凭据访问
Can read passwords, notes, tokens, and vault metadata after unlock.
代理安全
bitwarden-cli accesses vault items and secrets from local workflows.
Can read passwords, notes, tokens, and vault metadata after unlock.
Can create, edit, delete, and sync vault items.
Can export secrets into files or downstream release commands.
Gate item reads, exports, unlock, and mutations.
Allow metadata-only operations; require approval for secret retrieval, export, and item changes.
安装
brew install bitwarden-clilocal Homebrew formula metadata
sudo port install bitwarden-cliMacPorts ports tree · security/bitwarden-cli/Portfile · 来源: api.github.com
nix profile install nixpkgs#bitwarden-clinixpkgs package indexes · pkgs/by-name/bi/bitwarden-cli/package.nix · 来源: api.github.com
sudo pacman -S bitwarden-cliArch Linux sync databases · bitwarden-cli · 来源: geo.mirror.pkgbuild.com
choco install bitwarden-cliChocolatey community package catalog · bitwarden-cli · 来源: community.chocolatey.org
scoop install main/bitwarden-cliScoop official bucket manifest trees · bucket/bitwarden-cli.json · 来源: api.github.com
winget install --id Bitwarden.CLI -eWindows Package Manager source index · Bitwarden.CLI · 来源: cdn.winget.microsoft.com
概览
Secure and free password manager for all of your devices
历史
Bitwarden CLI, invoked as bw, is the command-line client for Bitwarden Password Manager. Official docs describe it as a full-featured vault-management tool whose features mostly parallel Bitwarden's desktop and browser clients.
The package is significant because it puts an end-to-end encrypted password manager into shell scripts, CI jobs, server migration workflows, and terminal-first daily use.
The Bitwarden clients repository was created in 2016 and houses the web, browser extension, desktop, and CLI clients, with mobile clients split into separate iOS and Android repositories.
By the 2020s, the CLI had dedicated release tags in the clients repository, including cli-v2022.6.0 and continuing through cli-v2026.6.0. Bitwarden's CLI docs now document native executable downloads, npm installation, Chocolatey, Snap, Flatpak use through the desktop app, and GitHub checksums.
The input package-manager data shows broad package adoption across Homebrew, Chocolatey, MacPorts, Nix, Arch, Scoop, and winget. The official docs also list npm, Chocolatey, Snap, native executables, and Flatpak-mediated use.
Bitwarden's own help center positions the CLI for interactive login, API-key login, SSO login, server geography selection, and self-hosted deployments, which explains its reach beyond personal password lookup into business and automation workflows.
Typical CLI use starts with bw login, then bw unlock to generate a session key for commands that touch encrypted vault data. Official docs also document API-key login through BW_CLIENTID and BW_CLIENTSECRET environment variables for automated work.
The CLI can list, get, edit, generate, encode, import, export, and serve vault data. Package users care about the serve mode and raw/JSON output options because they let local tools consume vault data without binding to Bitwarden's GUI clients.
Bitwarden documents BITWARDENCLI_APPDATA_DIR for separate data.json configurations, which lets users keep multiple accounts or environments isolated.
bitwarden-cli is one of the canonical examples of a security GUI product with a serious command-line surface. It lets package managers deliver a password-vault client into headless machines and scripted environments without requiring a desktop app.
Its package story is also interesting because the official docs distinguish OSS and non-OSS CLI bundles on GitHub while common distribution platforms carry the default build. That distinction matters to users who audit package provenance.
For shell users, bw is a bridge between human secret storage and automation: strong enough for personal use, but scriptable enough for infrastructure migration and controlled retrieval.
安全态势
没有找到 bitwarden-cli 的匹配本地密钥处理 manifest。Nucleus 软件包元数据仍在此发布,以便未来覆盖拥有稳定的软件包 URL。
在无人值守的代理使用前,请检查该工具是否读取明文凭据、写入远程状态、发布制品或调用插件。
local files
These source-backed paths show where this package keeps local settings or durable credentials. Automic Vault can use them as review targets for secret scanning, migration, and command approval.
Credential-bearing paths to review before unattended agent runs.
~/Library/Application Support/Bitwarden CLI/data.json可执行文件
| 命令 | 类型 | 暴露范围 | 备注 |
|---|---|---|---|
bw | 可执行文件 | 已索引可执行文件 | 从本地可执行文件索引发现。 |
新鲜度
这些信号区分页生成时间、软件包管理器活动和上游发布比较。只有存在证据 URL 和可比较版本时,才会提示版本落后。
安装元数据
| 软件包键 | brew:bitwarden-cli |
|---|---|
| 版本 | 2026.7.0 |
| 软件包管理器 | Homebrew |
| 主页 | https://bitwarden.com/ |
| 仓库 | https://github.com/bitwarden/clients |
| 最后更新 | 2026-07-23T23:55:58Z |
| Pulse | updated |
| Bottle | 未记录 |
| 服务 | 未声明 |
源数据库匹配
匹配项来自外部软件包管理器索引,并与本地 Automic Vault 软件包链接分开显示。
bitwarden-cli
nix profile install nixpkgs#bitwarden-clibitwarden-cli 2026.2.0-1
The command line vault
https://github.com/bitwarden/clients
sudo pacman -S bitwarden-clibitwarden-cli
sudo port install bitwarden-clibitwarden-cli
choco install bitwarden-climain/bitwarden-cli
scoop install main/bitwarden-cliBitwarden.CLI
winget install --id Bitwarden.CLI -e来源线索
此页面由 av-web 从 scripts/generate-pkg-sqlite.py 生成的私有软件包 SQLite 工件提供。
View the package source record on GitHub.