Automic VaultAutomic Vault

brew

acme.sh を Homebrew, Nix, apk, apt, pacman でインストール

acme.sh のインストール経路、実行ファイル、メタデータ、AI エージェント向けセキュリティノートを確認します。

インストール

追加のインストールコマンド

macOS

Homebrew確認済み · 100%
brew install acme.sh

local Homebrew formula metadata

Linux

Nix確認済み · 92%
nix profile install nixpkgs#acme-sh

nixpkgs package indexes · pkgs/by-name/ac/acme-sh/package.nix · ソース: api.github.com

Alpine Linux apk確認済み · 92%
sudo apk add acme.sh

Alpine Linux edge package indexes · acme.sh · ソース: dl-cdn.alpinelinux.org

Debian apt確認済み · 92%
sudo apt install acme.sh

Debian stable package indexes · acme.sh · ソース: deb.debian.org

Arch Linux pacman確認済み · 92%
sudo pacman -S acme.sh

Arch Linux sync databases · acme.sh · ソース: geo.mirror.pkgbuild.com

概要

パッケージ概要

ACME client

コマンドとエイリアス

  • acme.sh

履歴

プロジェクトの歴史と使われ方

acme.sh is a pure Unix shell ACME client for issuing, renewing, and installing TLS certificates. It is designed around a small shell script, broad Unix compatibility, no Python dependency, and automated renewals through cron.

プロジェクトの歴史

The GitHub repository was created in December 2015, shortly after Let's Encrypt made ACME-based certificate automation a practical mainstream workflow. The official README describes acme.sh as a full ACME protocol implementation written in Unix shell and tested across Linux, BSDs, macOS, Solaris-family systems, Haiku, and Windows via Cygwin.

The project grew from a Let's Encrypt-oriented client into a general ACME client. Its README lists support for multiple CAs including ZeroSSL, Let's Encrypt, SSL.com, Google Public CA, Actalis, Pebble, and any RFC 8555-compliant CA, while the wiki documents the large DNS API surface used for automated DNS-01 validation.

採用の歴史

acme.sh became a popular package-manager ACME client because it fits shared hosting, appliances, routers, and small servers where a shell-only dependency profile matters. The official README's 'Who Uses acme.sh?' section names deployments and integrations such as FreeBSD.org, Proxmox, pfSense/OPNsense-adjacent tooling, and other hosting/control-panel environments.

The input package-manager facts show acme.sh packaged across Homebrew, Alpine, Debian, Nix, and Arch. The GitHub API reports a large public repository with tens of thousands of stars and thousands of forks, consistent with broad operational adoption.

使われ方

Typical package usage installs the acme.sh command, stores working state under ~/.acme.sh by default, creates a cron renewal job, and issues certificates with webroot, standalone, TLS-ALPN, Apache, Nginx, DNS, DNS alias, stateless, or DNS persist modes. DNS API credentials are exported once and then saved into ~/.acme.sh/account.conf for later renewal runs.

パッケージ好きにとっての重要性

acme.sh matters to package nerds because it is a rare security-critical tool whose portability comes from plain POSIX-ish shell rather than a language runtime. That makes it attractive for Homebrew, distro, appliance, and container packaging, while its large dnsapi collection creates a sprawling map of DNS provider integrations in one scriptable package.

タイムライン

  • 2015-12-26: GitHub repository created.
  • 2016-04-06: Earliest GitHub release metadata in the current repository lists version 1.2.2.
  • 2016-07-02: Version 2.3.0 tag commit appears in the repository tag history.
  • 2024: 3.0.x releases continue regular bug-fix and integration work.
  • 2026-04-28: Release 3.1.3 published.

Related projects

  • Related projects include Let's Encrypt, ZeroSSL, Certbot, Pebble, RFC 8555 ACME servers, and the DNS provider APIs supported by acme.sh's dnsapi wiki.

ソース

  • Official README, official wiki, official dnsapi wiki page, GitHub repository/release metadata, and source_facts.package-manager.

セキュリティ状態

リスクレベル: blue

broad file, network, media, or database tool signal.

リスク分類器

リスク blue · 信頼度 中 · tool

理由

  • broad file, network, media, or database tool signal

信号

  • text:client

インストール挙動

  • formula メタデータに Homebrew post-install フックは記録されていません。
  • Homebrew bottle メタデータは 1 個のプラットフォームターゲットで利用できます。

推奨レビュー

エージェントに無人実行させる前に、このツールが平文の認証情報を読むか、リモート状態を書き込むか、成果物を公開するか、プラグインを起動するかを確認してください。

local files

Configuration and credential file locations

These source-backed paths show where this package keeps local settings or durable credentials. Automic Vault can use them as review targets for secret scanning, migration, and command approval.

