# cargo-bundle を Homebrew, Nix でインストール

cargo-bundle のインストール経路、実行ファイル、メタデータ、AI エージェント向けセキュリティノートを確認します。

## インストール

```sh
sudo av install brew:cargo-bundle
```

追加のインストールコマンド:

### macOS

- Homebrew (100%):

```sh
brew install cargo-bundle
```

  証拠: local Homebrew formula metadata

### Linux

- Nix (92%):

```sh
nix profile install nixpkgs#cargo-bundle
```

  証拠: nixpkgs package indexes: pkgs/by-name/ca/cargo-bundle/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1

## パッケージ情報

- **パッケージキー:** brew:cargo-bundle
- **パッケージマネージャ:** Homebrew
- **バージョン:** 0.11.0
- **ソース概要:** Wrap rust executables in OS-specific app bundles
- **ホームページ:** <https://github.com/burtonageo/cargo-bundle>
- **リポジトリ:** <https://github.com/burtonageo/cargo-bundle>
- **最終更新:** 2026-05-31T10:36:43Z
- **生成日時:** 2026-08-03T19:37:03+00:00

## 実行可能ファイル

- cargo-bundle (エイリアス)

## インストール挙動

- Bottle: 利用不可

## バージョンと鮮度

- ページ生成日: 2026-08-03
- マネージャ版: 0.11.0
## プロジェクトの歴史と使われ方

cargo-bundle is a Cargo subcommand for wrapping Rust GUI executables into operating-system application bundles and installer formats.

### プロジェクトの歴史

The cargo-bundle repository was created in January 2016 and the first crates.io release followed in March 2016. The README positions it as a tool for generating macOS app bundles, iOS bundles, Debian packages, and experimental Windows MSI installers from Cargo-built executables.

Its design centers on a `[package.metadata.bundle]` section in Cargo.toml. That metadata describes user-facing application attributes such as name, identifier, icon, version, resources, copyright, category, descriptions, Debian dependencies, macOS frameworks, and URL schemes.

### 採用の歴史

cargo-bundle occupies a narrower niche than compiler or profiling Cargo plugins: desktop and GUI Rust applications. Crates.io reports more than 150,000 downloads, and the input records Homebrew and Nix packaging.

The project remained useful because early Rust desktop applications needed a Cargo-native way to bridge from a compiled binary to platform packaging conventions without adopting a full application framework.

### 使われ方

Users install it with `cargo install cargo-bundle`, add `[package.metadata.bundle]` to Cargo.toml, and run `cargo bundle` from the package directory. The command supports familiar Cargo selectors and build controls such as `--bin`, `--example`, `--release`, `--profile`, `--target`, and feature flags.

The README documents output formats including deb, ios, msi, wxsmsi, osx, rpm, and appimage, while also warning that the project status is early alpha and that the metadata format is not guaranteed stable.

### パッケージ好きにとっての重要性

cargo-bundle is historically interesting because it embeds desktop packaging metadata inside Cargo.toml rather than treating app bundling as an entirely external release step. It shows how Rust package metadata became a place for downstream packaging intent, not just dependency resolution.

For package maintainers, it connects Rust crates to platform-native artifacts such as `.app`, `.deb`, and `.msi`, making it a small but useful example of Cargo crossing from language package manager into OS package production.

### タイムライン

- 2016-01-10: GitHub repository burtonageo/cargo-bundle was created.
- 2016-03-22: cargo-bundle 0.0.0 was published on crates.io.
- 2016 onward: README documented `[package.metadata.bundle]` as the Cargo.toml integration point for bundle metadata.
- 2026-05-30: Version 0.11.0 was published.

### Related projects

- Cargo provides the build and subcommand interface cargo-bundle extends.
- Platform packaging formats documented by the project include macOS app bundles, Debian packages, Windows MSI installers, RPM packages, and AppImage.
- The Rust desktop packaging space overlaps conceptually with later application-packaging frameworks, but cargo-bundle remains a small Cargo-native bundling tool.

### ソース

- GitHub repository API metadata: https://api.github.com/repos/burtonageo/cargo-bundle
- Official README: https://github.com/burtonageo/cargo-bundle#readme
- Package-manager adoption from source_facts.package-manager.
- crates.io API metadata and versions: https://crates.io/api/v1/crates/cargo-bundle


## セキュリティノート

narrow executable package without higher-risk signals.

- **Geiger リスク:** グリーン / 低
- narrow executable package without higher-risk signals


## Configuration and credential file locations

These source-backed paths show where this package keeps local settings or durable credentials. Automic Vault can use them as review targets for secret scanning, migration, and command approval.


## Configuration files

- Unix: Cargo.toml
- Windows: Cargo.toml
## 他のパッケージマネージャ記録

- Nix - cargo-bundle: normalized package name match | nixpkgs package indexes: pkgs/by-name/ca/cargo-bundle/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1


## Combined YAML source

View the package source record on GitHub. [combined/cargo-bundle.yml](https://github.com/mxcl/pkgdb/blob/main/combined/cargo-bundle.yml)


## ソース

- pkg.so package database
- Geiger risk classifier
- curated configuration and credential file locations
- curated package history
- pkgdb category and tag curation
- external package-manager database matches
- cross-ecosystem install command graph
