# carrot-scan mit npm installieren

Prüfe Installationswege, Executables, Metadaten und Sicherheitshinweise für carrot-scan in AI-Agent-Workflows.

## Installation

```sh
sudo av install npm:carrot-scan
```

Weitere Installationsbefehle:

### Portable und Sprach-Paketmanager

- npm (100%):

```sh
npm install -g carrot-scan
```

  Evidenz: local npm package metadata

## Paketfakten

- **Paketschlüssel:** npm:carrot-scan
- **Paketmanager:** npm
- **Paketmanager-Seite:** <https://www.npmjs.com/package/carrot-scan>
- **Version:** 6.0.1
- **Quellzusammenfassung:** Command-line tool for detecting vulnerabilities in files and directories.
- **Homepage:** <https://github.com/SonoTommy/carrot-scan#readme>
- **Repository:** <https://github.com/SonoTommy/carrot-scan>
- **Upstream-Dokumentation:** <https://github.com/SonoTommy/carrot-scan#readme>
- **Lizenz:** MIT
- **Quellarchiv:** <https://registry.npmjs.org/carrot-scan/-/carrot-scan-6.0.1.tgz>
- **Issue-Tracker:** <https://github.com/SonoTommy/carrot-scan/issues>
- **Veröffentlicht:** 2025-07-07T09:58:52.520Z
- **Zuletzt aktualisiert:** 2025-07-07T09:58:52.520Z
- **Generiert:** 2026-08-04T22:13:35+00:00

## Executables

- carrot-scan (cli)
- carrot-scan (Alias)

## Abhängigkeiten

- @carrot-scan/core
- @fastify/swagger
- @fastify/swagger-ui
- chalk
- commander
- fastify
- figlet
- inquirer
- open
- open-cli
- yaml

## Build-Abhängigkeiten

- @eslint/js
- eslint
- eslint-config-prettier
- eslint-plugin-import
- eslint-plugin-prettier
- eslint-plugin-security
- eslint-plugin-unicorn
- execa
- globals
- jest
- jest-cli
- js-x-ray
- prettier
- semgrep

## Installationsverhalten

- Post-install-Hook: definiert
- npm-Lifecycle-Skripte: postinstall
- Bottle: nicht verfügbar

## Version und Aktualität

- Seite generiert: 2026-08-04
- Manager-Version: 6.0.1
- Manager aktualisiert: 2025-07-07
- lokale Daten: OK
- Upstream-Repository: https://github.com/SonoTommy/carrot-scan
- Warnung: The package-manager record has not been updated in over a year.
- Info: No cached GitHub release or tag data was available.

## Sicherheitshinweise

Für carrot-scan wurde kein passendes lokales Secret-Handling-Manifest gefunden. Paketmetadaten bleiben hier veröffentlicht, damit künftige Abdeckung eine stabile Paket-URL hat.


## Details aus der Quelldatenbank

- **Source Database:** npm registry
- **Dist Tags:** Canary: 6.0.4-canary.4, Latest: 6.0.1
- **Version Count:** 27,708
- **Maintainers:** justsouichi
- **Author:** SonoTommy [https://github.com/SonoTommy]
- **Publisher:** justsouichi
- **Funding:** <https://ko-fi.com/sonotommy>
- **Integrity:** sha512-y2sdPDCpOD5YJ87Qm81hrwHn8vTckMQGcvPvdQ+hLuhoB+VAdOVj54KFQQhZmkMUbYaAAeRdnLcSAb4gKGn+Iw==
- **Shasum:** 9c8b4efb64534d439c28d7f13a8a8637cd6c4a31
- **Unpacked Size:** 202,448
- **File Count:** 0
- **Created At:** 2025-06-23T20:17:40.124Z
- **Latest Published At:** 2025-07-07T09:58:52.520Z
- **Modified At:** 2025-07-07T11:22:49.790Z


## Verwandte Links

- [Security and crypto packages](https://pkg.so/de/security-crypto-tools/) - Matched curated package taxonomy and local package facts.
- [auditjs](https://pkg.so/de/npm/auditjs/) - Both packages work with overlapping file formats or content types. Shared terms: api, chalk, cli, figlet, scan.
- [yarn-audit-fix](https://pkg.so/de/npm/yarn-audit-fix/) - Both packages work with overlapping file formats or content types. Shared terms: chalk, cli, commander, fast, scanning.
- [retire](https://pkg.so/de/npm/retire/) - Security-sensitive metadata or terminology overlaps. Shared terms: analysis, cli, commander, detecting, scanning.

## Quellen

- pkg.so package database
- package-page enrichment
- package version freshness
- pkgdb category and tag curation
- package relationship graph
- cross-ecosystem install command graph
