Automic VaultAutomic Vault

cask

Install aws-vault-binary with Homebrew Cask

Securely stores and accesses AWS credentials in a development environment. Version 7.2.0 via Homebrew Cask; verified from local package data. Also installable with macports: sudo port install aws-vault.

install

Additional install commands

macOS

Homebrew Caskverified · 100%
brew install --cask aws-vault-binary

local Homebrew cask metadata

overview

Package summary

Securely stores and accesses AWS credentials in a development environment

Commands and aliases

  • aws-vault

history

Project history and usage

The `aws-vault-binary` cask packages the original 99designs AWS Vault macOS binary distribution. AWS Vault stores long-term AWS IAM credentials in an operating-system secure store and exposes short-lived STS credentials to commands, shells, browser sessions, or local metadata-style endpoints.

Project history

The original `99designs/aws-vault` repository was created in August 2015, with GitHub releases beginning at v1.0.0 in September 2015. The upstream README links to a 99designs announcement post and describes the tool as complementary to the AWS CLI, aware of profiles in `~/.aws/config`.

By 2026 the original README marked the project abandoned and pointed users to the active `ByteNess/aws-vault` fork. The cask, however, still references the 99designs repository and v7.2.0 macOS DMG artifact, so this record reflects the legacy binary distribution rather than the newer Homebrew formula.

Adoption history

AWS Vault became one of the canonical AWS credential helpers in the macOS and Unix developer tooling ecosystem. The original README listed installation through direct releases, Homebrew, MacPorts, Chocolatey, Scoop, Arch, Gentoo, FreeBSD, OpenSUSE, Nix, and asdf, which is unusually broad for a single-purpose credential CLI.

The 99designs repository metadata showed thousands of stars and hundreds of forks in June 2026, and the v7.2.0 release assets had large download counts, especially for Linux and Apple Silicon macOS binaries. Homebrew cask analytics still showed active installs for the binary cask even after the original project became legacy.

How it is used

The classic workflow is `aws-vault add profile` to store long-term credentials in the platform vault, then `aws-vault exec profile -- command` or `aws-vault login profile` to obtain temporary AWS credentials or console access. The usage guide also documents credential_process use, MFA session caching, SSO caching, and metadata server modes.

Because secrets live in the OS keychain or equivalent backend, `~/.aws/credentials` is not the primary storage location for this package's secrets.

Why package nerds care

This cask is historically significant because it preserves the old signed macOS binary channel after the main formula moved on. It also illustrates a common packaging split: the same tool can exist as a source-built formula and as a binary cask, with different upstreams and maintenance status over time.

Timeline

  • 2015-08: Original 99designs/aws-vault repository created.
  • 2015-09: v1.0.0 GitHub release published.
  • 2023-03: v7.2.0 published by the 99designs repository.
  • 2025-05: ByteNess active fork created.
  • 2026-06: Original README marked 99designs/aws-vault abandoned and pointed to ByteNess/aws-vault.

Related projects

  • `ByteNess/aws-vault` is the maintained fork named by the original upstream README.
  • `aws-sso-cli` uses similar secure keyring ideas but focuses on IAM Identity Center rather than long-term IAM access keys.

security posture

No protected-tool coverage found yet

No matching local secret-handling manifest was found for aws-vault-binary. Nucleus package metadata is still published here so future coverage has a stable package URL.

Install behavior

  • No Homebrew post-install hook is recorded in formula metadata.
  • No Homebrew bottle metadata was recorded.

Recommended review

Before unattended agent use, check whether the tool reads plaintext credentials, writes remote state, publishes artifacts, or shells out to plugins.

local files

Configuration and credential file locations

These source-backed paths show where this package keeps local settings or durable credentials. Automic Vault can use them as review targets for secret scanning, migration, and command approval.

Configuration files

Config paths the tool may read or write during local use.

