Automic VaultAutomic Vault

brew

boa を Homebrew, Nix でインストール

boa のインストール経路、実行ファイル、メタデータ、AI エージェント向けセキュリティノートを確認します。

インストール

追加のインストールコマンド

macOS

Homebrew確認済み · 100%
brew install boa

local Homebrew formula metadata

Linux

Nix確認済み · 92%
nix profile install nixpkgs#boa

nixpkgs package indexes · pkgs/by-name/bo/boa/package.nix · ソース: api.github.com

概要

パッケージ概要

Embeddable and experimental Javascript engine written in Rust

コマンドとエイリアス

  • boa

履歴

プロジェクトの歴史と使われ方

Boa is an embeddable experimental JavaScript engine written in Rust, with a CLI and Rust crates for parsing, interpreting, and embedding ECMAScript.

プロジェクトの歴史

Boa began as Jason Williams's Rust JavaScript-engine experiment. The Boa about page says it was introduced at JSConf EU 2019, and the JSConf EU talk page describes Williams building an engine from scratch in Rust during the previous year.

The project grew into the boa-dev organization and a set of crates centered on boa_engine. Its README describes an experimental lexer, parser, and interpreter that tracks the evolving ECMAScript specification.

採用の歴史

Boa's adoption is mostly developer and embedders' adoption rather than browser adoption. It is carried by Homebrew and Nix and published through Rust's crate ecosystem, where Rust programs can embed it directly.

The project's public releases and blog posts emphasize conformance progress, embeddability, WebAssembly use, and keeping pace with Test262 and ECMAScript changes.

使われ方

Users can run the boa CLI for experiments, but the more important use case is embedding boa_engine in Rust applications that need JavaScript evaluation without linking to V8.

Boa is also useful for language-engine work: implementers can study parser, runtime, built-in-object, and conformance work in a Rust codebase that is smaller and more approachable than production browser engines.

パッケージ好きにとっての重要性

Boa matters to package nerds because JavaScript engines are usually huge C++ dependencies. A Rust-native, crate-published engine changes the packaging shape for applications that only need embeddable JS semantics.

Its significance is still experimental: package users should not read the Homebrew formula as a Node.js replacement. The interesting part is the long-term Rust ecosystem bet on standards-conforming embeddable scripting.

タイムライン

  • 2018-2019: Jason Williams builds a JavaScript engine from scratch in Rust.
  • 2019-06: Boa is introduced at JSConf EU 2019.
  • 2021-06: Boa v0.12 is announced on the official blog.
  • 2021-09: Boa v0.13 blog post highlights embedding in Rust projects and WebAssembly use.
  • 2020s: boa-dev continues publishing boa_engine and tracking ECMAScript/Test262 conformance.

Related projects

  • V8, SpiderMonkey, and JavaScriptCore: production browser/server JavaScript engines Boa is often compared against but does not replace.
  • QuickJS, MuJS, and Kiesel: smaller embeddable JavaScript engines in adjacent niches.
  • Test262: the official ECMAScript conformance suite Boa uses as a progress target.
  • Rust crates such as boa_engine and boa_parser: the packaged Rust components behind the CLI and embedding story.

セキュリティ状態

リスクレベル: グリーン

narrow executable package without higher-risk signals.

リスク分類器

リスク グリーン · 信頼度 低 · appliance

理由

  • narrow executable package without higher-risk signals

信号

  • metadata:no-higher-risk-signals

インストール挙動

  • formula メタデータに Homebrew post-install フックは記録されていません。
  • Homebrew bottle メタデータは 6 個のプラットフォームターゲットで利用できます。
  • ビルドメタデータには 2 件のビルド依存関係があります。

推奨レビュー

エージェントに無人実行させる前に、このツールが平文の認証情報を読むか、リモート状態を書き込むか、成果物を公開するか、プラグインを起動するかを確認してください。

実行可能ファイル

インストールされる実行可能ファイル

コマンド種類公開範囲メモ
boacliグローバル実行可能ファイル

鮮度

バージョンと鮮度

これらの信号は、ページ生成時期、パッケージマネージャの活動、上流リリース比較を分けて示します。バージョン遅れは、証拠 URL と比較可能なバージョンがある場合だけ警告されます。

ページ生成日2026-07-25
マネージャ版0.21.1
マネージャ更新日2026-06-22
ローカルデータOK
上流最新
検出された最新v0.21.1

https://github.com/boa-dev/boa

  • OK鮮度警告は生成されていません。

インストールメタデータ

パッケージメタデータ

パッケージキーbrew:boa
バージョン0.21.1
パッケージマネージャHomebrew
パッケージマネージャページhttps://formulae.brew.sh/formula/boa
ホームページhttps://github.com/boa-dev/boa
リポジトリhttps://github.com/boa-dev/boa
上流ドキュメントhttps://boajs.dev/docs/intro
ライセンスMIT OR Unlicense
ソースアーカイブhttps://github.com/boa-dev/boa/archive/refs/tags/v0.21.1.tar.gz
最終更新2026-06-22T14:02:54-07:00
Pulseupdated
ビルド依存関係pkgconf, rust
Bottle利用可能 (対象 arm64_linux, arm64_sequoia, arm64_sonoma, arm64_tahoe, sonoma, x86_64_linux)
Homebrew post-install未定義
サービス宣言なし

レジストリ情報

ソースデータベース詳細

Source DatabaseHomebrew formula API
Taphomebrew/core
Full Nameboa
Version Scheme0
Revision0
Head VersionHEAD
Bottle Stable Root URLhttps://ghcr.io/v2/homebrew/core
Deprecatedno
Disabledno
Keg Onlyno
URL Keys
  • head
  • stable

ソースデータベース一致

他のパッケージマネージャ記録

一致は外部パッケージマネージャインデックスから取得され、ローカルの Automic Vault パッケージリンクとは分けて表示されます。

Nix95%

boa

nix profile install nixpkgs#boa
  • normalized package name match
  • 一致条件: Boa
nixpkgs package indexes · api.github.com · nixpkgs package indexes: pkgs/by-name/bo/boa/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1

ソース経路

リポジトリデータから生成

このページは scripts/generate-pkg-sqlite.py が生成した非公開のパッケージ SQLite アーティファクトから av-web によって提供されます。

使用ソース

  • Geiger risk classifier
  • Nucleus package database
  • av.db category and tag curation
  • cross-ecosystem install command graph
  • curated package history
  • external package-manager database matches
  • package relationship graph
  • package version freshness
  • package-page enrichment