Credential access
Reads Hugging Face tokens, cache files, repository credentials, and environment variables.
brew / 保護ツール対応 / 順位 868
hf のインストール経路、実行ファイル、メタデータ、AI エージェント向けセキュリティノートを確認します。
agent safety
hf controls Hugging Face model, dataset, and Space workflows.
Reads Hugging Face tokens, cache files, repository credentials, and environment variables.
Can upload, delete, and change models, datasets, and Spaces.
Publishes ML artifacts, datasets, and app spaces.
Gate upload, delete, login, repo, and token commands.
Allow public model inspection; require approval for uploads, deletes, private repo access, and token use.
インストール
sudo av install brew:hfbrew install hflocal Homebrew formula metadata
概要
Client library for huggingface.co hub
保護ツール対応
Hugging Face Hub stores the active CLI token in ~/.cache/huggingface/token. Our isotope stores that token in the macOS keychain and injects it as HF_TOKEN only while `hf` runs.
green risk · low confidence · appliance
ローカル README 抜粋
Hugging Face Hub stores the active CLI token in ~/.cache/huggingface/token.
This protected-tool coverage migrates that active token into the Automic Vault keychain and wraps hf so HF_TOKEN is present only while the CLI runs.
stored_tokens entries are not migrated.ソース: local coverage notes
ソース抜粋
実行可能ファイル
| コマンド | 種類 | 公開範囲 | メモ |
|---|---|---|---|
hf | cli | global executable | |
huggingface-cli | cli | global executable | |
tiny-agents | cli | global executable |
鮮度
これらの信号は、ページ生成時期、パッケージマネージャの活動、上流リリース比較を分けて示します。バージョン遅れは、証拠 URL と比較可能なバージョンがある場合だけ警告されます。
https://huggingface.co/docs/huggingface_hub/guides/cli
インストールメタデータ
| Package key | brew:hf |
|---|---|
| Version | 1.18.0 |
| Package manager | Homebrew |
| Package manager page | https://formulae.brew.sh/formula/hf |
| Homepage | https://huggingface.co/docs/huggingface_hub/guides/cli |
| Repository | https://github.com/huggingface/huggingface_hub |
| Upstream docs | https://huggingface.co/docs/huggingface_hub/guides/cli |
| License | Apache-2.0 |
| Source archive | https://files.pythonhosted.org/packages/fb/d8/748ea0a47f0fa15227fe682f7a80826b4b7c096e4818044b8f56d6cb66d6/huggingface_hub-1.18.0.tar.gz |
| Last updated | 2026-06-06T12:13:07Z |
| Pulse | updated |
| Dependencies | certifi, git-lfs, libyaml, python@3.14 |
| Build dependencies | pkgconf, rust |
| Bottle | available (arm64_linux, arm64_sequoia, arm64_sonoma, arm64_tahoe, sonoma, x86_64_linux) |
| Homebrew post-install | not defined |
| Service | none declared |
registry facts
| Source Database | Homebrew formula API |
|---|---|
| Tap | homebrew/core |
| Full Name | hf |
| Version Scheme | 0 |
| Revision | 0 |
| Head Version | HEAD |
| Bottle Stable Root URL | https://ghcr.io/v2/homebrew/core |
| Deprecated | no |
| Disabled | no |
| Keg Only | no |
| URL Keys |
|
ソース経路
このページは scripts/generate-pkg-sqlite.py が生成した非公開のパッケージ SQLite アーティファクトから av-web によって提供されます。