# Install ssh-vault with Homebrew, Nix

Encrypt/decrypt using SSH keys. Version 1.3.2 via Homebrew; verified 2026-07-20. Also installable with nix: nix profile install nixpkgs#ssh-vault.

## Install

```sh
sudo av install brew:ssh-vault
```

Additional install commands:

### macOS

- Homebrew (100%):

```sh
brew install ssh-vault
```

  Evidence: local Homebrew formula metadata

### Linux

- Nix (92%):

```sh
nix profile install nixpkgs#ssh-vault
```

  Evidence: nixpkgs package indexes: pkgs/by-name/ss/ssh-vault/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1

## Package facts

- **Package key:** brew:ssh-vault
- **Package manager:** Homebrew
- **Version:** 1.3.2
- **Source summary:** Encrypt/decrypt using SSH keys
- **Homepage:** <https://ssh-vault.com/>
- **Repository:** <https://github.com/ssh-vault/ssh-vault>
- **Last updated:** 2026-07-20T08:26:07Z
- **Generated:** 2026-08-03T19:37:03+00:00

## Executables

- ssh-vault (alias)

## Install behavior

- Bottle: not available

## Freshness

- Page generated: 2026-08-03
- Package-manager version: 1.3.2
## Project history and usage

ssh-vault is a Rust command-line utility for creating, viewing, and editing encrypted vault data with SSH keys. It lets users reuse an existing SSH identity for secret encryption instead of introducing a separate vault-specific credential system.

### Project history

The project began with an initial public commit in September 2016 and had tagged the 0.10.0 line by March 2017. Its modern Rust implementation supports vault creation, editing, viewing, and public-key fingerprint inspection, and the current documentation notes the transition away from legacy PEM-encoded RSA private keys.

### Adoption history

ssh-vault is distributed through Homebrew, Cargo, and Nix. The repository's long release history and packaging across both the Rust and system-package ecosystems have kept it available as a small Unix-oriented encryption tool.

### How it is used

Users pipe secret material into `ssh-vault create`, select recipients through SSH public identities, and pipe an SSH-VAULT payload into `ssh-vault view` to decrypt it. The CLI also offers edit and fingerprint commands.

### Why package nerds care

ssh-vault applies the familiar SSH-key trust material already present on developer machines to file and stream encryption. That makes it a compact bridge between SSH tooling, Unix pipelines, Cargo installation, and system package managers.

### Timeline

- 2016: Initial public commit.
- 2017: Version 0.10.0 tagged.
- 2026: Version 1.3.1 released.

### Related projects

- The tool consumes SSH public and private key material and documents `ssh-keygen` as the migration path for legacy RSA private-key encoding.

### Sources

- <https://github.com/ssh-vault/ssh-vault#readme>
- <https://github.com/ssh-vault/ssh-vault/releases>
- <https://ssh-vault.com/>
- source_facts.package-manager


## Security Notes

No matching local secret-handling manifest was found for ssh-vault. Nucleus package metadata is still published here so future coverage has a stable package URL.


## Other Package-Manager Records

- Nix - ssh-vault: normalized package name match | nixpkgs package indexes: pkgs/by-name/ss/ssh-vault/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1


## Combined YAML source

View the package source record on GitHub. [combined/ssh-vault.yml](https://github.com/mxcl/pkgdb/blob/main/combined/ssh-vault.yml)


## Sources

- pkg.so package database
- Geiger risk classifier
- curated package history
- pkgdb category and tag curation
- external package-manager database matches
- cross-ecosystem install command graph
