Automic VaultAutomic Vault

brew

使用 Homebrew, MacPorts, Nix, zypper, scoop, winget 安装 kubescape

查看 kubescape 的安装路径、可执行文件、元数据以及面向 AI 代理工作流的安全说明。

安装

其他安装命令

macOS

Homebrew已验证 · 100%
brew install kubescape

local Homebrew formula metadata

MacPorts已验证 · 94%
sudo port install kubescape

MacPorts ports tree · sysutils/kubescape/Portfile · 来源: api.github.com

Linux

Nix已验证 · 92%
nix profile install nixpkgs#kubescape

nixpkgs package indexes · pkgs/by-name/ku/kubescape/package.nix · 来源: api.github.com

openSUSE zypper已验证 · 92%
sudo zypper install kubescape

openSUSE Tumbleweed package metadata · kubescape · 来源: download.opensuse.org

Windows

Scoop已验证 · 92%
scoop install main/kubescape

Scoop official bucket manifest trees · bucket/kubescape.json · 来源: api.github.com

Windows Package Manager已验证 · 92%
winget install --id kubescape.kubescape -e

Windows Package Manager source index · kubescape.kubescape · 来源: cdn.winget.microsoft.com

概览

软件包摘要

Kubernetes testing according to Hardening Guidance by NSA and CISA

命令和别名

  • kubescape

历史

项目历史与用法

Kubescape is an open source Kubernetes security and compliance platform, created by ARMO and hosted as a CNCF project. The CLI scans clusters, Kubernetes YAML, Helm charts, repositories, container registries, and images for misconfigurations, vulnerabilities, and risk.

项目历史

Kubescape began as a Kubernetes-focused security scanner and expanded into a broader platform covering posture management, hardening, runtime security, image vulnerability scanning, admission control, and remediation workflows. Its repository describes coverage from development through runtime, including NSA-CISA, MITRE ATT&CK, and CIS benchmark-oriented checks.

The CNCF project page records Kubescape's acceptance into CNCF on December 13, 2022 and its move to Incubating maturity on January 13, 2025.

采用历史

Kubescape's packaging shows adoption across developer and CI workflows: official docs list Homebrew installation, the project maintains a GitHub Action, and the README lists package-manager paths for Homebrew, Krew, Arch, Ubuntu, Nix, Chocolatey, and Scoop.

使用方式

The CLI is commonly used to scan a running Kubernetes cluster, scan local manifest directories, scan container images, list controls and frameworks, and integrate security checks into pull-request or CI pipelines.

为什么软件包爱好者会关心

Kubescape matters to package maintainers because it sits at the intersection of Kubernetes CLI tooling, security scanning databases, and policy frameworks. It is also an example of a CNCF security project with both a standalone CLI and in-cluster components.

时间线

  • 2022: Kubescape was accepted to CNCF on December 13.
  • 2025: Kubescape moved to CNCF Incubating maturity on January 13.

Related projects

  • Related projects and integrations include Kubernetes, Helm, Krew, Grype, Copacetic, Inspektor Gadget, GitHub Actions, and CNCF security/compliance tooling.

安全态势

风险级别:orange

infrastructure mutation or orchestration signal.

风险分类器

orange 风险 · 中 置信度 · infrastructure

原因

  • infrastructure mutation or orchestration signal

信号

  • text:kubernetes

安装行为

  • formula 元数据中未记录 Homebrew post-install 钩子。
  • Homebrew bottle 元数据适用于 6 个平台目标。
  • 构建元数据列出 1 个构建依赖。

建议审查

在无人值守的代理使用前,请检查该工具是否读取明文凭据、写入远程状态、发布制品或调用插件。

可执行文件

已安装的可执行文件

命令类型暴露范围备注
kubescapecli全局可执行文件

新鲜度

版本和新鲜度

这些信号区分页生成时间、软件包管理器活动和上游发布比较。只有存在证据 URL 和可比较版本时,才会提示版本落后。

页面生成时间2026-07-25
管理器版本4.0.11
管理器更新时间2026-07-22
本地数据OK
上游not checked
检测到的最新版本未检测到

https://github.com/kubescape/kubescape

安装元数据

软件包元数据

软件包键brew:kubescape
版本4.0.11
软件包管理器Homebrew
软件包管理器页面https://formulae.brew.sh/formula/kubescape
主页https://kubescape.io
仓库https://github.com/kubescape/kubescape
上游文档https://kubescape.io/docs
许可证Apache-2.0
源码归档https://github.com/kubescape/kubescape.git
最后更新2026-07-22T17:13:32Z
Pulseupdated
构建依赖go
Bottle可用 (于 arm64_linux, arm64_sequoia, arm64_sonoma, arm64_tahoe, sonoma, x86_64_linux)
Homebrew post-install未定义
服务未声明

注册表事实

源数据库详情

Source DatabaseHomebrew formula API
Taphomebrew/core
Full Namekubescape
Version Scheme0
Revision0
Head VersionHEAD
Bottle Stable Root URLhttps://ghcr.io/v2/homebrew/core
Deprecatedno
Disabledno
Keg Onlyno
URL Keys
  • head
  • stable

源数据库匹配

其他软件包管理器记录

匹配项来自外部软件包管理器索引,并与本地 Automic Vault 软件包链接分开显示。

Nix95%

kubescape

nix profile install nixpkgs#kubescape
  • normalized package name match
  • 匹配方式:Kubescape
nixpkgs package indexes · api.github.com · nixpkgs package indexes: pkgs/by-name/ku/kubescape/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1
zypper95%

kubescape 4.0.9-1.1

Tool providing a multi-cloud K8s single pane of glass

https://github.com/armosec/kubescape

sudo zypper install kubescape
  • License: Apache-2.0
  • Category: Unspecified
  • Architecture: x86_64
  • Source Package: kubescape
  • 1 依赖
  • 1 提供
  • normalized package name match
  • 匹配方式:Kubescape
openSUSE Tumbleweed package metadata · download.opensuse.org · openSUSE Tumbleweed package metadata: kubescape from https://download.opensuse.org/tumbleweed/repo/oss/repodata/be8d3611d25469107f32075a1697e69ec57a2b850b42348a658cc671ad5ec2b50760d02c3e59524d50da9a11d5be799bdaffba2e166e8ca8858512e3c0bd665d-primary.xml.zst
MacPorts95%

kubescape

sudo port install kubescape
  • normalized package name match
  • 匹配方式:Kubescape
MacPorts ports tree · api.github.com · MacPorts ports tree: sysutils/kubescape/Portfile from https://api.github.com/repos/macports/macports-ports/git/trees/master?recursive=1
Scoop95%

main/kubescape

scoop install main/kubescape
  • normalized package name match
  • 匹配方式:Kubescape
Scoop official bucket manifest trees · api.github.com · Scoop official bucket manifest trees: bucket/kubescape.json from https://api.github.com/repos/ScoopInstaller/Main/git/trees/master?recursive=1
winget95%

kubescape.kubescape

winget install --id kubescape.kubescape -e
  • normalized package name match
  • 匹配方式:Kubescape
Windows Package Manager source index · cdn.winget.microsoft.com · Windows Package Manager source index: kubescape.kubescape from https://cdn.winget.microsoft.com/cache/source.msix

来源线索

由仓库数据生成

此页面由 av-webscripts/generate-pkg-sqlite.py 生成的私有软件包 SQLite 工件提供。

使用的来源

  • Geiger risk classifier
  • Nucleus package database
  • av.db category and tag curation
  • cross-ecosystem install command graph
  • curated package history
  • external package-manager database matches
  • package relationship graph
  • package version freshness
  • package-page enrichment