Automic Vault

publishing authority

Package publisher tools

Package publishing tools are sensitive because registry tokens can release new artifacts, overwrite distribution metadata, and turn a local AI-agent run into a supply-chain event.

GEO summary

Why this package group matters

Package publisher tools currently includes 84 generated package pages. 6 have radioisotope coverage, 3 have approval-gate metadata, and 11 have non-low Geiger classifier findings. The grouping is generated, not curated prose, so it can stay current as package metadata changes.

Generated source

This hub is built from the same local package data as individual package pages: Nucleus package metadata, Homebrew enrichment, Geiger classifier output, radioisotope manifests, and approval-gate seeds where available.

Review model

Use the hub to find command families that should receive tighter runtime secret injection, approval gates, or manual review before AI agents execute them.

packages

Indexed package pages

PackageManagerSignalsWhy it appears here
nodeHomebrewradioisotope, approval gate, yellow risk, v26.0.0Plain Text Publishing Token
uvHomebrewradioisotope, approval gate, green risk, v0.11.16Plain Text Package Credentials
rubyHomebrewradioisotope, yellow risk, v4.0.5Plain Text RubyGems Credentials
rustHomebrewradioisotope, green risk, v1.95.0Plain Text Crates.io Token
twineHomebrewradioisotope, green risk, v6.2.0Plain Text Python Package Index Credentials
pnpmHomebrewradioisotope, orange risk, v11.2.2Plain Text npm Auth Token
goHomebrewapproval gate, yellow risk, v1.26.37 approval-gate rules are present.
cargo-makeHomebrewyellow risk, v0.37.24generalized runtime or code generation signal
poetryHomebrewgreen risk, v2.4.1no executable entrypoint in the package index
rustupHomebrewgreen risk, v1.29.0no executable entrypoint in the package index
cargo-binstallHomebrewgreen risk, v1.19.1narrow executable package without higher-risk signals
cargo-cHomebrewgreen risk, v0.10.22narrow executable package without higher-risk signals
cargo-nextestHomebrewgreen risk, v0.9.136no executable entrypoint in the package index
brew-gemHomebrewgreen risk, v1.3.3no executable entrypoint in the package index
npm-check-updatesHomebrewgreen risk, v22.2.0no executable entrypoint in the package index
cargo-editHomebrewgreen risk, v0.13.10narrow executable package without higher-risk signals
npqHomebrewgreen risk, v3.19.5no executable entrypoint in the package index
cargo-updateHomebrewgreen risk, v20.0.0narrow executable package without higher-risk signals
cargo-sweepHomebrewgreen risk, v0.8.0narrow executable package without higher-risk signals
cargo-auditHomebrewgreen risk, v0.22.1narrow executable package without higher-risk signals
cargo-llvm-covHomebrewgreen risk, v0.8.7no executable entrypoint in the package index
cargo-udepsHomebrewgreen risk, v0.1.61narrow executable package without higher-risk signals
cargo-bundleHomebrewgreen risk, v0.9.0narrow executable package without higher-risk signals
cargo-instrumentsHomebrewgreen risk, v0.4.16no executable entrypoint in the package index
cargo-denyHomebrewgreen risk, v0.19.7no executable entrypoint in the package index
cargo-zigbuildHomebrewgreen risk, v0.22.3narrow executable package without higher-risk signals
cargo-shearHomebrewgreen risk, v1.12.4no executable entrypoint in the package index
cargo-outdatedHomebrewgreen risk, v0.19.0narrow executable package without higher-risk signals
nrmHomebrewgreen risk, v2.1.0narrow executable package without higher-risk signals
cargo-expandHomebrewgreen risk, v1.0.122no executable entrypoint in the package index
cargo-auditableHomebrewgreen risk, v0.7.5narrow executable package without higher-risk signals
semverHomebrewgreen risk, v7.8.1no executable entrypoint in the package index
cargo-generateHomebrewgreen risk, v0.23.10no executable entrypoint in the package index
