pkg.soopen package index

brew / Rang 1722

volta mit Homebrew, chocolatey, MacPorts, Nix, scoop, winget installieren

Prüfe Installationswege, Executables, Metadaten und Sicherheitshinweise für volta in AI-Agent-Workflows.

Installation

Weitere Installationsbefehle

macOS

Homebrewverifiziert · 100%
brew install volta

local Homebrew formula metadata

MacPortsverifiziert · 94%
sudo port install volta

MacPorts ports tree · www/volta/Portfile · Quelle: api.github.com

Linux

Nixverifiziert · 92%
nix profile install nixpkgs#volta

nixpkgs package indexes · pkgs/by-name/vo/volta/package.nix · Quelle: api.github.com

Windows

Chocolateyverifiziert · 92%
choco install volta

Chocolatey community package catalog · volta · Quelle: community.chocolatey.org

Scoopverifiziert · 92%
scoop install main/volta

Scoop official bucket manifest trees · bucket/volta.json · Quelle: api.github.com

Windows Package Managerverifiziert · 92%
winget install --id Volta.Volta -e

Windows Package Manager source index · Volta.Volta · Quelle: cdn.winget.microsoft.com

Überblick

Paketzusammenfassung

JavaScript toolchain manager for reproducible environments

Befehle und Aliase

  • volta
  • volta-migrate
  • volta-shim

Verlauf

Projektgeschichte und Nutzung

Volta is a Rust-built JavaScript toolchain manager whose central idea is to make Node.js, npm, Yarn, and package binaries project-aware through fast shims. Instead of asking developers to manually switch Node versions, it records tool choices in `package.json` and routes commands to the right cached executable.

Projektgeschichte

Volta began publicly as a project called Notion. Its v0.1.0 pre-release, published on August 21, 2018, supported macOS and Linux, Node and Yarn installation, `notion use`, and a proof-of-concept plugin API. The release history shows the project adding npm/npx support, package-binary installation, fish support, a `which` command, and other toolchain-manager features during the 0.x line.

The project renamed to Volta in version 0.5.0, changing the `package.json` key from `toolchain` to `volta` and adopting the JavaScript Launcher branding. Version 1.0.0 was released on December 21, 2020 with support for `npm link`, global update commands, and npm/Yarn handling improvements.

By 2025, the repository README and pinned issue stated that Volta was unmaintained and that maintainers recommended migrating to mise. That status does not erase Volta's earlier role, but it changes its package-history context from active toolchain bet to a stable-but-maintenance-limited utility.

Adoptionsgeschichte

Volta gained traction among JavaScript developers as an alternative to shell-function based version switchers such as nvm because its shims work across projects and shells and because pinned versions live in a file already committed by most Node projects. Its GitHub repository shows broad open-source adoption, with thousands of stars and packaging across macOS, Linux, and Windows ecosystems.

Its documentation emphasizes reproducible collaborator environments: `volta pin node@20` writes the selected engine into `package.json`, and collaborators who install Volta automatically get the same Node version when they enter the project directory. This made Volta part of the broader shift toward checking toolchain versions into application repositories.

Wie es verwendet wird

Typical use starts with `volta install node` or `volta install node@22` to set a default Node runtime. Inside a project, `volta pin node@20` or a similar command records the exact runtime or package-manager version in `package.json`; later invocations of `node`, `npm`, or `yarn` are routed by Volta's shims.

Volta also manages globally installed package binaries. The docs describe installing command-line tools through npm or Yarn while Volta pins the Node version used for that tool, so a globally installed executable keeps working even when the user's default Node version changes.

Warum Paket-Nerds sich dafür interessieren

Volta is package-nerd significant because it treats the JavaScript runtime as package metadata. The interesting bit is not merely downloading Node; it is committing the runtime and package-manager versions beside dependencies so developer laptops, CI jobs, and cloned repos converge on the same toolchain.

Its later unmaintained status is also instructive: toolchain managers sit in the blast radius of operating systems, package registries, and runtime distribution changes, so maintenance health becomes part of the package story, not just an upstream README footnote.

Zeitleiste

  • 2018-08-21: v0.1.0 pre-release was published under the original Notion command naming.
  • 2019: The 0.x release line added npm/npx support, package binaries, fish support, and related toolchain-manager features.
  • Version 0.5.0: The project renamed to Volta and changed the `package.json` key from `toolchain` to `volta`.
  • 2020-12-21: Volta v1.0.0 was released.
  • 2025-11-14: A pinned GitHub issue announced that Volta was unmaintained and recommended migration to mise.

