Automic VaultAutomic Vault

brew

granted を Homebrew, Nix, scoop でインストール

granted のインストール経路、実行ファイル、メタデータ、AI エージェント向けセキュリティノートを確認します。

インストール

追加のインストールコマンド

macOS

Homebrew確認済み · 100%
brew install granted

local Homebrew formula metadata

Linux

Nix確認済み · 92%
nix profile install nixpkgs#granted

nixpkgs package indexes · pkgs/by-name/gr/granted/package.nix · ソース: api.github.com

Windows

Scoop確認済み · 92%
scoop install main/granted

Scoop official bucket manifest trees · bucket/granted.json · ソース: api.github.com

概要

パッケージ概要

Easiest way to access your cloud

コマンドとエイリアス

  • assume
  • assume.fish
  • assumego
  • granted

履歴

プロジェクトの歴史と使われ方

Granted is a command-line tool for cloud access, focused on AWS role assumption, AWS SSO workflows, browser-based console access, and safer handling of cached credentials.

プロジェクトの歴史

The Granted README and docs describe the project as a CLI that simplifies access to cloud roles and lets users open multiple cloud accounts in a browser. Its goals are fast role discovery and assumption, browser isolation for simultaneous accounts, and encrypted cached credentials to avoid plaintext SSO tokens on disk.

Granted is developed under the fwdcloudsec GitHub organization and is documented through the Common Fate/Granted documentation site. The repository structure separates the granted management command and assume role-assumption workflow.

採用の歴史

Granted fits teams with many AWS accounts, especially organizations using AWS SSO/IAM Identity Center. Its adoption is driven by reducing friction around profile selection, browser sessions, and short-lived role credentials.

The Homebrew package is useful because the tool lives directly in shell workflows: users run assume, integrate it with AWS config and credentials files, and pair it with browsers and keychains rather than a server process.

使われ方

Users configure AWS profiles, run assume to select and assume a role, export credentials for terminal commands, or open cloud consoles in separate browser contexts. The docs recommend AWS SSO because it avoids long-lived IAM credentials on a device.

Granted also intersects with package-manager and OS security details because it can use platform credential stores and must behave correctly across macOS, Linux, Windows, shells, and browsers.

パッケージ好きにとっての重要性

Granted is significant as a security-adjacent CLI package: it is small, but it touches AWS config conventions, credential files, shell initialization, browser integration, and OS credential stores. Those edges make packaging quality visible to day-to-day cloud operators.

タイムライン

  • 2024: Discussions and issues show active use around AWS SSO profile and keychain workflows.
  • 2026: The GitHub repository listed hundreds of commits and over a thousand stars, indicating a mature niche CLI package.

Related projects

  • AWS CLI and AWS IAM Identity Center are the primary external systems.
  • Browser container/profile features, OS keychains, and shell integrations are part of the user workflow.
  • Common Fate documentation and fwdcloudsec source control are the official project surfaces.

セキュリティ状態

リスクレベル: orange

infrastructure mutation or orchestration signal.

リスク分類器

リスク orange · 信頼度 中 · infrastructure

理由

  • infrastructure mutation or orchestration signal

信号

  • text:cloud

インストール挙動

  • formula メタデータに Homebrew post-install フックは記録されていません。
  • Homebrew bottle メタデータは 6 個のプラットフォームターゲットで利用できます。
  • ビルドメタデータには 1 件のビルド依存関係があります。

推奨レビュー

エージェントに無人実行させる前に、このツールが平文の認証情報を読むか、リモート状態を書き込むか、成果物を公開するか、プラグインを起動するかを確認してください。

local files

Configuration and credential file locations

These source-backed paths show where this package keeps local settings or durable credentials. Automic Vault can use them as review targets for secret scanning, migration, and command approval.

Configuration files

Config paths the tool may read or write during local use.

Unix
~/.granted~/.aws/config
Windows
%USERPROFILE%/.granted%UserProfile%\.aws\config

Credential files

Credential-bearing paths to review before unattended agent runs.

Unix
~/.aws/credentials
Windows
%UserProfile%\.aws\credentials

実行可能ファイル

インストールされる実行可能ファイル

コマンド種類公開範囲メモ
assumecliグローバル実行可能ファイル
assume.fishcliグローバル実行可能ファイル
assumegocliグローバル実行可能ファイル
grantedcliグローバル実行可能ファイル

鮮度

バージョンと鮮度

これらの信号は、ページ生成時期、パッケージマネージャの活動、上流リリース比較を分けて示します。バージョン遅れは、証拠 URL と比較可能なバージョンがある場合だけ警告されます。

ページ生成日2026-07-26
マネージャ版0.39.0
マネージャ更新日
ローカルデータOK
上流最新
検出された最新v0.39.0

https://github.com/fwdcloudsec/granted

  • 情報No package-manager update timestamp was available.信頼度 低

インストールメタデータ

パッケージメタデータ

パッケージキーbrew:granted
バージョン0.39.0
パッケージマネージャHomebrew
パッケージマネージャページhttps://formulae.brew.sh/formula/granted
ホームページhttps://granted.dev/
リポジトリhttps://github.com/fwdcloudsec/granted
上流ドキュメントhttps://docs.granted.dev/
ライセンスMIT
ソースアーカイブhttps://github.com/fwdcloudsec/granted/archive/refs/tags/v0.39.0.tar.gz
ビルド依存関係go
Bottle利用可能 (対象 arm64_linux, arm64_sequoia, arm64_sonoma, arm64_tahoe, sonoma, x86_64_linux)
Homebrew post-install未定義
サービス宣言なし

レジストリ情報

ソースデータベース詳細

Source DatabaseHomebrew formula API
Taphomebrew/core
Full Namegranted
Version Scheme0
Revision0
Head VersionHEAD
Bottle Stable Root URLhttps://ghcr.io/v2/homebrew/core
Deprecatedno
Disabledno
Keg Onlyno
URL Keys
  • head
  • stable

ソースデータベース一致

他のパッケージマネージャ記録

一致は外部パッケージマネージャインデックスから取得され、ローカルの Automic Vault パッケージリンクとは分けて表示されます。

Nix95%

granted

nix profile install nixpkgs#granted
  • normalized package name match
  • 一致条件: Granted
nixpkgs package indexes · api.github.com · nixpkgs package indexes: pkgs/by-name/gr/granted/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1
Scoop95%

main/granted

scoop install main/granted
  • normalized package name match
  • 一致条件: Granted
Scoop official bucket manifest trees · api.github.com · Scoop official bucket manifest trees: bucket/granted.json from https://api.github.com/repos/ScoopInstaller/Main/git/trees/master?recursive=1

ソース経路

リポジトリデータから生成

このページは scripts/generate-pkg-sqlite.py が生成した非公開のパッケージ SQLite アーティファクトから av-web によって提供されます。

使用ソース

  • Geiger risk classifier
  • Nucleus package database
  • av.db category and tag curation
  • cross-ecosystem install command graph
  • curated configuration and credential file locations
  • curated package history
  • external package-manager database matches
  • package relationship graph
  • package version freshness
  • package-page enrichment