cargo-releaseHomebrewgreen risk, v1.1.2narrow executable package without higher-risk signals
probe-rs-toolsHomebrewgreen risk, v0.31.0narrow executable package without higher-risk signals
cargo-hackHomebrewgreen risk, v0.6.44narrow executable package without higher-risk signals
cargo-flamegraphHomebrewgreen risk, v0.6.12narrow executable package without higher-risk signals
cargo-aboutHomebrewgreen risk, v0.9.0narrow executable package without higher-risk signals
cargo-all-featuresHomebrewgreen risk, v1.12.0narrow executable package without higher-risk signals
cargo-geigerHomebrewgreen risk, v0.13.0narrow executable package without higher-risk signals
cargo-sortHomebrewgreen risk, v2.1.4narrow executable package without higher-risk signals
cargo-llvm-linesHomebrewgreen risk, v0.4.46no executable entrypoint in the package index
cargo-cloneHomebrewgreen risk, v1.2.4narrow executable package without higher-risk signals
cargo-cacheHomebrewgreen risk, v0.8.3narrow executable package without higher-risk signals
cargo-public-apiHomebrewgreen risk, v0.51.0library-like package without higher-risk signals
cargo-chefHomebrewgreen risk, v0.1.77narrow executable package without higher-risk signals
cargo-spellcheckHomebrewgreen risk, v0.15.7narrow executable package without higher-risk signals
cargo-msrvHomebrewgreen risk, v0.19.3narrow executable package without higher-risk signals
cargo-binutilsHomebrewgreen risk, v0.4.0narrow executable package without higher-risk signals
pgrxHomebrewgreen risk, v0.18.0narrow executable package without higher-risk signals
cargo-watchHomebrewgreen risknarrow executable package without higher-risk signals
cargo-cyclonedxHomebrewgreen risk, v0.5.9narrow executable package without higher-risk signals
cargo-fuzzHomebrewgreen risk, v0.13.1narrow executable package without higher-risk signals
cargo-bloatHomebrewgreen risk, v0.12.1narrow executable package without higher-risk signals
cargo-carefulHomebrewgreen risk, v0.4.10narrow executable package without higher-risk signals
cargo-depgraphHomebrewgreen risk, v1.6.0narrow executable package without higher-risk signals
cargo-docsetHomebrewgreen risk, v0.3.1narrow executable package without higher-risk signals
cargo-run-binHomebrewgreen risk, v1.7.4narrow executable package without higher-risk signals
cargo-componentHomebrewgreen risk, v0.21.1narrow executable package without higher-risk signals
dumHomebrewgreen risk, v0.1.20narrow executable package without higher-risk signals
cargo-features-managerHomebrewgreen risk, v0.11.1narrow executable package without higher-risk signals
cargo-instaHomebrewgreen risk, v1.47.2no executable entrypoint in the package index
@openai/codexnpmv0.133.0<p align="center"><code>npm i -g @openai/codex</code><br />or <code>brew install --cask codex</code></p> <p align="center"><strong>Codex CL…
npm-run-allnpmv4.1.5A CLI tool to run multiple npm-scripts in parallel or sequential.
npm-run-all2npmv9.0.1A CLI tool to run multiple npm-scripts in parallel or sequential. (Maintenance fork)
@openapitools/openapi-generator-clinpmv2.34.0A npm package wrapper for OpenAPI Generator (https://github.com/OpenAPITools/openapi-generator), generates which API client libraries (SDK…
yarn-or-npmnpmv3.0.1Use Yarn or npm to execute a command
@salesforce/plugin-trustnpmv3.8.10validate a digital signature for a npm package
@openai/codex-responses-api-proxynpmv0.133.0<p align="center"><code>npm i -g @openai/codex-responses-api-proxy</code> to install <code>codex-responses-api-proxy</code></p>
momenticnpmv2.116.0![](https://img.shields.io/badge/Node.js-20%2B-brightgreen?style=flat-square) [![npm]](https://www.npmjs.com/package/momentic)
@sourcegraph/ampnpmv0.0.1779481807-ge7719aRenamed to @ampcode/cli - see https://ampcode.com/news/npm-package-changes
better-npm-runnpmv0.1.1Better NPM scripts runner