pkg.soopen package index

brew / rank 10705

Install sf-pwgen with Homebrew, MacPorts

Generate passwords using SecurityFoundation framework. Version 1.5 via Homebrew; verified 2026-09-13. Also installable with macports: sudo port install sf-pwgen.

install

Additional install commands

macOS

Homebrewverified · 100%
brew install sf-pwgen

local Homebrew formula metadata

MacPortsverified · 94%
sudo port install sf-pwgen

MacPorts ports tree · security/sf-pwgen/Portfile · source: api.github.com

overview

Package summary

Generate passwords using SecurityFoundation framework

Commands and aliases

  • sf-pwgen

history

Project history and usage

sf-pwgen is a macOS command-line password generator that calls the SecurityFoundation framework used by Apple's password-assistant functionality.

Project history

Anders Bergh created sf-pwgen as a command-line frontend to macOS SecurityFoundation password generation. The repository also includes a reverse-engineered `SFPasswordAssistant.h` header for the password-assistant API used by applications such as Keychain Access.

The documented command identifies version 1.5 and supports memorable, random, letters-only, alphanumeric, and numeric generation algorithms. The README says the command runs on OS X Mountain Lion and later, while the included header targets Snow Leopard and later.

Adoption history

The supplied source_facts.package-manager field records distribution through Homebrew and MacPorts, keeping the macOS-specific utility accessible through both major Mac package collections.

How it is used

Invoke `sf-pwgen` with an algorithm, count, and desired length; by default it generates five 12-character memorable passwords. The documented language option is explicitly noted as broken.

Why package nerds care

sf-pwgen exposes a private-feeling piece of classic macOS functionality—the SecurityFoundation password assistant—as a composable terminal command. It is also a compact historical artifact of package-manager culture around otherwise GUI-oriented platform frameworks and undocumented APIs.

Timeline

  • Snow Leopard era: The included reverse-engineered SecurityFoundation header is documented as compatible with Snow Leopard and later.
  • Mountain Lion era: The sf-pwgen command is documented as running on Mountain Lion and later.
  • Version 1.5: Official usage text documents algorithm, count, length, and language options.

Related projects

  • macOS SecurityFoundation
  • Keychain Access Password Assistant

Sources

  • Official repository README: https://github.com/anders/pwgen#readme
  • source_facts.package-manager

security posture

Risk level: green

narrow executable package without higher-risk signals.

Risk classifier

green risk · low confidence · appliance

Why

  • narrow executable package without higher-risk signals

Signals

  • metadata:no-higher-risk-signals

Install behavior

  • No Homebrew post-install hook is recorded in formula metadata.
  • Homebrew bottle metadata is available for 10 platform targets.

Recommended review

Before unattended agent use, check whether the tool reads plaintext credentials, writes remote state, publishes artifacts, or shells out to plugins.

executables

Installed executables

CommandKindExposureNote
sf-pwgencliglobal executable

freshness

Version and freshness

These signals separate page generation age, package-manager activity, and upstream release comparison. Version lag is warned only when an evidence URL and comparable versions are present.

page generated2026-09-19
manager version1.5
manager updated2026-09-13
local dataok
upstreamcurrent
latest detected1.5

https://github.com/anders/pwgen

  • okNo freshness warnings were generated.

install metadata

Package metadata

Package keybrew:sf-pwgen
Version1.5
Package managerHomebrew
Package manager pagehttps://formulae.brew.sh/formula/sf-pwgen
Homepagehttps://github.com/anders/pwgen/
Repositoryhttps://github.com/anders/pwgen
Upstream docshttps://github.com/anders/pwgen/
LicenseZlib
Source archivehttps://github.com/anders/pwgen/archive/refs/tags/1.5.tar.gz
Last updated2026-09-13T08:22:01Z
Pulseupdated
Bottleavailable (on arm64_big_sur, arm64_monterey, arm64_sequoia, arm64_sonoma, arm64_tahoe, arm64_ventura, big_sur, monterey, sonoma, ventura)
Homebrew post-installnot defined
Servicenone declared

registry facts

Source database details

Source DatabaseHomebrew formula API
Taphomebrew/core
Full Namesf-pwgen
Version Scheme0
Revision0
Head VersionHEAD
Requirements
  • macos
Bottle Stable Root URLhttps://ghcr.io/v2/homebrew/core
Deprecatedno
Disabledno
Keg Onlyno
URL Keys
  • head
  • stable

source database matches

Other package-manager records

Matches are pulled from external package-manager indexes and kept separate from local Automic Vault package links.

MacPorts95%

sf-pwgen

sudo port install sf-pwgen
  • normalized package name match
  • Matched by: Sf Pwgen
MacPorts ports tree · api.github.com · MacPorts ports tree: security/sf-pwgen/Portfile from https://api.github.com/repos/macports/macports-ports/git/trees/master?recursive=1

source trail

Generated from repository data

This page is generated by av-web from the private package SQLite artifact built by scripts/generate-pkg-sqlite.py.

Used sources

  • Geiger risk classifier
  • cross-ecosystem install command graph
  • curated package history
  • external package-manager database matches
  • package relationship graph
  • package version freshness
  • package-page enrichment
  • pkg.so package database
  • pkgdb category and tag curation