# talisman を Homebrew, MacPorts, winget でインストール

talisman のインストール経路、実行ファイル、メタデータ、AI エージェント向けセキュリティノートを確認します。

## インストール

```sh
sudo av install brew:talisman
```

追加のインストールコマンド:

### macOS

- Homebrew (100%):

```sh
brew install talisman
```

  証拠: local Homebrew formula metadata

- MacPorts (94%):

```sh
sudo port install talisman
```

  証拠: MacPorts ports tree: devel/talisman/Portfile from https://api.github.com/repos/macports/macports-ports/git/trees/master?recursive=1

### Windows

- winget (92%):

```sh
winget install --id Thoughtworks.Talisman -e
```

  証拠: Windows Package Manager source index: Thoughtworks.Talisman from https://cdn.winget.microsoft.com/cache/source.msix

## パッケージ情報

- **パッケージキー:** brew:talisman
- **パッケージマネージャ:** Homebrew
- **バージョン:** 1.37.0
- **ソース概要:** Tool to detect and prevent secrets from getting checked in
- **ホームページ:** <https://thoughtworks.github.io/talisman/>
- **リポジトリ:** <https://github.com/thoughtworks/talisman>
- **最終更新:** 2026-07-26T00:50:32+02:00
- **生成日時:** 2026-08-03T19:37:03+00:00

## 実行可能ファイル

- talisman (エイリアス)

## インストール挙動

- Bottle: 利用不可

## バージョンと鮮度

- ページ生成日: 2026-08-03
- マネージャ版: 1.37.0
## プロジェクトの歴史と使われ方

Talisman is a Thoughtworks-maintained secret-scanning CLI and Git-hook tool. It became package-manager relevant because it packages a common DevSecOps guardrail as a local binary that can run before code leaves a developer workstation.

### プロジェクトの歴史

The official repository was initialized on 2015-12-14 and the first observed release tag, v0.1.0, is dated 2016-04-19. Its README defines the project as a tool that scans Git changesets so likely secrets or sensitive information do not leave the developer's workstation.

### 採用の歴史

Talisman is distributed as a standalone executable, as a repository Git hook, and as a global Git hook template. The official README documents Homebrew installation, release-page binaries, an install script, pre-commit integration, and Husky integration, which placed it in the same day-to-day tooling layer as linters and formatters.

### 使われ方

The standard usage is to install the `talisman` binary and invoke it from pre-commit or pre-push hooks. It checks outgoing changesets for patterns such as SSH keys, authorization tokens, and private keys; it can also run directly as a CLI utility for Git repository scanning.

### パッケージ好きにとっての重要性

Package nerds care about Talisman because it is a classic local-policy binary: small enough to install with Homebrew, easy to pin in hook frameworks, and useful before centralized secret-scanning infrastructure ever sees a commit. Its documented auto-update behavior from v0.4.4 also reflects the tension between reproducible pinned tooling and security tools that want to stay current.

### タイムライン

- 2015-12-14: First commits in the official Git repository.
- 2016-04-19: First observed release tag, v0.1.0.
- 2018-10-08: v0.3.1 appears in the tag history before the README-documented v0.4.4 auto-update behavior.
- 2025-05-02: v1.37.0 appears as the latest observed tag and Homebrew stable version.

### Related projects

- Talisman is commonly used with Git hooks, pre-commit, and Husky. In package-manager culture it sits beside tools such as git-secrets and detect-secrets, though this record relies only on the official Talisman sources for claims.

### ソース

- <https://formulae.brew.sh/api/formula/talisman.json>
- <https://github.com/thoughtworks/talisman README>
- <https://github.com/thoughtworks/talisman official Git history and tags>


## セキュリティノート

narrow executable package without higher-risk signals.

- **Geiger リスク:** グリーン / 低
- narrow executable package without higher-risk signals


## Configuration and credential file locations

These source-backed paths show where this package keeps local settings or durable credentials. Automic Vault can use them as review targets for secret scanning, migration, and command approval.


## Configuration files

- Unix: .talismanrc
## 他のパッケージマネージャ記録

- MacPorts - talisman: normalized package name match | MacPorts ports tree: devel/talisman/Portfile from https://api.github.com/repos/macports/macports-ports/git/trees/master?recursive=1
- winget - Thoughtworks.Talisman: normalized package name match | Windows Package Manager source index: Thoughtworks.Talisman from https://cdn.winget.microsoft.com/cache/source.msix


## Combined YAML source

View the package source record on GitHub. [combined/talisman.yml](https://github.com/mxcl/pkgdb/blob/main/combined/talisman.yml)


## ソース

- pkg.so package database
- Geiger risk classifier
- curated configuration and credential file locations
- curated package history
- pkgdb category and tag curation
- external package-manager database matches
- cross-ecosystem install command graph
