How Container Registry Scanning Works - Administrator Guide - Cortex CLOUD

Cortex Cloud Runtime Security Documentation

Product
Cortex Cloud Application Security > Cortex CLOUD
License
Cloud Runtime Security
Creation date
2024-12-24
Last date published
2026-06-10
Category
Administrator Guide

The process of container registry scanning consists of three key phases: discovery, scanning, and evaluation.

  1. Discovery: The connector discovers all registries, repositories, and tags within the account.

  2. Scanning: The connector extracts software bills of materials (SBOMs), malware indicators, and secrets from each image.

  3. Evaluation: Scan results are evaluated for vulnerabilities, malware, and secrets, and asset findings are created accordingly.