Automic VaultAutomic Vault

brew

forbidden を Homebrew, Nix でインストール

forbidden のインストール経路、実行ファイル、メタデータ、AI エージェント向けセキュリティノートを確認します。

インストール

追加のインストールコマンド

macOS

Homebrew確認済み · 100%
brew install forbidden

local Homebrew formula metadata

Linux

Nix確認済み · 92%
nix profile install nixpkgs#forbidden

nixpkgs package indexes · pkgs/by-name/fo/forbidden/package.nix · ソース: api.github.com

概要

パッケージ概要

Bypass 4xx HTTP response status codes and more

コマンドとエイリアス

  • forbidden
  • stresser

履歴

プロジェクトの歴史と使われ方

Forbidden is a security testing CLI for attempting bypasses of 4xx HTTP response status codes and related web access-control behaviors. Its README describes separate forbidden and stresser commands and states that the tool is based on Python Requests, PycURL, and Python's HTTP client.

プロジェクトの歴史

The public project history available from official sources is mostly README-level rather than narrative. The maintained README documents a mature command set, a v13.4 build artifact in source-install instructions, and a roadmap of future tests such as hop-by-hop headers, User-Agent headers, cookies, HTTP smuggling, CRLF, Log4j, and AWS metadata SSRF.

採用の歴史

The README positions pip as the standard installation route and mentions a Homebrew formula as an alternative that is not maintained by the author. That combination places Forbidden in the common pentesting-tool distribution pattern of upstream Python packaging plus downstream CLI formulas.

使われ方

Typical use is to supply a target URL and choose test groups such as protocols, methods, uploads, overrides, headers, path mutations, encodings, authentication bypasses, redirects, and parser tests. The README cautions about proxies normalizing URLs, rate limiting, anti-bot protections, and engine-specific behavior.

パッケージ好きにとっての重要性

Forbidden is package-nerd relevant as a compact example of a Python security CLI that depends on multiple HTTP engines to exercise edge cases that ordinary curl invocations cannot always produce, such as duplicate Host headers or requests without a Host header.

タイムライン

  • v13.4: README source-install instructions reference building forbidden-13.4-py3-none-any.whl.
  • Current README: Homebrew installation is documented as an alternative not maintained by the author.

Related projects

  • The README names Python Requests, PycURL, and Python HTTP Client as implementation engines and links to internal forbidden.py, test.py, and value.py files for the test definitions.

セキュリティ状態

保護ツール対応はまだ見つかっていません

forbidden に一致するローカルシークレット処理マニフェストは見つかりませんでした。将来の対応で安定したパッケージ URL を使えるよう、Nucleus パッケージメタデータはここに公開されています。

インストール挙動

  • formula メタデータに Homebrew post-install フックは記録されていません。
  • Homebrew bottle メタデータは 6 個のプラットフォームターゲットで利用できます。
  • 7 件の実行時依存関係とともにインストールされます。

推奨レビュー

エージェントに無人実行させる前に、このツールが平文の認証情報を読むか、リモート状態を書き込むか、成果物を公開するか、プラグインを起動するかを確認してください。

実行可能ファイル

インストールされる実行可能ファイル

コマンド種類公開範囲メモ
forbiddencliグローバル実行可能ファイル
stressercliグローバル実行可能ファイル

鮮度

バージョンと鮮度

これらの信号は、ページ生成時期、パッケージマネージャの活動、上流リリース比較を分けて示します。バージョン遅れは、証拠 URL と比較可能なバージョンがある場合だけ警告されます。

ページ生成日2026-07-25
マネージャ版13.4
マネージャ更新日2026-06-03
ローカルデータOK
上流not checked
検出された最新未検出

https://github.com/ivan-sincek/forbidden

インストールメタデータ

パッケージメタデータ

パッケージキーbrew:forbidden
バージョン13.4
パッケージマネージャHomebrew
パッケージマネージャページhttps://formulae.brew.sh/formula/forbidden
ホームページhttps://github.com/ivan-sincek/forbidden
リポジトリhttps://github.com/ivan-sincek/forbidden
上流ドキュメントhttps://github.com/ivan-sincek/forbidden
ライセンスMIT
ソースアーカイブhttps://files.pythonhosted.org/packages/9b/aa/98fc3ee28aac41cae341a197858ff6af5d79e40dcd45c8a6e37b1fdbfd19/forbidden-13.4.tar.gz
最終更新2026-06-03T10:43:07Z
Pulseupdated
依存関係certifi, cffi, cryptography, curl, openssl@3, pycparser, python@3.14
Bottle利用可能 (対象 arm64_linux, arm64_sequoia, arm64_sonoma, arm64_tahoe, sonoma, x86_64_linux)
Homebrew post-install未定義
サービス宣言なし

レジストリ情報

ソースデータベース詳細

Source DatabaseHomebrew formula API
Taphomebrew/core
Full Nameforbidden
Version Scheme0
Revision7
Head VersionHEAD
Bottle Stable Root URLhttps://ghcr.io/v2/homebrew/core
Deprecatedno
Disabledno
Keg Onlyno
URL Keys
  • head
  • stable

ソースデータベース一致

他のパッケージマネージャ記録

一致は外部パッケージマネージャインデックスから取得され、ローカルの Automic Vault パッケージリンクとは分けて表示されます。

Nix95%

forbidden

nix profile install nixpkgs#forbidden
  • normalized package name match
  • 一致条件: Forbidden
nixpkgs package indexes · api.github.com · nixpkgs package indexes: pkgs/by-name/fo/forbidden/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1

ソース経路

リポジトリデータから生成

このページは scripts/generate-pkg-sqlite.py が生成した非公開のパッケージ SQLite アーティファクトから av-web によって提供されます。

使用ソース

  • Geiger risk classifier
  • Nucleus package database
  • av.db category and tag curation
  • cross-ecosystem install command graph
  • curated package history
  • external package-manager database matches
  • package relationship graph
  • package version freshness
  • package-page enrichment