Automic VaultAutomic Vault

brew

Install droast with Homebrew

Opinionated Dockerfile linter. Version 1.4.10 via Homebrew; verified 2026-07-24.

install

Additional install commands

macOS

Homebrewverified ยท 100%
brew install droast

local Homebrew formula metadata

overview

Package summary

Opinionated Dockerfile linter

Commands and aliases

  • droast

history

Project history and usage

droast is an opinionated Dockerfile and Containerfile linter written in Rust. It combines syntax-aware parsing with rules for correctness, security, reproducibility, maintainability, and container-image performance.

Project history

The official repository was created in April 2026. The project quickly expanded from a command-line linter into a shared rule engine offered through native binaries, a container image, WebAssembly, editor integrations, pre-commit, and a GitHub Action.

Adoption history

The project supports installation through Homebrew and Cargo, direct binary releases, GHCR, Wasmer, VS Code, Neovim, and pre-commit. These surfaces let the same checks run locally, in editors, and in CI.

How it is used

Users can lint a single Dockerfile or recursively discover container build files across a repository. Output formats include terminal text, compact text, JSON, GitHub annotations, and SARIF; teams can commit a root-level droast.toml for shared defaults and policy.

Why package nerds care

droast targets packaging mistakes that affect reproducible and secure container images, including unpinned packages and base images, unsafe secrets, cache misuse, and incorrect package-manager cleanup. Its small Rust binary and multiple packaging formats make it easy to insert into existing build pipelines.

Timeline

  • 2026-04: The official repository was created.
  • 2026-07: Version 1.4.7 was released with native, container, editor, pre-commit, CI, and WASI installation paths.

Related projects

  • The project documents migration from Hadolint policies and optional ShellCheck integration, and it supports Docker and Podman build-context conventions.

security posture

No protected-tool coverage found yet

No matching local secret-handling manifest was found for droast. Nucleus package metadata is still published here so future coverage has a stable package URL.

Install behavior

  • No Homebrew post-install hook is recorded in formula metadata.
  • Homebrew bottle metadata is available for 6 platform targets.
  • Build metadata lists 1 build dependencies.

Recommended review

Before unattended agent use, check whether the tool reads plaintext credentials, writes remote state, publishes artifacts, or shells out to plugins.

local files

Configuration and credential file locations

These source-backed paths show where this package keeps local settings or durable credentials. Automic Vault can use them as review targets for secret scanning, migration, and command approval.

Configuration files

Config paths the tool may read or write during local use.

Unix
./droast.toml

executables

Installed executables

CommandKindExposureNote
droastcliglobal executable

freshness

Version and freshness

These signals separate page generation age, package-manager activity, and upstream release comparison. Version lag is warned only when an evidence URL and comparable versions are present.

page generated2026-07-25
manager version1.4.10
manager updated2026-07-24
local dataok
upstreamcurrent
latest detected1.4.10

https://github.com/immanuwell/dockerfile-roast

  • okNo freshness warnings were generated.

install metadata

Package metadata

Package keybrew:droast
Version1.4.10
Package managerHomebrew
Package manager pagehttps://formulae.brew.sh/formula/droast
Homepagehttps://ewry.net/droast-dockerfile-linter/
Repositoryhttps://github.com/immanuwell/dockerfile-roast
Upstream docshttps://github.com/immanuwell/dockerfile-roast#readme
LicenseMIT
Source archivehttps://github.com/immanuwell/dockerfile-roast/archive/refs/tags/1.4.10.tar.gz
Last updated2026-07-24T12:16:43Z
Pulsenew
Build dependenciesrust
Bottleavailable (on arm64_linux, arm64_sequoia, arm64_sonoma, arm64_tahoe, sonoma, x86_64_linux)
Homebrew post-installnot defined
Servicenone declared

registry facts

Source database details

Source DatabaseHomebrew formula API
Taphomebrew/core
Full Namedroast
Version Scheme0
Revision0
Bottle Stable Root URLhttps://ghcr.io/v2/homebrew/core
Deprecatedno
Disabledno
Keg Onlyno
URL Keys
  • stable

source trail

Generated from repository data

This page is generated by av-web from the private package SQLite artifact built by scripts/generate-pkg-sqlite.py.

Used sources

  • Nucleus package database
  • av.db category and tag curation
  • cross-ecosystem install command graph
  • curated configuration and credential file locations
  • curated package history
  • package relationship graph
  • package version freshness
  • package-page enrichment