# ykman を Homebrew でインストール

ykman のインストール経路、実行ファイル、メタデータ、AI エージェント向けセキュリティノートを確認します。

## インストール

```sh
sudo av install brew:ykman
```

追加のインストールコマンド:

### macOS

- Homebrew (100%):

```sh
brew install ykman
```

  証拠: local Homebrew formula metadata

## パッケージ情報

- **パッケージキー:** brew:ykman
- **パッケージマネージャ:** Homebrew
- **パッケージマネージャページ:** <https://formulae.brew.sh/formula/ykman>
- **バージョン:** 5.9.2
- **ソース概要:** Tool for managing your YubiKey configuration
- **ホームページ:** <https://developers.yubico.com/yubikey-manager/>
- **リポジトリ:** <https://github.com/Yubico/yubikey-manager>
- **上流ドキュメント:** <https://developers.yubico.com/yubikey-manager/>
- **ライセンス:** BSD-2-Clause
- **ソースアーカイブ:** <https://files.pythonhosted.org/packages/1f/ab/5b0671484bcdac6cf383ba6682626ab23478889fab5fe7a1744ed78a33c4/yubikey_manager-5.9.2.tar.gz>
- **最終更新:** 2026-07-01T17:34:10Z
- **生成日時:** 2026-08-04T22:13:35+00:00

## 実行可能ファイル

- ykman (cli)
- ykman (エイリアス)

## 依存関係

- cryptography
- python@3.14

## ビルド依存関係

- cmake
- swig

## macOS 提供ライブラリ

- pcsc-lite

## インストール挙動

- post-install フック: 未定義
- Bottle: 利用可能 対象 arm64_linux, arm64_sequoia, arm64_sonoma, arm64_tahoe, sonoma, x86_64_linux

## バージョンと鮮度

- ページ生成日: 2026-08-04
- マネージャ版: 5.9.2
- マネージャ更新日: 2026-07-01
- ローカルデータ: OK
- 上流リポジトリ: https://developers.yubico.com/yubikey-manager/
- 情報: Release/tag comparison is only available for GitHub repositories.
## プロジェクトの歴史と使われ方

YubiKey Manager CLI, usually run as `ykman`, is Yubico's maintained command-line and Python-library interface for configuring modern YubiKeys. It sits at the center of the current YubiKey administration stack because it manages multiple applications on the same hardware token, including FIDO, OATH, OpenPGP, OTP, and PIV.

### プロジェクトの歴史

The GitHub repository for yubikey-manager was created on 2016-07-04, after Yubico already had older, narrower tools for OTP personalization and related YubiKey tasks. The project consolidated YubiKey administration into a Python CLI/library that can talk to a YubiKey over the relevant USB interfaces instead of being limited to the original OTP personalization workflow.

Yubico's current developer page describes YubiKey Manager CLI as a Python 3.10-or-later library and command-line tool for configuring a YubiKey, and points GUI users to Yubico Authenticator. The separate user guide describes it as an advanced cross-platform tool and the premier CLI for advanced management of YubiKey applications.

### 採用の歴史

`ykman` became the practical successor for day-to-day YubiKey configuration as YubiKeys expanded beyond OTP into FIDO2/WebAuthn, PIV smart-card certificates, OATH credentials, OpenPGP, and other applets. Its Homebrew, MacPorts, pip/pipx/uv, Windows installer, Linux package, and FreeBSD port paths reflect a tool meant for developers, admins, and security teams rather than only one operating system.

In the YubiKey ecosystem, adoption is also explained by deprecation pressure: Yubico has announced end-of-life dates for the older YubiKey Personalization package, while YubiKey Manager continues to track newer firmware and application capabilities.

### 使われ方

Typical usage starts with `ykman list` or `ykman info`, then moves into application-specific subcommands such as `ykman fido`, `ykman oath`, `ykman openpgp`, `ykman otp`, and `ykman piv`. It is used to inspect tokens, configure applications, manage credentials or certificates, reset applets, and script YubiKey fleet setup from a terminal.

Package users should think of `ykman` as hardware administration tooling, not a passive client: commands can change security-sensitive state on a physical token, and some platforms require USB HID, smart-card, or input-monitoring permissions for particular YubiKey interfaces.

### パッケージ好きにとっての重要性

`ykman` is package-nerd significant because it is where modern hardware-token support becomes ordinary package-manager plumbing: a Python CLI, platform-specific USB and smart-card access, shell completion, native installers, and OS packages all wrap one small executable that configures real cryptographic hardware.

It also shows the maintenance arc of security-device tooling. Old single-purpose C utilities remain historically important, but the package that users now expect to install is the cross-application manager that follows current firmware and authentication standards.

