Automic VaultAutomic Vault

brew

ksops mit Homebrew installieren

Prüfe Installationswege, Executables, Metadaten und Sicherheitshinweise für ksops in AI-Agent-Workflows.

Installation

Weitere Installationsbefehle

macOS

Homebrewverifiziert · 100%
brew install ksops

local Homebrew formula metadata

Überblick

Paketzusammenfassung

Flexible Kustomize Plugin for SOPS Encrypted Resources

Befehle und Aliase

  • ksops

Verlauf

Projektgeschichte und Nutzung

KSOPS is a kustomize-SOPS plugin for decrypting SOPS-encrypted Kubernetes resources during kustomize builds. It sits in the GitOps secrets-management niche where teams want encrypted manifests in Git but plain Kubernetes objects at apply time.

Projektgeschichte

The README says Viaduct built KSOPS after finding no solution compatible with its Kubernetes GitOps stack for managing secrets. The project connects kustomize to SOPS and documents integration with Argo CD so encrypted manifests can be managed like other Kubernetes manifests.

Adoptionsgeschichte

KSOPS is aimed at teams already using kustomize, SOPS, and GitOps workflows rather than at general secret storage. Its adoption footprint is therefore narrow but practical: it is packaged as a Homebrew formula and documented as an installable CLI-style kustomize plugin.

Wie es verwendet wird

Typical use is to define SOPS creation rules in .sops.yaml, add a KSOPS generator to kustomization.yaml, and run kustomize with plugin support so encrypted Secrets or ConfigMaps are decrypted during the build.

Warum Paket-Nerds sich dafür interessieren

KSOPS is interesting to package people because it packages a kustomize exec plugin as a normal command-line artifact, bridging Kubernetes configuration tooling, Git-stored encrypted files, and local package-manager installation.

Zeitleiste

  • v1.0: The repository has a public v1.0 tag for the early KSOPS release line.
  • v2.x: Later tags track the second major release line of the kustomize-SOPS plugin.
  • v3.x: The repository tags include a third major release line for the plugin.

Related projects

  • Related projects include kustomize, SOPS, Argo CD, Kubernetes Secrets, and GitOps workflows.

Sicherheitslage

Risikostufe: blue

broad file, network, media, or database tool signal.

Risikoklassifikator

blue Risiko · mittel Konfidenz · tool

Warum

  • broad file, network, media, or database tool signal

Signale

  • text:encrypt

Installationsverhalten

  • In den Formelmetadaten ist kein Homebrew-Post-install-Hook erfasst.
  • Homebrew-Bottle-Metadaten sind für 6 Plattformziele verfügbar.
  • Build-Metadaten listen 1 Build-Abhängigkeiten.

Empfohlene Prüfung

Prüfe vor unbeaufsichtigter Agent-Nutzung, ob das Tool Klartext-Credentials liest, Remote-Zustand schreibt, Artefakte veröffentlicht oder Plugins ausführt.

local files

Configuration and credential file locations

These source-backed paths show where this package keeps local settings or durable credentials. Automic Vault can use them as review targets for secret scanning, migration, and command approval.

Configuration files

Config paths the tool may read or write during local use.

Unix
.sops.yaml

Executables

Installierte Executables

BefehlArtSichtbarkeitHinweis
ksopscliglobales Executable

Aktualität

Version und Aktualität

Diese Signale trennen das Alter der Seitengenerierung, Aktivität des Paketmanagers und Upstream-Release-Vergleich. Versionsrückstand wird nur gemeldet, wenn eine Evidenz-URL und vergleichbare Versionen vorhanden sind.

Seite generiert2026-07-25
Manager-Version4.5.1
Manager aktualisiert
lokale DatenOK
Upstreamaktuell
neueste erkannte Versionv4.5.1

https://github.com/viaduct-ai/kustomize-sops

  • InfoNo package-manager update timestamp was available.niedrig Konfidenz

Installationsmetadaten

Paketmetadaten

Paketschlüsselbrew:ksops
Version4.5.1
PaketmanagerHomebrew
Paketmanager-Seitehttps://formulae.brew.sh/formula/ksops
Homepagehttps://github.com/viaduct-ai/kustomize-sops
Repositoryhttps://github.com/viaduct-ai/kustomize-sops
Upstream-Dokumentationhttps://github.com/viaduct-ai/kustomize-sops#readme
LizenzApache-2.0
Quellarchivhttps://github.com/viaduct-ai/kustomize-sops/archive/refs/tags/v4.5.1.tar.gz
Build-Abhängigkeitengo
Bottleverfügbar (auf arm64_linux, arm64_sequoia, arm64_sonoma, arm64_tahoe, sonoma, x86_64_linux)
Homebrew post-installnicht definiert
Dienstkeiner deklariert

Registry-Fakten

Details aus der Quelldatenbank

Source DatabaseHomebrew formula API
Taphomebrew/core
Full Nameksops
Version Scheme0
Revision0
Head VersionHEAD
Bottle Stable Root URLhttps://ghcr.io/v2/homebrew/core
Deprecatedno
Disabledno
Keg Onlyno
URL Keys
  • head
  • stable

Quellspur

Aus Repository-Daten generiert

Diese Seite wird von av-web aus dem privaten Paket-SQLite-Artefakt bereitgestellt, das scripts/generate-pkg-sqlite.py erstellt.

Verwendete Quellen

  • Geiger risk classifier
  • Nucleus package database
  • av.db category and tag curation
  • cross-ecosystem install command graph
  • curated configuration and credential file locations
  • curated package history
  • package relationship graph
  • package version freshness
  • package-page enrichment