pkg.sopackage field notes

brew / rank 509

Install sshpass with Homebrew

Non-interactive SSH password auth. Version 1.10 via Homebrew; verified 2026-07-04.

install

Additional install commands

macOS

Homebrewverified · 100%
brew install sshpass

provider-native install command

overview

Package summary

Non-interactive SSH password auth

Commands and aliases

  • sshpass

history

Project history and usage

sshpass is a small CLI for non-interactive SSH password authentication. It occupies a controversial but persistent niche: automating password-based SSH in scripts even though the project page itself says most users should prefer SSH public-key authentication.

Project history

The official SourceForge project describes sshpass as a tool for performing SSH interactive keyboard password authentication non-interactively. The official file feed shows public tarball releases beginning with 0.01 in January 2006, followed by 1.00 in March 2006 and later maintenance releases through 1.10 in February 2023.

Adoption history

The input package-manager facts show sshpass packaged across many ecosystems, including Homebrew, Debian, Ubuntu, Fedora, Arch, Alpine, Nix, MacPorts, openSUSE, Scoop, winget, and others. That breadth reflects the demand for a tiny compatibility utility in CI scripts, provisioning tools, and legacy environments.

How it is used

sshpass is commonly used when a command expects interactive SSH password entry but a script needs to supply it non-interactively. The official project description frames this as password-auth automation and explicitly warns that public-key authentication is the more secure normal path.

Why package nerds care

Package nerds care because sshpass is a classic example of a tiny package with a huge policy footprint: useful, often frowned upon, easy to package, and frequently debated in automation contexts. Its existence in package catalogs documents the gap between ideal SSH key hygiene and the messy reality of legacy systems.

Timeline

  • 2006: Official SourceForge file feed lists sshpass 0.01 on 5 January 2006.
  • 2006: Official SourceForge file feed lists sshpass 1.00 on 16 March 2006.
  • 2011: Official SourceForge file feed lists sshpass 1.05 on 6 August 2011.
  • 2016: Official SourceForge file feed lists sshpass 1.06 on 30 June 2016.
  • 2021: Official SourceForge file feed lists sshpass 1.07, 1.08, and 1.09.
  • 2023: Official SourceForge file feed lists sshpass 1.10 on 12 February 2023.

Related projects

  • sshpass is related to OpenSSH, password-authenticated automation, CI/provisioning scripts, expect-style terminal automation, and public-key based SSH workflows.

security posture

Risk level: blue

broad file, network, media, or database tool signal.

Risk classifier

blue risk · medium confidence · tool

Why

  • broad file, network, media, or database tool signal

Signals

  • text:ssh

Install behavior

  • No Homebrew bottle metadata was recorded.

Recommended review

Before unattended agent use, check whether the tool reads plaintext credentials, writes remote state, publishes artifacts, or shells out to plugins.

executables

Installed executables

CommandKindExposureNote
sshpassexecutableindexed executableDiscovered from the local executable index.

freshness

Version and freshness

These signals separate page generation age, package-manager activity, and upstream release comparison. Version lag is warned only when an evidence URL and comparable versions are present.

page generated2026-08-03
manager version1.10
manager updated2026-07-04
local dataunknown
upstreamnot available
latest detectednot detected
  • okNo freshness warnings were generated.

install metadata

Package metadata

Package keybrew:sshpass
Version1.10
Package managerHomebrew
Homepagehttps://sourceforge.net/projects/sshpass/
Last updated2026-07-04T13:13:44+09:00
Pulseupdated
Bottlenot recorded
Servicenone declared

source trail

Generated from repository data

This page is generated by av-web from the private package SQLite artifact built by scripts/generate-pkg-sqlite.py.

Used sources

  • Geiger risk classifier
  • Nucleus package database
  • curated package history
  • pkgdb category and tag curation