# Install saf-cli with Homebrew

CLI for the MITRE Security Automation Framework (SAF). Version 1.6.0 via Homebrew; verified from local package data.

## Install

```sh
sudo av install brew:saf-cli
```

Additional install commands:

### macOS

- Homebrew (100%):

```sh
brew install saf-cli
```

  Evidence: local Homebrew formula metadata

## Package facts

- **Package key:** brew:saf-cli
- **Package manager:** Homebrew
- **Version:** 1.6.0
- **Source summary:** CLI for the MITRE Security Automation Framework (SAF)
- **Homepage:** <https://saf-cli.mitre.org>
- **Generated:** 2026-08-03T19:37:03+00:00

## Executables

- saf (alias)

## Install behavior

- Bottle: not available

## Freshness

- Page generated: 2026-08-03
- Package-manager version: 1.6.0

## Security Notes

narrow executable package without higher-risk signals.

- **Geiger risk:** green / low
- narrow executable package without higher-risk signals


## Configuration and credential file locations

These source-backed paths show where this package keeps local settings or durable credentials. Automic Vault can use them as review targets for secret scanning, migration, and command approval.


## Configuration files

- Unix: .env

## Credential files

- Unix: .env

## Combined YAML source

View the package source record on GitHub. [combined/saf-cli.yml](https://github.com/mxcl/pkgdb/blob/main/combined/saf-cli.yml)


## Sources

- pkg.so package database
- Geiger risk classifier
- curated configuration and credential file locations
- pkgdb category and tag curation
- cross-ecosystem install command graph
