May 20, 2026
Anchore Add-on For Splunk
Collects container vulnerability data from Anchore APIs and provides a security dashboard for monitoring container image vulnerabilities and security posture.Built by Tanuj BansalSplunk Enterprise, Splunk Cloud
Platform Version: 10.5, 10.4, 9.3
Log in to rate this app
#41 in Vulnerability Scanner
The Anchore Add-on For Splunk collects vulnerability data from Anchore Enterprise APIs and ingests it into Splunk via HTTP Event Collector. The add-on retrieves vulnerability scanner metrics through a modular input that queries Anchore APIs at configurable intervals and indexes the data with the anchore:vulnerabilities sourcetype. It includes a security vulnerability dashboard that displays real-time vulnerability metrics, severity-based alerting, and interactive filtering capabilities. Organizations using Anchore for container image scanning can use this add-on to centralize vulnerability monitoring within their Splunk environment. The add-on supports multi-account Anchore deployments and allows security teams to track vulnerability counts, affected images, and security scores across container registries and repositories.
Log in to report this app listing.