macOS
brew install --cask codeqllocal Homebrew cask metadata
cask
Prüfe Installationswege, Executables, Metadaten und Sicherheitshinweise für codeql in AI-Agent-Workflows.
Installation
brew install --cask codeqllocal Homebrew cask metadata
Überblick
Semantic code analysis engine
Verlauf
CodeQL is GitHub's semantic code analysis engine and query language, packaged for command-line use through the CodeQL CLI. It is used for code scanning, security research, custom queries, and CI analysis.
CodeQL originated at Semmle, whose semantic analysis technology was acquired by GitHub in 2019. GitHub subsequently made CodeQL central to GitHub Advanced Security and to code scanning workflows, with the CLI distributed from GitHub-controlled release repositories.
Adoption moved from security research and Semmle users into GitHub's hosted code scanning product, GitHub Actions workflows, and enterprise security programs. The CLI remains important for users who need local analysis, custom queries, alternative CI systems, or prebuilt CodeQL databases.
The CLI creates CodeQL databases, runs queries, analyzes code, produces SARIF results, manages CodeQL packs, and uploads results to GitHub code scanning. GitHub recommends the CodeQL bundle because it includes the CLI plus compatible queries and libraries.
Package nerds care because the Homebrew cask wraps a large, versioned security-analysis toolchain that is otherwise commonly installed from GitHub release bundles. Its formula/cask packaging makes CodeQL feel like a normal terminal tool despite its bundled queries, extractors, and platform-specific binaries.
Sicherheitslage
Für codeql wurde kein passendes lokales Secret-Handling-Manifest gefunden. Nucleus-Paketmetadaten bleiben hier veröffentlicht, damit künftige Abdeckung eine stabile Paket-URL hat.
Prüfe vor unbeaufsichtigter Agent-Nutzung, ob das Tool Klartext-Credentials liest, Remote-Zustand schreibt, Artefakte veröffentlicht oder Plugins ausführt.
Executables
| Befehl | Art | Sichtbarkeit | Hinweis |
|---|---|---|---|
codeql | Binärdatei | Homebrew-Cask-Binärdatei | codeql |
Aktualität
Diese Signale trennen das Alter der Seitengenerierung, Aktivität des Paketmanagers und Upstream-Release-Vergleich. Versionsrückstand wird nur gemeldet, wenn eine Evidenz-URL und vergleichbare Versionen vorhanden sind.
https://github.com/github/codeql-cli-binaries
Installationsmetadaten
| Paketschlüssel | cask:codeql |
|---|---|
| Version | 2.26.1 |
| Paketmanager | Homebrew Cask |
| Paketmanager-Seite | https://formulae.brew.sh/cask/codeql |
| Homepage | https://codeql.github.com/ |
| Repository | https://github.com/github/codeql-cli-binaries |
| Upstream-Dokumentation | https://codeql.github.com/ |
| Quellarchiv | https://github.com/github/codeql-cli-binaries/releases/download/v2.26.1/codeql-osx64.zip |
| Zuletzt aktualisiert | 2026-07-16T10:20:31Z |
| Pulse | updated |
| SHA-256 | 61c5d2b53e1cd8ee2bd57c31a55c57af53ffaafdf19c46d2341704c6cacf35d3 |
| Download-URL | https://github.com/github/codeql-cli-binaries/releases/download/v2.26.1/codeql-osx64.zip |
| Bottle | nicht erfasst |
| Homebrew post-install | nicht definiert |
| Dienst | keiner deklariert |
Registry-Fakten
| Source Database | Homebrew cask API |
|---|---|
| Tap | homebrew/cask |
| Full Token | codeql |
| Names |
|
| Artifacts | |
| Deprecated | no |
| Disabled | no |
Source-Datenbank-Treffer
Treffer stammen aus externen Paketmanager-Indizes und bleiben von lokalen Automic-Vault-Paketlinks getrennt.
codeql
nix profile install nixpkgs#codeqlmain/codeql
scoop install main/codeqlQuellspur
Diese Seite wird von av-web aus dem privaten Paket-SQLite-Artefakt bereitgestellt, das scripts/generate-pkg-sqlite.py erstellt.
View the package source record on GitHub.