macOS
brew install frizbeelocal Homebrew formula metadata
brew / 順位 7293
frizbee のインストール経路、実行ファイル、メタデータ、AI エージェント向けセキュリティノートを確認します。
インストール
brew install frizbeelocal Homebrew formula metadata
sudo zypper install frizbeeopenSUSE Tumbleweed package metadata · frizbee · ソース: download.opensuse.org
winget install --id stacklok.frizbee -eWindows Package Manager source index · stacklok.frizbee · ソース: cdn.winget.microsoft.com
概要
Throw a tag at and it comes back with a checksum
履歴
Frizbee is a Stacklok command-line tool and Go library for resolving mutable tags to checksums. Its README describes it as a tool that can take a GitHub Actions reference or container image tag and return a checksum or digest suitable for more reproducible supply-chain references.
Frizbee is maintained in the `stacklok/frizbee` GitHub repository and is written in Go. Official release metadata gathered during research showed a young 0.x project, with v0.0.x and v0.1.x releases from 2024 onward and v0.1.10 published in 2026.
The README documents installation through Go, Homebrew, and winget, and presents Frizbee as both a CLI and a library. It also points to a Frizbee GitHub Action, placing the project in the GitHub Actions and container-image hardening workflow rather than general-purpose checksum utilities.
For GitHub Actions, users can point `frizbee actions` at workflow files or a single action reference to generate replacements and optionally run in dry-run or CI-failing modes. For container images, users can point `frizbee image` at YAML, Dockerfile paths, or a single image tag to get a digest-pinned reference.
The library API exposes replacers for GitHub Actions and container images, with functions for parsing strings, paths, files, and filesystem abstractions.
Frizbee is package-nerd significant as a small supply-chain utility focused on a common packaging and CI problem: tags are convenient but mutable, while checksums and digests are auditable. It sits near Dependabot-style maintenance, GitHub Actions pinning, container digest pinning, and policy enforcement in CI.
Its value as a packaged CLI is that it can be dropped into local workflows or CI jobs without a larger platform, while the library form lets other tools reuse the tag-to-checksum logic.
セキュリティ状態
narrow executable package without higher-risk signals.
リスク グリーン · 信頼度 低 · appliance
エージェントに無人実行させる前に、このツールが平文の認証情報を読むか、リモート状態を書き込むか、成果物を公開するか、プラグインを起動するかを確認してください。
実行可能ファイル
| コマンド | 種類 | 公開範囲 | メモ |
|---|---|---|---|
frizbee | 実行可能ファイル | インデックス済み実行可能ファイル | ローカル実行可能ファイルインデックスから検出されました。 |
鮮度
これらの信号は、ページ生成時期、パッケージマネージャの活動、上流リリース比較を分けて示します。バージョン遅れは、証拠 URL と比較可能なバージョンがある場合だけ警告されます。
インストールメタデータ
| パッケージキー | brew:frizbee |
|---|---|
| バージョン | 0.1.10 |
| パッケージマネージャ | Homebrew |
| ホームページ | https://github.com/stacklok/frizbee |
| リポジトリ | https://github.com/stacklok/frizbee |
| 最終更新 | 2026-07-26T11:37:58+02:00 |
| Pulse | updated |
| Bottle | 未記録 |
| サービス | 宣言なし |
ソースデータベース一致
一致は外部パッケージマネージャインデックスから取得され、ローカルの Automic Vault パッケージリンクとは分けて表示されます。
frizbee 0.1.10-1.5
Throw a tag at and it comes back with a checksum
https://github.com/stacklok/frizbee
sudo zypper install frizbeefrizbee-bash-completion 0.1.10-1.5
Bash Completion for frizbee
https://github.com/stacklok/frizbee
sudo zypper install frizbee-bash-completionfrizbee-fish-completion 0.1.10-1.5
Fish Completion for frizbee
https://github.com/stacklok/frizbee
sudo zypper install frizbee-fish-completionfrizbee-zsh-completion 0.1.10-1.5
Zsh Completion for frizbee
https://github.com/stacklok/frizbee
sudo zypper install frizbee-zsh-completionstacklok.frizbee
winget install --id stacklok.frizbee -eソース経路
このページは scripts/generate-pkg-sqlite.py が生成した非公開のパッケージ SQLite アーティファクトから av-web によって提供されます。
View the package source record on GitHub.