pkg.soopen package index

brew / rank 7520

Install scilla with Homebrew, Nix

DNS, subdomain, port, directory enumeration tool. Version 1.3.4 via Homebrew; verified 2026-09-13. Also installable with nix: nix profile install nixpkgs#scilla.

install

Additional install commands

macOS

Homebrewverified · 100%
brew install scilla

local Homebrew formula metadata

Linux

Nixverified · 92%
nix profile install nixpkgs#scilla

nixpkgs package indexes · pkgs/by-name/sc/scilla/package.nix · source: api.github.com

overview

Package summary

DNS, subdomain, port, directory enumeration tool

Commands and aliases

  • scilla

history

Project history and usage

Scilla is a Go command-line reconnaissance and information-gathering utility for DNS, subdomain, port, and web-directory enumeration.

Project history

Scilla was created by edoardottt as an information-gathering tool covering DNS records, subdomains, ports, directories, and combined reports. It is implemented in Go and released under GPL-3.0-or-later.

The project expanded its enumeration modes with web crawling, public subdomain databases, VirusTotal and BuiltWith integrations, custom DNS resolvers, liveness checks, configurable wordlists, and several report formats.

Adoption history

Scilla is distributed through Homebrew and Nix in the supplied package metadata. The official README also documents Snap installation and Go's native go install workflow, giving it both conventional system-package and Go-toolchain distribution paths.

Its repository has accumulated an extended release history and community contributions around a focused, single-binary reconnaissance workflow.

How it is used

Users select dns, port, subdomain, dir, or report subcommands and supply a target. Wordlists, ignored status codes, output formats, port ranges, crawlers, public databases, custom user agents, resolvers, and liveness checks refine scans.

Optional API keys are stored in ~/.config/scilla/keys.yaml on Linux. The Windows instructions say to create keys.yaml but do not specify an absolute directory. Scanning should only be performed against systems the user is authorized to assess.

Why package nerds care

Scilla packages several common reconnaissance primitives into one Go CLI and supports structured JSON, HTML, and text output. For package users, it offers a compact alternative to assembling separate DNS, content-discovery, subdomain, and port-scanning utilities.

Timeline

  • Initial development: Scilla began as an information-gathering CLI by edoardottt.
  • Later development: Combined reporting, external subdomain sources, crawling, liveness tests, and multiple output formats were added.
  • Current releases: Detailed changes are maintained in the official GitHub release notes.

Related projects

  • VirusTotal and BuiltWith: Optional external sources for subdomain discovery.
  • Go: The implementation language and an official installation route.
  • Snap, Homebrew, and Nix: Package distribution channels documented by official or supplied metadata.

security posture

Risk level: green

narrow executable package without higher-risk signals.

Risk classifier

green risk · low confidence · appliance

Why

  • narrow executable package without higher-risk signals

Signals

  • metadata:no-higher-risk-signals

Install behavior

  • No Homebrew post-install hook is recorded in formula metadata.
  • Homebrew bottle metadata is available for 6 platform targets.
  • Build metadata lists 1 build dependencies.

Recommended review

Before unattended agent use, check whether the tool reads plaintext credentials, writes remote state, publishes artifacts, or shells out to plugins.

local files

Configuration and credential file locations

These source-backed paths show where this package keeps local settings or durable credentials. Automic Vault can use them as review targets for secret scanning, migration, and command approval.

Configuration files

Config paths the tool may read or write during local use.

Linux
~/.config/scilla/keys.yaml
Windows
keys.yaml

Credential files

Credential-bearing paths to review before unattended agent runs.

Linux
~/.config/scilla/keys.yaml
Windows
keys.yaml

executables

Installed executables

CommandKindExposureNote
scillacliglobal executable

freshness

Version and freshness

These signals separate page generation age, package-manager activity, and upstream release comparison. Version lag is warned only when an evidence URL and comparable versions are present.

page generated2026-09-19
manager version1.3.4
manager updated2026-09-13
local dataok
upstreamcurrent
latest detectedv1.3.3

https://github.com/edoardottt/scilla

  • okNo freshness warnings were generated.

install metadata

Package metadata

Package keybrew:scilla
Version1.3.4
Package managerHomebrew
Package manager pagehttps://formulae.brew.sh/formula/scilla
Homepagehttps://edoardottt.com/
Repositoryhttps://github.com/edoardottt/scilla
Upstream docshttps://edoardottt.com/
LicenseGPL-3.0-or-later
Source archivehttps://github.com/edoardottt/scilla/archive/refs/tags/v1.3.3.tar.gz
Last updated2026-09-13T13:54:03Z
Pulseupdated
Build dependenciesgo
Bottleavailable (on arm64_linux, arm64_sequoia, arm64_sonoma, arm64_tahoe, sonoma, x86_64_linux)
Homebrew post-installnot defined
Servicenone declared

registry facts

Source database details

Source DatabaseHomebrew formula API
Taphomebrew/core
Full Namescilla
Version Scheme0
Revision0
Head VersionHEAD
Bottle Stable Root URLhttps://ghcr.io/v2/homebrew/core
Deprecatedno
Disabledno
Keg Onlyno
URL Keys
  • head
  • stable

source database matches

Other package-manager records

Matches are pulled from external package-manager indexes and kept separate from local Automic Vault package links.

Nix95%

scilla

nix profile install nixpkgs#scilla
  • normalized package name match
  • Matched by: Scilla
nixpkgs package indexes · api.github.com · nixpkgs package indexes: pkgs/by-name/sc/scilla/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1

source trail

Generated from repository data

This page is generated by av-web from the private package SQLite artifact built by scripts/generate-pkg-sqlite.py.

Used sources

  • Geiger risk classifier
  • cross-ecosystem install command graph
  • curated configuration and credential file locations
  • curated package history
  • external package-manager database matches
  • package relationship graph
  • package version freshness
  • package-page enrichment
  • pkg.so package database
  • pkgdb category and tag curation