Automic VaultAutomic Vault

brew

uncover mit Homebrew, Nix installieren

Prüfe Installationswege, Executables, Metadaten und Sicherheitshinweise für uncover in AI-Agent-Workflows.

Installation

Weitere Installationsbefehle

macOS

Homebrewverifiziert · 100%
brew install uncover

local Homebrew formula metadata

Linux

Nixverifiziert · 92%
nix profile install nixpkgs#uncover

nixpkgs package indexes · pkgs/by-name/un/uncover/package.nix · Quelle: api.github.com

Überblick

Paketzusammenfassung

Tool to discover exposed hosts on the internet using multiple search engines

Befehle und Aliase

  • uncover

Verlauf

Projektgeschichte und Nutzung

uncover is a ProjectDiscovery reconnaissance CLI that queries public internet search engines to discover exposed hosts. Its history is recent, but it fits a well-defined package-nerd niche: small Go security tools that compose through stdin/stdout and API-key-backed provider configuration.

Projektgeschichte

ProjectDiscovery's official docs describe uncover as a Go wrapper using APIs from well-known search engines to quickly discover exposed hosts on the internet. The GitHub repository was created in 2022, and its first public tag/release series began with 0.0.1 in March 2022.

The official ProjectDiscovery blog frames uncover as a CLI for simplifying Shodan, Censys, ZoomEye, FOFA, and related internet-search workflows, especially inside automation pipelines. Later releases expanded provider support and added features such as multiple API keys and output customization.

Adoptionsgeschichte

uncover belongs to the broader ProjectDiscovery ecosystem of security automation tools. Official ProjectDiscovery documentation emphasizes CLI and Cloud workflows for asset discovery and vulnerability management, and the project's llms.txt lists uncover among the major open-source tools.

The input package metadata shows package-manager availability in Homebrew and Nix. In practice, uncover's adoption is strongest among security engineers, bug-bounty hunters, and recon automation users who already chain tools such as httpx, nuclei, subfinder, and naabu.

Wie es verwendet wird

The docs describe querying multiple search engines at once, using provider API keys, randomizing across multiple keys, and integrating results with existing pipeline tools. The README documents `go install` installation and flags for query input, engine selection, and awesome-search-queries support.

Package-manager users install uncover to avoid maintaining a separate Go build checkout and to keep the binary updated alongside the rest of a recon toolkit. The important operational state is the provider configuration file that stores search-engine API keys.

Warum Paket-Nerds sich dafür interessieren

uncover is significant in the security package niche because it normalizes many proprietary search APIs behind one CLI. That makes it easy to slot into shell pipelines, CI-style reconnaissance jobs, and ProjectDiscovery-style workflows.

It is young compared with classic Unix tools, but its value is exactly the modern package-manager value proposition: one small binary, fast updates, many upstream integrations, and predictable config paths.

Zeitleiste

  • 2022: GitHub repository created and 0.0.1 release published.
  • 2022: ProjectDiscovery blog introduces uncover as a CLI for discovering exposed hosts and vulnerable instances.
  • 2022: v1.0.0 release published.
  • 2025: v1.0.10 adds new search-query and provider support.
  • 2026: v1.2.1 release published.

Related projects

  • ProjectDiscovery tools such as nuclei, httpx, subfinder, naabu, dnsx, and cloudlist are adjacent tools in the same security automation ecosystem.
  • Supported search/provider ecosystems include Shodan, Censys, FOFA, Hunter, Quake, ZoomEye, Netlas, CriminalIP, PublicWWW, HunterHow, Google, Onyphe, Driftnet, DayDayMap, and NerdyData as documented by official sources.

Sicherheitslage

Noch keine Protected-Tool-Abdeckung gefunden

Für uncover wurde kein passendes lokales Secret-Handling-Manifest gefunden. Nucleus-Paketmetadaten bleiben hier veröffentlicht, damit künftige Abdeckung eine stabile Paket-URL hat.