### タイムライン

- 2016-07-04: Yubico creates the yubikey-manager GitHub repository.
- 2020s: YubiKey Manager CLI becomes Yubico's documented advanced cross-platform CLI for current YubiKey applications.
- 2025-02-19: Yubico announces end of life for the older YubiKey Personalization package, strengthening `ykman` as the maintained path for newer YubiKey management.
- 2026: Yubico documentation describes ykman as supporting features of current YubiKey firmware and applications including FIDO2, PIV, OTP, OpenPGP, OATH, Security Domain, and YubiHSM Auth.

### Related projects

- YubiKey Personalization / ykpers is the older OTP-focused personalization library and CLI.
- Yubico Authenticator is Yubico's GUI-oriented application for users who do not want the CLI.
- Related Yubico tools and protocols include yubico-c, libfido2, python-fido2, PIV, OpenPGP, OATH, YubiOTP, FIDO2, and WebAuthn.

### ソース

- <https://api.github.com/repos/Yubico/yubikey-manager>
- <https://developers.yubico.com/yubikey-manager/>
- <https://developers.yubico.com/yubikey-personalization/>
- <https://docs.yubico.com/software/yubikey/tools/ykman/intro.html>
- <https://github.com/Yubico/yubikey-manager>


## セキュリティノート

narrow executable package without higher-risk signals.

- **Geiger リスク:** グリーン / 低
- narrow executable package without higher-risk signals

## ソースデータベース詳細

- **Source Database:** Homebrew formula API
- **Tap:** homebrew/core
- **Full Name:** ykman
- **Version Scheme:** 0
- **Revision:** 0
- **Head Version:** HEAD
- **Bottle Stable Root URL:** <https://ghcr.io/v2/homebrew/core>
- **Deprecated:** no
- **Disabled:** no
- **Keg Only:** no
- **URL Keys:** head, stable


## 関連リンク

- [Terminal utility packages](https://pkg.so/ja/terminal-utilities/) - Matched terminal and command-line workflow metadata.
- [Text processing packages](https://pkg.so/ja/text-processing-tools/) - Matched text, document, or structured-data processing metadata.
- [Networking and protocol packages](https://pkg.so/ja/networking-protocol-tools/) - Matched network, protocol, or remote-service metadata.
- [Security and crypto packages](https://pkg.so/ja/security-crypto-tools/) - Matched security, identity, cryptography, password, signing, or certificate metadata.
- [python@3.14](https://pkg.so/ja/brew/python-3-14/) - Runtime dependency declared by Homebrew.
- [cmake](https://pkg.so/ja/brew/cmake/) - Build dependency declared by Homebrew.
- [swig](https://pkg.so/ja/brew/swig/) - Build dependency declared by Homebrew.
- [yubikey-agent](https://pkg.so/ja/brew/yubikey-agent/) - Shares pkgdb curated category or tags: cli, hardware-token, security, yubikey.
- [yubico-piv-tool](https://pkg.so/ja/brew/yubico-piv-tool/) - Shares pkgdb curated category or tags: cli, security, yubikey.
- [ykpers](https://pkg.so/ja/brew/ykpers/) - Shares pkgdb curated category or tags: cli, security, yubikey.
- [tkey-ssh-agent](https://pkg.so/ja/brew/tkey-ssh-agent/) - Shares pkgdb curated category or tags: cli, hardware-token, security.
- [gnutls](https://pkg.so/ja/brew/gnutls/) - Shares pkgdb curated category or tags: cli, security.
- [krb5](https://pkg.so/ja/brew/krb5/) - Shares pkgdb curated category or tags: cli, security.
- [nettle](https://pkg.so/ja/brew/nettle/) - Shares pkgdb curated category or tags: cli, security.
- [libcap](https://pkg.so/ja/brew/libcap/) - Shares pkgdb curated category or tags: cli, security.
- [pam-u2f](https://pkg.so/ja/brew/pam-u2f/) - Security-sensitive metadata or terminology overlaps. Shared terms: cli, hardware, hardware-token, security, token.
- [libfido2](https://pkg.so/ja/brew/libfido2/) - Security-sensitive metadata or terminology overlaps. Shared terms: cli, hardware, security, token.

## Combined YAML source

View the package source record on GitHub. [combined/ykman.yml](https://github.com/mxcl/pkgdb/blob/main/combined/ykman.yml)


## ソース

- pkg.so package database
- Geiger risk classifier
- package-page enrichment
- curated package history
- package version freshness
- pkgdb category and tag curation
- package relationship graph
- cross-ecosystem install command graph
