Set up Trivy MCP in Claude Desktop
Container image scanning, filesystem vulnerability detection, and infrastructure misconfiguration analysis. Official Aqua Security implementation.
1
Locate the config file
Claude Desktop reads MCP server configuration from the following file:
~/Library/Application Support/Claude/claude_desktop_config.jsonCreate this file if it does not already exist.
2
Add the configuration
Add the following to your Claude Desktop config file:
json
{
"mcpServers": {
"trivy-mcp": {
"command": "trivy",
"args": [
"mcp"
]
}
}
}3
Set up environment variables
No environment variables needed. Trivy MCP works out of the box without any API keys or tokens.
4
Verify it works
Restart Claude Desktop. Trivy MCP should appear in your MCP server list with 5 tools available.
This server adds approximately 2,500 tokens to your context window for tool definitions.