Automic VaultAutomic Vault

brew

Install openlist with Homebrew, Nix, scoop, winget

New AList fork addressing anti-trust issues. Version 4.2.4 via Homebrew; verified 2026-07-23. Also installable with nix: nix profile install nixpkgs#openlist.

install

Additional install commands

macOS

Homebrewverified · 100%
brew install openlist

local Homebrew formula metadata

Linux

Nixverified · 92%
nix profile install nixpkgs#openlist

nixpkgs package indexes · pkgs/by-name/op/openlist/package.nix · source: api.github.com

Windows

Scoopverified · 92%
scoop install main/openlist

Scoop official bucket manifest trees · bucket/openlist.json · source: api.github.com

Windows Package Managerverified · 92%
winget install --id OpenListTeam.OpenList -e

Windows Package Manager source index · OpenListTeam.OpenList · source: cdn.winget.microsoft.com

overview

Package summary

New AList fork addressing anti-trust issues

Commands and aliases

  • openlist

history

Project history and usage

OpenList is a community-driven fork of AList, a self-hosted file-listing and WebDAV server for multiple storage backends. The Homebrew formula describes it as a new AList fork addressing anti-trust issues, while the project describes itself as a long-term governance fork built to defend against trust-based attacks.

Project history

AList established the base model: a Go and SolidJS application for presenting many storage providers through a file-listing web UI and WebDAV access. OpenList forked that codebase under the OpenList Team with AGPL-3.0 licensing, independent maintenance, and explicit governance messaging around source openness and modification transparency.

The OpenList documentation emphasizes migration from AList V3, which makes the project history unusually visible in its packaging story. Rather than presenting as a brand-new file server, OpenList positions itself as a continuity fork for users who wanted the AList workflow under a different trust and governance model.

Adoption history

OpenList's early adoption is concentrated in the self-hosted and homelab ecosystem where AList had already been used to aggregate cloud drives, local disks, and network storage behind one web interface. The presence of Homebrew, Nix, Scoop, and Winget package metadata suggests the project pursued multi-platform installer coverage quickly after the fork.

Because the fork was motivated by trust and governance concerns, adoption is less about a novel protocol and more about continuity: users can preserve a familiar file-listing/WebDAV stack while moving to a project whose maintainers foreground open governance.

How it is used

Users run OpenList as a server process, configure storage providers, and expose a browser-based file list and WebDAV endpoint. The official quick-start documentation lists installation paths such as script install, manual install, Docker, desktop, PaaS, source builds, and reverse proxy deployment.

Package-manager users can install the `openlist` executable through Homebrew, while other ecosystems publish package identifiers for Nix, Scoop, and Winget. Typical use is personal or small-team storage aggregation rather than a general-purpose database or synchronization engine.

Why package nerds care

OpenList is package-nerd-significant because it is a governance fork whose package identity matters. The formula is not just a renamed AList binary: it points to a distinct upstream organization, docs site, license declaration, and release line.

It is also a useful example of a self-hosted app that needs package catalogs to capture both runtime behavior and social provenance. The executable is a file-listing/WebDAV server, but the reason many users look for it is the fork's trust story.

Timeline

  • AList provided the original multi-storage file-listing and WebDAV application model.
  • OpenList forked AList under the OpenList Team with AGPL-3.0 licensing and a stated goal of community-driven, long-term governance.
  • OpenList documentation added migration guidance for AList V3 users and installation paths covering Docker, source builds, desktop, PaaS, and package-manager style installs.
  • Homebrew added an `openlist` formula pointing to the OpenList documentation and GitHub upstream.

Related projects

  • Related projects include AList, OpenList Frontend, OpenList desktop service components, WebDAV clients, cloud storage providers supported through AList/OpenList drivers, and packaging entries in Homebrew, Nix, Scoop, and Winget.

security posture

Risk level: green

narrow executable package without higher-risk signals.

Risk classifier

green risk · low confidence · appliance

Why

  • narrow executable package without higher-risk signals

Signals

  • metadata:no-higher-risk-signals

Install behavior

  • No Homebrew post-install hook is recorded in formula metadata.
  • Homebrew bottle metadata is available for 6 platform targets.
  • Build metadata lists 3 build dependencies.

Recommended review

Before unattended agent use, check whether the tool reads plaintext credentials, writes remote state, publishes artifacts, or shells out to plugins.

executables

Installed executables

CommandKindExposureNote
openlistcliglobal executable

freshness

Version and freshness

These signals separate page generation age, package-manager activity, and upstream release comparison. Version lag is warned only when an evidence URL and comparable versions are present.

page generated2026-07-26
manager version4.2.4
manager updated2026-07-23
local dataok
upstreamcurrent
latest detectedv4.2.4

https://github.com/OpenListTeam/OpenList

  • okNo freshness warnings were generated.

install metadata

Package metadata

Package keybrew:openlist
Version4.2.4
Package managerHomebrew
Package manager pagehttps://formulae.brew.sh/formula/openlist
Homepagehttps://doc.oplist.org/
Repositoryhttps://github.com/OpenListTeam/OpenList
Upstream docshttps://doc.oplist.org/
LicenseAGPL-3.0-only
Source archivehttps://github.com/OpenListTeam/OpenList/archive/refs/tags/v4.2.4.tar.gz
Last updated2026-07-23T17:03:21Z
Pulseupdated
Build dependenciesgo, node, pnpm
Bottleavailable (on arm64_linux, arm64_sequoia, arm64_sonoma, arm64_tahoe, sonoma, x86_64_linux)
Homebrew post-installnot defined
Servicenone declared

registry facts

Source database details

Source DatabaseHomebrew formula API
Taphomebrew/core
Full Nameopenlist
Version Scheme0
Revision0
Bottle Stable Root URLhttps://ghcr.io/v2/homebrew/core
Deprecatedno
Disabledno
Keg Onlyno
URL Keys
  • stable

source database matches

Other package-manager records

Matches are pulled from external package-manager indexes and kept separate from local Automic Vault package links.

Nix95%

openlist

nix profile install nixpkgs#openlist
  • normalized package name match
  • Matched by: Openlist
nixpkgs package indexes · api.github.com · nixpkgs package indexes: pkgs/by-name/op/openlist/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1
Scoop95%

main/openlist

scoop install main/openlist
  • normalized package name match
  • Matched by: Openlist
Scoop official bucket manifest trees · api.github.com · Scoop official bucket manifest trees: bucket/openlist.json from https://api.github.com/repos/ScoopInstaller/Main/git/trees/master?recursive=1
winget95%

OpenListTeam.OpenList

winget install --id OpenListTeam.OpenList -e
  • normalized package name match
  • Matched by: Openlist
Windows Package Manager source index · cdn.winget.microsoft.com · Windows Package Manager source index: OpenListTeam.OpenList from https://cdn.winget.microsoft.com/cache/source.msix

source trail

Generated from repository data

This page is generated by av-web from the private package SQLite artifact built by scripts/generate-pkg-sqlite.py.

Used sources

  • Geiger risk classifier
  • Nucleus package database
  • av.db category and tag curation
  • cross-ecosystem install command graph
  • curated package history
  • external package-manager database matches
  • package relationship graph
  • package version freshness
  • package-page enrichment