Automic VaultAutomic Vault

brew

rats mit Homebrew, dnf, MacPorts installieren

Prüfe Installationswege, Executables, Metadaten und Sicherheitshinweise für rats in AI-Agent-Workflows.

Installation

Weitere Installationsbefehle

macOS

Homebrewverifiziert · 100%
brew install rats

local Homebrew formula metadata

MacPortsverifiziert · 94%
sudo port install rats

MacPorts ports tree · security/rats/Portfile · Quelle: api.github.com

Überblick

Paketzusammenfassung

Rough auditing tool for security

Befehle und Aliase

  • rats

Verlauf

Projektgeschichte und Nutzung

RATS, the Rough Auditing Tool for Security, is a command-line static analysis scanner for finding common security-sensitive programming patterns in source code.

Projektgeschichte

The official README says RATS was developed, maintained, and distributed by Secure Software, Inc. The 2.4 source archive describes it as a scanner for C, C++, Perl, PHP, Python, and Ruby source that flags issues such as buffer overflows and TOCTOU race conditions.

Adoptionsgeschichte

RATS circulated as a small Unix security-auditing utility through source archives and package managers. Homebrew, Debian-derived manpage packaging, Fedora, MacPorts, and other Unix package collections carried it as a lightweight source-code auditing tool.

Wie es verwendet wird

Users run rats against files or directories and can select vulnerability databases with -d, force a language with -l, choose warning levels, recurse through directories, and emit text, XML, or HTML reports.

Warum Paket-Nerds sich dafür interessieren

Package maintainers care about RATS because it is an old-style security CLI: small C code, autoconf build, XML vulnerability databases, and a package surface that exposes static-analysis behavior without a large framework.

Zeitleiste

  • 2001: The bundled manpage date records RATS documentation in September 2001.
  • 2.4: Homebrew packages the Google Code archive release as the stable version.

Related projects

  • The README notes Expat as a build/runtime requirement and credits Ben Laurie for OpenSSL-specific database contributions.

Quellen

  • Google Code Archive: official rough-auditing-tool-for-security project and source download.
  • Homebrew formula metadata for rats stable 2.4.
  • RATS 2.4 README and rats.1 from the official Google Code archive tarball.

Sicherheitslage

Risikostufe: grün

narrow executable package without higher-risk signals.

Risikoklassifikator

grün Risiko · niedrig Konfidenz · appliance

Warum

  • narrow executable package without higher-risk signals

Signale

  • metadata:no-higher-risk-signals

Installationsverhalten

  • In den Formelmetadaten ist kein Homebrew-Post-install-Hook erfasst.
  • Homebrew-Bottle-Metadaten sind für 13 Plattformziele verfügbar.

Empfohlene Prüfung

Prüfe vor unbeaufsichtigter Agent-Nutzung, ob das Tool Klartext-Credentials liest, Remote-Zustand schreibt, Artefakte veröffentlicht oder Plugins ausführt.

Executables

Installierte Executables

BefehlArtSichtbarkeitHinweis
ratscliglobales Executable

Aktualität

Version und Aktualität

Diese Signale trennen das Alter der Seitengenerierung, Aktivität des Paketmanagers und Upstream-Release-Vergleich. Versionsrückstand wird nur gemeldet, wenn eine Evidenz-URL und vergleichbare Versionen vorhanden sind.

Seite generiert2026-07-25
Manager-Version2.4
Manager aktualisiert
lokale DatenOK
Upstreamnot checked
neueste erkannte Versionnicht erkannt

https://security.web.cern.ch/security/recommendations/en/codetools/rats.shtml

Installationsmetadaten

Paketmetadaten

Paketschlüsselbrew:rats
Version2.4
PaketmanagerHomebrew
Paketmanager-Seitehttps://formulae.brew.sh/formula/rats
Homepagehttps://security.web.cern.ch/security/recommendations/en/codetools/rats.shtml
Repositoryhttps://code.google.com/archive/p/rough-auditing-tool-for-security/source/default/source
Upstream-Dokumentationhttps://security.web.cern.ch/security/recommendations/en/codetools/rats.shtml
LizenzGPL-2.0-or-later
Quellarchivhttps://storage.googleapis.com/google-code-archive-downloads/v2/code.google.com/rough-auditing-tool-for-security/rats-2.4.tgz
Von macOS bereitgestellte Bibliothekenexpat
Bottleverfügbar (auf arm64_big_sur, arm64_linux, arm64_monterey, arm64_sequoia, arm64_sonoma, arm64_tahoe, arm64_ventura, big_sur, catalina, monterey, sonoma, ventura, x86_64_linux)
Homebrew post-installnicht definiert
Dienstkeiner deklariert

Registry-Fakten

Details aus der Quelldatenbank

Source DatabaseHomebrew formula API
Taphomebrew/core
Full Namerats
Version Scheme0
Revision0
Bottle Stable Root URLhttps://ghcr.io/v2/homebrew/core
Deprecatedno
Disabledno
Keg Onlyno
URL Keys
  • stable

Source-Datenbank-Treffer

Andere Paketmanager-Einträge

Treffer stammen aus externen Paketmanager-Indizes und bleiben von lokalen Automic-Vault-Paketlinks getrennt.

dnf95%

rats 2.4-31.fc44

Rough Auditing Tool for Security

https://code.google.com/p/rough-auditing-tool-for-security/

sudo dnf install rats
  • License: GPL-2.0-only
  • Category: Unspecified
  • Architecture: x86_64
  • Source Package: rats
  • 3 Abhängigkeiten
  • 1 stellt bereit
  • normalized package name match
  • Abgeglichen nach: Rats
Fedora Rawhide package metadata · dl.fedoraproject.org · Fedora Rawhide package metadata: rats from https://dl.fedoraproject.org/pub/fedora/linux/development/rawhide/Everything/x86_64/os/repodata/e5ca8ce900cd68f5419e1c39ae517343100b306336cbaeb70a3c153121d95094-primary.xml.zst
MacPorts95%

rats

sudo port install rats
  • normalized package name match
  • Abgeglichen nach: Rats
MacPorts ports tree · api.github.com · MacPorts ports tree: security/rats/Portfile from https://api.github.com/repos/macports/macports-ports/git/trees/master?recursive=1

Quellspur

Aus Repository-Daten generiert

Diese Seite wird von av-web aus dem privaten Paket-SQLite-Artefakt bereitgestellt, das scripts/generate-pkg-sqlite.py erstellt.

Verwendete Quellen

  • Geiger risk classifier
  • Nucleus package database
  • av.db category and tag curation
  • cross-ecosystem install command graph
  • curated package history
  • external package-manager database matches
  • package relationship graph
  • package version freshness
  • package-page enrichment