macOS
brew install gokeyprovider-native install command
brew / rang 8650
Consultez les chemins d'installation, exécutables, métadonnées et notes de sécurité de gokey pour les workflows d'agents IA.
installation
brew install gokeyprovider-native install command
aperçu
Simple vaultless password manager in Go
historique
gokey is Cloudflare's vaultless password manager written in Go. Instead of storing passwords in a vault, it derives passwords and keys from a master password plus a realm string, with optional encrypted seed-file mode for higher-entropy material.
The project sits in the deterministic-password-manager family: the user keeps a master secret and recreates site-specific outputs rather than synchronizing a password database.
The repository begins in October 2016 with an initial release. The README describes simple password derivation, seed-file mode, and support for output types including passwords, raw bytes, ECC keys, RSA keys, x25519, and ed25519.
Early history focused on random-generation internals and command behavior. Later history includes release-binary automation, dependency updates, imported deterministic key-generation logic from Go's crypto packages, and seed unwrap testing.
gokey's adoption is mostly that of a compact security utility: it is useful to users who do not want to store, back up, or synchronize a password vault. The README emphasizes that generated passwords are available wherever the user can provide the same master password and realm.
The input package facts list Homebrew, Debian, MacPorts, Nix, and Ubuntu package names, which indicates distribution through both macOS-focused and Linux distribution channels.
In simple mode, a user runs gokey with a master password and a realm such as a resource URL. Changing the realm derives a different output while keeping the same master password.
For higher-entropy passwords or private keys, the README documents seed-file mode: generate an encrypted seed file, protect it with the master password, and derive passwords or keys from the seed plus realm. Seed paths are command inputs rather than a fixed credentials-file location.
gokey matters to package nerds because it is a small, auditable-feeling security CLI with no vault service, database daemon, or sync dependency. Its packaging footprint is a single Go command, but its security model lives in deterministic derivation choices.
It is also a useful contrast with mainstream password managers: packaging the tool is easy, while the hard part is documenting the operational warning that losing the master password or seed file loses the derived outputs.
posture de sécurité
narrow executable package without higher-risk signals.
risque vert · confiance faible · appliance
Avant une utilisation sans surveillance par un agent, vérifiez si l'outil lit des identifiants en clair, écrit un état distant, publie des artefacts ou lance des plugins.
exécutables
| Commande | Type | Exposition | Note |
|---|---|---|---|
gokey | exécutable | exécutable indexé | Découvert depuis l'index local des exécutables. |
fraîcheur
Ces signaux séparent l'âge de génération de la page, l'activité du gestionnaire de paquets et la comparaison avec les versions amont. Un retard de version n'est signalé que lorsqu'une URL de preuve et des versions comparables sont présentes.
métadonnées d'installation
| Clé du paquet | brew:gokey |
|---|---|
| Version | 0.2.1 |
| Gestionnaire de paquets | Homebrew |
| Page d'accueil | https://github.com/cloudflare/gokey |
| Dépôt | https://github.com/cloudflare/gokey |
| Dernière mise à jour | 2026-07-25T20:55:24-04:00 |
| Pulse | updated |
| Bouteille | non enregistré |
| Service | aucun déclaré |
piste source
Cette page est servie par av-web depuis l'artéfact SQLite privé des paquets généré par scripts/generate-pkg-sqlite.py.
View the package source record on GitHub.