliability and cutting-edge capabilities they’ve come to expect from the world’s most popular security scanner. For our partners, Partner Connect provides a path to influence the roadmap, access priority support and reach Trivy’s massive global user base. Together, we’re not just building an open-source tool, we’re building a more secure future.”
Trivy Partner Connect will offer:
- Partner-contributed content and integrations.
- Collaborative engineering between Aqua and partners.
- An open and free-to-use concept.
- Commercial contributions that strengthen the open-source core.
“Echo is built for enterprise teams ready to tackle the underlying cause of vulnerability management, rather than simply treating its symptoms. Through AI agents, we deliver CVE-free images that are built clean and kept clean,” said Eilon Elhadad, the CEO and co-founder of Echo. “Joining Trivy Partner Connect allows us to amplify our impact, reach security-conscious users globally through the tool they already use and enable engineers to focus on revenue-driving development rather than trying to fix vulnerabilities in code they didn’t even write.”
“Trivy has earned enormous trust in the open-source community. By partnering with Trivy, we’re making it easier than ever to eliminate vulnerabilities at the earliest stages of development. As a Trivy Connect partner, we can reach that audience with a shared mission of eliminating vulnerabilities before they exist,” said John Morello, Trivy’s CTO and co-founder. “The radical reduction in CVEs Minimus images provide, combined with Trivy’s comprehensive container visibility radically accelerates detection and remediation for security and development teams.”
Trivy Partner Connect will support OEM and ecosystem partners alike. OEM partners embed Trivy within their products, while ecosystem partners build complementary solutions that integrate or enhance Trivy capabilities. OEM partner benefits include:
- Integration of Trivy detection capabilities, covering vulnerabilities, misconfigurations, secrets, licenses and SBOMs.
- License-compliant use of Trivy and its content.
- Direct access to the Trivy core team, for faster problem-solving, tailored feature support and alignment with future roadmap development.
- Support for building differentiated security features without building scanning engines from scratch.
Ecosystem partner benefits include:
- Direct channel to millions of users in dev, security and DevOps roles.
- Streamlined integration into enterprise environments.
- Joint go-to-market and marketing opportunities.
- Technical validation and feedback.
Trivy Partner Connect includes three tiers:
- Certified – For partners that integrate with Trivy and meet trademark and marketing alignment standards.
- Core – For partners requiring deeper engineering collaboration, roadmap access and product knowledge.
- Advisor – For contributors that provide vulnerability data or enrichment services to support broader coverage.
“This program represents our commitment to sustainable open-source development,” said Itay. “By creating structured commercial partnerships, we can accelerate Trivy’s capabilities while ensuring the health and growth of our community.”
Trivy Partner Connect is now open.