macOS
brew install qlocal Homebrew formula metadata
sudo port install qMacPorts ports tree · lang/q/Portfile · source: api.github.com
brew / rank 3410
Tiny command-line DNS client with support for UDP, TCP, DoT, DoH, DoQ and ODoH. Version 0.19.12 via Homebrew; verified 2026-09-13. Also installable with nix: nix profile install nixpkgs#q.
install
brew install qlocal Homebrew formula metadata
sudo port install qMacPorts ports tree · lang/q/Portfile · source: api.github.com
nix profile install nixpkgs#qnixpkgs package indexes · pkgs/by-name/q/q/package.nix · source: api.github.com
scoop install main/qScoop official bucket manifest trees · bucket/q.json · source: api.github.com
winget install --id natesales.q -eWindows Package Manager source index · natesales.q · source: cdn.winget.microsoft.com
overview
Tiny command-line DNS client with support for UDP, TCP, DoT, DoH, DoQ and ODoH
history
q is a compact Go command-line DNS client supporting conventional DNS and multiple encrypted DNS transports.
Nate Sales developed q as a small but feature-rich alternative to traditional DNS query clients. The program grew beyond UDP and TCP DNS to support DNS over TLS, HTTPS, QUIC, Oblivious HTTPS, and DNSCrypt.
The interface retains familiar DNS-client conventions, including `@server` selection and `+[no]flag` toggles, while adding JSON and YAML output, DNS Stamps, recursive AXFR, and IP registry enrichment.
q is distributed through Homebrew, MacPorts, Nix, Scoop, WinGet, the Arch User Repository, GitHub releases, Go installation, containers, and maintainer-operated apt/yum repositories. This gives the single-binary client unusually broad availability across desktop and Unix-like package ecosystems.
Users query default or explicit DNS record types, select a resolver with an `@server` argument, perform reverse lookups, request DNSSEC data, and choose pretty, raw, JSON, or YAML output.
q selects a server from an explicit argument, then `Q_DEFAULT_SERVER`, then `/etc/resolv.conf`. Its `+[no]flag` convention and raw output ease transitions from `dig`, while encrypted transports support modern resolver testing.
q belongs to a newer generation of DNS inspection tools that preserve familiar `dig`-style concepts while treating encrypted transports and machine-readable output as first-class features. Its compact Go distribution and wide package availability make it convenient for shell diagnostics and protocol testing.
security posture
broad file, network, media, or database tool signal.
blue risk · medium confidence · tool
Before unattended agent use, check whether the tool reads plaintext credentials, writes remote state, publishes artifacts, or shells out to plugins.
local files
These source-backed paths show where this package keeps local settings or durable credentials. Automic Vault can use them as review targets for secret scanning, migration, and command approval.
Config paths the tool may read or write during local use.
/etc/resolv.confexecutables
| Command | Kind | Exposure | Note |
|---|---|---|---|
q | cli | global executable |
freshness
These signals separate page generation age, package-manager activity, and upstream release comparison. Version lag is warned only when an evidence URL and comparable versions are present.
https://github.com/natesales/q
install metadata
| Package key | brew:q |
|---|---|
| Version | 0.19.12 |
| Package manager | Homebrew |
| Package manager page | https://formulae.brew.sh/formula/q |
| Homepage | https://github.com/natesales/q |
| Repository | https://github.com/natesales/q |
| License | GPL-3.0-only |
| Source archive | https://github.com/natesales/q/archive/refs/tags/v0.19.12.tar.gz |
| Last updated | 2026-09-13T19:55:37Z |
| Pulse | updated |
| Build dependencies | go |
| Bottle | available (on arm64_linux, arm64_sequoia, arm64_sonoma, arm64_tahoe, sonoma, x86_64_linux) |
| Homebrew post-install | not defined |
| Service | none declared |
registry facts
| Source Database | Homebrew formula API |
|---|---|
| Tap | homebrew/core |
| Full Name | q |
| Version Scheme | 0 |
| Revision | 0 |
| Bottle Stable Root URL | https://ghcr.io/v2/homebrew/core |
| Deprecated | no |
| Disabled | no |
| Keg Only | no |
| URL Keys |
|
source database matches
Matches are pulled from external package-manager indexes and kept separate from local Automic Vault package links.
q
nix profile install nixpkgs#qq
sudo port install qmain/q
scoop install main/qnatesales.q
winget install --id natesales.q -esource trail
This page is generated by av-web from the private package SQLite artifact built by scripts/generate-pkg-sqlite.py.
View the package source record on GitHub.