Installationsverhalten

  • In den Formelmetadaten ist kein Homebrew-Post-install-Hook erfasst.
  • Homebrew-Bottle-Metadaten sind für 6 Plattformziele verfügbar.
  • Build-Metadaten listen 1 Build-Abhängigkeiten.

Empfohlene Prüfung

Prüfe vor unbeaufsichtigter Agent-Nutzung, ob das Tool Klartext-Credentials liest, Remote-Zustand schreibt, Artefakte veröffentlicht oder Plugins ausführt.

local files

Configuration and credential file locations

These source-backed paths show where this package keeps local settings or durable credentials. Automic Vault can use them as review targets for secret scanning, migration, and command approval.

Configuration files

Config paths the tool may read or write during local use.

Unix
~/.config/uncover/config.yaml

Credential files

Credential-bearing paths to review before unattended agent runs.

Unix
~/.config/uncover/provider-config.yaml

Executables

Installierte Executables

BefehlArtSichtbarkeitHinweis
uncovercliglobales Executable

Aktualität

Version und Aktualität

Diese Signale trennen das Alter der Seitengenerierung, Aktivität des Paketmanagers und Upstream-Release-Vergleich. Versionsrückstand wird nur gemeldet, wenn eine Evidenz-URL und vergleichbare Versionen vorhanden sind.

Seite generiert2026-07-25
Manager-Version1.2.1
Manager aktualisiert2026-05-20
lokale DatenOK
Upstreamaktuell
neueste erkannte Versionv1.2.1

https://github.com/projectdiscovery/uncover

  • OKEs wurden keine Aktualitätswarnungen generiert.

Installationsmetadaten

Paketmetadaten

Paketschlüsselbrew:uncover
Version1.2.1
PaketmanagerHomebrew
Paketmanager-Seitehttps://formulae.brew.sh/formula/uncover
Homepagehttps://github.com/projectdiscovery/uncover
Repositoryhttps://github.com/projectdiscovery/uncover
Upstream-Dokumentationhttps://docs.projectdiscovery.io/opensource/uncover/overview
LizenzMIT
Quellarchivhttps://github.com/projectdiscovery/uncover/archive/refs/tags/v1.2.1.tar.gz
Zuletzt aktualisiert2026-05-20T15:38:03Z
Pulseupdated
Build-Abhängigkeitengo
Bottleverfügbar (auf arm64_linux, arm64_sequoia, arm64_sonoma, arm64_tahoe, sonoma, x86_64_linux)
Homebrew post-installnicht definiert
Dienstkeiner deklariert

Registry-Fakten

Details aus der Quelldatenbank

Source DatabaseHomebrew formula API
Taphomebrew/core
Full Nameuncover
Version Scheme0
Revision0
Head VersionHEAD
Bottle Stable Root URLhttps://ghcr.io/v2/homebrew/core
Deprecatedno
Disabledno
Keg Onlyno
URL Keys
  • head
  • stable

Source-Datenbank-Treffer

Andere Paketmanager-Einträge

Treffer stammen aus externen Paketmanager-Indizes und bleiben von lokalen Automic-Vault-Paketlinks getrennt.

Nix95%

uncover

nix profile install nixpkgs#uncover
  • normalized package name match
  • Abgeglichen nach: Uncover
nixpkgs package indexes · api.github.com · nixpkgs package indexes: pkgs/by-name/un/uncover/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1

Quellspur

Aus Repository-Daten generiert

Diese Seite wird von av-web aus dem privaten Paket-SQLite-Artefakt bereitgestellt, das scripts/generate-pkg-sqlite.py erstellt.

Verwendete Quellen

  • Geiger risk classifier
  • Nucleus package database
  • av.db category and tag curation
  • cross-ecosystem install command graph
  • curated configuration and credential file locations
  • curated package history
  • external package-manager database matches
  • package relationship graph
  • package version freshness
  • package-page enrichment