pkg.soopen package index

brew / rank 6230

Install pwned with Homebrew

CLI for the 'Have I been pwned?' service. Version 13.1.2 via Homebrew; verified from local package data.

install

Additional install commands

macOS

Homebrewverified · 100%
brew install pwned

local Homebrew formula metadata

overview

Package summary

CLI for the 'Have I been pwned?' service

Commands and aliases

  • pwned

history

Project history and usage

pwned is a command-line client for querying Have I Been Pwned data about breaches, exposed accounts, pastes, passwords, domains, and subscription status.

Project history

William Kovacs created pwned as a Node.js command-line client for Troy Hunt's Have I Been Pwned service. When parts of the service API moved behind authentication in 2019, pwned added an API-key configuration workflow for protected commands.

Adoption history

The CLI is available through npm, npx, and Homebrew. It provides terminal-oriented access to Have I Been Pwned for users who prefer scripts and command pipelines over the service's website.

How it is used

Users run subcommands to list or inspect breaches, search accounts, check passwords through the service's protected password-checking mechanism, and query domain or subscription data. Protected operations require an API key configured with `pwned apiKey`; other commands remain unauthenticated.

Why package nerds care

pwned is an example of a small ecosystem wrapper whose behavior follows an external service API: packaging remains simple, while authentication and available commands change as the upstream API evolves.

Timeline

  • 2019: Have I Been Pwned moved several API operations behind authentication, and pwned documented API-key setup for affected commands.

Related projects

  • pwned uses the Node.js `hibp` module and queries the Have I Been Pwned service.

Sources

  • Official project documentation: https://wkovacs64.github.io/pwned
  • Official repository: https://github.com/wKovacs64/pwned

security posture

Risk level: green

narrow executable package without higher-risk signals.

Risk classifier

green risk · low confidence · appliance

Why

  • narrow executable package without higher-risk signals

Signals

  • metadata:no-higher-risk-signals

Install behavior

  • No Homebrew post-install hook is recorded in formula metadata.
  • Homebrew bottle metadata is available for 1 platform targets.
  • Installs with 1 runtime dependencies.

Recommended review

Before unattended agent use, check whether the tool reads plaintext credentials, writes remote state, publishes artifacts, or shells out to plugins.

executables

Installed executables

CommandKindExposureNote
pwnedcliglobal executable

freshness

Version and freshness

These signals separate page generation age, package-manager activity, and upstream release comparison. Version lag is warned only when an evidence URL and comparable versions are present.

page generated2026-09-19
manager version13.1.2
manager updated
local dataok
upstreamnot checked
latest detectednot detected

https://github.com/wKovacs64/pwned

  • infoNo package-manager update timestamp was available.low confidence
  • infoNo cached GitHub release or tag data was available.https://github.com/wKovacs64/pwnednone confidence

install metadata

Package metadata

Package keybrew:pwned
Version13.1.2
Package managerHomebrew
Package manager pagehttps://formulae.brew.sh/formula/pwned
Homepagehttps://github.com/wKovacs64/pwned
Repositoryhttps://github.com/wKovacs64/pwned
LicenseMIT
Source archivehttps://registry.npmjs.org/pwned/-/pwned-13.1.2.tgz
Dependenciesnode
Bottleavailable (on all)
Homebrew post-installnot defined
Servicenone declared

registry facts

Source database details

Source DatabaseHomebrew formula API
Taphomebrew/core
Full Namepwned
Version Scheme0
Revision0
Conflicts With
  • bash-snippets
Bottle Stable Root URLhttps://ghcr.io/v2/homebrew/core
Deprecatedno
Disabledno
Keg Onlyno
URL Keys
  • stable

source trail

Generated from repository data

This page is generated by av-web from the private package SQLite artifact built by scripts/generate-pkg-sqlite.py.

Used sources

  • Geiger risk classifier
  • cross-ecosystem install command graph
  • curated package history
  • package relationship graph
  • package version freshness
  • package-page enrichment
  • pkg.so package database
  • pkgdb category and tag curation