Automic VaultAutomic Vault

brew

kube-score を Homebrew, Nix でインストール

kube-score のインストール経路、実行ファイル、メタデータ、AI エージェント向けセキュリティノートを確認します。

インストール

追加のインストールコマンド

macOS

Homebrew確認済み · 100%
brew install kube-score

local Homebrew formula metadata

Linux

Nix確認済み · 92%
nix profile install nixpkgs#kube-score

nixpkgs package indexes · pkgs/by-name/ku/kube-score/package.nix · ソース: api.github.com

概要

パッケージ概要

Kubernetes object analysis recommendations for improved reliability and security

コマンドとエイリアス

  • kube-score

履歴

プロジェクトの歴史と使われ方

kube-score is a Kubernetes manifest analysis CLI that scores object definitions and recommends reliability and security improvements. It is aimed at the pre-deployment stage, where YAML, Helm output, or Kustomize output can still be changed cheaply.

プロジェクトの歴史

The kube-score repository was created on 2018-09-16, and its first beta release, v0.1.0-beta1, was published on 2018-09-26. The README presents it as static code analysis for Kubernetes object definitions, with checks for resources, network policy coverage, pod disruption budgets, probes, security contexts, and stable APIs.

Unlike cluster-side policy systems, kube-score kept a developer-tool shape: a single CLI that reads manifests, prints human or machine-readable findings, and exits with a CI-friendly status code.

採用の歴史

The project documents several distribution paths: GitHub release binaries for macOS, Linux, and Windows, a Docker image, Homebrew, and Krew as the kubectl score plugin. Its website also hosts an online demo backed by the kube-score/web repository, giving users a low-friction way to try the checks without installing the CLI.

使われ方

Typical usage pipes rendered Kubernetes resources into kube-score, for example from helm template or kustomize build. The tool can also read static YAML files or resources exported from a live cluster, then produce recommendations in human, JSON, CI, or SARIF-oriented formats.

Annotations such as kube-score/ignore and kube-score/enable let users suppress or opt into checks on individual objects, which keeps the linter usable in repositories where not every workload has the same operational constraints.

パッケージ好きにとっての重要性

kube-score matters in package-manager culture because it is a small, composable quality gate for Kubernetes manifests. It turns a broad operational checklist into a command that can live in a Makefile, pre-commit hook, GitHub Action, or CI job.

It also illustrates a common Kubernetes packaging pattern: one Go binary, release artifacts for multiple platforms, a Docker image for containerized CI, Homebrew for local developer machines, and Krew for kubectl-plugin users.

タイムライン

  • 2018-09-16: GitHub repository created.
  • 2018-09-26: First GitHub release, v0.1.0-beta1, published.
  • 2018-10-08: v0.1.0 published.
  • 2025-04-28: GitHub release v1.20.0 published.

Related projects

  • Helm and Kustomize are common input producers for kube-score.
  • Krew distributes kube-score as a kubectl plugin named score.
  • kube-score/web provides the browser demo linked from the README.
  • KubeLinter occupies a related manifest-linting space with a stronger production-readiness and security-check branding.

セキュリティ状態

リスクレベル: orange

infrastructure mutation or orchestration signal.

リスク分類器

リスク orange · 信頼度 中 · infrastructure

理由

  • infrastructure mutation or orchestration signal

信号

  • text:kubernetes

インストール挙動

  • formula メタデータに Homebrew post-install フックは記録されていません。
  • Homebrew bottle メタデータは 8 個のプラットフォームターゲットで利用できます。
  • ビルドメタデータには 1 件のビルド依存関係があります。

推奨レビュー

エージェントに無人実行させる前に、このツールが平文の認証情報を読むか、リモート状態を書き込むか、成果物を公開するか、プラグインを起動するかを確認してください。

実行可能ファイル

インストールされる実行可能ファイル

コマンド種類公開範囲メモ
kube-scorecliグローバル実行可能ファイル

鮮度

バージョンと鮮度

これらの信号は、ページ生成時期、パッケージマネージャの活動、上流リリース比較を分けて示します。バージョン遅れは、証拠 URL と比較可能なバージョンがある場合だけ警告されます。

ページ生成日2026-07-25
マネージャ版1.20.0
マネージャ更新日
ローカルデータOK
上流not checked
検出された最新未検出

https://github.com/zegl/kube-score

  • 情報No package-manager update timestamp was available.信頼度 低
  • 情報No cached GitHub release or tag data was available.https://github.com/zegl/kube-score信頼度 none

インストールメタデータ

パッケージメタデータ

パッケージキーbrew:kube-score
バージョン1.20.0
パッケージマネージャHomebrew
パッケージマネージャページhttps://formulae.brew.sh/formula/kube-score
ホームページhttps://kube-score.com
リポジトリhttps://github.com/zegl/kube-score
上流ドキュメントhttps://github.com/zegl/kube-score#readme
ライセンスMIT
ソースアーカイブhttps://github.com/zegl/kube-score.git
ビルド依存関係go
Bottle利用可能 (対象 arm64_linux, arm64_sequoia, arm64_sonoma, arm64_tahoe, arm64_ventura, sonoma, ventura, x86_64_linux)
Homebrew post-install未定義
サービス宣言なし

レジストリ情報

ソースデータベース詳細

Source DatabaseHomebrew formula API
Taphomebrew/core
Full Namekube-score
Version Scheme0
Revision0
Head VersionHEAD
Bottle Stable Root URLhttps://ghcr.io/v2/homebrew/core
Deprecatedno
Disabledno
Keg Onlyno
URL Keys
  • head
  • stable

ソースデータベース一致

他のパッケージマネージャ記録

一致は外部パッケージマネージャインデックスから取得され、ローカルの Automic Vault パッケージリンクとは分けて表示されます。

Nix95%

kube-score

nix profile install nixpkgs#kube-score
  • normalized package name match
  • 一致条件: Kube Score
nixpkgs package indexes · api.github.com · nixpkgs package indexes: pkgs/by-name/ku/kube-score/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1

ソース経路

リポジトリデータから生成

このページは scripts/generate-pkg-sqlite.py が生成した非公開のパッケージ SQLite アーティファクトから av-web によって提供されます。

使用ソース

  • Geiger risk classifier
  • Nucleus package database
  • av.db category and tag curation
  • cross-ecosystem install command graph
  • curated package history
  • external package-manager database matches
  • package relationship graph
  • package version freshness
  • package-page enrichment