Automic VaultAutomic Vault

brew / 受保护工具覆盖 / 排名 9750

安装 dropbox-uploader

查看 dropbox-uploader 的安装路径、可执行文件、元数据以及面向 AI 代理工作流的安全说明。

agent safety

Agent safety answer

dropbox-uploader transfers files to and from Dropbox using local credentials.

Credential access

Reads Dropbox tokens, config, and selected local files.

Remote mutation

Can upload, delete, move, and overwrite Dropbox content.

Publish/artifact risk

Can publish or remove artifacts in shared storage.

Recommended control

Gate uploads, deletes, moves, and token reads.

Agent-use guidance

Allow listing; require approval for transfers, deletes, and sensitive file paths.

安装

使用 Automic Vault 安装

Automic Vault
下载 AV
sudo av install brew:dropbox-uploader

macOS

Homebrewverified · 100%
brew install dropbox-uploader

local Homebrew formula metadata

平台说明

  • 没有特定于此软件包的平台说明。

概览

软件包摘要

Bash script for interacting with Dropbox

命令和别名

  • dropShell.sh
  • dropbox_uploader.sh

受保护工具覆盖

Plain Text Dropbox OAuth Token

Dropbox Uploader stores its Dropbox OAuth token in the user's ~/.dropbox_uploader file. The upstream script also supports a `-f` config-file argument, which gives this radioisotope a wrapper boundary for a temporary runtime config file. Our isotope stores the token in the macOS keychain and injects it into a temporary config file only while `dropbox_uploader.sh` runs.

Risk classifier

yellow risk · medium confidence · runtime

Why

  • broad file, network, media, or database tool signal
  • generalized runtime or code generation signal

Signals

  • text:shell
  • text:upload

Install behavior

  • No Homebrew post-install hook is recorded in formula metadata.
  • Homebrew bottle metadata is available for 1 platform targets.

本地 README 摘录

Dropbox Uploader protected-tool coverage

Dropbox Uploader stores its Dropbox OAuth token in ~/.dropbox_uploader. Older configs can also contain OAuth 1 app and token secrets.

This protected-tool coverage migrates those credential values into Automic Vault-backed keychain storage, removes the plaintext secret assignments from the default config file, and wraps the installed dropbox_uploader.sh script so the original CLI receives a temporary -f config file for each command.

Non-secret config values such as APPKEY and ACCESS_LEVEL remain in ~/.dropbox_uploader.

Caveats

  • Only the default ~/.dropbox_uploader file is migrated.
  • Explicit -f config files are caller-managed contexts and are not migrated.
  • Direct execution of dropbox_uploader.sh.av-orig bypasses Automic Vault

injection.

来源: local coverage notes

覆盖来源

来源摘录

Caveats

  • We migrate the default ~/.dropbox_uploader file.
  • Explicit `-f` config files are caller-managed and are not migrated.
  • Direct execution of the original script will not receive credentials.

可执行文件

已安装的可执行文件

命令类型暴露范围备注
dropShell.shcliglobal executable
dropbox_uploader.shcliglobal executable

新鲜度

版本和新鲜度

这些信号区分页生成时间、软件包管理器活动和上游发布比较。只有存在证据 URL 和可比较版本时,才会提示版本落后。

页面生成时间2026-06-10
管理器版本1.0
管理器更新时间
本地数据ok
上游current
检测到的最新版本1.0

https://github.com/andreafabrizi/Dropbox-Uploader

  • infoNo package-manager update timestamp was available.low confidence

安装元数据

软件包元数据

Package keybrew:dropbox-uploader
Version1.0
Package managerHomebrew
Package manager pagehttps://formulae.brew.sh/formula/dropbox-uploader
Homepagehttps://www.andreafabrizi.it/2016/01/01/Dropbox-Uploader/
Repositoryhttps://github.com/andreafabrizi/Dropbox-Uploader
Upstream docshttps://github.com/andreafabrizi/Dropbox-Uploader#readme
LicenseGPL-3.0-or-later
Source archivehttps://github.com/andreafabrizi/Dropbox-Uploader/archive/refs/tags/1.0.tar.gz
Bottleavailable (all)
Homebrew post-installnot defined
Servicenone declared

registry facts

Source database details

Source DatabaseHomebrew formula API
Taphomebrew/core
Full Namedropbox-uploader
Version Scheme0
Revision0
Bottle Stable Root URLhttps://ghcr.io/v2/homebrew/core
Deprecatedno
Disabledno
Keg Onlyno
URL Keys
  • stable

来源线索

由仓库数据生成

此页面由 av-webscripts/generate-pkg-sqlite.py 生成的私有软件包 SQLite 工件提供。

使用的来源

  • Geiger risk classifier
  • Nucleus package database
  • av.db category and tag curation
  • cross-ecosystem install command graph
  • curated agent safety answer
  • local coverage README
  • package relationship graph
  • package version freshness
  • package-page enrichment
  • secret-handling manifest