Credential access
Touches local trust stores and private key material.
brew / Protected-Tool-Abdeckung / Approval Gates / Rang 87
Prüfe Installationswege, Executables, Metadaten und Sicherheitshinweise für mkcert in AI-Agent-Workflows.
agent safety
mkcert creates local certificate authorities and development certificates.
Touches local trust stores and private key material.
Primarily mutates local trust state, not remote systems.
Can create certificates that influence development service trust.
Gate CA installation and private-key handling.
Allow certificate inspection; require approval before installing trust roots or writing private keys.
Installation
sudo av install brew:mkcertbrew install mkcertlocal Homebrew formula metadata
sudo port install mkcertMacPorts ports tree · security/mkcert/Portfile · source: api.github.com
sudo apk add mkcertAlpine Linux edge package indexes · mkcert · source: dl-cdn.alpinelinux.org
sudo apt install mkcertDebian stable package indexes · mkcert · source: deb.debian.org
sudo dnf install mkcertFedora Rawhide package metadata · mkcert · source: dl.fedoraproject.org
nix profile install nixpkgs#mkcertnixpkgs package indexes · pkgs/by-name/mk/mkcert/package.nix · source: api.github.com
sudo pacman -S mkcertArch Linux sync databases · mkcert · source: geo.mirror.pkgbuild.com
sudo zypper install mkcertopenSUSE Tumbleweed package metadata · mkcert · source: download.opensuse.org
choco install mkcertChocolatey community package catalog · mkcert · source: community.chocolatey.org
scoop install extras/mkcertScoop official bucket manifest trees · bucket/mkcert.json · source: api.github.com
winget install --id FiloSottile.mkcert -eWindows Package Manager source index · FiloSottile.mkcert · source: cdn.winget.microsoft.com
Überblick
Simple tool to make locally trusted development certificates
Protected-Tool-Abdeckung
`mkcert` stores its local root CA private key as rootCA-key.pem in the user CAROOT directory. Our isotope stores that private key in the macOS keychain and exposes it through a temporary CAROOT only while `mkcert` runs.
green risk · low confidence · appliance
Lokaler README-Auszug
mkcert creates a local certificate authority and stores its private key as rootCA-key.pem in the user CAROOT directory.
This protected-tool coverage migrates rootCA-key.pem into the Automic Vault keychain and wraps mkcert so the key is materialized in a temporary CAROOT only while mkcert is running.
rootCA.pem file remains on disk.the root CA key.
Quelle: local coverage notes
Quellauszug
Approval Gates
The local approval-gate seed includes 4 rules for mkcert. Covered entrypoints: mkcert. Severity labels: critical, high. Coverage: partial, reviewed 2026-05-21.
Executables
| Befehl | Art | Sichtbarkeit | Hinweis |
|---|---|---|---|
mkcert | cli | global executable |
Aktualität
Diese Signale trennen das Alter der Seitengenerierung, Aktivität des Paketmanagers und Upstream-Release-Vergleich. Versionsrückstand wird nur gemeldet, wenn eine Evidenz-URL und vergleichbare Versionen vorhanden sind.
https://github.com/FiloSottile/mkcert
Installationsmetadaten
| Package key | brew:mkcert |
|---|---|
| Version | 1.4.4 |
| Package manager | Homebrew |
| Package manager page | https://formulae.brew.sh/formula/mkcert |
| Homepage | https://github.com/FiloSottile/mkcert |
| Repository | https://github.com/FiloSottile/mkcert |
| Upstream docs | https://github.com/FiloSottile/mkcert#readme |
| License | BSD-3-Clause |
| Source archive | https://github.com/FiloSottile/mkcert/archive/refs/tags/v1.4.4.tar.gz |
| Build dependencies | go |
| Bottle | available (arm64_big_sur, arm64_linux, arm64_monterey, arm64_sequoia, arm64_sonoma, arm64_tahoe, arm64_ventura, big_sur, catalina, monterey, sonoma, ventura, x86_64_linux) |
| Homebrew post-install | not defined |
| Service | none declared |
registry facts
| Source Database | Homebrew formula API |
|---|---|
| Tap | homebrew/core |
| Full Name | mkcert |
| Version Scheme | 0 |
| Revision | 0 |
| Head Version | HEAD |
| Bottle Stable Root URL | https://ghcr.io/v2/homebrew/core |
| Deprecated | no |
| Disabled | no |
| Keg Only | no |
| URL Keys |
|
source database matches
Matches are pulled from external package-manager indexes and kept separate from local Automic Vault package links.
mkcert 1.4.4-1+b18
Simple zero-config tool to make locally trusted certificates
https://github.com/FiloSottile/mkcert
sudo apt install mkcertmkcert
nix profile install nixpkgs#mkcertmkcert 1.4.4-1ubuntu2
Simple zero-config tool to make locally trusted certificates
https://github.com/FiloSottile/mkcert
sudo apt install mkcertmkcert 1.4.4-r29
simple zero-config tool to make locally trusted development certificates with any names you'd like
sudo apk add mkcertmkcert 1.4.4-9.fc45
Make and install locally trusted development certificates
https://github.com/FiloSottile/mkcert
sudo dnf install mkcertmkcert 1.4.4-3
Simple tool for making locally-trusted development certificates
https://github.com/FiloSottile/mkcert
sudo pacman -S mkcertmkcert 1.4.4-1.4
CLI tool for making locally-trusted development certificates
https://github.com/FiloSottile/mkcert
sudo zypper install mkcertmkcert
sudo port install mkcertmkcert
choco install mkcertextras/mkcert
scoop install extras/mkcertFiloSottile.mkcert
winget install --id FiloSottile.mkcert -eQuellspur
Diese Seite wird von av-web aus dem privaten Paket-SQLite-Artefakt bereitgestellt, das scripts/generate-pkg-sqlite.py erstellt.