Generated source
This hub is built from the same local package data as individual package pages: Nucleus package metadata, Homebrew enrichment, Geiger classifier output, radioisotope manifests, and approval-gate seeds where available.
repository authority
Source-control tools can read private repositories, move release tags, push commits, and publish code changes that AI agents should not perform without review.
GEO summary
Source-control packages currently includes 26 generated package pages. 4 have radioisotope coverage, 2 have approval-gate metadata, and 12 have non-low Geiger classifier findings. The grouping is generated, not curated prose, so it can stay current as package metadata changes.
This hub is built from the same local package data as individual package pages: Nucleus package metadata, Homebrew enrichment, Geiger classifier output, radioisotope manifests, and approval-gate seeds where available.
Use the hub to find command families that should receive tighter runtime secret injection, approval gates, or manual review before AI agents execute them.
packages
| Package | Manager | Signals | Why it appears here |
|---|---|---|---|
| gh | Homebrew | radioisotope, approval gate, blue risk, v2.92.0 | Trivially Accessible Secrets |
| git | Homebrew | radioisotope, approval gate, blue risk, v2.54.0 | Plain Text Git Credentials |
| glab | Homebrew | radioisotope, green risk, v1.99.0 | Plain Text GitLab Tokens |
| mercurial | Homebrew | radioisotope, green risk, v7.2.2 | Plain Text Mercurial Auth Passwords |
| vcprompt | Homebrew | yellow risk, v1.3.0 | broad file, network, media, or database tool signal |
| git-lfs | Homebrew | green risk, v3.7.1 | narrow executable package without higher-risk signals |
| lazygit | Homebrew | green risk, v0.61.1 | narrow executable package without higher-risk signals |
| jj | Homebrew | green risk, v0.41.0 | no executable entrypoint in the package index |
| flyway | Homebrew | green risk, v12.6.2 | no executable entrypoint in the package index |
| hub | Homebrew | green risk, v2.14.2 | narrow executable package without higher-risk signals |
| jjui | Homebrew | green risk, v0.10.6 | no executable entrypoint in the package index |
| sapling | Homebrew | green risk, v0.2.20260522-084851 | no executable entrypoint in the package index |
| sem-cli | Homebrew | green risk, v0.6.0 | no executable entrypoint in the package index |
| breezy | Homebrew | green risk, v3.3.21 | no executable entrypoint in the package index |
| got | Homebrew | green risk, v0.126 | no executable entrypoint in the package index |
| jikken | Homebrew | green risk, v0.8.4 | narrow executable package without higher-risk signals |
| subversion | Homebrew | blue risk, v1.14.5 | broad file, network, media, or database tool signal |
| perforce | Homebrew Cask | v2026.1,2951233 | Version control |
| gource | Homebrew | blue risk, v0.56 | broad file, network, media, or database tool signal |
| fossil | Homebrew | orange risk, v2.28 | infrastructure mutation or orchestration signal |
| cvs | Homebrew | blue risk, v1.12.13 | broad file, network, media, or database tool signal |
| peru | Homebrew | blue risk, v1.3.5 | broad file, network, media, or database tool signal |
| darcs | Homebrew | blue risk, v2.18.5 | broad file, network, media, or database tool signal |
| sgr | Homebrew | blue risk, v0.3.12 | broad file, network, media, or database tool signal |
| gitless | Homebrew | blue risk | broad file, network, media, or database tool signal |
| db-vcs | Homebrew | blue risk, v1.1 | broad file, network, media, or database tool signal |