pkg.soopen package index

brew / rank 1585

Install sf with Homebrew, winget

Command-line toolkit for Salesforce development. Version 2.145.6 via Homebrew; verified 2026-07-29. Also installable with winget: winget install --id Nexaflow.SignalFoundry -e.

install

Additional install commands

macOS

Homebrewverified · 100%
brew install sf

local Homebrew formula metadata

Windows

Windows Package Managerverified · 92%
winget install --id Nexaflow.SignalFoundry -e

Windows Package Manager source index · Nexaflow.SignalFoundry · source: cdn.winget.microsoft.com

overview

Package summary

Command-line toolkit for Salesforce development

Commands and aliases

  • sf
  • sfdx

security posture

No protected-tool coverage found yet

No matching local secret-handling manifest was found for sf. Package metadata is still published here so future coverage has a stable package URL.

Install behavior

  • No Homebrew post-install hook is recorded in formula metadata.
  • Homebrew bottle metadata is available for 1 platform targets.
  • Installs with 1 runtime dependencies.

Recommended review

Before unattended agent use, check whether the tool reads plaintext credentials, writes remote state, publishes artifacts, or shells out to plugins.

local files

Configuration and credential file locations

These source-backed paths show where this package keeps local settings or durable credentials. Automic Vault can use them as review targets for secret scanning, migration, and command approval.

Configuration files

Config paths the tool may read or write during local use.

Unix
sfdx-project.json
Windows
sfdx-project.json

executables

Installed executables

CommandKindExposureNote
sfcliglobal executable
sfdxcliglobal executable

freshness

Version and freshness

These signals separate page generation age, package-manager activity, and upstream release comparison. Version lag is warned only when an evidence URL and comparable versions are present.

page generated2026-08-04
manager version2.145.6
manager updated2026-07-29
local dataok
upstreamnot checked
latest detectednot detected

https://developer.salesforce.com/tools/salesforcecli

install metadata

Package metadata

Package keybrew:sf
Version2.145.6
Package managerHomebrew
Package manager pagehttps://formulae.brew.sh/formula/sf
Homepagehttps://developer.salesforce.com/tools/salesforcecli
Upstream docshttps://developer.salesforce.com/tools/salesforcecli
LicenseBSD-3-Clause
Source archivehttps://registry.npmjs.org/@salesforce/cli/-/cli-2.145.6.tgz
Last updated2026-07-29T23:56:59Z
Pulseupdated
Dependenciesnode
Bottleavailable (on all)
Homebrew post-installnot defined
Servicenone declared

registry facts

Source database details

Source DatabaseHomebrew formula API
Taphomebrew/core
Full Namesf
Version Scheme0
Revision0
Bottle Stable Root URLhttps://ghcr.io/v2/homebrew/core
Deprecatedno
Disabledno
Keg Onlyno
URL Keys
  • stable

source database matches

Other package-manager records

Matches are pulled from external package-manager indexes and kept separate from local Automic Vault package links.

winget95%

Nexaflow.SignalFoundry

winget install --id Nexaflow.SignalFoundry -e
  • normalized package name match
  • Matched by: Sf
Windows Package Manager source index · cdn.winget.microsoft.com · Windows Package Manager source index: Nexaflow.SignalFoundry from https://cdn.winget.microsoft.com/cache/source.msix
winget92%

Salesforce.sfdx-cli

winget install --id Salesforce.sfdx-cli -e
  • installed executable or alias match
  • Matched by: Sfdx
Windows Package Manager source index · cdn.winget.microsoft.com · Windows Package Manager source index: Salesforce.sfdx-cli from https://cdn.winget.microsoft.com/cache/source.msix

source trail

Generated from repository data

This page is generated by av-web from the private package SQLite artifact built by scripts/generate-pkg-sqlite.py.

Combined YAML source

View the package source record on GitHub.

combined/sf.yml

Used sources

  • Geiger risk classifier
  • cross-ecosystem install command graph
  • curated configuration and credential file locations
  • external package-manager database matches
  • package relationship graph
  • package version freshness
  • package-page enrichment
  • pkg.so package database
  • pkgdb category and tag curation