pkg.soopen package index

brew / rank 2823

Install whistle with Homebrew, Nix

HTTP, HTTP2, HTTPS, Websocket debugging proxy. Version 2.10.8 via Homebrew; verified 2026-08-03. Also installable with nix: nix profile install nixpkgs#whistle.

install

Additional install commands

macOS

Homebrewverified · 100%
brew install whistle

local Homebrew formula metadata

Linux

Nixverified · 92%
nix profile install nixpkgs#whistle

nixpkgs package indexes · pkgs/by-name/wh/whistle/package.nix · source: api.github.com

overview

Package summary

HTTP, HTTP2, HTTPS, Websocket debugging proxy

Commands and aliases

  • w2
  • whistle
  • wproxy

history

Project history and usage

whistle is a Node.js-based cross-platform web debugging proxy for HTTP, HTTPS, HTTP/2, WebSocket, and TCP traffic. It sits in the same practical niche as Charles Proxy and Fiddler, but exposes a rule-driven, scriptable, plugin-friendly workflow.

Project history

The avwo/whistle repository was created on March 13, 2015. Its README describes whistle as a cross-platform packet-capture and debugging tool built on Node.js, with request and response inspection, modification, proxy modes, a web interface, and plugin extensibility.

The official documentation centers the project around concise rules. A request URL pattern is matched to an operation, allowing users to rewrite, proxy, mock, inspect, or otherwise modify traffic without writing a full proxy server.

Adoption history

whistle built a durable audience among web, mobile, and frontend developers who need to debug traffic outside the browser's built-in developer tools. GitHub API metadata showed more than 15,000 stars and more than 1,100 forks on July 2, 2026.

Its adoption is reinforced by the surrounding ecosystem: an official desktop client, plugin development documentation, and common command aliases such as `w2` make it useful both on developer laptops and headless servers.

How it is used

Typical usage is to start the local proxy, configure the system or browser proxy, install a root certificate for HTTPS inspection when appropriate, and manage rules through the web UI. Users commonly map production URLs to local files, replay requests, inspect WebSocket traffic, inject headers, mock APIs, or route matching requests through another proxy.

The rule engine is the core package-nerd appeal: a small text rule can replace a temporary local service, a hosts-file edit, a browser extension, or a custom proxy script.

Why package nerds care

whistle matters as a package because it brings a GUI-grade debugging proxy into the Node/npm/Homebrew command-line world. It is installable, automatable, extensible with npm-style plugins, and friendly to repeatable debugging setups.

For developers who live in terminal package managers, whistle is the open, scriptable alternative to heavier proprietary proxy applications.

Timeline

  • 2015-03-13: The avwo/whistle GitHub repository was created.
  • 2026-07-02: GitHub API metadata showed the repository above 15,000 stars.
  • Ongoing: Official docs describe rule syntax, proxy modes, command-line operation, and plugin development as core parts of the project.

Related projects

  • whistle-client is the official desktop client for users who prefer a packaged GUI wrapper.
  • Charles Proxy and Fiddler are comparable web debugging proxy tools named in whistle's GitHub topics and package culture.
  • Whistle plugins extend the rule engine and web interface for custom debugging workflows.

Sources

  • Official getting started docs: https://wproxy.org/en/docs/getting-started.html
  • Official plugin development docs: https://wproxy.org/en/docs/extensions/dev.html
  • Official rule syntax docs: https://wproxy.org/en/docs/rules/rule.html
  • whistle GitHub API metadata: https://api.github.com/repos/avwo/whistle
  • whistle repository and README: https://github.com/avwo/whistle
  • whistle-client repository: https://github.com/avwo/whistle-client

security posture

Risk level: blue

broad file, network, media, or database tool signal.

Risk classifier

blue risk · medium confidence · tool

Why

  • broad file, network, media, or database tool signal

Signals

  • text:http

Install behavior

  • No Homebrew bottle metadata was recorded.

Recommended review

Before unattended agent use, check whether the tool reads plaintext credentials, writes remote state, publishes artifacts, or shells out to plugins.

local files

Configuration and credential file locations

These source-backed paths show where this package keeps local settings or durable credentials. Automic Vault can use them as review targets for secret scanning, migration, and command approval.

Configuration files

Config paths the tool may read or write during local use.

Unix
~/.whistlerc~/.WhistleAppData/.whistle/rules~/.WhistleAppData/.whistle/values

executables

Installed executables

CommandKindExposureNote
w2executableindexed executableDiscovered from the local executable index.
whistleexecutableindexed executableDiscovered from the local executable index.
wproxyexecutableindexed executableDiscovered from the local executable index.

freshness

Version and freshness

These signals separate page generation age, package-manager activity, and upstream release comparison. Version lag is warned only when an evidence URL and comparable versions are present.

page generated2026-08-03
manager version2.10.8
manager updated2026-08-03
local dataunknown
upstreamnot available
latest detectednot detected
  • okNo freshness warnings were generated.

install metadata

Package metadata

Package keybrew:whistle
Version2.10.8
Package managerHomebrew
Homepagehttps://wproxy.org/
Last updated2026-08-03T15:31:37Z
Pulseupdated
Bottlenot recorded
Servicenone declared

source database matches

Other package-manager records

Matches are pulled from external package-manager indexes and kept separate from local Automic Vault package links.

Nix95%

whistle

nix profile install nixpkgs#whistle
  • normalized package name match
  • Matched by: Whistle
nixpkgs package indexes · api.github.com · nixpkgs package indexes: pkgs/by-name/wh/whistle/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1

source trail

Generated from repository data

This page is generated by av-web from the private package SQLite artifact built by scripts/generate-pkg-sqlite.py.

Used sources

  • Geiger risk classifier
  • cross-ecosystem install command graph
  • curated configuration and credential file locations
  • curated package history
  • external package-manager database matches
  • pkg.so package database
  • pkgdb category and tag curation