# Install secretspec with Homebrew, Nix

Declarative secrets management tool. Version 0.17.1 via Homebrew; verified 2026-08-01. Also installable with nix: nix profile install nixpkgs#secretspec.

## Install

```sh
sudo av install brew:secretspec
```

Additional install commands:

### macOS

- Homebrew (100%):

```sh
brew install secretspec
```

  Evidence: local Homebrew formula metadata

### Linux

- Nix (92%):

```sh
nix profile install nixpkgs#secretspec
```

  Evidence: nixpkgs package indexes: pkgs/by-name/se/secretspec/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1

## Package facts

- **Package key:** brew:secretspec
- **Package manager:** Homebrew
- **Version:** 0.17.1
- **Source summary:** Declarative secrets management tool
- **Homepage:** <https://secretspec.dev>
- **Repository:** <https://github.com/cachix/secretspec>
- **Last updated:** 2026-08-01T18:58:12Z
- **Generated:** 2026-08-03T19:37:03+00:00

## Executables

- secretspec (alias)

## Install behavior

- Bottle: not available

## Freshness

- Page generated: 2026-08-03
- Package-manager version: 0.17.1

## Security Notes

No matching local secret-handling manifest was found for secretspec. Nucleus package metadata is still published here so future coverage has a stable package URL.



## Configuration and credential file locations

These source-backed paths show where this package keeps local settings or durable credentials. Automic Vault can use them as review targets for secret scanning, migration, and command approval.


## Configuration files

- Unix: secretspec.toml, ~/.config/secretspec/config.toml
## Other Package-Manager Records

- Nix - secretspec: normalized package name match | nixpkgs package indexes: pkgs/by-name/se/secretspec/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1


## Combined YAML source

View the package source record on GitHub. [combined/secretspec.yml](https://github.com/mxcl/pkgdb/blob/main/combined/secretspec.yml)


## Sources

- pkg.so package database
- Geiger risk classifier
- curated configuration and credential file locations
- pkgdb category and tag curation
- external package-manager database matches
- cross-ecosystem install command graph
