pkg.soopen package index

brew / rank 5726

Install threatcl with Homebrew

Documenting your Threat Models with HCL. Version 0.6.5 via Homebrew; verified 2026-08-01.

install

Additional install commands

macOS

Homebrewverified · 100%
brew install threatcl

local Homebrew formula metadata

overview

Package summary

Documenting your Threat Models with HCL

Commands and aliases

  • threatcl

history

Project history and usage

threatcl is a command-line tool and HCL-based specification for documenting threat models in text files. The official README says the project was formerly named hcltm and was renamed to threatcl.

Project history

The project frames threat modeling as a DevOps and version-control workflow: its README argues for a simple text-file format, a CLI-driven user experience, and integration with VCS. It builds on HashiCorp Configuration Language and the README explicitly connects that choice to Terraform familiarity and machine-readable structure.

Adoption history

The official documentation positions threatcl for several installation and automation paths: Homebrew, Go install, Docker, and GitHub Actions. The README also documents release provenance through SLSA and GitHub attestations, which fits the security-tooling audience that may want to verify downloaded binaries and container images.

How it is used

Users write threat models in HCL, then use the CLI to validate, list, view, export, query, generate dashboards, render data-flow diagrams, parse Terraform output, or run a server. The optional `config.hcl` file can override default classifications, impact types, STRIDE elements, and dependency classifications.

Why package nerds care

For package nerds, threatcl is notable because it turns a security documentation practice into a normal source-controlled artifact with a CLI, Homebrew install, container image, GitHub Action, release attestations, and HCL syntax familiar to infrastructure engineers.

Timeline

  • Project README: hcltm is renamed to threatcl.
  • Current README: documents Homebrew, Docker, GitHub Actions, SLSA attestations, HCL threat models, GraphQL queries, Terraform parsing, and optional config.hcl.
  • Current docs site: documents Homebrew, Go, Docker, and GitHub Actions getting-started flows.

Related projects

  • Related projects and specifications include Terraform and HCL2, OWASP threat-modeling material, OpenThreatModel, go-dfd, GitHub Actions automation, and security-as-code workflows.

security posture

No protected-tool coverage found yet

No matching local secret-handling manifest was found for threatcl. Nucleus package metadata is still published here so future coverage has a stable package URL.

Install behavior

  • No Homebrew bottle metadata was recorded.

Recommended review

Before unattended agent use, check whether the tool reads plaintext credentials, writes remote state, publishes artifacts, or shells out to plugins.

local files

Configuration and credential file locations

These source-backed paths show where this package keeps local settings or durable credentials. Automic Vault can use them as review targets for secret scanning, migration, and command approval.

Configuration files

Config paths the tool may read or write during local use.

Unix
config.hcl

executables

Installed executables

CommandKindExposureNote
threatclexecutableindexed executableDiscovered from the local executable index.

freshness

Version and freshness

These signals separate page generation age, package-manager activity, and upstream release comparison. Version lag is warned only when an evidence URL and comparable versions are present.

page generated2026-08-03
manager version0.6.5
manager updated2026-08-01
local dataunknown
upstreamnot available
latest detectednot detected
  • okNo freshness warnings were generated.

install metadata

Package metadata

Package keybrew:threatcl
Version0.6.5
Package managerHomebrew
Homepagehttps://github.com/threatcl/threatcl
Repositoryhttps://github.com/threatcl/threatcl
Last updated2026-08-01T13:15:26Z
Pulseupdated
Bottlenot recorded
Servicenone declared

source trail

Generated from repository data

This page is generated by av-web from the private package SQLite artifact built by scripts/generate-pkg-sqlite.py.

Used sources

  • Geiger risk classifier
  • cross-ecosystem install command graph
  • curated configuration and credential file locations
  • curated package history
  • pkg.so package database
  • pkgdb category and tag curation