pkg.soopen package index

brew / Rang 5197

dotbot mit Homebrew, Nix installieren

Prüfe Installationswege, Executables, Metadaten und Sicherheitshinweise für dotbot in AI-Agent-Workflows.

Installation

Weitere Installationsbefehle

macOS

Homebrewverifiziert · 100%
brew install dotbot

local Homebrew formula metadata

Linux

Nixverifiziert · 92%
nix profile install nixpkgs#dotbot

nixpkgs package indexes · pkgs/by-name/do/dotbot/package.nix · Quelle: api.github.com

Überblick

Paketzusammenfassung

Tool that bootstraps your dotfiles

Befehle und Aliase

  • dotbot

Verlauf

Projektgeschichte und Nutzung

Dotbot is a lightweight dotfiles bootstrapper that lets a dotfiles repository install itself with a small YAML or JSON task list. Its identity is intentionally narrow: version control stores the files, and Dotbot links, creates, cleans, and runs shell commands.

Projektgeschichte

The README explains the name as a dotfiles bootstrapper and emphasizes a deliberately minimal design: self-contained, no external dependencies, no required installation, and VCS-agnostic operation. Users can vendor it as a Git submodule or subrepo, or install it as a standalone command-line program.

Public GitHub release metadata shows active tagged releases through the 2020s, including the v1.22-v1.24 series in 2025.

Adoptionsgeschichte

Dotbot spread through personal dotfiles repositories because it fits the common bootstrap pattern: clone a dotfiles repo, enter it, and run ./install on a fresh machine. The README also notes package availability through Homebrew and Arch Linux, while source facts list Homebrew and Nix.

A plugin ecosystem grew around the core, including plugins for secrets management, package managers, OS/application configuration, and other setup tasks.

Wie es verwendet wird

A typical Dotbot setup keeps install.conf.yaml or install.conf.json in the dotfiles repository and runs tasks such as linking files into the home directory, creating directories, cleaning broken symlinks, and executing shell commands.

The project is useful when users want a small, repeatable bootstrap without adopting a full configuration-management system.

Warum Paket-Nerds sich dafür interessieren

Dotbot is package-nerd significant because it captures the Git-submodule era of dotfiles tooling: tiny tool, vendored into the repo, runnable on a fresh system, and intentionally not a full manager for the dotfiles themselves.

For Homebrew users, packaging Dotbot as a CLI offers the same workflow without vendoring, using dotbot -c to point at a configuration file.

Zeitleiste

  • 2014: The official README links an Anish Athalye blog post about managing dotfiles as background for Dotbot-style organization.
  • 2025: GitHub release metadata shows v1.22.0, v1.23.x, and v1.24.0 releases.
  • 2020s: Dotbot supports both vendored submodule/subrepo workflows and standalone CLI installation.

Related projects

  • Dotbot is related to dotfiles_template, init-dotfiles, its wiki/tutorial ecosystem, and community plugins such as dotbot-age, dotbot-gitcrypt, dotbot-brew, dotbot-apt, dotbot-yum, crontab-dotbot, and dotbot-firefox.

Sicherheitslage

Risikostufe: grün

narrow executable package without higher-risk signals.

Risikoklassifikator

grün Risiko · niedrig Konfidenz · appliance

Warum

  • narrow executable package without higher-risk signals

Signale

  • metadata:no-higher-risk-signals

Installationsverhalten

  • Es wurden keine Homebrew-Bottle-Metadaten erfasst.

Empfohlene Prüfung

Prüfe vor unbeaufsichtigter Agent-Nutzung, ob das Tool Klartext-Credentials liest, Remote-Zustand schreibt, Artefakte veröffentlicht oder Plugins ausführt.

local files

Configuration and credential file locations

These source-backed paths show where this package keeps local settings or durable credentials. Automic Vault can use them as review targets for secret scanning, migration, and command approval.

Configuration files

Config paths the tool may read or write during local use.

Unix
install.conf.yamlinstall.conf.json

Executables

Installierte Executables

BefehlArtSichtbarkeitHinweis
dotbotExecutableindexiertes ExecutableAus dem lokalen Executable-Index erkannt.

Aktualität

Version und Aktualität

Diese Signale trennen das Alter der Seitengenerierung, Aktivität des Paketmanagers und Upstream-Release-Vergleich. Versionsrückstand wird nur gemeldet, wenn eine Evidenz-URL und vergleichbare Versionen vorhanden sind.

Seite generiert2026-08-03
Manager-Version1.24.1
Manager aktualisiert
lokale Datenunbekannt
Upstreamnicht verfügbar
neueste erkannte Versionnicht erkannt
  • OKEs wurden keine Aktualitätswarnungen generiert.

Installationsmetadaten

Paketmetadaten

Paketschlüsselbrew:dotbot
Version1.24.1
PaketmanagerHomebrew
Homepagehttps://github.com/anishathalye/dotbot
Bottlenicht erfasst
Dienstkeiner deklariert

Source-Datenbank-Treffer

Andere Paketmanager-Einträge

Treffer stammen aus externen Paketmanager-Indizes und bleiben von lokalen Automic-Vault-Paketlinks getrennt.

Nix95%

dotbot

nix profile install nixpkgs#dotbot
  • normalized package name match
  • Abgeglichen nach: Dotbot
nixpkgs package indexes · api.github.com · nixpkgs package indexes: pkgs/by-name/do/dotbot/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1

Quellspur

Aus Repository-Daten generiert

Diese Seite wird von av-web aus dem privaten Paket-SQLite-Artefakt bereitgestellt, das scripts/generate-pkg-sqlite.py erstellt.

Verwendete Quellen

  • Geiger risk classifier
  • cross-ecosystem install command graph
  • curated configuration and credential file locations
  • curated package history
  • external package-manager database matches
  • pkg.so package database
  • pkgdb category and tag curation