pkg.soopen package index

brew / rank 4296

Install ssh-vault with Homebrew, Nix

Encrypt/decrypt using SSH keys. Version 1.3.2 via Homebrew; verified 2026-07-20. Also installable with nix: nix profile install nixpkgs#ssh-vault.

install

Additional install commands

macOS

Homebrewverified · 100%
brew install ssh-vault

local Homebrew formula metadata

Linux

Nixverified · 92%
nix profile install nixpkgs#ssh-vault

nixpkgs package indexes · pkgs/by-name/ss/ssh-vault/package.nix · source: api.github.com

overview

Package summary

Encrypt/decrypt using SSH keys

Commands and aliases

  • ssh-vault

history

Project history and usage

ssh-vault is a Rust command-line utility for creating, viewing, and editing encrypted vault data with SSH keys. It lets users reuse an existing SSH identity for secret encryption instead of introducing a separate vault-specific credential system.

Project history

The project began with an initial public commit in September 2016 and had tagged the 0.10.0 line by March 2017. Its modern Rust implementation supports vault creation, editing, viewing, and public-key fingerprint inspection, and the current documentation notes the transition away from legacy PEM-encoded RSA private keys.

Adoption history

ssh-vault is distributed through Homebrew, Cargo, and Nix. The repository's long release history and packaging across both the Rust and system-package ecosystems have kept it available as a small Unix-oriented encryption tool.

How it is used

Users pipe secret material into `ssh-vault create`, select recipients through SSH public identities, and pipe an SSH-VAULT payload into `ssh-vault view` to decrypt it. The CLI also offers edit and fingerprint commands.

Why package nerds care

ssh-vault applies the familiar SSH-key trust material already present on developer machines to file and stream encryption. That makes it a compact bridge between SSH tooling, Unix pipelines, Cargo installation, and system package managers.

Timeline

  • 2016: Initial public commit.
  • 2017: Version 0.10.0 tagged.
  • 2026: Version 1.3.1 released.

Related projects

  • The tool consumes SSH public and private key material and documents `ssh-keygen` as the migration path for legacy RSA private-key encoding.

security posture

No protected-tool coverage found yet

No matching local secret-handling manifest was found for ssh-vault. Nucleus package metadata is still published here so future coverage has a stable package URL.

Install behavior

  • No Homebrew bottle metadata was recorded.

Recommended review

Before unattended agent use, check whether the tool reads plaintext credentials, writes remote state, publishes artifacts, or shells out to plugins.

executables

Installed executables

CommandKindExposureNote
ssh-vaultexecutableindexed executableDiscovered from the local executable index.

freshness

Version and freshness

These signals separate page generation age, package-manager activity, and upstream release comparison. Version lag is warned only when an evidence URL and comparable versions are present.

page generated2026-08-03
manager version1.3.2
manager updated2026-07-20
local dataunknown
upstreamnot available
latest detectednot detected
  • okNo freshness warnings were generated.

install metadata

Package metadata

Package keybrew:ssh-vault
Version1.3.2
Package managerHomebrew
Homepagehttps://ssh-vault.com/
Repositoryhttps://github.com/ssh-vault/ssh-vault
Last updated2026-07-20T08:26:07Z
Pulseupdated
Bottlenot recorded
Servicenone declared

source database matches

Other package-manager records

Matches are pulled from external package-manager indexes and kept separate from local Automic Vault package links.

Nix95%

ssh-vault

nix profile install nixpkgs#ssh-vault
  • normalized package name match
  • Matched by: Ssh Vault
nixpkgs package indexes · api.github.com · nixpkgs package indexes: pkgs/by-name/ss/ssh-vault/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1

source trail

Generated from repository data

This page is generated by av-web from the private package SQLite artifact built by scripts/generate-pkg-sqlite.py.

Used sources

  • Geiger risk classifier
  • cross-ecosystem install command graph
  • curated package history
  • external package-manager database matches
  • pkg.so package database
  • pkgdb category and tag curation