# snyk-cli mit Homebrew, Nix, winget installieren

Prüfe Installationswege, Executables, Metadaten und Sicherheitshinweise für snyk-cli in AI-Agent-Workflows.

## Installation

```sh
sudo av install brew:snyk-cli
```

Weitere Installationsbefehle:

### macOS

- Homebrew (100%):

```sh
brew install snyk-cli
```

  Evidenz: local Homebrew formula metadata

### Linux

- Nix (92%):

```sh
nix profile install nixpkgs#snyk
```

  Evidenz: nixpkgs package indexes: pkgs/by-name/sn/snyk/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1

### Windows

- winget (92%):

```sh
winget install --id Snyk.Snyk -e
```

  Evidenz: Windows Package Manager source index: Snyk.Snyk from https://cdn.winget.microsoft.com/cache/source.msix

## Paketfakten

- **Paketschlüssel:** brew:snyk-cli
- **Paketmanager:** Homebrew
- **Paketmanager-Seite:** <https://formulae.brew.sh/formula/snyk-cli>
- **Version:** 1.1306.2
- **Quellzusammenfassung:** Scans and monitors projects for security vulnerabilities
- **Homepage:** <https://snyk.io>
- **Upstream-Dokumentation:** <https://snyk.io>
- **Lizenz:** Apache-2.0
- **Quellarchiv:** <https://registry.npmjs.org/snyk/-/snyk-1.1306.2.tgz>
- **Zuletzt aktualisiert:** 2026-07-28T16:04:03Z
- **Generiert:** 2026-08-04T22:13:35+00:00

## Executables

- snyk (cli)
- snyk (Alias)

## Abhängigkeiten

- node

## Installationsverhalten

- Post-install-Hook: nicht definiert
- Bottle: verfügbar auf arm64_linux, arm64_sequoia, arm64_sonoma, arm64_tahoe, sonoma, x86_64_linux

## Version und Aktualität

- Seite generiert: 2026-08-04
- Manager-Version: 1.1306.2
- Manager aktualisiert: 2026-07-28
- lokale Daten: OK
- Upstream-Repository: https://snyk.io
- Info: Release/tag comparison is only available for GitHub repositories.
## Projektgeschichte und Nutzung

Snyk CLI is the `snyk` command-line client for bringing Snyk's vulnerability scanning and monitoring into local development, IDEs, and CI/CD pipelines. In package-manager culture it is a canonical security scanner package: install it globally, authenticate it, run it against dependency manifests, source code, container images, and IaC files, then wire it into automation.

### Projektgeschichte

The public GitHub repository was created in 2015 and the official README describes the CLI as a developer-first, cloud-native security tool for scanning and monitoring software projects. Snyk's docs position it as the command-line entry point for Open Source, Code, Container, and IaC scanning.

The README records an important governance change on July 22, 2024: Snyk CLI stopped accepting external contributions while continuing development in public. It also says release channels were introduced in April 2024 as Snyk focused on stabilizing releases.

### Adoptionsgeschichte

Official installation docs list package managers such as npm, Homebrew, and Scoop, plus Docker and standalone binaries. The input records Homebrew, Nix, and WinGet packages, matching the CLI's role across macOS, Linux, Windows, and CI systems.

### Wie es verwendet wird

Users authenticate a machine, then run commands such as `snyk test`, `snyk monitor`, `snyk code test`, `snyk container test`, and `snyk iac test`. The CLI detects supported project manifests, reports vulnerability paths and fix guidance, and can create monitored snapshots in Snyk's web UI.

### Warum Paket-Nerds sich dafür interessieren

Package nerds care because Snyk CLI sits directly on package-manager metadata: manifests, lockfiles, dependency graphs, container images, IaC files, global npm/Homebrew/Scoop installs, signed release assets, and machine-local credentials. It is a package that audits other packages.

### Zeitleiste

- 2015: Public GitHub repository created.
- 2023: GitHub releases show the v1.1249 series in the public release stream.
- 2024: Release channels introduced in April, according to the README.
- 2024: External contributions closed on July 22, according to the README.
- 2026: GitHub releases show the v1.1305 series in the active release stream.

### Related projects

- Related Snyk tools include Snyk Open Source, Snyk Code, Snyk Container, Snyk IaC, Snyk IDE plugins, Snyk CI/CD integrations, and Snyk CLI extensions.

