# Nancy, on a Boat (Announcing Nancy for Docker)

**October 17, 2019**  
By [DJ Schleen](/content/blog/author/dj-schleen/index.html)

1 minute read time

[Nancy](https://github.com/sonatype-nexus-community/nancy) is now a [Docker image](https://github.com/sonatype-nexus-community/docker-nancy) for execution in a pipeline or via an alias in a terminal.

Nancy is a tool to check for vulnerabilities in your Golang dependencies, powered by [Sonatype OSS Index](https://ossindex.sonatype.org/). docker-nancy wraps the nancy executable in a Docker image.

To see how Nancy will output when finding vulnerabilities, use our intentionally vulnerable repo. Check out this build on Travis-CI or [this build on CircleCI](https://circleci.com/vcs-authorize?return-to=https%3A%2F%2Fapp.circleci.com%2Fjobs%2Fgithub%2Fsonatype-nexus-community%2Fintentionally-vulnerable-golang-project%2F7).

I demonstrate how you can use docker-nancy in the video below:

www.youtube.com

# www.youtube.com is blocked

This content is blocked. Contact the site owner to fix the issue.

ERR_BLOCKED_BY_CSP

This content is blocked. Contact the site owner to fix the issue.

Additional details can be [found at GitHub](https://github.com/sonatype-nexus-community/docker-nancy).

Written by **DJ Schleen**

DJ is a DevSecOps Advocate.
