# Install ggshield with Homebrew, Nix

Scanner for secrets and sensitive data in code. Version 1.53.0 via Homebrew; verified 2026-07-30. Also installable with nix: nix profile install nixpkgs#ggshield.

## Install

```sh
sudo av install brew:ggshield
```

Additional install commands:

### macOS

- Homebrew (100%):

```sh
brew install ggshield
```

  Evidence: local Homebrew formula metadata

### Linux

- Nix (92%):

```sh
nix profile install nixpkgs#ggshield
```

  Evidence: nixpkgs package indexes: pkgs/by-name/gg/ggshield/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1

## Package facts

- **Package key:** brew:ggshield
- **Package manager:** Homebrew
- **Version:** 1.53.0
- **Source summary:** Scanner for secrets and sensitive data in code
- **Homepage:** <https://www.gitguardian.com>
- **Repository:** <https://github.com/GitGuardian/ggshield>
- **Last updated:** 2026-07-30T01:29:14Z
- **Generated:** 2026-08-03T19:37:03+00:00

## Executables

- ggshield (alias)

## Install behavior

- Bottle: not available

## Freshness

- Page generated: 2026-08-03
- Package-manager version: 1.53.0
## Project history and usage

ggshield is GitGuardian's open-source command-line scanner for detecting hardcoded secrets and sensitive data before they reach source-control history or CI artifacts.

### Project history

GitGuardian opened the ggshield repository in April 2020 and published the early 1.0.x release line soon afterward. The project is built as the local and CI-facing companion to GitGuardian's secret-detection service, using the GitGuardian public API through the py-gitguardian client.

### Adoption history

The tool gained adoption through several security workflows rather than one single editor or platform: local scans, pre-commit and pre-push hooks, CI/CD jobs, GitHub Actions, GitLab, Jenkins, Docker-image scans, package scans, and packaged distribution through PyPI, Homebrew, Chocolatey, Cloudsmith packages, and standalone installers.

### How it is used

Practitioners authenticate with `ggshield auth login` or an API key, then scan paths, repositories, staged changes, Docker images, package artifacts, or CI workspaces. Teams commonly install it as a pre-commit, pre-push, or pre-receive hook so leaked credentials are blocked before they enter shared repositories.

### Why package nerds care

For package ecosystems, ggshield is notable because it packages a SaaS-backed security control as a normal developer CLI: it can be installed by a package manager, run in a hook, and produce exit codes that fit standard CI pipelines.

### Timeline

- 2020: The GitGuardian ggshield repository was created.
- 2020: The 1.0.x release line appeared in the GitHub release feed.
- 2026: The release feed showed the 1.52 series.

### Related projects

- ggshield is closely tied to GitGuardian's public API and py-gitguardian client, and it overlaps operationally with pre-commit, CI/CD systems, and repository-hosting security workflows.

### Sources

- <https://api.github.com/repos/GitGuardian/ggshield>
- <https://api.github.com/repos/GitGuardian/ggshield/releases>
- <https://docs.gitguardian.com/ggshield-docs/getting-started>
- <https://docs.gitguardian.com/ggshield-docs/integrations/overview>
- <https://formulae.brew.sh/formula/ggshield>
- <https://github.com/GitGuardian/ggshield>
- <https://pypi.org/project/ggshield/>
- <https://raw.githubusercontent.com/GitGuardian/ggshield/main/README.md>


## Security Notes

No matching local secret-handling manifest was found for ggshield. Nucleus package metadata is still published here so future coverage has a stable package URL.



## Configuration and credential file locations

These source-backed paths show where this package keeps local settings or durable credentials. Automic Vault can use them as review targets for secret scanning, migration, and command approval.


## Configuration files

- Unix: ~/.gitguardian.yaml, ./.gitguardian.yaml
- Windows: %USERPROFILE%\.gitguardian.yaml, .\.gitguardian.yaml
## Other Package-Manager Records

- Nix - ggshield: normalized package name match | nixpkgs package indexes: pkgs/by-name/gg/ggshield/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1


## Combined YAML source

View the package source record on GitHub. [combined/ggshield.yml](https://github.com/mxcl/pkgdb/blob/main/combined/ggshield.yml)


## Sources

- pkg.so package database
- Geiger risk classifier
- curated configuration and credential file locations
- curated package history
- pkgdb category and tag curation
- external package-manager database matches
- cross-ecosystem install command graph
