pkg.soopen package index

brew / rank 4901

Install peru with Homebrew, Nix

Dependency retriever for version control and archives. Version 1.3.5 via Homebrew; verified 2026-09-13. Also installable with nix: nix profile install nixpkgs#peru.

install

Additional install commands

macOS

Homebrewverified · 100%
brew install peru

local Homebrew formula metadata

Linux

Nixverified · 92%
nix profile install nixpkgs#peru

nixpkgs package indexes · pkgs/by-name/pe/peru/package.nix · source: api.github.com

overview

Package summary

Dependency retriever for version control and archives

Commands and aliases

  • peru

history

Project history and usage

peru is a cross-platform dependency retriever that vendors selected upstream code into a project while recording exact revisions or archive hashes for reproducible builds.

Project history

peru was created as a generic tool for incorporating other projects' code into a source tree. Its name and emphasis on reproducible builds were inspired by Amazon's Brazil build system; the name is also an anagram of “reup,” its dependency-update command.

Adoption history

The project is distributed through pip and operating-system package managers including Homebrew and the Arch User Repository, extending it beyond Python-only installation workflows.

How it is used

Users declare modules and import destinations in peru.yaml, run `peru sync` to materialize them, and run `peru reup` to update pinned revisions or hashes. The generated .peru state directory is normally excluded from version control, while peru.yaml is committed.

Why package nerds care

peru occupies the niche between copying vendored code and using source-control submodules. Its appeal is reproducible, script-friendly retrieval from Git, Mercurial, Subversion, and archives without installing dependencies globally.

Timeline

  • Early project design: Adopted the peru.yaml manifest and sync/reup workflow for reproducible vendoring.
  • Package-manager adoption: Became available through pip, Homebrew, and the Arch User Repository.

Related projects

  • The official documentation compares its role with Git submodules and notes inspiration from Amazon's Brazil build system.

Sources

  • Official README: https://github.com/buildinspace/peru#readme
  • Official documentation: https://github.com/buildinspace/peru/tree/master/docs

security posture

Risk level: blue

broad file, network, media, or database tool signal.

Risk classifier

blue risk · medium confidence · tool

Why

  • broad file, network, media, or database tool signal

Signals

  • text:archive,version control

Install behavior

  • No Homebrew post-install hook is recorded in formula metadata.
  • Homebrew bottle metadata is available for 6 platform targets.
  • Installs with 2 runtime dependencies.

Recommended review

Before unattended agent use, check whether the tool reads plaintext credentials, writes remote state, publishes artifacts, or shells out to plugins.

local files

Configuration and credential file locations

These source-backed paths show where this package keeps local settings or durable credentials. Automic Vault can use them as review targets for secret scanning, migration, and command approval.

Configuration files

Config paths the tool may read or write during local use.

Unix
peru.yaml

executables

Installed executables

CommandKindExposureNote
perucliglobal executable

freshness

Version and freshness

These signals separate page generation age, package-manager activity, and upstream release comparison. Version lag is warned only when an evidence URL and comparable versions are present.

page generated2026-09-19
manager version1.3.5
manager updated2026-09-13
local dataok
upstreamnot checked
latest detectednot detected

https://github.com/buildinspace/peru

install metadata

Package metadata

Package keybrew:peru
Version1.3.5
Package managerHomebrew
Package manager pagehttps://formulae.brew.sh/formula/peru
Homepagehttps://github.com/buildinspace/peru
Repositoryhttps://github.com/buildinspace/peru
LicenseMIT
Source archivehttps://files.pythonhosted.org/packages/46/93/97b31e2052b4308cbc413d85b6b6b08a3beeeac81996b070723418a0c24e/peru-1.3.5.tar.gz
Last updated2026-09-13T11:14:48Z
Pulseupdated
Dependencieslibyaml, python@3.14
Bottleavailable (on arm64_linux, arm64_sequoia, arm64_sonoma, arm64_tahoe, sonoma, x86_64_linux)
Homebrew post-installnot defined
Servicenone declared

registry facts

Source database details

Source DatabaseHomebrew formula API
Taphomebrew/core
Full Nameperu
Version Scheme0
Revision0
Head VersionHEAD
Bottle Stable Root URLhttps://ghcr.io/v2/homebrew/core
Deprecatedno
Disabledno
Keg Onlyno
URL Keys
  • head
  • stable

source database matches

Other package-manager records

Matches are pulled from external package-manager indexes and kept separate from local Automic Vault package links.

Nix95%

peru

nix profile install nixpkgs#peru
  • normalized package name match
  • Matched by: Peru
nixpkgs package indexes · api.github.com · nixpkgs package indexes: pkgs/by-name/pe/peru/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1

source trail

Generated from repository data

This page is generated by av-web from the private package SQLite artifact built by scripts/generate-pkg-sqlite.py.

Used sources

  • Geiger risk classifier
  • cross-ecosystem install command graph
  • curated configuration and credential file locations
  • curated package history
  • external package-manager database matches
  • package relationship graph
  • package version freshness
  • package-page enrichment
  • pkg.so package database
  • pkgdb category and tag curation