Automic VaultAutomic Vault

brew

cargo-dist を Homebrew, Nix, pacman, apt, winget でインストール

cargo-dist のインストール経路、実行ファイル、メタデータ、AI エージェント向けセキュリティノートを確認します。

インストール

追加のインストールコマンド

macOS

Homebrew確認済み · 100%
brew install cargo-dist

local Homebrew formula metadata

Linux

Nix確認済み · 92%
nix profile install nixpkgs#cargo-dist

nixpkgs package indexes · pkgs/by-name/ca/cargo-dist/package.nix · ソース: api.github.com

Arch Linux pacman確認済み · 92%
sudo pacman -S cargo-dist

Arch Linux sync databases · cargo-dist · ソース: geo.mirror.pkgbuild.com

Debian apt確認済み · 92%
sudo apt install dist

Debian stable package indexes · dist · ソース: deb.debian.org

Windows

Windows Package Manager確認済み · 92%
winget install --id axodotdev.dist -e

Windows Package Manager source index · axodotdev.dist · ソース: cdn.winget.microsoft.com

概要

パッケージ概要

Tool for building final distributable artifacts and uploading them to an archive

履歴

プロジェクトの歴史と使われ方

cargo-dist, now branded in its README as `dist`, is a release and binary-distribution tool from Axo that generates shippable artifacts, installers, release manifests, and CI workflows for Rust and other projects. It occupies the packaging layer between `cargo build` and public distribution channels such as GitHub Releases and package managers.

プロジェクトの歴史

The cargo-dist crate appeared on crates.io in September 2022, and the GitHub repository was created in October 2022. Its early identity was tightly Rust-centered, but the official README now labels the project `dist (formerly known as cargo-dist)`, reflecting its wider release-engineering ambitions.

The README describes the project as a tool that plans, builds, hosts, publishes, and announces releases. A defining design choice is generated CI: `dist init` can generate release workflows that wait for version tags, build artifacts on multiple platforms, create or edit GitHub Releases, and attach generated release notes and artifacts.

The project also documents self-hosting: dist's own releases are produced through dist-generated release machinery, with cargo-release used for version and changelog mechanics.

採用の歴史

cargo-dist grew as Rust CLI authors wanted repeatable binary releases without maintaining bespoke GitHub Actions matrices and installer scripts. The supplied package-manager facts show packaging across Homebrew, Debian/Ubuntu as `dist`, Nix, Arch Linux, and winget, indicating adoption beyond the Rust-only install path.

crates.io records more than one hundred thousand downloads, while the GitHub repository has thousands of stars. That combination of registry use, cross-platform package-manager presence, and generated CI support makes it one of the more visible Rust-origin release automation tools.

使われ方

A typical user initializes configuration with `dist init`, commits the generated configuration and CI workflow, then publishes by pushing a version tag. dist plans the release, builds archives and installers, produces a machine-readable manifest, and can host artifacts on a GitHub Release.

Configuration can live in Cargo.toml, package.json, dist-workspace.toml, or dist.toml, which matches the project's move from a Cargo-only helper toward a general binary distribution tool.

パッケージ好きにとっての重要性

cargo-dist matters to package nerds because it treats release artifacts as first-class package metadata: archives, installers, checksums, changelogs, manifests, hosting locations, and package-manager publishing become a repeatable graph instead of ad hoc release notes.

It also captures a common Rust ecosystem pattern: a tool starts as a Cargo subcommand, then expands into broader developer tooling while keeping Cargo workspace integration as a core path.

タイムライン

  • 2022: cargo-dist crate first published on crates.io.
  • 2022: axodotdev/cargo-dist GitHub repository created.
  • 2024: README documents generated CI workflows, installers, release manifests, package publishing, and self-hosted releases.
  • 2026: crates.io metadata shows active updates and the 0.32.x release line.

Related projects

  • oranda is referenced by the README as a companion for generated project websites.
  • cargo-release is documented in the repository's release workflow for version, changelog, and tag mechanics.
  • GitHub Releases and GitHub Actions are central hosting and CI targets in the official documentation.

セキュリティ状態

リスクレベル: blue

broad file, network, media, or database tool signal.

リスク分類器

リスク blue · 信頼度 中 · tool

理由

  • broad file, network, media, or database tool signal

信号

  • text:upload,archive

インストール挙動

  • formula メタデータに Homebrew post-install フックは記録されていません。
  • Homebrew bottle メタデータは 6 個のプラットフォームターゲットで利用できます。
  • ビルドメタデータには 1 件のビルド依存関係があります。

推奨レビュー

エージェントに無人実行させる前に、このツールが平文の認証情報を読むか、リモート状態を書き込むか、成果物を公開するか、プラグインを起動するかを確認してください。

local files

Configuration and credential file locations

These source-backed paths show where this package keeps local settings or durable credentials. Automic Vault can use them as review targets for secret scanning, migration, and command approval.

