# Install gnupg-pkcs11-scd with Homebrew, apt, dnf, MacPorts, Nix

Enable the use of PKCS#11 tokens with GnuPG. Version 0.11.0 via Homebrew; verified from local package data. Also installable with debian: sudo apt install gnupg-pkcs11-scd.

## Install

```sh
sudo av install brew:gnupg-pkcs11-scd
```

Additional install commands:

### macOS

- Homebrew (100%):

```sh
brew install gnupg-pkcs11-scd
```

  Evidence: local Homebrew formula metadata

- MacPorts (94%):

```sh
sudo port install gnupg-pkcs11-scd
```

  Evidence: MacPorts ports tree: security/gnupg-pkcs11-scd/Portfile from https://api.github.com/repos/macports/macports-ports/git/trees/master?recursive=1

### Linux

- Debian apt (92%):

```sh
sudo apt install gnupg-pkcs11-scd
```

  Evidence: Debian stable package indexes: gnupg-pkcs11-scd from https://deb.debian.org/debian/dists/stable/main/binary-amd64/Packages.xz

- dnf (92%):

```sh
sudo dnf install gnupg-pkcs11-scd
```

  Evidence: Fedora Rawhide package metadata: gnupg-pkcs11-scd from https://dl.fedoraproject.org/pub/fedora/linux/development/rawhide/Everything/x86_64/os/repodata/07190dc5ae9f35ae73866675fed6d95fe6e8d9fe22c9d7cdf85862cb2ed24a4c-primary.xml.zst

- Nix (92%):

```sh
nix profile install nixpkgs#gnupg-pkcs11-scd
```

  Evidence: nixpkgs package indexes: pkgs/by-name/gn/gnupg-pkcs11-scd/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1

## Package facts

- **Package key:** brew:gnupg-pkcs11-scd
- **Package manager:** Homebrew
- **Version:** 0.11.0
- **Source summary:** Enable the use of PKCS#11 tokens with GnuPG
- **Homepage:** <https://gnupg-pkcs11.sourceforge.net/>
- **Repository:** <https://github.com/alonbl/gnupg-pkcs11-scd>
- **Generated:** 2026-08-03T19:37:03+00:00

## Executables

- gnupg-pkcs11-scd (alias)

## Install behavior

- Bottle: not available

## Freshness

- Page generated: 2026-08-03
- Package-manager version: 0.11.0
## Project history and usage

gnupg-pkcs11-scd is a small GnuPG smart-card daemon replacement that lets GnuPG talk to cryptographic tokens through PKCS#11.

### Project history

The project page describes gnupg-pkcs11 as an implementation of a BSD-licensed smart-card daemon for using PKCS#11 tokens with GnuPG. Its motivation came from GnuPG mailing-list discussions in 2004 and 2006 about PKCS#11 support and an unmaintained patch.

The README credits Zeljko Vrba and Alon Bar-Lev, with copyright years beginning in 2006. The SourceForge project page shows release activity for the 0.7, 0.8 and 0.9 series during 2017.

### Adoption history

Adoption is specialized: the tool serves users who already manage keys in PKCS#11-compatible hardware tokens or smart cards and want those keys available to GnuPG through the scdaemon interface.

### How it is used

Practitioners use it as a drop-in or near-drop-in scdaemon replacement for GnuPG, typically in setups involving OpenSC, vendor PKCS#11 modules, smart cards, hardware tokens or enterprise certificate devices.

### Why package nerds care

The package matters in packaging ecosystems because it fills a narrow interoperability gap: GnuPG's OpenPGP tooling on one side, PKCS#11 token middleware on the other. That makes it useful for people who need hardware-backed signing or decryption without migrating keys into GnuPG's native smart-card path.

### Timeline

- 2004: GnuPG mailing-list discussions raised PKCS#11 smart-card integration questions.
- 2006: Project copyright history began for the daemon implementation.
- 2017: The project page announced 0.7.6, 0.8.0 and 0.9.0 releases.

### Related projects

- gnupg-pkcs11-scd sits between GnuPG, scdaemon, PKCS#11 providers and token stacks such as OpenSC or vendor-supplied modules.

### Sources

- <https://github.com/alonbl/gnupg-pkcs11-scd/blob/master/README>
- <https://gnupg-pkcs11.sourceforge.net/>
- <https://www.gnupg.org/>


## Security Notes

narrow executable package without higher-risk signals.

- **Geiger risk:** green / low
- narrow executable package without higher-risk signals

## Other Package-Manager Records

- Debian apt - gnupg-pkcs11-scd - 0.10.0-5+b1: normalized package name match | Debian stable package indexes: gnupg-pkcs11-scd from https://deb.debian.org/debian/dists/stable/main/binary-amd64/Packages.xz | GnuPG smart-card daemon with PKCS#11 support | http://gnupg-pkcs11.sourceforge.net/
- Debian apt - gnupg-pkcs11-scd-proxy - 0.10.0-5+b1: normalized package name match | Debian stable package indexes: gnupg-pkcs11-scd-proxy from https://deb.debian.org/debian/dists/stable/main/binary-amd64/Packages.xz | GnuPG smart-card daemon with PKCS#11 support, proxy | http://gnupg-pkcs11.sourceforge.net/
- Nix - gnupg-pkcs11-scd: normalized package name match | nixpkgs package indexes: pkgs/by-name/gn/gnupg-pkcs11-scd/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1
- Ubuntu apt - gnupg-pkcs11-scd - 0.10.0-3build2: normalized package name match | Ubuntu 24.04 LTS package indexes: gnupg-pkcs11-scd from https://archive.ubuntu.com/ubuntu/dists/noble/universe/binary-amd64/Packages.gz | GnuPG smart-card daemon with PKCS#11 support | http://gnupg-pkcs11.sourceforge.net/
- Ubuntu apt - gnupg-pkcs11-scd-proxy - 0.10.0-3build2: normalized package name match | Ubuntu 24.04 LTS package indexes: gnupg-pkcs11-scd-proxy from https://archive.ubuntu.com/ubuntu/dists/noble/universe/binary-amd64/Packages.gz | GnuPG smart-card daemon with PKCS#11 support, proxy | http://gnupg-pkcs11.sourceforge.net/
- dnf - gnupg-pkcs11-scd - 0.11.0-7.fc45: normalized package name match | Fedora Rawhide package metadata: gnupg-pkcs11-scd from https://dl.fedoraproject.org/pub/fedora/linux/development/rawhide/Everything/x86_64/os/repodata/07190dc5ae9f35ae73866675fed6d95fe6e8d9fe22c9d7cdf85862cb2ed24a4c-primary.xml.zst | GnuPG-compatible smart-card daemon with PKCS#11 support | http://gnupg-pkcs11.sourceforge.net
- MacPorts - gnupg-pkcs11-scd: normalized package name match | MacPorts ports tree: security/gnupg-pkcs11-scd/Portfile from https://api.github.com/repos/macports/macports-ports/git/trees/master?recursive=1


## Combined YAML source

View the package source record on GitHub. [combined/gnupg-pkcs11-scd.yml](https://github.com/mxcl/pkgdb/blob/main/combined/gnupg-pkcs11-scd.yml)


## Sources

- pkg.so package database
- Geiger risk classifier
- curated package history
- pkgdb category and tag curation
- external package-manager database matches
- cross-ecosystem install command graph
