pkg.soopen package index

brew / Rang 9006

carton mit Homebrew, apt, winget installieren

Prüfe Installationswege, Executables, Metadaten und Sicherheitshinweise für carton in AI-Agent-Workflows.

Installation

Weitere Installationsbefehle

macOS

Homebrewverifiziert · 100%
brew install carton

local Homebrew formula metadata

Linux

Debian aptverifiziert · 92%
sudo apt install carton

Debian stable package indexes · carton · Quelle: deb.debian.org

Windows

Windows Package Managerverifiziert · 92%
winget install --id Unifan.Carton -e

Windows Package Manager source index · Unifan.Carton · Quelle: cdn.winget.microsoft.com

Überblick

Paketzusammenfassung

Perl module dependency manager (aka Bundler for Perl)

Befehle und Aliase

  • carton

Verlauf

Projektgeschichte und Nutzung

Carton is a Perl application dependency manager, described by its official README and MetaCPAN metadata as a Bundler-like tool for Perl. It tracks dependencies declared in cpanfile and pins resolved module versions in cpanfile.snapshot.

Projektgeschichte

The public GitHub repository was created in 2011 and the README copyright line credits Tatsuhiko Miyagawa from 2011 onward. The latest MetaCPAN release metadata identifies Carton-v1.0.35, authored by MIYAGAWA and dated May 7, 2022.

Adoptionsgeschichte

Carton came from the Perl/CPAN application-deployment world, where repeatable local dependency installs mattered for web apps and services. Its README tells developers to commit cpanfile and cpanfile.snapshot so other machines and deployment boxes install the same dependency tree.

Wie es verwendet wird

A typical workflow declares modules in cpanfile, runs carton install, commits cpanfile and cpanfile.snapshot, then runs commands through carton exec or points Perl at local/lib/perl5. Deployment mode installs exactly from the snapshot, and carton bundle can vendor tarballs into vendor/cache for cached or offline installs.

Warum Paket-Nerds sich dafür interessieren

Carton is important package-manager plumbing because it adapts the lockfile-and-local-install pattern to CPAN applications. Its README explicitly references Bundler, pip, npm, cpanm, cpanfile, and Carmel, making it a useful bridge between Perl packaging culture and the broader application dependency-manager era.

Zeitleiste

  • 2011: Public GitHub repository created and copyright begins.
  • 2022: MetaCPAN release metadata lists Carton-v1.0.35.
  • 2020s: README documents cpanfile, cpanfile.snapshot, local installs, deployment mode, and vendored cache workflows.

Related projects

  • The README's SEE ALSO section points to Carmel, cpanm, cpanfile, Bundler, pip, npm, perlrocks, and only.
  • Carton is closely tied to CPAN, cpanfile, local::lib-style local installs, and Perl application deployment.

Sicherheitslage

Risikostufe: orange

infrastructure mutation or orchestration signal.

Risikoklassifikator

orange Risiko · mittel Konfidenz · infrastructure

Warum

  • infrastructure mutation or orchestration signal

Signale

  • text:dependency manager

Installationsverhalten

  • In den Formelmetadaten ist kein Homebrew-Post-install-Hook erfasst.
  • Homebrew-Bottle-Metadaten sind für 13 Plattformziele verfügbar.
  • Installiert mit 1 Laufzeitabhängigkeiten.

Empfohlene Prüfung

Prüfe vor unbeaufsichtigter Agent-Nutzung, ob das Tool Klartext-Credentials liest, Remote-Zustand schreibt, Artefakte veröffentlicht oder Plugins ausführt.

local files

Configuration and credential file locations

These source-backed paths show where this package keeps local settings or durable credentials. Automic Vault can use them as review targets for secret scanning, migration, and command approval.

Configuration files

Config paths the tool may read or write during local use.

Unix
./cpanfile

Executables

Installierte Executables

BefehlArtSichtbarkeitHinweis
cartoncliglobales Executable

Aktualität

Version und Aktualität

Diese Signale trennen das Alter der Seitengenerierung, Aktivität des Paketmanagers und Upstream-Release-Vergleich. Versionsrückstand wird nur gemeldet, wenn eine Evidenz-URL und vergleichbare Versionen vorhanden sind.

