Automic VaultAutomic Vault

brew

使用 Homebrew, zypper 安装 orogene

查看 orogene 的安装路径、可执行文件、元数据以及面向 AI 代理工作流的安全说明。

安装

其他安装命令

macOS

Homebrew已验证 · 100%
brew install orogene

local Homebrew formula metadata

概览

软件包摘要

node_modules/ package manager and utility toolkit

历史

项目历史与用法

Orogene is a Rust-oriented package manager for JavaScript projects that need a maintained node_modules tree. Its own tagline, "Makes node_modules happen," is literal: the tool is aimed at bundlers, CLIs, and Node.js applications where dependency installation speed, cache reuse, and reproducible local trees matter.

项目历史

GitHub records the orogene/orogene repository as created on 2020-07-14. Public releases in 2023 shipped prebuilt binaries, installer scripts, npm packaging, and crates.io distribution, showing a project that tried to meet JavaScript developers where they already install tools while implementing the installer in Rust.

The README later documented a shift to a closed-source development model with paid licenses, with releases hosted from the GitHub repository and limited features without a developer license. That makes Orogene an unusual entry in the Node package-manager space: a performance-focused package manager whose public history includes both open-source Rust experimentation and a sustainability/licensing pivot.

采用历史

Orogene has distribution hooks through GitHub releases, npm, crates.io, Homebrew, and distro packaging metadata, but the available public sources do not show broad ecosystem adoption comparable to npm, Yarn, or pnpm. Its adoption story is better described as niche package-manager experimentation and benchmarking interest than as a default JavaScript workflow.

使用方式

Developers use the oro executable to make or refresh node_modules for projects and tools that expect Node's traditional dependency layout. The README emphasizes speed, low memory use, low disk use, and integration into workflows where developers do not want to think about whether node_modules matches dependency metadata.

为什么软件包爱好者会关心

For package nerds, Orogene is interesting because it attacks the old node_modules installation problem with a Rust implementation and an explicit performance agenda. It also illustrates the business tension around package tooling: even infrastructure-flavored developer tools can move from open development to paid licensing when maintenance cost becomes part of the design.

时间线

  • 2020-07-14: GitHub repository created.
  • 2023-05-21: release v0.3.27 published with prebuilt binaries, installer scripts, and npm package artifacts.
  • 2023-10-09: release v0.3.34 published, one of the visible public releases before the repository's later closed-source-development notice.

Related projects

  • Orogene belongs to the same problem family as npm, Yarn, and pnpm: all manage JavaScript dependencies, but Orogene focuses its public identity on making node_modules fast and low-fuss rather than replacing the Node package ecosystem itself.

安全态势

风险级别:orange

infrastructure mutation or orchestration signal.

风险分类器

orange 风险 · 中 置信度 · infrastructure

原因

  • infrastructure mutation or orchestration signal

信号

  • text:package manager

安装行为

  • formula 元数据中未记录 Homebrew post-install 钩子。
  • Homebrew bottle 元数据适用于 10 个平台目标。
  • 构建元数据列出 2 个构建依赖。

建议审查

在无人值守的代理使用前,请检查该工具是否读取明文凭据、写入远程状态、发布制品或调用插件。

local files

Configuration and credential file locations

These source-backed paths show where this package keeps local settings or durable credentials. Automic Vault can use them as review targets for secret scanning, migration, and command approval.

Configuration files

Config paths the tool may read or write during local use.

Unix
./oro.kdl

Credential files

Credential-bearing paths to review before unattended agent runs.

Unix
./oro.kdl

可执行文件

已安装的可执行文件

命令类型暴露范围备注
orocli全局可执行文件

新鲜度

版本和新鲜度

这些信号区分页生成时间、软件包管理器活动和上游发布比较。只有存在证据 URL 和可比较版本时,才会提示版本落后。

页面生成时间2026-07-25
管理器版本0.3.34
管理器更新时间2026-07-11
本地数据OK
上游当前
检测到的最新版本v0.3.34

https://github.com/orogene/orogene

  • OK没有生成新鲜度警告。

安装元数据

软件包元数据

软件包键brew:orogene
版本0.3.34
软件包管理器Homebrew
软件包管理器页面https://formulae.brew.sh/formula/orogene
主页https://orogene.dev
仓库https://github.com/orogene/orogene
上游文档https://orogene.dev/
许可证Apache-2.0
源码归档https://github.com/orogene/orogene/archive/refs/tags/v0.3.34.tar.gz
最后更新2026-07-11T09:50:50+09:00
Pulseupdated
构建依赖pkgconf, rust
Bottle可用 (于 arm64_linux, arm64_monterey, arm64_sequoia, arm64_sonoma, arm64_tahoe, arm64_ventura, monterey, sonoma, ventura, x86_64_linux)
Homebrew post-install未定义
服务未声明

注册表事实

源数据库详情

Source DatabaseHomebrew formula API
Taphomebrew/core
Full Nameorogene
Version Scheme0
Revision0
Bottle Stable Root URLhttps://ghcr.io/v2/homebrew/core
Deprecatedyes
Disabledno
Keg Onlyno
URL Keys
  • stable

源数据库匹配

其他软件包管理器记录

匹配项来自外部软件包管理器索引,并与本地 Automic Vault 软件包链接分开显示。

zypper92%

oro 2.0.8-298.5

Full regular expressions API

https://jakarta.apache.org/oro/

sudo zypper install oro
  • License: Apache-2.0
  • Category: Development/Libraries/Java
  • Architecture: noarch
  • Source Package: oro
  • 2 依赖
  • 3 提供
  • installed executable or alias match
  • 匹配方式:Oro
openSUSE Tumbleweed package metadata · download.opensuse.org · openSUSE Tumbleweed package metadata: oro from https://download.opensuse.org/tumbleweed/repo/oss/repodata/be8d3611d25469107f32075a1697e69ec57a2b850b42348a658cc671ad5ec2b50760d02c3e59524d50da9a11d5be799bdaffba2e166e8ca8858512e3c0bd665d-primary.xml.zst
zypper92%

oro-javadoc 2.0.8-298.5

Javadoc for oro

https://jakarta.apache.org/oro/

sudo zypper install oro-javadoc
  • License: Apache-2.0
  • Category: Development/Libraries/Java
  • Architecture: noarch
  • Source Package: oro
  • 1 依赖
  • 1 提供
  • installed executable or alias match
  • 匹配方式:Oro
openSUSE Tumbleweed package metadata · download.opensuse.org · openSUSE Tumbleweed package metadata: oro-javadoc from https://download.opensuse.org/tumbleweed/repo/oss/repodata/be8d3611d25469107f32075a1697e69ec57a2b850b42348a658cc671ad5ec2b50760d02c3e59524d50da9a11d5be799bdaffba2e166e8ca8858512e3c0bd665d-primary.xml.zst

来源线索

由仓库数据生成

此页面由 av-webscripts/generate-pkg-sqlite.py 生成的私有软件包 SQLite 工件提供。

使用的来源

  • Geiger risk classifier
  • Nucleus package database
  • av.db category and tag curation
  • cross-ecosystem install command graph
  • curated configuration and credential file locations
  • curated package history
  • external package-manager database matches
  • package relationship graph
  • package version freshness
  • package-page enrichment