# 使用 Homebrew, zypper 安装 kwctl

查看 kwctl 的安装路径、可执行文件、元数据以及面向 AI 代理工作流的安全说明。

## 安装

```sh
sudo av install brew:kwctl
```

其他安装命令:

### macOS

- Homebrew (100%):

```sh
brew install kwctl
```

  证据: local Homebrew formula metadata

### Linux

- zypper (92%):

```sh
sudo zypper install kwctl
```

  证据: openSUSE Tumbleweed package metadata: kwctl from https://download.opensuse.org/tumbleweed/repo/oss/repodata/50b07339cb64c8ed4091bdbabddadc1ff5737b090e478818a195b40d8a3292861a879139b4a3987c31109699fde9fbf4a716367ddf4eef77da75f96e3193d6ed-primary.xml.zst

## 软件包事实

- **软件包键:** brew:kwctl
- **软件包管理器:** Homebrew
- **版本:** 1.37.0
- **来源摘要:** CLI tool for the Kubewarden policy engine for Kubernetes
- **主页:** <https://www.kubewarden.io/>
- **仓库:** <https://github.com/kubewarden/adm-controller>
- **最后更新:** 2026-07-27T15:52:52Z
- **已生成:** 2026-08-03T19:37:03+00:00

## 可执行文件

- kwctl (别名)

## 安装行为

- Bottle: 不可用

## 版本和新鲜度

- 页面生成时间: 2026-08-03
- 管理器版本: 1.37.0
## 项目历史与用法

kwctl is the command-line tool in the Kubewarden admission-controller ecosystem. It gives policy authors and Kubernetes administrators a local way to inspect, annotate, run, benchmark, pull, push, save, and verify WebAssembly admission policies.

### 项目历史

Kubewarden grew around the idea of using WebAssembly modules as Kubernetes admission policies. In June 2021 the project announced kwctl as a new tool for both policy authors and cluster administrators, and the December 2021 first-year recap described it as an expansion of the Kubewarden toolkit after KubeCon Europe.

The CLI became the developer-facing and operator-facing workbench for Kubewarden policies: it handles OCI registry distribution, metadata annotation, policy inspection, local execution, and scaffolding around the admission-controller components that run inside a cluster.

### 采用历史

kwctl's adoption follows Kubewarden's adoption path rather than a separate ecosystem. It appears in Kubewarden tutorials and how-to material as the default CLI for testing policies before applying them to Kubernetes clusters and for preparing policy artifacts for registries.

### 使用方式

The common package-manager use case is installing kwctl beside kubectl, Helm, and policy build tools so a policy can be pulled or run locally before a cluster admission rule is created. It is also used to annotate WebAssembly modules with Kubewarden metadata and push policies as OCI artifacts.

### 为什么软件包爱好者会关心

For package collectors, kwctl is a small but telling example of the Kubernetes toolchain adopting OCI artifacts and WebAssembly outside normal container images. It is the Kubewarden equivalent of a specialized kubectl for policy packages.

### 时间线

- 2021-06-09: Kubewarden announced kwctl as a command-line utility for policy authors and Kubernetes administrators.
- 2021-12-15: Kubewarden's first-year recap described kwctl as a toolkit addition released shortly after KubeCon Europe.
- 2026-06-22: The 2021 kwctl announcement page carried an update date while retaining the original June 2021 publication date.

### Related projects

- kwctl is part of Kubewarden Admission Controller alongside kubewarden-controller, policy-server, audit-scanner, Kubewarden policies, OCI registries, WebAssembly, Sigstore, and Kubernetes admission webhooks.

### 来源

- <https://docs.kubewarden.io/reference/kwctl-cli>
- <https://github.com/kubewarden/kubewarden-controller>
- <https://www.kubewarden.io/blog/2021/06/kwctl-intro-for-kubernetes-administrators/>
- <https://www.kubewarden.io/blog/2021/12/first-year-of-kubewarden/>


## 安全说明

infrastructure mutation or orchestration signal.

- **Geiger 风险:** orange / 中
- infrastructure mutation or orchestration signal

## 其他软件包管理器记录

- zypper - kwctl - 1.31.0-1.6: normalized package name match | openSUSE Tumbleweed package metadata: kwctl from https://download.opensuse.org/tumbleweed/repo/oss/repodata/50b07339cb64c8ed4091bdbabddadc1ff5737b090e478818a195b40d8a3292861a879139b4a3987c31109699fde9fbf4a716367ddf4eef77da75f96e3193d6ed-primary.xml.zst | The go-to CLI tool for Kubewarden users | https://kubewarden.io/


## Combined YAML source

View the package source record on GitHub. [combined/kwctl.yml](https://github.com/mxcl/pkgdb/blob/main/combined/kwctl.yml)


## 来源

- pkg.so package database
- Geiger risk classifier
- curated package history
- pkgdb category and tag curation
- external package-manager database matches
- cross-ecosystem install command graph
