Automic VaultAutomic Vault

brew

使用 Homebrew, dnf 安装 container-canary

查看 container-canary 的安装路径、可执行文件、元数据以及面向 AI 代理工作流的安全说明。

安装

其他安装命令

macOS

Homebrew已验证 · 100%
brew install container-canary

local Homebrew formula metadata

Linux

Fedora dnf已验证 · 92%
sudo dnf install dummy-package-canary

Fedora Rawhide package metadata · dummy-package-canary · 来源: dl.fedoraproject.org

概览

软件包摘要

Test and validate container requirements against versioned manifests

命令和别名

  • canary

历史

项目历史与用法

Container Canary is an NVIDIA container validation CLI for checking image requirements against versioned manifests. Its history is tied to CI-oriented validation of bring-your-own-container platforms rather than to a broad runtime or orchestration layer.

项目历史

The project presents itself as a tool for recording platform requirements as a manifest and validating container images against that manifest. Official releases began with v0.1.0 in March 2022, with later 0.x releases continuing through 2025.

采用历史

Official documentation illustrates the tool with a Kubeflow Notebooks-style requirements manifest, but it does not publish a broad adopter list. The safest reading is that Container Canary serves teams that need repeatable image conformance checks for managed compute or notebook platforms.

使用方式

Users run the `canary` command against a YAML validator file and a target container image. The checks borrow concepts from Kubernetes probes, including exec, HTTP, and TCP socket tests, so it fits naturally into CI pipelines already using container and Kubernetes vocabulary.

为什么软件包爱好者会关心

For package managers, Container Canary is a small Go CLI whose value is in making container-image policy testable and versioned. It is useful when a package ecosystem needs to validate that images contain expected users, ports, services, or files before publishing or deploying them.

时间线

  • 2022: v0.1.0 release published.
  • 2024: v0.3.0 and v0.4.0 releases published.
  • 2025: v0.5.0 release published.

Related projects

  • The README connects Container Canary concepts to Kubernetes probes and uses Kubeflow Notebooks requirements as its main worked example.

安全态势

风险级别:orange

infrastructure mutation or orchestration signal.

风险分类器

orange 风险 · 中 置信度 · infrastructure

原因

  • infrastructure mutation or orchestration signal

信号

  • text:container

安装行为

  • formula 元数据中未记录 Homebrew post-install 钩子。
  • Homebrew bottle 元数据适用于 6 个平台目标。
  • 构建元数据列出 1 个构建依赖。

建议审查

在无人值守的代理使用前,请检查该工具是否读取明文凭据、写入远程状态、发布制品或调用插件。

可执行文件

已安装的可执行文件

命令类型暴露范围备注
canarycli全局可执行文件

新鲜度

版本和新鲜度

这些信号区分页生成时间、软件包管理器活动和上游发布比较。只有存在证据 URL 和可比较版本时,才会提示版本落后。

页面生成时间2026-07-25
管理器版本0.5.0
管理器更新时间2026-05-11
本地数据OK
上游当前
检测到的最新版本v0.5.0

https://github.com/NVIDIA/container-canary

  • OK没有生成新鲜度警告。

安装元数据

软件包元数据

软件包键brew:container-canary
版本0.5.0
软件包管理器Homebrew
软件包管理器页面https://formulae.brew.sh/formula/container-canary
主页https://github.com/NVIDIA/container-canary
仓库https://github.com/NVIDIA/container-canary
上游文档https://github.com/NVIDIA/container-canary#readme
许可证Apache-2.0
源码归档https://github.com/NVIDIA/container-canary/archive/refs/tags/v0.5.0.tar.gz
最后更新2026-05-11T17:43:30-04:00
Pulseupdated
构建依赖go
Bottle可用 (于 arm64_linux, arm64_sequoia, arm64_sonoma, arm64_tahoe, sonoma, x86_64_linux)
Homebrew post-install未定义
服务未声明

注册表事实

源数据库详情

Source DatabaseHomebrew formula API
Taphomebrew/core
Full Namecontainer-canary
Version Scheme0
Revision0
Head VersionHEAD
Bottle Stable Root URLhttps://ghcr.io/v2/homebrew/core
Deprecatedno
Disabledno
Keg Onlyno
URL Keys
  • head
  • stable

源数据库匹配

其他软件包管理器记录

匹配项来自外部软件包管理器索引,并与本地 Automic Vault 软件包链接分开显示。

dnf92%

dummy-package-canary 2-25.fc44

Dummy package to exercise the packaging stack

sudo dnf install dummy-package-canary
  • License: CC-PDDC
  • Category: Unspecified
  • Architecture: noarch
  • Source Package: dummy-package-canary
  • 2 提供
  • installed executable or alias match
  • 匹配方式:Canary
Fedora Rawhide package metadata · dl.fedoraproject.org · Fedora Rawhide package metadata: dummy-package-canary from https://dl.fedoraproject.org/pub/fedora/linux/development/rawhide/Everything/x86_64/os/repodata/e5ca8ce900cd68f5419e1c39ae517343100b306336cbaeb70a3c153121d95094-primary.xml.zst

来源线索

由仓库数据生成

此页面由 av-webscripts/generate-pkg-sqlite.py 生成的私有软件包 SQLite 工件提供。

使用的来源

  • Geiger risk classifier
  • Nucleus package database
  • av.db category and tag curation
  • cross-ecosystem install command graph
  • curated package history
  • external package-manager database matches
  • package relationship graph
  • package version freshness
  • package-page enrichment