Configuration files

Config paths the tool may read or write during local use.

Unix
~/.acme.sh/

Credential files

Credential-bearing paths to review before unattended agent runs.

Unix
~/.acme.sh/account.conf

実行可能ファイル

インストールされる実行可能ファイル

コマンド種類公開範囲メモ
acme.shcliグローバル実行可能ファイル

鮮度

バージョンと鮮度

これらの信号は、ページ生成時期、パッケージマネージャの活動、上流リリース比較を分けて示します。バージョン遅れは、証拠 URL と比較可能なバージョンがある場合だけ警告されます。

ページ生成日2026-07-25
マネージャ版3.1.4
マネージャ更新日2026-07-17
ローカルデータOK
上流最新
検出された最新3.1.4

https://github.com/acmesh-official/acme.sh

  • OK鮮度警告は生成されていません。

インストールメタデータ

パッケージメタデータ

パッケージキーbrew:acme.sh
バージョン3.1.4
パッケージマネージャHomebrew
パッケージマネージャページhttps://formulae.brew.sh/formula/acme.sh
ホームページhttps://github.com/acmesh-official/acme.sh
リポジトリhttps://github.com/acmesh-official/acme.sh
上流ドキュメントhttps://github.com/acmesh-official/acme.sh#readme
ライセンスGPL-3.0-only
ソースアーカイブhttps://github.com/acmesh-official/acme.sh/archive/refs/tags/3.1.4.tar.gz
最終更新2026-07-17T03:06:02Z
Pulseupdated
Bottle利用可能 (対象 all)
Homebrew post-install未定義
サービス宣言なし

レジストリ情報

ソースデータベース詳細

Source DatabaseHomebrew formula API
Taphomebrew/core
Full Nameacme.sh
Version Scheme0
Revision0
Bottle Stable Root URLhttps://ghcr.io/v2/homebrew/core
Deprecatedno
Disabledno
Keg Onlyno
URL Keys
  • stable

ソースデータベース一致

他のパッケージマネージャ記録

一致は外部パッケージマネージャインデックスから取得され、ローカルの Automic Vault パッケージリンクとは分けて表示されます。

Debian apt95%

acme.sh 3.1.1-1

Pure unix shell script implementing ACME client protocol

https://github.com/acmesh-official/acme.sh

sudo apt install acme.sh
  • Section: web
  • Architecture: all
  • 2 依存関係
  • normalized package name match
  • 一致条件: Acme Sh
Debian stable package indexes · deb.debian.org · Debian stable package indexes: acme.sh from https://deb.debian.org/debian/dists/stable/main/binary-amd64/Packages.xz
Nix95%

acme-sh

nix profile install nixpkgs#acme-sh
  • normalized package name match
  • 一致条件: Acme Sh
nixpkgs package indexes · api.github.com · nixpkgs package indexes: pkgs/by-name/ac/acme-sh/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1
apk95%

acme.sh 3.1.3-r0

ACME Shell script, an acme client alternative to certbot

https://github.com/acmesh-official/acme.sh

sudo apk add acme.sh
  • License: GPL-3.0-only
  • Architecture: x86_64
  • Source Package: acme.sh
  • 1 依存関係
  • 1 提供
  • normalized package name match
  • 一致条件: Acme Sh
Alpine Linux edge package indexes · dl-cdn.alpinelinux.org · Alpine Linux edge package indexes: acme.sh from https://dl-cdn.alpinelinux.org/alpine/edge/community/x86_64/APKINDEX.tar.gz
pacman95%

acme.sh 3.1.3-1

An ACME Shell script, an acme client alternative to certbot

https://github.com/acmesh-official/acme.sh

sudo pacman -S acme.sh
  • License: GPL-3.0-only
  • Architecture: any
  • 1 依存関係
  • 3 任意依存関係
  • normalized package name match
  • 一致条件: Acme Sh
Arch Linux sync databases · geo.mirror.pkgbuild.com · Arch Linux sync databases: acme.sh from https://geo.mirror.pkgbuild.com/extra/os/x86_64/extra.db.tar.gz

ソース経路

リポジトリデータから生成

このページは scripts/generate-pkg-sqlite.py が生成した非公開のパッケージ SQLite アーティファクトから av-web によって提供されます。

使用ソース

  • Geiger risk classifier
  • Nucleus package database
  • av.db category and tag curation
  • cross-ecosystem install command graph
  • curated configuration and credential file locations
  • curated package history
  • external package-manager database matches
  • package relationship graph
  • package version freshness
  • package-page enrichment