Seite generiert2026-08-04
Manager-Version1.0.35
Manager aktualisiert2026-06-13
lokale DatenOK
Upstreamnot checked
neueste erkannte Versionnicht erkannt

https://metacpan.org/pod/Carton

Installationsmetadaten

Paketmetadaten

Paketschlüsselbrew:carton
Version1.0.35
PaketmanagerHomebrew
Paketmanager-Seitehttps://formulae.brew.sh/formula/carton
Homepagehttps://metacpan.org/pod/Carton
Repositoryhttps://github.com/perl-carton/carton
Upstream-Dokumentationhttps://metacpan.org/pod/Carton
LizenzArtistic-1.0-Perl OR GPL-1.0-or-later
Quellarchivhttps://cpan.metacpan.org/authors/id/M/MI/MIYAGAWA/Carton-v1.0.35.tar.gz
Zuletzt aktualisiert2026-06-13T01:03:34+02:00
Pulseupdated
Abhängigkeitenperl
Bottleverfügbar (auf arm64_big_sur, arm64_linux, arm64_monterey, arm64_sequoia, arm64_sonoma, arm64_tahoe, arm64_ventura, big_sur, catalina, monterey, sonoma, ventura, x86_64_linux)
Homebrew post-installnicht definiert
Dienstkeiner deklariert

Registry-Fakten

Details aus der Quelldatenbank

Source DatabaseHomebrew formula API
Taphomebrew/core
Full Namecarton
Version Scheme0
Revision0
Head VersionHEAD
Bottle Stable Root URLhttps://ghcr.io/v2/homebrew/core
Deprecatedno
Disabledno
Keg Onlyno
URL Keys
  • head
  • stable

Source-Datenbank-Treffer

Andere Paketmanager-Einträge

Treffer stammen aus externen Paketmanager-Indizes und bleiben von lokalen Automic-Vault-Paketlinks getrennt.

Debian apt95%

carton 1.0.35-1

Perl module dependency manager (aka Bundler for Perl)

https://metacpan.org/release/Carton

sudo apt install carton
  • Section: perl
  • Architecture: all
  • 8 Abhängigkeiten
  • 2 optionale Abhängigkeiten
  • normalized package name match
  • Abgeglichen nach: Carton
Debian stable package indexes · deb.debian.org · Debian stable package indexes: carton from https://deb.debian.org/debian/dists/stable/main/binary-amd64/Packages.xz
Ubuntu apt95%

carton 1.0.35-1

Perl module dependency manager (aka Bundler for Perl)

https://metacpan.org/release/Carton

sudo apt install carton
  • Section: universe/perl
  • Architecture: all
  • 8 Abhängigkeiten
  • 2 optionale Abhängigkeiten
  • normalized package name match
  • Abgeglichen nach: Carton
Ubuntu 24.04 LTS package indexes · archive.ubuntu.com · Ubuntu 24.04 LTS package indexes: carton from https://archive.ubuntu.com/ubuntu/dists/noble/universe/binary-amd64/Packages.gz
winget95%

Unifan.Carton

winget install --id Unifan.Carton -e
  • normalized package name match
  • Abgeglichen nach: Carton
Windows Package Manager source index · cdn.winget.microsoft.com · Windows Package Manager source index: Unifan.Carton from https://cdn.winget.microsoft.com/cache/source.msix

Quellspur

Aus Repository-Daten generiert

Diese Seite wird von av-web aus dem privaten Paket-SQLite-Artefakt bereitgestellt, das scripts/generate-pkg-sqlite.py erstellt.

Verwendete Quellen

  • Geiger risk classifier
  • cross-ecosystem install command graph
  • curated configuration and credential file locations
  • curated package history
  • external package-manager database matches
  • package relationship graph
  • package version freshness
  • package-page enrichment
  • pkg.so package database
  • pkgdb category and tag curation