pkg.soopen package index

brew / 順位 4871

sarif-tools を Homebrew, Nix でインストール

sarif-tools のインストール経路、実行ファイル、メタデータ、AI エージェント向けセキュリティノートを確認します。

インストール

追加のインストールコマンド

macOS

Homebrew確認済み · 100%
brew install sarif-tools

local Homebrew formula metadata

Linux

Nix確認済み · 92%
nix profile install nixpkgs#sarif-tools

nixpkgs package indexes · pkgs/by-name/sa/sarif-tools/package.nix · ソース: api.github.com

概要

パッケージ概要

Set of command-line tools and Python library for working with SARIF files

コマンドとエイリアス

  • sarif

履歴

プロジェクトの歴史と使われ方

SARIF Tools is a Python library and command suite for examining and transforming static-analysis reports.

プロジェクトの歴史

Published under Microsoft's GitHub organization, SARIF Tools combines report conversion, comparison and filtering. The 2024 major release reorganized its Python reporting API around IssueReport.

採用の歴史

The project documents pip installation on Windows, Linux and macOS. Its Code Climate export supports presenting results in GitLab code-quality reports; no quantitative adoption history is established.

使われ方

Run sarif summary, diff, html or csv against reports or directories. The --check option can produce a failing exit status for selected severities, supporting automated checks.

パッケージ好きにとっての重要性

It provides a reusable reporting layer across analyzers that emit SARIF, with both a Python API and a command-line interface.

タイムライン

  • 2024-09-10: Version 3.0.0 introduced an IssueReport-based Python API and revised report grouping.

Related projects

  • SARIF is the interchange format consumed by the toolkit; GitLab Code Quality is a documented export destination.

セキュリティ状態

リスクレベル: グリーン

library-like package without higher-risk signals.

リスク分類器

リスク グリーン · 信頼度 低 · appliance

理由

  • library-like package without higher-risk signals

信号

  • metadata:library-like

インストール挙動

  • formula メタデータに Homebrew post-install フックは記録されていません。
  • Homebrew bottle メタデータは 6 個のプラットフォームターゲットで利用できます。
  • 10 件の実行時依存関係とともにインストールされます。
  • ビルドメタデータには 4 件のビルド依存関係があります。

推奨レビュー

エージェントに無人実行させる前に、このツールが平文の認証情報を読むか、リモート状態を書き込むか、成果物を公開するか、プラグインを起動するかを確認してください。

実行可能ファイル

インストールされる実行可能ファイル

コマンド種類公開範囲メモ
sarifcliグローバル実行可能ファイル

鮮度

バージョンと鮮度

これらの信号は、ページ生成時期、パッケージマネージャの活動、上流リリース比較を分けて示します。バージョン遅れは、証拠 URL と比較可能なバージョンがある場合だけ警告されます。

ページ生成日2026-09-19
マネージャ版3.0.5
マネージャ更新日2026-09-13
ローカルデータOK
上流not checked
検出された最新未検出

https://github.com/microsoft/sarif-tools

インストールメタデータ

パッケージメタデータ

パッケージキーbrew:sarif-tools
バージョン3.0.5
パッケージマネージャHomebrew
パッケージマネージャページhttps://formulae.brew.sh/formula/sarif-tools
ホームページhttps://github.com/microsoft/sarif-tools
リポジトリhttps://github.com/microsoft/sarif-tools
ライセンスMIT
ソースアーカイブhttps://files.pythonhosted.org/packages/16/3c/68e41db88aa15124175936017928e99182b3df8e6913c5e194c67d641996/sarif_tools-3.0.5.tar.gz
最終更新2026-09-13T14:23:33Z
Pulseupdated
依存関係freetype, jpeg-turbo, libraqm, libtiff, libyaml, little-cms2, numpy, pillow, python@3.14, webp
ビルド依存関係cmake, meson, ninja, pkgconf
macOS 提供ライブラリlibxml2, libxslt
Bottle利用可能 (対象 arm64_linux, arm64_sequoia, arm64_sonoma, arm64_tahoe, sonoma, x86_64_linux)
Homebrew post-install未定義
サービス宣言なし

レジストリ情報

ソースデータベース詳細

Source DatabaseHomebrew formula API
Taphomebrew/core
Full Namesarif-tools
Version Scheme0
Revision3
Head VersionHEAD
Bottle Stable Root URLhttps://ghcr.io/v2/homebrew/core
Deprecatedno
Disabledno
Keg Onlyno
URL Keys
  • head
  • stable

ソースデータベース一致

他のパッケージマネージャ記録

一致は外部パッケージマネージャインデックスから取得され、ローカルの Automic Vault パッケージリンクとは分けて表示されます。

Nix95%

sarif-tools

nix profile install nixpkgs#sarif-tools
  • normalized package name match
  • 一致条件: Sarif Tools
nixpkgs package indexes · api.github.com · nixpkgs package indexes: pkgs/by-name/sa/sarif-tools/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1

ソース経路

リポジトリデータから生成

このページは scripts/generate-pkg-sqlite.py が生成した非公開のパッケージ SQLite アーティファクトから av-web によって提供されます。

使用ソース

  • Geiger risk classifier
  • cross-ecosystem install command graph
  • curated package history
  • external package-manager database matches
  • package relationship graph
  • package version freshness
  • package-page enrichment
  • pkg.so package database
  • pkgdb category and tag curation