pkg.soopen package index

brew / 順位 3112

zx を Homebrew, apt, Nix でインストール

zx のインストール経路、実行ファイル、メタデータ、AI エージェント向けセキュリティノートを確認します。

インストール

追加のインストールコマンド

macOS

Homebrew確認済み · 100%
brew install zx

local Homebrew formula metadata

Linux

Debian apt確認済み · 92%
sudo apt install zx

Debian stable package indexes · zx · ソース: deb.debian.org

Nix確認済み · 92%
nix profile install nixpkgs#zx

nixpkgs package indexes · pkgs/by-name/zx/zx/package.nix · ソース: api.github.com

概要

パッケージ概要

Tool for writing better scripts

コマンドとエイリアス

  • zx

履歴

プロジェクトの歴史と使われ方

zx is Google's JavaScript shell-scripting tool, created to make operational scripts feel like shell while giving authors modern JavaScript, promises, package imports, and safer command interpolation.

プロジェクトの歴史

The google/zx repository began in May 2021, with Anton Medvedev listed as package author. Its core idea is the `$` tagged template: commands look shell-like, but arguments are escaped and execution is wrapped in a ProcessPromise API rather than raw child_process boilerplate.

The project evolved from a Node-oriented helper into a broader runtime tool. The README now documents Linux, macOS, and Windows support plus Node, Bun, Deno, and GraalVM compatibility; later documentation added TypeScript, markdown scripts, remote scripts, dependency auto-installation, and a lighter zx@lite entry point.

採用の歴史

zx spread quickly because it hit a common pain point for JavaScript-heavy teams: build, release, migration, and glue scripts often outgrow bash, but plain Node scripts are verbose for process execution. Its GitHub repository has tens of thousands of stars, and the package became recognizable enough to be installed both from JavaScript tooling and system package managers.

The adoption pattern is strongest around project-local automation rather than end-user CLI apps. Teams use zx when they want scripts to live beside package.json, call existing Unix tools, await concurrent commands, and reuse npm libraries without switching to a task runner framework.

使われ方

A zx script is commonly run with `zx script.mjs`, `npx zx`, a shebang using `/usr/bin/env zx`, or a package.json script. The CLI can execute ordinary files, extensionless scripts, markdown code blocks, stdin, eval snippets, and remote URLs, while flags control shell choice, verbosity, local dependency preference, and on-demand package installation.

In practice zx is used for release scripts, deployment wrappers, repository maintenance, monorepo chores, code-generation glue, CI helpers, and one-off administrative scripts where the author wants shell commands plus JavaScript data handling.

パッケージ好きにとっての重要性

zx is package-nerd significant because it blurred the line between a language package and a system scripting tool. It made `npm install zx` feel like installing a better shell harness, and it became a reference point for the idea that developer automation can be distributed as a normal package while still acting like a Unix command.

タイムライン

  • 2021-05: google/zx public git history starts.
  • 2021-05: Early 1.x releases establish the `$` template shell API.
  • 2022-03: 6.0.0 release era adds broader CLI packaging and workflow polish.
  • 2024-04: 8.0.0 release era continues the modern runtime and TypeScript-focused evolution.
  • 2025-10: GitHub lists 8.8.5 as a recent release, with ongoing maintenance.

Related projects

  • Node.js child_process: the standard library surface zx wraps for scripts.
  • Bash and PowerShell: the shells zx invokes rather than fully replacing.
  • Bun and Deno: alternative JavaScript runtimes supported by current zx documentation.

セキュリティ状態

リスクレベル: グリーン

narrow executable package without higher-risk signals.

リスク分類器

リスク グリーン · 信頼度 低 · appliance

理由

  • narrow executable package without higher-risk signals

信号

  • metadata:no-higher-risk-signals

インストール挙動

  • Homebrew bottle メタデータは記録されていません。

推奨レビュー

エージェントに無人実行させる前に、このツールが平文の認証情報を読むか、リモート状態を書き込むか、成果物を公開するか、プラグインを起動するかを確認してください。

実行可能ファイル

インストールされる実行可能ファイル

コマンド種類公開範囲メモ
zx実行可能ファイルインデックス済み実行可能ファイルローカル実行可能ファイルインデックスから検出されました。

鮮度

バージョンと鮮度

これらの信号は、ページ生成時期、パッケージマネージャの活動、上流リリース比較を分けて示します。バージョン遅れは、証拠 URL と比較可能なバージョンがある場合だけ警告されます。

ページ生成日2026-08-03
マネージャ版8.8.5
マネージャ更新日
ローカルデータ不明
上流利用不可
検出された最新未検出
  • OK鮮度警告は生成されていません。

インストールメタデータ

パッケージメタデータ

パッケージキーbrew:zx
バージョン8.8.5
パッケージマネージャHomebrew
ホームページhttps://google.github.io/zx/
Bottle未記録
サービス宣言なし

ソースデータベース一致

他のパッケージマネージャ記録

一致は外部パッケージマネージャインデックスから取得され、ローカルの Automic Vault パッケージリンクとは分けて表示されます。

Debian apt95%

zx 7.1.1+~cs6.7.23-3

tool to launch modern Javascript scripts

https://github.com/google/zx#readme

sudo apt install zx
  • Section: javascript
  • Architecture: all
  • Source Package: node-zx
  • 11 依存関係
  • 8 提供
  • 1 任意依存関係
  • normalized package name match
  • 一致条件: Zx
Debian stable package indexes · deb.debian.org · Debian stable package indexes: zx from https://deb.debian.org/debian/dists/stable/main/binary-amd64/Packages.xz
Nix95%

zx

nix profile install nixpkgs#zx
  • normalized package name match
  • 一致条件: Zx
nixpkgs package indexes · api.github.com · nixpkgs package indexes: pkgs/by-name/zx/zx/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1
Ubuntu apt95%

zx 7.1.1+~cs6.7.23-3

tool to launch modern Javascript scripts

https://github.com/google/zx#readme

sudo apt install zx
  • Section: universe/javascript
  • Architecture: all
  • Source Package: node-zx
  • 11 依存関係
  • 8 提供
  • 1 任意依存関係
  • normalized package name match
  • 一致条件: Zx
Ubuntu 24.04 LTS package indexes · archive.ubuntu.com · Ubuntu 24.04 LTS package indexes: zx from https://archive.ubuntu.com/ubuntu/dists/noble/universe/binary-amd64/Packages.gz

ソース経路

リポジトリデータから生成

このページは scripts/generate-pkg-sqlite.py が生成した非公開のパッケージ SQLite アーティファクトから av-web によって提供されます。

Combined YAML source

View the package source record on GitHub.

combined/zx.yml

使用ソース

  • Geiger risk classifier
  • cross-ecosystem install command graph
  • curated package history
  • external package-manager database matches
  • pkg.so package database
  • pkgdb category and tag curation