pkg.soopen package index

brew / rank 1143

Install snyk-cli with Homebrew, Nix, winget

Scans and monitors projects for security vulnerabilities. Version 1.1306.2 via Homebrew; verified 2026-07-28. Also installable with nix: nix profile install nixpkgs#snyk.

install

Additional install commands

macOS

Homebrewverified · 100%
brew install snyk-cli

local Homebrew formula metadata

Linux

Nixverified · 92%
nix profile install nixpkgs#snyk

nixpkgs package indexes · pkgs/by-name/sn/snyk/package.nix · source: api.github.com

Windows

Windows Package Managerverified · 92%
winget install --id Snyk.Snyk -e

Windows Package Manager source index · Snyk.Snyk · source: cdn.winget.microsoft.com

overview

Package summary

Scans and monitors projects for security vulnerabilities

Commands and aliases

  • snyk

history

Project history and usage

Snyk CLI is the `snyk` command-line client for bringing Snyk's vulnerability scanning and monitoring into local development, IDEs, and CI/CD pipelines. In package-manager culture it is a canonical security scanner package: install it globally, authenticate it, run it against dependency manifests, source code, container images, and IaC files, then wire it into automation.

Project history

The public GitHub repository was created in 2015 and the official README describes the CLI as a developer-first, cloud-native security tool for scanning and monitoring software projects. Snyk's docs position it as the command-line entry point for Open Source, Code, Container, and IaC scanning.

The README records an important governance change on July 22, 2024: Snyk CLI stopped accepting external contributions while continuing development in public. It also says release channels were introduced in April 2024 as Snyk focused on stabilizing releases.

Adoption history

Official installation docs list package managers such as npm, Homebrew, and Scoop, plus Docker and standalone binaries. The input records Homebrew, Nix, and WinGet packages, matching the CLI's role across macOS, Linux, Windows, and CI systems.

How it is used

Users authenticate a machine, then run commands such as `snyk test`, `snyk monitor`, `snyk code test`, `snyk container test`, and `snyk iac test`. The CLI detects supported project manifests, reports vulnerability paths and fix guidance, and can create monitored snapshots in Snyk's web UI.

Why package nerds care

Package nerds care because Snyk CLI sits directly on package-manager metadata: manifests, lockfiles, dependency graphs, container images, IaC files, global npm/Homebrew/Scoop installs, signed release assets, and machine-local credentials. It is a package that audits other packages.

Timeline

  • 2015: Public GitHub repository created.
  • 2023: GitHub releases show the v1.1249 series in the public release stream.
  • 2024: Release channels introduced in April, according to the README.
  • 2024: External contributions closed on July 22, according to the README.
  • 2026: GitHub releases show the v1.1305 series in the active release stream.

Related projects

  • Related Snyk tools include Snyk Open Source, Snyk Code, Snyk Container, Snyk IaC, Snyk IDE plugins, Snyk CI/CD integrations, and Snyk CLI extensions.

security posture

No protected-tool coverage found yet

No matching local secret-handling manifest was found for snyk-cli. Nucleus package metadata is still published here so future coverage has a stable package URL.

Install behavior

  • No Homebrew bottle metadata was recorded.

Recommended review

Before unattended agent use, check whether the tool reads plaintext credentials, writes remote state, publishes artifacts, or shells out to plugins.

local files

Configuration and credential file locations

These source-backed paths show where this package keeps local settings or durable credentials. Automic Vault can use them as review targets for secret scanning, migration, and command approval.

Configuration files

Config paths the tool may read or write during local use.

Unix
~/.config/configstore/snyk.json

Credential files

Credential-bearing paths to review before unattended agent runs.

Unix
~/.config/configstore/snyk.json

executables

Installed executables

CommandKindExposureNote
snykexecutableindexed executableDiscovered from the local executable index.

freshness

Version and freshness

These signals separate page generation age, package-manager activity, and upstream release comparison. Version lag is warned only when an evidence URL and comparable versions are present.

page generated2026-08-03
manager version1.1306.2
manager updated2026-07-28
local dataunknown
upstreamnot available
latest detectednot detected
  • okNo freshness warnings were generated.

install metadata

Package metadata

Package keybrew:snyk-cli
Version1.1306.2
Package managerHomebrew
Homepagehttps://snyk.io
Last updated2026-07-28T16:04:03Z
Pulseupdated
Bottlenot recorded
Servicenone declared

source database matches

Other package-manager records

Matches are pulled from external package-manager indexes and kept separate from local Automic Vault package links.

Nix92%

snyk

nix profile install nixpkgs#snyk
  • installed executable or alias match
  • Matched by: Snyk
nixpkgs package indexes · api.github.com · nixpkgs package indexes: pkgs/by-name/sn/snyk/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1
winget92%

Snyk.Snyk

winget install --id Snyk.Snyk -e
  • installed executable or alias match
  • Matched by: Snyk
Windows Package Manager source index · cdn.winget.microsoft.com · Windows Package Manager source index: Snyk.Snyk from https://cdn.winget.microsoft.com/cache/source.msix

source trail

Generated from repository data

This page is generated by av-web from the private package SQLite artifact built by scripts/generate-pkg-sqlite.py.

Used sources

  • Geiger risk classifier
  • cross-ecosystem install command graph
  • curated configuration and credential file locations
  • curated package history
  • external package-manager database matches
  • pkg.so package database
  • pkgdb category and tag curation