pkg.sopackage field notes

brew / 排名 1467

使用 Homebrew 安装 wasmtime

查看 wasmtime 的安装路径、可执行文件、元数据以及面向 AI 代理工作流的安全说明。

安装

其他安装命令

macOS

Homebrew已验证 · 100%
brew install wasmtime

provider-native install command

概览

软件包摘要

Standalone JIT-style runtime for WebAssembly, using Cranelift

命令和别名

  • wasmtime

历史

项目历史与用法

Wasmtime is the Bytecode Alliance's standalone runtime for WebAssembly, WASI, and the WebAssembly Component Model. It is built around the Cranelift code generator and is used both as a command-line tool and as an embeddable engine for applications that need a capability-oriented Wasm sandbox.

项目历史

Wasmtime became one of the founding project contributions to the Bytecode Alliance when Mozilla, Fastly, Intel, and Red Hat announced the alliance on November 12, 2019. The formation announcement described Wasmtime as a small and efficient runtime for WebAssembly and WASI, alongside Lucet, WAMR, and Cranelift.

The Mozilla announcement for the Bytecode Alliance framed Wasmtime as a configurable and scalable standalone runtime that could work as a CLI tool or be embedded into other systems, from IoT devices to cloud data centers. That early positioning explains why Wasmtime has remained both a developer executable and a library API.

Wasmtime reached 1.0 on September 20, 2022. The Bytecode Alliance announcement said the runtime was ready for production use and noted that alliance members had already been running Wasmtime in production environments during the preceding year.

After 1.0, Wasmtime continued to track standards work around WASI and the Component Model. Bytecode Alliance documentation identifies Wasmtime as the reference implementation of the Component Model, with support for command components, HTTP components through wasmtime serve, and later WASI 0.3 runtime support in Wasmtime 43 and newer.

采用历史

Wasmtime's adoption is unusually standards-centered. Because the same organization stewards Cranelift, WASI tooling, wasm-tools, and Component Model documentation, Wasmtime often serves as the runtime people try first when experimenting with new WebAssembly proposals outside the browser.

It is also embedded into higher-level platforms. wasmCloud documentation describes Wasmtime as a Bytecode Alliance runtime that can be used standalone or as part of a larger stack, supporting WebAssembly, WASI, and the Component Model while providing a defense-in-depth runtime for wasmCloud workloads.

The runtime's security posture is part of its adoption story. Bytecode Alliance writing before the 1.0 release emphasized correctness, fuzzing, formal verification work, multi-stakeholder investment, and security processes as reasons the project considered itself ready for production.

使用方式

CLI users run .wasm modules or components with wasmtime run, expose only selected host capabilities, and can serve WASI HTTP components with wasmtime serve. Library users embed Wasmtime through Rust, C, Python, .NET, Go, and other bindings to execute untrusted or portable code inside a host application.

Wasmtime is a default choice when the goal is standards conformance, WASI experimentation, component-model execution, or a capability-secure plugin system. It is less about being a package registry or product platform than about being the runtime substrate other tools build on.

为什么软件包爱好者会关心

Wasmtime is significant because it made WASI and the Component Model concrete for package authors. It gave package managers, plugin systems, and platform teams a runnable target for artifacts that are not tied to a browser, CPU architecture, or one source language.

Its presence in the Bytecode Alliance also means its release notes and APIs often reveal where the Wasm ecosystem is going next: new proposals, new WASI versions, host bindings, component execution, and cross-language interface tooling.

时间线

  • 2019-11-12: Bytecode Alliance launched with Wasmtime, Lucet, WAMR, and Cranelift among its founding project contributions.
  • 2022-09-20: Wasmtime 1.0 was released and declared production ready by the Bytecode Alliance.
  • 2023: Bytecode Alliance tooling compatibility documentation listed Wasmtime 7.0.0 with component-model support.
  • 2024-01-25: WASI 0.2.0 became a stable Component Model target, strengthening Wasmtime's role as a reference runtime.
  • 2026: Bytecode Alliance documentation describes Wasmtime 43 and later as supporting WASI 0.3 runtime features.

Related projects

  • Cranelift is Wasmtime's optimizing code generator and a core Bytecode Alliance project.
  • Lucet, Fastly's earlier AOT WebAssembly runtime, was part of the original Bytecode Alliance project set and was refactored toward Wasmtime at its core.
  • WAMR, WasmEdge, Wasmer, wazero, Spin, runwasi, and wasmCloud are common comparison or integration points.
  • WASI, WIT, wasm-tools, and the WebAssembly Component Model are standards and tools tightly connected to Wasmtime's ecosystem role.

来源

安全态势

风险级别:yellow

generalized runtime or code generation signal.

风险分类器

yellow 风险 · 中 置信度 · runtime

原因

  • generalized runtime or code generation signal

信号

  • text:runtime,jit

安装行为

  • 未记录 Homebrew bottle 元数据。

建议审查

在无人值守的代理使用前,请检查该工具是否读取明文凭据、写入远程状态、发布制品或调用插件。

可执行文件

已安装的可执行文件

命令类型暴露范围备注
wasmtime可执行文件已索引可执行文件从本地可执行文件索引发现。

新鲜度

版本和新鲜度

这些信号区分页生成时间、软件包管理器活动和上游发布比较。只有存在证据 URL 和可比较版本时,才会提示版本落后。

页面生成时间2026-08-03
管理器版本47.0.3
管理器更新时间2026-07-31
本地数据未知
上游不可用
检测到的最新版本未检测到
  • OK没有生成新鲜度警告。

安装元数据

软件包元数据

软件包键brew:wasmtime
版本47.0.3
软件包管理器Homebrew
主页https://wasmtime.dev/
仓库https://github.com/bytecodealliance/wasmtime
最后更新2026-07-31T20:04:14Z
Pulseupdated
Bottle未记录
服务未声明

来源线索

由仓库数据生成

此页面由 av-webscripts/generate-pkg-sqlite.py 生成的私有软件包 SQLite 工件提供。

使用的来源

  • Geiger risk classifier
  • Nucleus package database
  • curated package history
  • pkgdb category and tag curation