# Installer carrot-scan avec npm

Consultez les chemins d'installation, exécutables, métadonnées et notes de sécurité de carrot-scan pour les workflows d'agents IA.

## installation

```sh
sudo av install npm:carrot-scan
```

Commandes d'installation supplémentaires:

### Gestionnaires portables et de langages

- npm (100%):

```sh
npm install -g carrot-scan
```

  Preuve: local npm package metadata

## Faits du paquet

- **Clé du paquet:** npm:carrot-scan
- **Gestionnaire de paquets:** npm
- **Page du gestionnaire de paquets:** <https://www.npmjs.com/package/carrot-scan>
- **Version:** 6.0.1
- **Résumé source:** Command-line tool for detecting vulnerabilities in files and directories.
- **Page d'accueil:** <https://github.com/SonoTommy/carrot-scan#readme>
- **Dépôt:** <https://github.com/SonoTommy/carrot-scan>
- **Docs amont:** <https://github.com/SonoTommy/carrot-scan#readme>
- **Licence:** MIT
- **Archive source:** <https://registry.npmjs.org/carrot-scan/-/carrot-scan-6.0.1.tgz>
- **Suivi des problèmes:** <https://github.com/SonoTommy/carrot-scan/issues>
- **Publié:** 2025-07-07T09:58:52.520Z
- **Dernière mise à jour:** 2025-07-07T09:58:52.520Z
- **Généré:** 2026-08-04T22:13:35+00:00

## exécutables

- carrot-scan (cli)
- carrot-scan (alias)

## Dépendances

- @carrot-scan/core
- @fastify/swagger
- @fastify/swagger-ui
- chalk
- commander
- fastify
- figlet
- inquirer
- open
- open-cli
- yaml

## Dépendances de compilation

- @eslint/js
- eslint
- eslint-config-prettier
- eslint-plugin-import
- eslint-plugin-prettier
- eslint-plugin-security
- eslint-plugin-unicorn
- execa
- globals
- jest
- jest-cli
- js-x-ray
- prettier
- semgrep

## Comportement d'installation

- hook post-installation: défini
- scripts de cycle de vie npm: postinstall
- Bouteille: non disponible

## Version et fraîcheur

- page générée: 2026-08-04
- version du gestionnaire: 6.0.1
- gestionnaire mis à jour: 2025-07-07
- données locales: OK
- dépôt amont: https://github.com/SonoTommy/carrot-scan
- avertissement: The package-manager record has not been updated in over a year.
- info: No cached GitHub release or tag data was available.

## Notes de sécurité

Aucun manifest local de gestion des secrets correspondant n'a été trouvé pour carrot-scan. Les métadonnées de paquet restent publiées ici afin que la couverture future dispose d'une URL stable.


## Détails de la base source

- **Source Database:** npm registry
- **Dist Tags:** Canary: 6.0.4-canary.4, Latest: 6.0.1
- **Version Count:** 27,708
- **Maintainers:** justsouichi
- **Author:** SonoTommy [https://github.com/SonoTommy]
- **Publisher:** justsouichi
- **Funding:** <https://ko-fi.com/sonotommy>
- **Integrity:** sha512-y2sdPDCpOD5YJ87Qm81hrwHn8vTckMQGcvPvdQ+hLuhoB+VAdOVj54KFQQhZmkMUbYaAAeRdnLcSAb4gKGn+Iw==
- **Shasum:** 9c8b4efb64534d439c28d7f13a8a8637cd6c4a31
- **Unpacked Size:** 202,448
- **File Count:** 0
- **Created At:** 2025-06-23T20:17:40.124Z
- **Latest Published At:** 2025-07-07T09:58:52.520Z
- **Modified At:** 2025-07-07T11:22:49.790Z


## Liens liés

- [Security and crypto packages](https://pkg.so/fr/security-crypto-tools/) - Matched curated package taxonomy and local package facts.
- [auditjs](https://pkg.so/fr/npm/auditjs/) - Both packages work with overlapping file formats or content types. Shared terms: api, chalk, cli, figlet, scan.
- [yarn-audit-fix](https://pkg.so/fr/npm/yarn-audit-fix/) - Both packages work with overlapping file formats or content types. Shared terms: chalk, cli, commander, fast, scanning.
- [retire](https://pkg.so/fr/npm/retire/) - Security-sensitive metadata or terminology overlaps. Shared terms: analysis, cli, commander, detecting, scanning.

## Sources

- pkg.so package database
- package-page enrichment
- package version freshness
- pkgdb category and tag curation
- package relationship graph
- cross-ecosystem install command graph
