# CoreOS Clair Reviews
**Vendor:** Red Hat  
**Category:** [Container Security Tools](https://www.g2.com/categories/container-security-tools)  
**Average Rating:** 4.5/5.0  
**Total Reviews:** 5
## About CoreOS Clair
Open-source container vulnerability analysis service.




## CoreOS Clair Reviews
  ### 1. Great Open Source Tool

**Rating:** 4.0/5.0 stars

**Reviewed by:** Nikita G. | Network Security Engineer II , Computer & Network Security, Small-Business (50 or fewer emp.)

**Reviewed Date:** March 19, 2019

**What do you like best about CoreOS Clair?**

One thing I like about this tool is the ease of use when scanning of vulnerabilities. This can easily be deployed with Kubernetes and Docker. Easy to use with enterprise distros like Red Hat. I really like how easy it is to set up on your machine. It takes only a few minutes with a Docker container to launch the platform.

**What do you dislike about CoreOS Clair?**

It is an open source tool and not exactly reliable. There are updates that get launched for the tool; but there is no knowing whether the tool is completely up to date. It is not in a stable state for long term use and can require a lot of administration in order to support it.

**Recommendations to others considering CoreOS Clair:**

For anyone using CoreOS; I strongly recommend using AWS services as well as Red Hat enterprise; this is a great tool to implement into this kind of architecture.

**What problems is CoreOS Clair solving and how is that benefiting you?**

We are using CoreOS for vulnerability assessment. I am using this tool with Docker; in order to launch this tool on various servers; that way it can be used for vulnerability assessments. Benefits I have realized are that if you are already an AWS and Red Hat user; this tool is easy to set up.

  ### 2. State-of-the-Art Static Analysis for Vunerabilities

**Rating:** 4.0/5.0 stars

**Reviewed by:** Verified User in Retail | Enterprise (> 1000 emp.)

**Reviewed Date:** May 17, 2019

**What do you like best about CoreOS Clair?**

When updates to vulnerability metadata occur, a notification is sent to alert systems that a change has occurred, and can be therefore fixed. 

**What do you dislike about CoreOS Clair?**

As a CoreOS Clair user, I'd like to have CoreOS Clair to return vulnerable ancestry changes instead of computing that on Client side.

**What problems is CoreOS Clair solving and how is that benefiting you?**

CoreOS Clair has made it transparently clear the issues  of a particular image and the technology allows the avoidance to the need to rescan images.

  ### 3. Clair is an easy way to scan container for vulnerabilities 

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Computer & Network Security | Enterprise (> 1000 emp.)

**Reviewed Date:** April 09, 2019

**What do you like best about CoreOS Clair?**

I like how easy it is to scan containers for vulnerabilities. You can point an image at it and it will give you a full report.

**What do you dislike about CoreOS Clair?**

I dislike that it's only static analysis, but it does get the job done. 

**Recommendations to others considering CoreOS Clair:**

You may have to script up a wrapper around the tool to use for CI/CD, but it's definitely worth it.

**What problems is CoreOS Clair solving and how is that benefiting you?**

We needed a way to scan images during CI/CD before we pushed them to our master registry. Clair fit right into our pipeline and we can fail a build if it fails a the vulnerability scan. 

  ### 4. Nice and efficient software 

**Rating:** 5.0/5.0 stars

**Reviewed by:** Syed R. | Assistant General Manager, Financial Services, Small-Business (50 or fewer emp.)

**Reviewed Date:** March 05, 2019

**What do you like best about CoreOS Clair?**

vulnerability newsfeed and Pre-production analysis

**What do you dislike about CoreOS Clair?**

Did not find any kind of problem yet. Very impressive

**Recommendations to others considering CoreOS Clair:**

Very effective software

**What problems is CoreOS Clair solving and how is that benefiting you?**

OS tech vulnerability test

  ### 5. CoreOS

**Rating:** 4.5/5.0 stars

**Reviewed by:** Verified User in Accounting | Enterprise (> 1000 emp.)

**Reviewed Date:** March 05, 2019

**What do you like best about CoreOS Clair?**

You can set automatic builds to test your code. 

It allows for organized planning through the Boards section. 

**What do you dislike about CoreOS Clair?**

 With all of the features, it's easy to get lost. 

**What problems is CoreOS Clair solving and how is that benefiting you?**

I am trying to solve a business problem 



- [View CoreOS Clair pricing details and edition comparison](https://www.g2.com/products/coreos-clair/reviews?section=pricing&secure%5Bexpires_at%5D=2026-05-20+11%3A45%3A19+-0500&secure%5Bsession_id%5D=2d0aa91f-67c1-4a91-86f8-f34bfee4fc83&secure%5Btoken%5D=89356ac4791de6fb6a89bea6a115c07af6c216a2939adc944762ed493a24deb4&format=llm_user)

## CoreOS Clair Features
**Administration**
- API / Integrations
- Extensibility

**Administration**
- Risk Scoring
- Secrets Management
- Security Auditing
- Configuration Management

**Analysis**
- Reporting and Analytics
- Issue Tracking
- Static Code Analysis
- Code Analysis

**Monitoring**
- Continuous Image Assurance
- Behavior Monitoring
- Observability

**Testing**
- Command-Line Tools
- Manual Testing
- Test Automation
- Compliance Testing
- Black-Box Scanning
- Detection Rate
- False Positives

**Protection**
- Dynamic Image Scanning
- Runtime Protection
- Workload Protection
- Network Segmentation

**Agentic AI - Static Application Security Testing (SAST)**
- Autonomous Task Execution

## Top CoreOS Clair Alternatives
  - [Snyk](https://www.g2.com/products/snyk/reviews) - 4.5/5.0 (132 reviews)
  - [Mend.io](https://www.g2.com/products/mend-io/reviews) - 4.3/5.0 (105 reviews)
  - [GitHub](https://www.g2.com/products/github/reviews) - 4.7/5.0 (2,281 reviews)