### Quellen

- <https://docs.snyk.io/developer-tools/snyk-cli>
- <https://docs.snyk.io/developer-tools/snyk-cli/snyk-cli/install-the-snyk-cli>
- <https://docs.snyk.io/developer-tools/snyk-cli/snyk-cli/releases-and-channels-for-the-snyk-cli>
- <https://github.com/snyk/cli>
- <https://github.com/snyk/cli/releases>


## Sicherheitshinweise

Für snyk-cli wurde kein passendes lokales Secret-Handling-Manifest gefunden. Paketmetadaten bleiben hier veröffentlicht, damit künftige Abdeckung eine stabile Paket-URL hat.



## Configuration and credential file locations

These source-backed paths show where this package keeps local settings or durable credentials. Automic Vault can use them as review targets for secret scanning, migration, and command approval.


## Configuration files

- Unix: ~/.config/configstore/snyk.json

## Credential files

- Unix: ~/.config/configstore/snyk.json
## Details aus der Quelldatenbank

- **Source Database:** Homebrew formula API
- **Tap:** homebrew/core
- **Full Name:** snyk-cli
- **Version Scheme:** 0
- **Revision:** 0
- **Bottle Stable Root URL:** <https://ghcr.io/v2/homebrew/core>
- **Deprecated:** no
- **Disabled:** no
- **Keg Only:** no
- **URL Keys:** stable

## Andere Paketmanager-Einträge

- Nix - snyk: installed executable or alias match | nixpkgs package indexes: pkgs/by-name/sn/snyk/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1
- winget - Snyk.Snyk: installed executable or alias match | Windows Package Manager source index: Snyk.Snyk from https://cdn.winget.microsoft.com/cache/source.msix


## Verwandte Links

- [Terminal utility packages](https://pkg.so/de/terminal-utilities/) - Matched terminal and command-line workflow metadata.
- [Networking and protocol packages](https://pkg.so/de/networking-protocol-tools/) - Matched network, protocol, or remote-service metadata.
- [Security and crypto packages](https://pkg.so/de/security-crypto-tools/) - Matched security, identity, cryptography, password, signing, or certificate metadata.
- [Package ecosystem packages](https://pkg.so/de/package-ecosystem-tools/) - Matched package manager, installer, dependency, registry, or publishing metadata.
- [node](https://pkg.so/de/brew/node/) - Runtime dependency declared by Homebrew.
- [dependency-check](https://pkg.so/de/brew/dependency-check/) - Shares pkgdb curated category or tags: cli, security, vulnerability-scanning.
- [govulncheck](https://pkg.so/de/brew/govulncheck/) - Shares pkgdb curated category or tags: cli, security, vulnerability-scanning.
- [kics](https://pkg.so/de/brew/kics/) - Shares pkgdb curated category or tags: cli, security, vulnerability-scanning.
- [terrascan](https://pkg.so/de/brew/terrascan/) - Shares pkgdb curated category or tags: cli, iac, security.
- [cargo-audit](https://pkg.so/de/brew/cargo-audit/) - Shares pkgdb curated category or tags: cli, security, vulnerability-scanning.
- [pip-audit](https://pkg.so/de/brew/pip-audit/) - Shares pkgdb curated category or tags: cli, dependency-scanning, security, vulnerability-scanning.
- [clair](https://pkg.so/de/brew/clair/) - Shares pkgdb curated category or tags: cli, container-scanning, security, vulnerability-scanning.
- [flawfinder](https://pkg.so/de/brew/flawfinder/) - Shares pkgdb curated category or tags: cli, security, vulnerability-scanning.
- [snyk](https://pkg.so/de/npm/snyk/) - Executable or command metadata overlaps with this package. Shared terms: cli, security, snyk.
- [wizcli](https://pkg.so/de/cask/wizcli/) - Security-sensitive metadata or terminology overlaps. Shared terms: cli, container, container-scanning, iac, scanning.

## Combined YAML source

View the package source record on GitHub. [combined/snyk-cli.yml](https://github.com/mxcl/pkgdb/blob/main/combined/snyk-cli.yml)


## Quellen

- pkg.so package database
- Geiger risk classifier
- package-page enrichment
- curated configuration and credential file locations
- curated package history
- package version freshness
- pkgdb category and tag curation
- package relationship graph
- external package-manager database matches
- cross-ecosystem install command graph
