Automic VaultAutomic Vault

brew

diffoci mit Homebrew, Nix, pacman installieren

Prüfe Installationswege, Executables, Metadaten und Sicherheitshinweise für diffoci in AI-Agent-Workflows.

Installation

Weitere Installationsbefehle

macOS

Homebrewverifiziert · 100%
brew install diffoci

local Homebrew formula metadata

Linux

Nixverifiziert · 92%
nix profile install nixpkgs#diffoci

nixpkgs package indexes · pkgs/by-name/di/diffoci/package.nix · Quelle: api.github.com

Arch Linux pacmanverifiziert · 92%
sudo pacman -S diffoci

Arch Linux sync databases · diffoci · Quelle: geo.mirror.pkgbuild.com

Überblick

Paketzusammenfassung

Diff for Docker and OCI container images

Befehle und Aliase

  • diffoci

Verlauf

Projektgeschichte und Nutzung

diffoci is a command-line comparison tool for Docker and OCI container images, aimed at finding the practical differences between two image artifacts in reproducible-builds work.

Projektgeschichte

The project lives under the reproducible-containers organization and frames itself as a diff tool for Docker and OCI images. Its README presents strict comparison as the baseline and semantic comparison as the more useful mode for image reproducibility checks.

Adoptionsgeschichte

The official README documents binary releases for Linux and macOS, installation through mise, and source installation with Go, which places diffoci in the familiar package-manager and single-binary CLI lane for container tooling.

Wie es verwendet wird

Typical use compares two image references with `diffoci diff IMAGE0 IMAGE1`; the README recommends `--semantic` when timestamp, layer ordering, build history, or image-name annotation noise would make strict output too noisy. It can also compare local Docker or Podman images with `docker://` and `podman://` prefixes and can dump differing files to a report directory.

Warum Paket-Nerds sich dafür interessieren

For package maintainers and reproducible-builds people, diffoci fills the gap between byte-level archive comparison and the layered, metadata-heavy world of OCI images. It is useful when the artifact being packaged is not a tarball or binary but a container image with registry, platform, and layer semantics.

Zeitleiste

  • 2023: README examples focus on comparing Alpine and Docker Hub images in reproducibility investigations.
  • 2020s: Project distributed as a Go CLI with Linux and macOS binary releases.

Related projects

  • diffoci is adjacent to diffoscope for deep artifact comparison, but specializes in Docker and OCI image layout, containerd, Docker, Podman, and registry workflows.

Sicherheitslage

Risikostufe: orange

broad file, network, media, or database tool signal. infrastructure mutation or orchestration signal.

Risikoklassifikator

orange Risiko · mittel Konfidenz · infrastructure

Warum

  • broad file, network, media, or database tool signal
  • infrastructure mutation or orchestration signal

Signale

  • text:container
  • text:image

Installationsverhalten

  • In den Formelmetadaten ist kein Homebrew-Post-install-Hook erfasst.
  • Homebrew-Bottle-Metadaten sind für 6 Plattformziele verfügbar.
  • Build-Metadaten listen 1 Build-Abhängigkeiten.

Empfohlene Prüfung

Prüfe vor unbeaufsichtigter Agent-Nutzung, ob das Tool Klartext-Credentials liest, Remote-Zustand schreibt, Artefakte veröffentlicht oder Plugins ausführt.

Executables

Installierte Executables

BefehlArtSichtbarkeitHinweis
diffocicliglobales Executable

Aktualität

Version und Aktualität

Diese Signale trennen das Alter der Seitengenerierung, Aktivität des Paketmanagers und Upstream-Release-Vergleich. Versionsrückstand wird nur gemeldet, wenn eine Evidenz-URL und vergleichbare Versionen vorhanden sind.

Seite generiert2026-07-25
Manager-Version0.1.8
Manager aktualisiert
lokale DatenOK
Upstreamaktuell
neueste erkannte Versionv0.1.8

https://github.com/reproducible-containers/diffoci

  • InfoNo package-manager update timestamp was available.niedrig Konfidenz

Installationsmetadaten

Paketmetadaten

Paketschlüsselbrew:diffoci
Version0.1.8
PaketmanagerHomebrew
Paketmanager-Seitehttps://formulae.brew.sh/formula/diffoci
Homepagehttps://github.com/reproducible-containers/diffoci
Repositoryhttps://github.com/reproducible-containers/diffoci
Upstream-Dokumentationhttps://github.com/reproducible-containers/diffoci#readme
LizenzApache-2.0
Quellarchivhttps://github.com/reproducible-containers/diffoci/archive/refs/tags/v0.1.8.tar.gz
Build-Abhängigkeitengo
Bottleverfügbar (auf arm64_linux, arm64_sequoia, arm64_sonoma, arm64_tahoe, sonoma, x86_64_linux)
Homebrew post-installnicht definiert
Dienstkeiner deklariert

Registry-Fakten

Details aus der Quelldatenbank

Source DatabaseHomebrew formula API
Taphomebrew/core
Full Namediffoci
Version Scheme0
Revision0
Head VersionHEAD
Bottle Stable Root URLhttps://ghcr.io/v2/homebrew/core
Deprecatedno
Disabledno
Keg Onlyno
URL Keys
  • head
  • stable

Source-Datenbank-Treffer

Andere Paketmanager-Einträge

Treffer stammen aus externen Paketmanager-Indizes und bleiben von lokalen Automic-Vault-Paketlinks getrennt.

Nix95%

diffoci

nix profile install nixpkgs#diffoci
  • normalized package name match
  • Abgeglichen nach: Diffoci
nixpkgs package indexes · api.github.com · nixpkgs package indexes: pkgs/by-name/di/diffoci/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1
pacman95%

diffoci 0.1.8-1

diff for Docker and OCI container images

https://github.com/reproducible-containers/diffoci

sudo pacman -S diffoci
  • License: Apache-2.0
  • Architecture: x86_64
  • 1 Abhängigkeiten
  • normalized package name match
  • Abgeglichen nach: Diffoci
Arch Linux sync databases · geo.mirror.pkgbuild.com · Arch Linux sync databases: diffoci from https://geo.mirror.pkgbuild.com/extra/os/x86_64/extra.db.tar.gz

Quellspur

Aus Repository-Daten generiert

Diese Seite wird von av-web aus dem privaten Paket-SQLite-Artefakt bereitgestellt, das scripts/generate-pkg-sqlite.py erstellt.

Verwendete Quellen

  • Geiger risk classifier
  • Nucleus package database
  • av.db category and tag curation
  • cross-ecosystem install command graph
  • curated package history
  • external package-manager database matches
  • package relationship graph
  • package version freshness
  • package-page enrichment