Unix
~/.aws/config
Windows
%USERPROFILE%\.aws\config

executables

Installed executables

CommandKindExposureNote
aws-vaultbinaryHomebrew cask binaryaws-vault

freshness

Version and freshness

These signals separate page generation age, package-manager activity, and upstream release comparison. Version lag is warned only when an evidence URL and comparable versions are present.

page generated2026-07-25
manager version7.2.0
manager updated
local dataok
upstreamnot checked
latest detectednot detected

https://github.com/99designs/aws-vault

install metadata

Package metadata

Package keycask:aws-vault-binary
Version7.2.0
Package managerHomebrew Cask
Package manager pagehttps://formulae.brew.sh/cask/aws-vault-binary
Homepagehttps://github.com/99designs/aws-vault
Repositoryhttps://github.com/99designs/aws-vault
Source archivehttps://github.com/99designs/aws-vault/releases/download/v7.2.0/aws-vault-darwin-arm64.dmg
SHA-2569887eb8f6c2bd431e814b32b9ec8a6bd394dbeb0c60822d76ed9be3c84ca1cc5
Download URLhttps://github.com/99designs/aws-vault/releases/download/v7.2.0/aws-vault-darwin-arm64.dmg
Bottlenot recorded
Homebrew post-installnot defined
Servicenone declared

registry facts

Source database details

Source DatabaseHomebrew cask API
Taphomebrew/cask
Full Tokenaws-vault-binary
Names
  • AWS Vault
Old Tokens
  • aws-vault
Artifacts
Deprecatedno
Disabledno

source database matches

Other package-manager records

Matches are pulled from external package-manager indexes and kept separate from local Automic Vault package links.

MacPorts94%

aws-vault

sudo port install aws-vault
  • installed executable or alias match
  • Matched by: Aws Vault
MacPorts ports tree · api.github.com · MacPorts ports tree: security/aws-vault/Portfile from https://api.github.com/repos/macports/macports-ports/git/trees/master?recursive=1
Nix92%

aws-vault

nix profile install nixpkgs#aws-vault
  • installed executable or alias match
  • Matched by: Aws Vault
nixpkgs package indexes · api.github.com · nixpkgs package indexes: pkgs/by-name/aw/aws-vault/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1
pacman92%

aws-vault 7.11.1-1

Vault for securely storing and accessing AWS credentials in development environments

https://github.com/ByteNess/aws-vault

sudo pacman -S aws-vault
  • License: MIT
  • Architecture: x86_64
  • 1 dependencies
  • 2 optional deps
  • installed executable or alias match
  • Matched by: Aws Vault
Arch Linux sync databases · geo.mirror.pkgbuild.com · Arch Linux sync databases: aws-vault from https://geo.mirror.pkgbuild.com/extra/os/x86_64/extra.db.tar.gz
Chocolatey92%

aws-vault

choco install aws-vault
  • installed executable or alias match
  • Matched by: Aws Vault
Chocolatey community package catalog · community.chocolatey.org · Chocolatey community package catalog: aws-vault from http://community.chocolatey.org/api/v2/Packages?$filter=IsLatestVersion&$select=Id&$top=1000&$skiptoken='11','autodesk-fusion360'
Scoop92%

main/aws-vault

scoop install main/aws-vault
  • installed executable or alias match
  • Matched by: Aws Vault
Scoop official bucket manifest trees · api.github.com · Scoop official bucket manifest trees: bucket/aws-vault.json from https://api.github.com/repos/ScoopInstaller/Main/git/trees/master?recursive=1
winget92%

99designs.aws-vault

winget install --id 99designs.aws-vault -e
  • installed executable or alias match
  • Matched by: Aws Vault
Windows Package Manager source index · cdn.winget.microsoft.com · Windows Package Manager source index: 99designs.aws-vault from https://cdn.winget.microsoft.com/cache/source.msix
winget92%

ByteNess.AWSVault

winget install --id ByteNess.AWSVault -e
  • installed executable or alias match
  • Matched by: Aws Vault
Windows Package Manager source index · cdn.winget.microsoft.com · Windows Package Manager source index: ByteNess.AWSVault from https://cdn.winget.microsoft.com/cache/source.msix

source trail

Generated from repository data

This page is generated by av-web from the private package SQLite artifact built by scripts/generate-pkg-sqlite.py.

Used sources

  • Nucleus package database
  • av.db category and tag curation
  • cross-ecosystem install command graph
  • curated configuration and credential file locations
  • curated package history
  • external package-manager database matches
  • package relationship graph
  • package version freshness
  • package-page enrichment