Automic VaultAutomic Vault

brew

granted mit Homebrew, Nix, scoop installieren

Prüfe Installationswege, Executables, Metadaten und Sicherheitshinweise für granted in AI-Agent-Workflows.

Installation

Weitere Installationsbefehle

macOS

Homebrewverifiziert · 100%
brew install granted

local Homebrew formula metadata

Linux

Nixverifiziert · 92%
nix profile install nixpkgs#granted

nixpkgs package indexes · pkgs/by-name/gr/granted/package.nix · Quelle: api.github.com

Windows

Scoopverifiziert · 92%
scoop install main/granted

Scoop official bucket manifest trees · bucket/granted.json · Quelle: api.github.com

Überblick

Paketzusammenfassung

Easiest way to access your cloud

Befehle und Aliase

  • assume
  • assume.fish
  • assumego
  • granted

Verlauf

Projektgeschichte und Nutzung

Granted is a command-line tool for cloud access, focused on AWS role assumption, AWS SSO workflows, browser-based console access, and safer handling of cached credentials.

Projektgeschichte

The Granted README and docs describe the project as a CLI that simplifies access to cloud roles and lets users open multiple cloud accounts in a browser. Its goals are fast role discovery and assumption, browser isolation for simultaneous accounts, and encrypted cached credentials to avoid plaintext SSO tokens on disk.

Granted is developed under the fwdcloudsec GitHub organization and is documented through the Common Fate/Granted documentation site. The repository structure separates the granted management command and assume role-assumption workflow.

Adoptionsgeschichte

Granted fits teams with many AWS accounts, especially organizations using AWS SSO/IAM Identity Center. Its adoption is driven by reducing friction around profile selection, browser sessions, and short-lived role credentials.

The Homebrew package is useful because the tool lives directly in shell workflows: users run assume, integrate it with AWS config and credentials files, and pair it with browsers and keychains rather than a server process.

Wie es verwendet wird

Users configure AWS profiles, run assume to select and assume a role, export credentials for terminal commands, or open cloud consoles in separate browser contexts. The docs recommend AWS SSO because it avoids long-lived IAM credentials on a device.

Granted also intersects with package-manager and OS security details because it can use platform credential stores and must behave correctly across macOS, Linux, Windows, shells, and browsers.

Warum Paket-Nerds sich dafür interessieren

Granted is significant as a security-adjacent CLI package: it is small, but it touches AWS config conventions, credential files, shell initialization, browser integration, and OS credential stores. Those edges make packaging quality visible to day-to-day cloud operators.

Zeitleiste

  • 2024: Discussions and issues show active use around AWS SSO profile and keychain workflows.
  • 2026: The GitHub repository listed hundreds of commits and over a thousand stars, indicating a mature niche CLI package.

Related projects

  • AWS CLI and AWS IAM Identity Center are the primary external systems.
  • Browser container/profile features, OS keychains, and shell integrations are part of the user workflow.
  • Common Fate documentation and fwdcloudsec source control are the official project surfaces.

Sicherheitslage

Risikostufe: orange

infrastructure mutation or orchestration signal.

Risikoklassifikator

orange Risiko · mittel Konfidenz · infrastructure

Warum

  • infrastructure mutation or orchestration signal

Signale

  • text:cloud

Installationsverhalten

  • In den Formelmetadaten ist kein Homebrew-Post-install-Hook erfasst.
  • Homebrew-Bottle-Metadaten sind für 6 Plattformziele verfügbar.
  • Build-Metadaten listen 1 Build-Abhängigkeiten.

Empfohlene Prüfung

Prüfe vor unbeaufsichtigter Agent-Nutzung, ob das Tool Klartext-Credentials liest, Remote-Zustand schreibt, Artefakte veröffentlicht oder Plugins ausführt.

local files

Configuration and credential file locations

These source-backed paths show where this package keeps local settings or durable credentials. Automic Vault can use them as review targets for secret scanning, migration, and command approval.

Configuration files

Config paths the tool may read or write during local use.

Unix
~/.granted~/.aws/config
Windows
%USERPROFILE%/.granted%UserProfile%\.aws\config

Credential files

Credential-bearing paths to review before unattended agent runs.

Unix
~/.aws/credentials
Windows
%UserProfile%\.aws\credentials

Executables

Installierte Executables

BefehlArtSichtbarkeitHinweis
assumecliglobales Executable
assume.fishcliglobales Executable
assumegocliglobales Executable
grantedcliglobales Executable

Aktualität

Version und Aktualität

Diese Signale trennen das Alter der Seitengenerierung, Aktivität des Paketmanagers und Upstream-Release-Vergleich. Versionsrückstand wird nur gemeldet, wenn eine Evidenz-URL und vergleichbare Versionen vorhanden sind.

Seite generiert2026-07-26
Manager-Version0.39.0
Manager aktualisiert
lokale DatenOK
Upstreamaktuell
neueste erkannte Versionv0.39.0

https://github.com/fwdcloudsec/granted

  • InfoNo package-manager update timestamp was available.niedrig Konfidenz

Installationsmetadaten

Paketmetadaten

Paketschlüsselbrew:granted
Version0.39.0
PaketmanagerHomebrew
Paketmanager-Seitehttps://formulae.brew.sh/formula/granted
Homepagehttps://granted.dev/
Repositoryhttps://github.com/fwdcloudsec/granted
Upstream-Dokumentationhttps://docs.granted.dev/
LizenzMIT
Quellarchivhttps://github.com/fwdcloudsec/granted/archive/refs/tags/v0.39.0.tar.gz
Build-Abhängigkeitengo
Bottleverfügbar (auf arm64_linux, arm64_sequoia, arm64_sonoma, arm64_tahoe, sonoma, x86_64_linux)
Homebrew post-installnicht definiert
Dienstkeiner deklariert

Registry-Fakten

Details aus der Quelldatenbank

Source DatabaseHomebrew formula API
Taphomebrew/core
Full Namegranted
Version Scheme0
Revision0
Head VersionHEAD
Bottle Stable Root URLhttps://ghcr.io/v2/homebrew/core
Deprecatedno
Disabledno
Keg Onlyno
URL Keys
  • head
  • stable

Source-Datenbank-Treffer

Andere Paketmanager-Einträge

Treffer stammen aus externen Paketmanager-Indizes und bleiben von lokalen Automic-Vault-Paketlinks getrennt.

Nix95%

granted

nix profile install nixpkgs#granted
  • normalized package name match
  • Abgeglichen nach: Granted
nixpkgs package indexes · api.github.com · nixpkgs package indexes: pkgs/by-name/gr/granted/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1
Scoop95%

main/granted

scoop install main/granted
  • normalized package name match
  • Abgeglichen nach: Granted
Scoop official bucket manifest trees · api.github.com · Scoop official bucket manifest trees: bucket/granted.json from https://api.github.com/repos/ScoopInstaller/Main/git/trees/master?recursive=1

Quellspur

Aus Repository-Daten generiert

Diese Seite wird von av-web aus dem privaten Paket-SQLite-Artefakt bereitgestellt, das scripts/generate-pkg-sqlite.py erstellt.

Verwendete Quellen

  • Geiger risk classifier
  • Nucleus package database
  • av.db category and tag curation
  • cross-ecosystem install command graph
  • curated configuration and credential file locations
  • curated package history
  • external package-manager database matches
  • package relationship graph
  • package version freshness
  • package-page enrichment