Related projects

  • nvm, asdf, fnm, mise, and Corepack occupy adjacent JavaScript or multi-runtime toolchain-management space.
  • Node.js, npm, Yarn, and pnpm are the runtimes and package managers that Volta routes or pins.

Sicherheitslage

Risikostufe: orange

infrastructure mutation or orchestration signal.

Risikoklassifikator

orange Risiko · mittel Konfidenz · infrastructure

Warum

  • infrastructure mutation or orchestration signal

Signale

  • text:toolchain manager

Installationsverhalten

  • Es wurden keine Homebrew-Bottle-Metadaten erfasst.

Empfohlene Prüfung

Prüfe vor unbeaufsichtigter Agent-Nutzung, ob das Tool Klartext-Credentials liest, Remote-Zustand schreibt, Artefakte veröffentlicht oder Plugins ausführt.

local files

Configuration and credential file locations

These source-backed paths show where this package keeps local settings or durable credentials. Automic Vault can use them as review targets for secret scanning, migration, and command approval.

Configuration files

Config paths the tool may read or write during local use.

Unix
package.json
Windows
package.json

Executables

Installierte Executables

BefehlArtSichtbarkeitHinweis
voltaExecutableindexiertes ExecutableAus dem lokalen Executable-Index erkannt.
volta-migrateExecutableindexiertes ExecutableAus dem lokalen Executable-Index erkannt.
volta-shimExecutableindexiertes ExecutableAus dem lokalen Executable-Index erkannt.

Aktualität

Version und Aktualität

Diese Signale trennen das Alter der Seitengenerierung, Aktivität des Paketmanagers und Upstream-Release-Vergleich. Versionsrückstand wird nur gemeldet, wenn eine Evidenz-URL und vergleichbare Versionen vorhanden sind.

Seite generiert2026-08-03
Manager-Version2.0.2
Manager aktualisiert
lokale Datenunbekannt
Upstreamnicht verfügbar
neueste erkannte Versionnicht erkannt
  • OKEs wurden keine Aktualitätswarnungen generiert.

Installationsmetadaten

Paketmetadaten

Paketschlüsselbrew:volta
Version2.0.2
PaketmanagerHomebrew
Homepagehttps://volta.sh
Repositoryhttps://github.com/volta-cli/volta
Bottlenicht erfasst
Dienstkeiner deklariert

Source-Datenbank-Treffer

Andere Paketmanager-Einträge

Treffer stammen aus externen Paketmanager-Indizes und bleiben von lokalen Automic-Vault-Paketlinks getrennt.

Nix95%

volta

nix profile install nixpkgs#volta
  • normalized package name match
  • Abgeglichen nach: Volta
nixpkgs package indexes · api.github.com · nixpkgs package indexes: pkgs/by-name/vo/volta/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1
MacPorts95%

volta

sudo port install volta
  • normalized package name match
  • Abgeglichen nach: Volta
MacPorts ports tree · api.github.com · MacPorts ports tree: www/volta/Portfile from https://api.github.com/repos/macports/macports-ports/git/trees/master?recursive=1
Chocolatey95%

volta

choco install volta
  • normalized package name match
  • Abgeglichen nach: Volta
Chocolatey community package catalog · community.chocolatey.org · Chocolatey community package catalog: volta from http://community.chocolatey.org/api/v2/Packages?$filter=IsLatestVersion&$select=Id&$top=1000&$skiptoken='11','visualstudio2022enterprise'
Scoop95%

main/volta

scoop install main/volta
  • normalized package name match
  • Abgeglichen nach: Volta
Scoop official bucket manifest trees · api.github.com · Scoop official bucket manifest trees: bucket/volta.json from https://api.github.com/repos/ScoopInstaller/Main/git/trees/master?recursive=1
winget95%

Volta.Volta

winget install --id Volta.Volta -e
  • normalized package name match
  • Abgeglichen nach: Volta
Windows Package Manager source index · cdn.winget.microsoft.com · Windows Package Manager source index: Volta.Volta from https://cdn.winget.microsoft.com/cache/source.msix

Quellspur

Aus Repository-Daten generiert

Diese Seite wird von av-web aus dem privaten Paket-SQLite-Artefakt bereitgestellt, das scripts/generate-pkg-sqlite.py erstellt.

Verwendete Quellen

  • Geiger risk classifier
  • cross-ecosystem install command graph
  • curated configuration and credential file locations
  • curated package history
  • external package-manager database matches
  • pkg.so package database
  • pkgdb category and tag curation