Configuration files

Config paths the tool may read or write during local use.

Unix
Cargo.tomlpackage.jsondist-workspace.tomldist.toml

実行可能ファイル

インストールされる実行可能ファイル

コマンド種類公開範囲メモ
distcliグローバル実行可能ファイル

鮮度

バージョンと鮮度

これらの信号は、ページ生成時期、パッケージマネージャの活動、上流リリース比較を分けて示します。バージョン遅れは、証拠 URL と比較可能なバージョンがある場合だけ警告されます。

ページ生成日2026-07-25
マネージャ版0.32.0
マネージャ更新日2026-05-22
ローカルデータOK
上流最新
検出された最新v0.32.0

https://github.com/axodotdev/cargo-dist

  • OK鮮度警告は生成されていません。

インストールメタデータ

パッケージメタデータ

パッケージキーbrew:cargo-dist
バージョン0.32.0
パッケージマネージャHomebrew
パッケージマネージャページhttps://formulae.brew.sh/formula/cargo-dist
ホームページhttps://axodotdev.github.io/cargo-dist/
リポジトリhttps://github.com/axodotdev/cargo-dist
上流ドキュメントhttps://axodotdev.github.io/cargo-dist/book
ライセンスApache-2.0 OR MIT
ソースアーカイブhttps://github.com/axodotdev/cargo-dist/archive/refs/tags/v0.32.0.tar.gz
最終更新2026-05-22T09:34:54Z
Pulseupdated
ビルド依存関係rust
Bottle利用可能 (対象 arm64_linux, arm64_sequoia, arm64_sonoma, arm64_tahoe, sonoma, x86_64_linux)
Homebrew post-install未定義
サービス宣言なし

レジストリ情報

ソースデータベース詳細

Source DatabaseHomebrew formula API
Taphomebrew/core
Full Namecargo-dist
Version Scheme0
Revision0
Head VersionHEAD
Conflicts With
  • nmh
Bottle Stable Root URLhttps://ghcr.io/v2/homebrew/core
Deprecatedno
Disabledno
Keg Onlyno
URL Keys
  • head
  • stable

ソースデータベース一致

他のパッケージマネージャ記録

一致は外部パッケージマネージャインデックスから取得され、ローカルの Automic Vault パッケージリンクとは分けて表示されます。

Nix95%

cargo-dist

nix profile install nixpkgs#cargo-dist
  • normalized package name match
  • 一致条件: Cargo Dist
nixpkgs package indexes · api.github.com · nixpkgs package indexes: pkgs/by-name/ca/cargo-dist/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1
pacman95%

cargo-dist 0.32.0-1

Shippable application packaging for Rust

https://github.com/axodotdev/cargo-dist

sudo pacman -S cargo-dist
  • License: Apache-2.0 AND MIT
  • Architecture: x86_64
  • 3 依存関係
  • normalized package name match
  • 一致条件: Cargo Dist
Arch Linux sync databases · geo.mirror.pkgbuild.com · Arch Linux sync databases: cargo-dist from https://geo.mirror.pkgbuild.com/extra/os/x86_64/extra.db.tar.gz
Debian apt92%

dist 1:3.5-236-1.1

Tools for developing, maintaining and distributing software

sudo apt install dist
  • Section: devel
  • Architecture: all
  • 4 依存関係
  • installed executable or alias match
  • 一致条件: Dist
Debian stable package indexes · deb.debian.org · Debian stable package indexes: dist from https://deb.debian.org/debian/dists/stable/main/binary-amd64/Packages.xz
Ubuntu apt92%

dist 1:3.5-236-1

Tools for developing, maintaining and distributing software

sudo apt install dist
  • Section: universe/devel
  • Architecture: all
  • 4 依存関係
  • installed executable or alias match
  • 一致条件: Dist
Ubuntu 24.04 LTS package indexes · archive.ubuntu.com · Ubuntu 24.04 LTS package indexes: dist from https://archive.ubuntu.com/ubuntu/dists/noble/universe/binary-amd64/Packages.gz
winget92%

axodotdev.dist

winget install --id axodotdev.dist -e
  • installed executable or alias match
  • 一致条件: Dist
Windows Package Manager source index · cdn.winget.microsoft.com · Windows Package Manager source index: axodotdev.dist from https://cdn.winget.microsoft.com/cache/source.msix

ソース経路

リポジトリデータから生成

このページは scripts/generate-pkg-sqlite.py が生成した非公開のパッケージ SQLite アーティファクトから av-web によって提供されます。

使用ソース

  • Geiger risk classifier
  • Nucleus package database
  • av.db category and tag curation
  • cross-ecosystem install command graph
  • curated configuration and credential file locations
  • curated package history
  • external package-manager database matches
  • package relationship graph
  • package version freshness
  • package-page enrichment