# Anchore Enterprise vs Grype

| Attribute | Anchore Enterprise | Grype |
|---|---|---|
| **Vioscale score** | 12 (15% (low)) | 55.3 (24% (low)) |
| activity.commits_last_30d | - | 21 |
| adoption.dependent_repos | - | 14 |
| adoption.github_stars | - | 12,787 |
| deployment.options | `{"cloud":true,"hybrid":true,"on_prem":true,"self_hosted":true}` | `{"self_hosted":true}` |
| description.long | Platform for scanning containers, filesystems, and source code to generate SBOMs, detect vulnerabilities, and enforce security policies. Helps organizations demonstrate compliance with regulatory standards and automate secure software development practices. | An open-source security tool that detects vulnerabilities in containerized applications and filesystem artifacts across multiple operating systems and programming language ecosystems. |
| integrations.count | 18 | - |
| integrations.list | `[{"name":"AWS"},{"name":"AWS Marketplace"},{"name":"Amazon ECS"},{"name":"Amazon EKS"},{"name":"Google Kubernetes Engine"},{"name":"Kubernetes"},{"name":"Docker"},{"name":"npm"},{"name":"Ruby"},{"name":"PHP"},{"name":"Rust"},{"name":"Cisco Umbrella"},{"name":"Infoblox"},{"name":"Nvidia"},{"name":"SPDX"},{"name":"CycloneDX"},{"name":"Syft"},{"name":"CI/CD pipelines"}]` | - |
| language.primary | - | Go |
| license.spdx | - | Apache-2.0 |
| platform.support | `{"cli":true,"web":true}` | `{"cli":true}` |
| pricing | `{"type":"quote","sourceUrl":"https://anchore.com","retrievedAt":"2026-08-18T21:40:18.813Z"}` | `{"type":"open_source","freeTier":true,"sourceUrl":"https://github.com/pricing","retrievedAt":"2026-08-18T21:36:58.126Z"}` |
| pricing.free_tier | - | yes |
| pricing.model | quote | commercial |
| pricing.price_level | unknown | free |
| pricing.transparent | no | - |
| release.cadence_days | - | 12 |
| release.history | - | `[{"url":"https://github.com/anchore/grype/releases/tag/v0.117.0","date":"2026-08-10T16:54:43Z","type":"stable","version":"v0.117.0"},{"url":"https://github.com/anchore/grype/releases/tag/v0.116.1","date":"2026-07-28T21:45:14Z","type":"stable","version":"v0.116.1"},{"url":"https://github.com/anchore/grype/releases/tag/v0.116.0","date":"2026-07-16T16:52:20Z","type":"stable","version":"v0.116.0"},{"url":"https://github.com/anchore/grype/releases/tag/v0.115.0","date":"2026-06-26T11:42:04Z","type":"stable","version":"v0.115.0"},{"url":"https://github.com/anchore/grype/releases/tag/v0.114.0","date":"2026-06-05T16:17:05Z","type":"stable","version":"v0.114.0"},{"url":"https://github.com/anchore/grype/releases/tag/v0.113.0","date":"2026-06-03T14:19:21Z","type":"stable","version":"v0.113.0"},{"url":"https://github.com/anchore/grype/releases/tag/v0.112.0","date":"2026-05-01T19:12:37Z","type":"stable","version":"v0.112.0"},{"url":"https://github.com/anchore/grype/releases/tag/v0.111.1","date":"2026-04-22T17:31:58Z","type":"stable","version":"v0.111.1"},{"url":"https://github.com/anchore/grype/releases/tag/v0.111.0","date":"2026-04-09T13:29:25Z","type":"stable","version":"v0.111.0"},{"url":"https://github.com/anchore/grype/releases/tag/v0.110.0","date":"2026-03-19T18:16:47Z","type":"stable","version":"v0.110.0"},{"url":"https://github.com/anchore/grype/releases/tag/v0.109.1","date":"2026-03-09T19:50:07Z","type":"stable","version":"v0.109.1"},{"url":"https://github.com/anchore/grype/releases/tag/v0.109.0","date":"2026-02-19T16:38:10Z","type":"stable","version":"v0.109.0"},{"url":"https://github.com/anchore/grype/releases/tag/v0.108.0","date":"2026-02-10T18:49:12Z","type":"stable","version":"v0.108.0"},{"url":"https://github.com/anchore/grype/releases/tag/v0.107.1","date":"2026-02-03T19:24:39Z","type":"stable","version":"v0.107.1"},{"url":"https://github.com/anchore/grype/releases/tag/v0.107.0","date":"2026-01-29T22:24:48Z","type":"stable","version":"v0.107.0"},{"url":"https://github.com/anchore/grype/releases/tag/v0.106.0","date":"2026-01-27T14:08:53Z","type":"stable","version":"v0.106.0"},{"url":"https://github.com/anchore/grype/releases/tag/v0.105.0","date":"2026-01-15T23:07:39Z","type":"stable","version":"v0.105.0"},{"url":"https://github.com/anchore/grype/releases/tag/v0.104.4","date":"2026-01-08T13:58:30Z","type":"stable","version":"v0.104.4"},{"url":"https://github.com/anchore/grype/releases/tag/v0.104.3","date":"2025-12-22T23:16:53Z","type":"stable","version":"v0.104.3"},{"url":"https://github.com/anchore/grype/releases/tag/v0.104.2","date":"2025-12-09T23:17:35Z","type":"stable","version":"v0.104.2"}]` |
| security.fedramp | yes | - |
| security.scorecard | - | 8.2 |
| security.vulnerabilities | - | `{"count":1,"source":"https://advisories.ecosyste.ms/api/v1/advisories?ecosystem=go&package_name=github.com%2Fanchore%2Fgrype&per_page=100","last_12m":1,"max_severity":"HIGH"}` |

## Capabilities (Container Security)

| Capability | Anchore Enterprise | Grype |
|---|:--:|:--:|
| **Capabilities** |  |  |
| Deployment model | - | - |
| Image registry vulnerability scanning | - | - |
| Ci cd pipeline build blocking | - | - |
| Ebpf runtime syscall monitoring | - | - |
| Container drift prevention blocking | - | - |
| Kubernetes kspm security posture | - | - |
| Infrastructure as code iac scanning | - | - |
| Serverless lambda fargate support | - | - |
| Network microsegmentation | - | - |
| Compliance PCI SOC2 reporting | - | - |
| SOC2 type ii | - | - |
| ISO 27001 | - | - |
| Pricing model | - | - |

*Source: Vioscale. Generated 2026-09-01T16:34:00.672Z. "-" = undocumented, not absent.*
