pkg.soopen package index

brew / Rang 189

cocoapods mit Homebrew, Nix installieren

Prüfe Installationswege, Executables, Metadaten und Sicherheitshinweise für cocoapods in AI-Agent-Workflows.

Installation

Weitere Installationsbefehle

macOS

Homebrewverifiziert · 100%
brew install cocoapods

local Homebrew formula metadata

Linux

Nixverifiziert · 92%
nix profile install nixpkgs#cocoapods

nixpkgs package indexes · pkgs/by-name/co/cocoapods/package.nix · Quelle: api.github.com

Überblick

Paketzusammenfassung

Dependency manager for Cocoa projects

Befehle und Aliase

  • pod
  • xcodeproj

Verlauf

Projektgeschichte und Nutzung

CocoaPods is the long-running dependency manager for Swift and Objective-C Cocoa projects. It is one of the defining package tools of iOS and macOS development, centered on the `pod` CLI, the Podfile, podspecs, and the CocoaPods Specs/trunk ecosystem.

Projektgeschichte

The CocoaPods GitHub repository was created in 2011 and the project presents itself as the dependency manager for iOS and Mac projects. The official site says CocoaPods is developed on GitHub by the CocoaPods Dev Team with many contributors.

CocoaPods matured into a full package ecosystem: a command-line installer, a central specs index, project integration for Xcode workspaces, documentation, search, and trunk publishing for podspecs.

Adoptionsgeschichte

The official homepage states that CocoaPods has over 107 thousand libraries and is used in over 3 million apps. RubyGems records more than 100 million downloads for the `cocoapods` gem.

CocoaPods' adoption has also reached a late-maintenance phase. The official blog announced a plan to make CocoaPods trunk read-only, while keeping existing Specs/CDN infrastructure available so existing builds continue to work.

Wie es verwendet wird

A user writes dependencies in a `Podfile`, runs `pod install`, and then opens the generated `.xcworkspace` rather than the original Xcode project. The official guide says the `Podfile` and `Podfile.lock` should be kept under version control.

CocoaPods also supports creating and publishing pods through podspecs, with commands such as `pod spec create`, `pod spec lint`, and publishing through trunk.

Warum Paket-Nerds sich dafür interessieren

CocoaPods is historically important because it brought a package-index workflow to Apple platform development before Swift Package Manager was mature. It normalized lockfiles, central package metadata, semantic versions, and repeatable third-party dependency integration for Xcode projects.

It is also a case study in package registry lifecycle. The planned read-only trunk transition shows how an ecosystem can preserve installability while reducing the operational and security burden of accepting new package submissions.

Zeitleiste

  • 2011: `CocoaPods/CocoaPods` repository created on GitHub.
  • 2010s: CocoaPods becomes the dominant third-party dependency manager for Objective-C and Swift Cocoa projects.
  • 2016: CocoaPods 1.0 series released.
  • 2024: CocoaPods 1.16.2 released.
  • 2024: Official blog announces a read-only plan for CocoaPods trunk, later updated in May 2025.
  • 2026: Blog plan says new trunk submissions will be stopped while existing builds continue to work.

Related projects

  • CocoaPods Specs is the central podspec repository/trunk data set.
  • RubyGems distributes the `cocoapods` CLI gem.
  • Swift Package Manager and Carthage are adjacent Apple-platform dependency managers.

Sicherheitslage

Risikostufe: orange

infrastructure mutation or orchestration signal.

Risikoklassifikator

orange Risiko · mittel Konfidenz · infrastructure

Warum

  • infrastructure mutation or orchestration signal

Signale

  • text:dependency manager

Installationsverhalten

  • Es wurden keine Homebrew-Bottle-Metadaten erfasst.

Empfohlene Prüfung

Prüfe vor unbeaufsichtigter Agent-Nutzung, ob das Tool Klartext-Credentials liest, Remote-Zustand schreibt, Artefakte veröffentlicht oder Plugins ausführt.

local files

Configuration and credential file locations

These source-backed paths show where this package keeps local settings or durable credentials. Automic Vault can use them as review targets for secret scanning, migration, and command approval.

Configuration files

Config paths the tool may read or write during local use.

Unix
Podfile

Executables

Installierte Executables

BefehlArtSichtbarkeitHinweis
podExecutableindexiertes ExecutableAus dem lokalen Executable-Index erkannt.
xcodeprojExecutableindexiertes ExecutableAus dem lokalen Executable-Index erkannt.

Aktualität

Version und Aktualität

Diese Signale trennen das Alter der Seitengenerierung, Aktivität des Paketmanagers und Upstream-Release-Vergleich. Versionsrückstand wird nur gemeldet, wenn eine Evidenz-URL und vergleichbare Versionen vorhanden sind.

Seite generiert2026-08-03
Manager-Version1.17.0
Manager aktualisiert2026-07-06
lokale Datenunbekannt
Upstreamnicht verfügbar
neueste erkannte Versionnicht erkannt
  • OKEs wurden keine Aktualitätswarnungen generiert.

Installationsmetadaten

Paketmetadaten

Paketschlüsselbrew:cocoapods
Version1.17.0
PaketmanagerHomebrew
Homepagehttps://cocoapods.org/
Repositoryhttps://github.com/CocoaPods/CocoaPods
Zuletzt aktualisiert2026-07-06T23:44:34Z
Pulseupdated
Bottlenicht erfasst
Dienstkeiner deklariert

Source-Datenbank-Treffer

Andere Paketmanager-Einträge

Treffer stammen aus externen Paketmanager-Indizes und bleiben von lokalen Automic-Vault-Paketlinks getrennt.

Nix95%

cocoapods

nix profile install nixpkgs#cocoapods
  • normalized package name match
  • Abgeglichen nach: Cocoapods
nixpkgs package indexes · api.github.com · nixpkgs package indexes: pkgs/by-name/co/cocoapods/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1

Quellspur

Aus Repository-Daten generiert

Diese Seite wird von av-web aus dem privaten Paket-SQLite-Artefakt bereitgestellt, das scripts/generate-pkg-sqlite.py erstellt.

Verwendete Quellen

  • Geiger risk classifier
  • cross-ecosystem install command graph
  • curated configuration and credential file locations
  • curated package history
  • external package-manager database matches
  • pkg.so package database
  • pkgdb category and tag curation