macOS
brew install gnupg-pkcs11-scdlocal Homebrew formula metadata
sudo port install gnupg-pkcs11-scdMacPorts ports tree · security/gnupg-pkcs11-scd/Portfile · source: api.github.com
brew / rank 8385
Enable the use of PKCS#11 tokens with GnuPG. Version 0.11.0 via Homebrew; verified 2026-09-11. Also installable with debian: sudo apt install gnupg-pkcs11-scd.
install
brew install gnupg-pkcs11-scdlocal Homebrew formula metadata
sudo port install gnupg-pkcs11-scdMacPorts ports tree · security/gnupg-pkcs11-scd/Portfile · source: api.github.com
sudo apt install gnupg-pkcs11-scdDebian stable package indexes · gnupg-pkcs11-scd · source: deb.debian.org
sudo dnf install gnupg-pkcs11-scdFedora Rawhide package metadata · gnupg-pkcs11-scd · source: dl.fedoraproject.org
nix profile install nixpkgs#gnupg-pkcs11-scdnixpkgs package indexes · pkgs/by-name/gn/gnupg-pkcs11-scd/package.nix · source: api.github.com
overview
Enable the use of PKCS#11 tokens with GnuPG
history
gnupg-pkcs11-scd is a small GnuPG smart-card daemon replacement that lets GnuPG talk to cryptographic tokens through PKCS#11.
The project page describes gnupg-pkcs11 as an implementation of a BSD-licensed smart-card daemon for using PKCS#11 tokens with GnuPG. Its motivation came from GnuPG mailing-list discussions in 2004 and 2006 about PKCS#11 support and an unmaintained patch.
The README credits Zeljko Vrba and Alon Bar-Lev, with copyright years beginning in 2006. The SourceForge project page shows release activity for the 0.7, 0.8 and 0.9 series during 2017.
Adoption is specialized: the tool serves users who already manage keys in PKCS#11-compatible hardware tokens or smart cards and want those keys available to GnuPG through the scdaemon interface.
Practitioners use it as a drop-in or near-drop-in scdaemon replacement for GnuPG, typically in setups involving OpenSC, vendor PKCS#11 modules, smart cards, hardware tokens or enterprise certificate devices.
The package matters in packaging ecosystems because it fills a narrow interoperability gap: GnuPG's OpenPGP tooling on one side, PKCS#11 token middleware on the other. That makes it useful for people who need hardware-backed signing or decryption without migrating keys into GnuPG's native smart-card path.
security posture
narrow executable package without higher-risk signals.
green risk · low confidence · appliance
Before unattended agent use, check whether the tool reads plaintext credentials, writes remote state, publishes artifacts, or shells out to plugins.
local files
These source-backed paths show where this package keeps local settings or durable credentials. Automic Vault can use them as review targets for secret scanning, migration, and command approval.
Config paths the tool may read or write during local use.
~/.gnupg/gnupg-pkcs11-scd.confexecutables
| Command | Kind | Exposure | Note |
|---|---|---|---|
gnupg-pkcs11-scd | cli | global executable |
freshness
These signals separate page generation age, package-manager activity, and upstream release comparison. Version lag is warned only when an evidence URL and comparable versions are present.
https://github.com/alonbl/gnupg-pkcs11-scd
install metadata
| Package key | brew:gnupg-pkcs11-scd |
|---|---|
| Version | 0.11.0 |
| Package manager | Homebrew |
| Package manager page | https://formulae.brew.sh/formula/gnupg-pkcs11-scd |
| Homepage | https://gnupg-pkcs11.sourceforge.net/ |
| Repository | https://github.com/alonbl/gnupg-pkcs11-scd |
| Upstream docs | https://gnupg-pkcs11.sourceforge.net/ |
| License | BSD-3-Clause |
| Source archive | https://github.com/alonbl/gnupg-pkcs11-scd/releases/download/gnupg-pkcs11-scd-0.11.0/gnupg-pkcs11-scd-0.11.0.tar.bz2 |
| Last updated | 2026-09-11T07:48:30Z |
| Pulse | updated |
| Dependencies | libassuan, libgcrypt, libgpg-error, openssl@3, pkcs11-helper |
| Build dependencies | autoconf, automake, libtool, pkgconf |
| Bottle | available (on arm64_linux, arm64_sequoia, arm64_sonoma, arm64_tahoe, arm64_ventura, sonoma, ventura, x86_64_linux) |
| Homebrew post-install | not defined |
| Service | none declared |
registry facts
| Source Database | Homebrew formula API |
|---|---|
| Tap | homebrew/core |
| Full Name | gnupg-pkcs11-scd |
| Version Scheme | 0 |
| Revision | 0 |
| Bottle Stable Root URL | https://ghcr.io/v2/homebrew/core |
| Deprecated | no |
| Disabled | no |
| Keg Only | no |
| URL Keys |
|
source database matches
Matches are pulled from external package-manager indexes and kept separate from local Automic Vault package links.
gnupg-pkcs11-scd 0.10.0-5+b1
GnuPG smart-card daemon with PKCS#11 support
http://gnupg-pkcs11.sourceforge.net/
sudo apt install gnupg-pkcs11-scdgnupg-pkcs11-scd-proxy 0.10.0-5+b1
GnuPG smart-card daemon with PKCS#11 support, proxy
http://gnupg-pkcs11.sourceforge.net/
sudo apt install gnupg-pkcs11-scd-proxygnupg-pkcs11-scd
nix profile install nixpkgs#gnupg-pkcs11-scdgnupg-pkcs11-scd 0.10.0-3build2
GnuPG smart-card daemon with PKCS#11 support
http://gnupg-pkcs11.sourceforge.net/
sudo apt install gnupg-pkcs11-scdgnupg-pkcs11-scd-proxy 0.10.0-3build2
GnuPG smart-card daemon with PKCS#11 support, proxy
http://gnupg-pkcs11.sourceforge.net/
sudo apt install gnupg-pkcs11-scd-proxygnupg-pkcs11-scd 0.11.0-7.fc45
GnuPG-compatible smart-card daemon with PKCS#11 support
http://gnupg-pkcs11.sourceforge.net
sudo dnf install gnupg-pkcs11-scdgnupg-pkcs11-scd
sudo port install gnupg-pkcs11-scdsource trail
This page is generated by av-web from the private package SQLite artifact built by scripts/generate-pkg-sqlite.py.
View the package source record on GitHub.