Credential access
Reads Hugging Face tokens, cache files, repository credentials, and environment variables.
brew / Protected-Tool-Abdeckung / Rang 868
Prüfe Installationswege, Executables, Metadaten und Sicherheitshinweise für hf in AI-Agent-Workflows.
agent safety
hf controls Hugging Face model, dataset, and Space workflows.
Reads Hugging Face tokens, cache files, repository credentials, and environment variables.
Can upload, delete, and change models, datasets, and Spaces.
Publishes ML artifacts, datasets, and app spaces.
Gate upload, delete, login, repo, and token commands.
Allow public model inspection; require approval for uploads, deletes, private repo access, and token use.
Installation
sudo av install brew:hfbrew install hflocal Homebrew formula metadata
Überblick
Client library for huggingface.co hub
Protected-Tool-Abdeckung
Hugging Face Hub stores the active CLI token in ~/.cache/huggingface/token. Our isotope stores that token in the macOS keychain and injects it as HF_TOKEN only while `hf` runs.
green risk · low confidence · appliance
Lokaler README-Auszug
Hugging Face Hub stores the active CLI token in ~/.cache/huggingface/token.
This protected-tool coverage migrates that active token into the Automic Vault keychain and wraps hf so HF_TOKEN is present only while the CLI runs.
stored_tokens entries are not migrated.Quelle: local coverage notes
Quellauszug
Executables
| Befehl | Art | Sichtbarkeit | Hinweis |
|---|---|---|---|
hf | cli | global executable | |
huggingface-cli | cli | global executable | |
tiny-agents | cli | global executable |
Aktualität
Diese Signale trennen das Alter der Seitengenerierung, Aktivität des Paketmanagers und Upstream-Release-Vergleich. Versionsrückstand wird nur gemeldet, wenn eine Evidenz-URL und vergleichbare Versionen vorhanden sind.
https://huggingface.co/docs/huggingface_hub/guides/cli
Installationsmetadaten
| Package key | brew:hf |
|---|---|
| Version | 1.18.0 |
| Package manager | Homebrew |
| Package manager page | https://formulae.brew.sh/formula/hf |
| Homepage | https://huggingface.co/docs/huggingface_hub/guides/cli |
| Repository | https://github.com/huggingface/huggingface_hub |
| Upstream docs | https://huggingface.co/docs/huggingface_hub/guides/cli |
| License | Apache-2.0 |
| Source archive | https://files.pythonhosted.org/packages/fb/d8/748ea0a47f0fa15227fe682f7a80826b4b7c096e4818044b8f56d6cb66d6/huggingface_hub-1.18.0.tar.gz |
| Last updated | 2026-06-06T12:13:07Z |
| Pulse | updated |
| Dependencies | certifi, git-lfs, libyaml, python@3.14 |
| Build dependencies | pkgconf, rust |
| Bottle | available (arm64_linux, arm64_sequoia, arm64_sonoma, arm64_tahoe, sonoma, x86_64_linux) |
| Homebrew post-install | not defined |
| Service | none declared |
registry facts
| Source Database | Homebrew formula API |
|---|---|
| Tap | homebrew/core |
| Full Name | hf |
| Version Scheme | 0 |
| Revision | 0 |
| Head Version | HEAD |
| Bottle Stable Root URL | https://ghcr.io/v2/homebrew/core |
| Deprecated | no |
| Disabled | no |
| Keg Only | no |
| URL Keys |
|
Quellspur
Diese Seite wird von av-web aus dem privaten Paket-SQLite-Artefakt bereitgestellt, das scripts/generate-pkg-sqlite.py erstellt.