Skip to main content
Anchore Add-on For Splunk app icon

Anchore Add-on For Splunk

Collects container vulnerability data from Anchore APIs and provides a security dashboard for monitoring container image vulnerabilities and security posture.Built by Tanuj Bansal
splunk product badge

Default Version 1.1.0

May 20, 2026

Compatibility

Splunk Enterprise, Splunk Cloud

Platform Version: 10.5, 10.4, 9.3

Rating
5
(2)

Log in to rate this app

Support
Not Supported
Ranking

#41 in Vulnerability Scanner

The Anchore Add-on For Splunk collects vulnerability data from Anchore Enterprise APIs and ingests it into Splunk via HTTP Event Collector. The add-on retrieves vulnerability scanner metrics through a modular input that queries Anchore APIs at configurable intervals and indexes the data with the anchore:vulnerabilities sourcetype. It includes a security vulnerability dashboard that displays real-time vulnerability metrics, severity-based alerting, and interactive filtering capabilities. Organizations using Anchore for container image scanning can use this add-on to centralize vulnerability monitoring within their Splunk environment. The add-on supports multi-account Anchore deployments and allows security teams to track vulnerability counts, affected images, and security scores across container registries and repositories.