Automic VaultAutomic Vault

brew

terrascan mit Homebrew, MacPorts, Nix, scoop installieren

Prüfe Installationswege, Executables, Metadaten und Sicherheitshinweise für terrascan in AI-Agent-Workflows.

Installation

Weitere Installationsbefehle

macOS

Homebrewverifiziert · 100%
brew install terrascan

local Homebrew formula metadata

MacPortsverifiziert · 94%
sudo port install terrascan

MacPorts ports tree · sysutils/terrascan/Portfile · Quelle: api.github.com

Linux

Nixverifiziert · 92%
nix profile install nixpkgs#terrascan

nixpkgs package indexes · pkgs/by-name/te/terrascan/package.nix · Quelle: api.github.com

Windows

Scoopverifiziert · 92%
scoop install main/terrascan

Scoop official bucket manifest trees · bucket/terrascan.json · Quelle: api.github.com

Überblick

Paketzusammenfassung

Detect compliance and security violations across Infrastructure as Code

Befehle und Aliase

  • terrascan

Verlauf

Projektgeschichte und Nutzung

Terrascan is an open-source static analyzer for Infrastructure as Code that checks cloud and Kubernetes configuration before deployment. Its official README describes scanning for misconfigurations, posture drift, security vulnerabilities, and compliance violations, with local CLI and CI/CD integration workflows.

Projektgeschichte

The project originated under Accurics and later moved under Tenable ownership, as reflected by changelog links that compare older releases under github.com/accurics/terrascan and later releases under github.com/tenable/terrascan. The current official repository is archived and states that it is no longer maintained.

Adoptionsgeschichte

Terrascan became a package-manager-friendly IaC security tool because it distributed native release binaries, Docker images, and package recipes. The README documents Homebrew installation, AUR installation, and Docker usage, while the input metadata also lists MacPorts, Nix, and Scoop packages.

Wie es verwendet wird

In the package-nerd niche, Terrascan was used as a local scanner in developer workstations and CI jobs before Terraform, Kubernetes, Helm, Kustomize, CloudFormation, ARM, Dockerfile, or GitHub infrastructure changes were applied. Its value was the ability to run policy checks from a normal shell command without adopting a hosted platform first.

Warum Paket-Nerds sich dafür interessieren

Terrascan is significant as part of the early wave of IaC security CLIs that package managers made easy to slot into pre-commit hooks, CI images, and ephemeral developer machines. Its archived status is now part of its history: packages may remain useful for reproducing older pipelines, but new deployments need to account for maintenance risk.

Zeitleiste

  • 2020: v1.1.0 appears in the official changelog on September 16, 2020.
  • 2021-2022: Changelog links show releases under the Accurics repository path.
  • 2022: Later changelog entries move to the Tenable repository path.
  • 2023: v1.18.3 appears in the official changelog on August 3, 2023.
  • 2024: GitHub page lists v1.19.9 as latest release on September 18, 2024.
  • 2026: Official repository is archived and marked no longer maintained.

Related projects

  • Terrascan sits in the same IaC and cloud-security package niche as Terraform policy scanners, Kubernetes manifest linters, and CI security gates.

Sicherheitslage

Risikostufe: orange

infrastructure mutation or orchestration signal.

Risikoklassifikator

orange Risiko · mittel Konfidenz · infrastructure

Warum

  • infrastructure mutation or orchestration signal

Signale

  • text:infrastructure

Installationsverhalten

  • In den Formelmetadaten ist kein Homebrew-Post-install-Hook erfasst.
  • Homebrew-Bottle-Metadaten sind für 6 Plattformziele verfügbar.
  • Build-Metadaten listen 1 Build-Abhängigkeiten.

Empfohlene Prüfung

Prüfe vor unbeaufsichtigter Agent-Nutzung, ob das Tool Klartext-Credentials liest, Remote-Zustand schreibt, Artefakte veröffentlicht oder Plugins ausführt.

Executables

Installierte Executables

BefehlArtSichtbarkeitHinweis
terrascancliglobales Executable

Aktualität

Version und Aktualität

Diese Signale trennen das Alter der Seitengenerierung, Aktivität des Paketmanagers und Upstream-Release-Vergleich. Versionsrückstand wird nur gemeldet, wenn eine Evidenz-URL und vergleichbare Versionen vorhanden sind.

Seite generiert2026-07-25
Manager-Version1.19.9
Manager aktualisiert2026-05-24
lokale DatenOK
Upstreamaktuell
neueste erkannte Versionv1.19.9

https://github.com/tenable/terrascan

  • OKEs wurden keine Aktualitätswarnungen generiert.

Installationsmetadaten

Paketmetadaten

Paketschlüsselbrew:terrascan
Version1.19.9
PaketmanagerHomebrew
Paketmanager-Seitehttps://formulae.brew.sh/formula/terrascan
Homepagehttps://runterrascan.io/
Repositoryhttps://github.com/tenable/terrascan
Upstream-Dokumentationhttps://github.com/tenable/terrascan#readme
LizenzApache-2.0
Quellarchivhttps://github.com/tenable/terrascan/archive/refs/tags/v1.19.9.tar.gz
Zuletzt aktualisiert2026-05-24T01:41:05Z
Pulseupdated
Build-Abhängigkeitengo
Bottleverfügbar (auf arm64_linux, arm64_sequoia, arm64_sonoma, arm64_tahoe, sonoma, x86_64_linux)
Homebrew post-installnicht definiert
Dienstkeiner deklariert

Registry-Fakten

Details aus der Quelldatenbank

Source DatabaseHomebrew formula API
Taphomebrew/core
Full Nameterrascan
Version Scheme0
Revision0
Head VersionHEAD
Bottle Stable Root URLhttps://ghcr.io/v2/homebrew/core
Deprecatedyes
Disabledno
Keg Onlyno
URL Keys
  • head
  • stable

Source-Datenbank-Treffer

Andere Paketmanager-Einträge

Treffer stammen aus externen Paketmanager-Indizes und bleiben von lokalen Automic-Vault-Paketlinks getrennt.

Nix95%

terrascan

nix profile install nixpkgs#terrascan
  • normalized package name match
  • Abgeglichen nach: Terrascan
nixpkgs package indexes · api.github.com · nixpkgs package indexes: pkgs/by-name/te/terrascan/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1
MacPorts95%

terrascan

sudo port install terrascan
  • normalized package name match
  • Abgeglichen nach: Terrascan
MacPorts ports tree · api.github.com · MacPorts ports tree: sysutils/terrascan/Portfile from https://api.github.com/repos/macports/macports-ports/git/trees/master?recursive=1
Scoop95%

main/terrascan

scoop install main/terrascan
  • normalized package name match
  • Abgeglichen nach: Terrascan
Scoop official bucket manifest trees · api.github.com · Scoop official bucket manifest trees: bucket/terrascan.json from https://api.github.com/repos/ScoopInstaller/Main/git/trees/master?recursive=1

Quellspur

Aus Repository-Daten generiert

Diese Seite wird von av-web aus dem privaten Paket-SQLite-Artefakt bereitgestellt, das scripts/generate-pkg-sqlite.py erstellt.

Verwendete Quellen

  • Geiger risk classifier
  • Nucleus package database
  • av.db category and tag curation
  • cross-ecosystem install command graph
  • curated package history
  • external package-manager database matches
  • package relationship graph
  • package version freshness
  • package-page enrichment