# Install ssllabs-scan with Homebrew

This tool is a command-line client for the SSL Labs APIs. Version 1.5.0 via Homebrew; verified from local package data.

## Install

```sh
sudo av install brew:ssllabs-scan
```

Additional install commands:

### macOS

- Homebrew (100%):

```sh
brew install ssllabs-scan
```

  Evidence: local Homebrew formula metadata

## Package facts

- **Package key:** brew:ssllabs-scan
- **Package manager:** Homebrew
- **Package manager page:** <https://formulae.brew.sh/formula/ssllabs-scan>
- **Version:** 1.5.0
- **Source summary:** This tool is a command-line client for the SSL Labs APIs
- **Homepage:** <https://www.ssllabs.com/projects/ssllabs-apis/>
- **Repository:** <https://github.com/ssllabs/ssllabs-scan>
- **Upstream docs:** <https://github.com/ssllabs/ssllabs-scan#readme>
- **License:** Apache-2.0
- **Source archive:** <https://github.com/ssllabs/ssllabs-scan/archive/refs/tags/v1.5.0.tar.gz>
- **Generated:** 2026-07-25T07:20:51+00:00

## Executables

- ssllabs-scan (cli)
- ssllabs-scan (alias)

## Build dependencies

- go

## Install behavior

- Post-install hook: not defined
- Caveats: By installing this package you agree to the Terms and Conditions defined by Qualys. You can find the terms and conditions at this link: https://www.ssllabs.com/about/terms.html If you do not agree with those you should uninstall the formula.
- Bottle: available on arm64_big_sur, arm64_linux, arm64_monterey, arm64_sequoia, arm64_sonoma, arm64_tahoe, arm64_ventura, big_sur, catalina, monterey, sonoma, ventura

## Freshness

- Page generated: 2026-07-25
- Package-manager version: 1.5.0
- Local data: ok
- Upstream repository: https://github.com/ssllabs/ssllabs-scan
- Upstream latest detected: v1.5.0 (current)
- info: No package-manager update timestamp was available.
## Project history and usage

ssllabs-scan is the official command-line client and reference implementation for the Qualys SSL Labs APIs. In package-manager culture it represents a scriptable bridge from the public SSL Labs server test to bulk assessment, CI checks, inventories, and scheduled TLS hygiene.

### Project history

SSL Labs describes its APIs as exposing the SSL/TLS server testing functionality programmatically so site operators can perform scheduled and bulk assessment. The same official page says SSL Labs maintains ssllabs-scan as an open-source command-line scanning tool that doubles as the reference API client.

The README presents the tool as a command-line client for the SSL Labs APIs, designed for automated and bulk testing. Current usage is centered on the API v4 client and registration helper, with an email address required for API v4 use.

### Adoption history

Adoption is tied to SSL Labs itself: the command gives administrators and security teams a packaged way to call the same assessment backend they already know from the web service. The official APIs page also lists product integrations and third-party libraries in several languages, showing that ssllabs-scan sits inside a wider API ecosystem rather than being only a standalone scanner.

The supplied package metadata shows Homebrew packaging for the CLI, making it especially convenient for macOS-based security engineers and CI users who want the official reference client available through a standard package manager.

### How it is used

Typical usage is to run ssllabs-scan against one hostname or a host file, optionally requesting cached or live results, JSON output, flat JSON, or grade-only output. API v4 usage requires registration and passing the registered organization email.

Because it calls a hosted API, ssllabs-scan is different from local TLS scanners: it is useful when the desired signal is the SSL Labs external assessment model rather than exactly what a local OpenSSL build can negotiate.

### Why package nerds care

Package nerds care about ssllabs-scan because it packages a public SaaS security assessment as a repeatable CLI. That makes it fit naturally into shell scripts, cron jobs, release checks, and fleet audits.

It also illustrates a common packaging pattern for security tools: a small official client around a remote service, where the important compatibility surface is the API version and output format rather than local cryptographic library behavior.

### Timeline

- 2014: The SSL Labs APIs feed identifies the changelog namespace from 2014, matching the era when SSL Labs API automation became a public integration surface.
- 2015: The SSL Labs APIs page lists integrations such as Metasploit and libraries in multiple languages around the API ecosystem.
- 2026: The official SSL Labs page continues to describe ssllabs-scan as the open-source command-line reference API client.

### Related projects

- Related official surfaces include the SSL Labs APIs, the SSL Labs web assessment service, and SSL Labs API documentation.
- The SSL Labs API page lists integrations and libraries such as Metasploit modules and language bindings, but states that third-party tools are not part of SSL Labs.

### Sources

- <https://github.com/ssllabs/ssllabs-scan#readme>
- <https://www.ssllabs.com/projects/ssllabs-apis>
- input source_facts.package-manager


## Security Notes

broad file, network, media, or database tool signal.

- **Geiger risk:** blue / medium
- broad file, network, media, or database tool signal

## Source Database Details

- **Source Database:** Homebrew formula API
- **Tap:** homebrew/core
- **Full Name:** ssllabs-scan
- **Version Scheme:** 0
- **Revision:** 0
- **Bottle Stable Root URL:** <https://ghcr.io/v2/homebrew/core>
- **Deprecated:** no
- **Disabled:** no
- **Keg Only:** no
- **URL Keys:** stable


## Related links

- [Secret-risk packages](https://www.automicvault.com/pkg/secret-risk-packages/) - Has protected-tool coverage, approval-gate, or non-low Geiger security signals.
- [Terminal utility packages](https://www.automicvault.com/pkg/terminal-utilities/) - Matched terminal and command-line workflow metadata.
- [Networking and protocol packages](https://www.automicvault.com/pkg/networking-protocol-tools/) - Matched network, protocol, or remote-service metadata.
- [Security and crypto packages](https://www.automicvault.com/pkg/security-crypto-tools/) - Matched security, identity, cryptography, password, signing, or certificate metadata.
- [go](https://www.automicvault.com/pkg/brew/go/) - Build dependency declared by Homebrew.
- [sslscan](https://www.automicvault.com/pkg/brew/sslscan/) - Shares av.db curated category or tags: cli, scanner, security, ssl, tls.
- [libressl](https://www.automicvault.com/pkg/brew/libressl/) - Shares av.db curated category or tags: cli, security, ssl, tls.
- [sslsplit](https://www.automicvault.com/pkg/brew/sslsplit/) - Shares av.db curated category or tags: cli, security, ssl, tls.
- [certgraph](https://www.automicvault.com/pkg/brew/certgraph/) - Shares av.db curated category or tags: cli, security, tls.
- [nss](https://www.automicvault.com/pkg/brew/nss/) - Shares av.db curated category or tags: cli, security, tls.
- [gmssl](https://www.automicvault.com/pkg/brew/gmssl/) - Shares av.db curated category or tags: cli, security, ssl, tls.
- [gnutls](https://www.automicvault.com/pkg/brew/gnutls/) - Shares av.db curated category or tags: cli, security, ssl, tls.
- [mbedtls](https://www.automicvault.com/pkg/brew/mbedtls/) - Shares av.db curated category or tags: cli, security, ssl, tls.

## Combined YAML source

View the package source record on GitHub. [combined/ssllabs-scan.yml](https://github.com/automic-vault/db/blob/main/combined/ssllabs-scan.yml)


## Sources

- Nucleus package database
- Geiger risk classifier
- package-page enrichment
- curated package history
- package version freshness
- av.db category and tag curation
- package relationship graph
- cross-ecosystem install command graph
