# 使用 Homebrew 安装 saf-cli

查看 saf-cli 的安装路径、可执行文件、元数据以及面向 AI 代理工作流的安全说明。

## 安装

```sh
sudo av install brew:saf-cli
```

其他安装命令:

### macOS

- Homebrew (100%):

```sh
brew install saf-cli
```

  证据: local Homebrew formula metadata

## 软件包事实

- **软件包键:** brew:saf-cli
- **软件包管理器:** Homebrew
- **软件包管理器页面:** <https://formulae.brew.sh/formula/saf-cli>
- **版本:** 1.6.0
- **来源摘要:** CLI for the MITRE Security Automation Framework (SAF)
- **主页:** <https://saf-cli.mitre.org>
- **仓库:** <https://github.com/mitre/saf>
- **上游文档:** <https://saf-cli.mitre.org/>
- **许可证:** Apache-2.0
- **源码归档:** <https://registry.npmjs.org/@mitre/saf/-/saf-1.6.0.tgz>
- **已生成:** 2026-07-26T07:20:29+00:00

## 可执行文件

- saf (cli)
- saf (别名)

## 依赖

- node

## 安装行为

- post-install 钩子: 未定义
- Bottle: 可用 于 arm64_linux, arm64_sequoia, arm64_sonoma, arm64_tahoe, sonoma, x86_64_linux

## 版本和新鲜度

- 页面生成时间: 2026-07-26
- 管理器版本: 1.6.0
- 本地数据: OK
- 上游仓库: https://saf-cli.mitre.org
- 信息: No package-manager update timestamp was available.
- 信息: Release/tag comparison is only available for GitHub repositories.

## 安全说明

narrow executable package without higher-risk signals.

- **Geiger 风险:** 绿色 / 低
- narrow executable package without higher-risk signals


## Configuration and credential file locations

These source-backed paths show where this package keeps local settings or durable credentials. Automic Vault can use them as review targets for secret scanning, migration, and command approval.


## Configuration files

- Unix: .env

## Credential files

- Unix: .env
## 源数据库详情

- **Source Database:** Homebrew formula API
- **Tap:** homebrew/core
- **Full Name:** saf-cli
- **Version Scheme:** 0
- **Revision:** 0
- **Bottle Stable Root URL:** <https://ghcr.io/v2/homebrew/core>
- **Deprecated:** no
- **Disabled:** no
- **Keg Only:** no
- **URL Keys:** stable


## 相关链接

- [Terminal utility packages](https://www.automicvault.com/zh-hans/pkg/terminal-utilities/) - Matched terminal and command-line workflow metadata.
- [Networking and protocol packages](https://www.automicvault.com/zh-hans/pkg/networking-protocol-tools/) - Matched network, protocol, or remote-service metadata.
- [Security and crypto packages](https://www.automicvault.com/zh-hans/pkg/security-crypto-tools/) - Matched security, identity, cryptography, password, signing, or certificate metadata.
- [Productivity CLI packages](https://www.automicvault.com/zh-hans/pkg/productivity-cli-packages/) - Matched curated productivity category metadata from av.db.
- [node](https://www.automicvault.com/zh-hans/pkg/brew/node/) - Runtime dependency declared by Homebrew.
- [kube-bench](https://www.automicvault.com/zh-hans/pkg/brew/kube-bench/) - Shares av.db curated category or tags: cli, compliance, security.
- [intercept](https://www.automicvault.com/zh-hans/pkg/brew/intercept/) - Shares av.db curated category or tags: cli, compliance, devsecops, security.
- [bomber](https://www.automicvault.com/zh-hans/pkg/brew/bomber/) - Shares av.db curated category or tags: cli, devsecops, security.
- [chain-bench](https://www.automicvault.com/zh-hans/pkg/brew/chain-bench/) - Shares av.db curated category or tags: cli, devsecops, security.
- [chainloop-cli](https://www.automicvault.com/zh-hans/pkg/brew/chainloop-cli/) - Shares av.db curated category or tags: cli, devsecops, security.
- [checkov](https://www.automicvault.com/zh-hans/pkg/brew/checkov/) - Shares av.db curated category or tags: cli, compliance, security.
- [cve-bin-tool](https://www.automicvault.com/zh-hans/pkg/brew/cve-bin-tool/) - Shares av.db curated category or tags: cli, devsecops, security.
- [cycode](https://www.automicvault.com/zh-hans/pkg/brew/cycode/) - Shares av.db curated category or tags: cli, devsecops, security.
- [phoneinfoga](https://www.automicvault.com/zh-hans/pkg/brew/phoneinfoga/) - Both packages touch the same language runtime or ecosystem. Shared terms: cli, framework, node, security.

## Combined YAML source

View the package source record on GitHub. [combined/saf-cli.yml](https://github.com/automic-vault/db/blob/main/combined/saf-cli.yml)


## 来源

- Nucleus package database
- Geiger risk classifier
- package-page enrichment
- curated configuration and credential file locations
- package version freshness
- av.db category and tag curation
- package relationship graph
- cross-ecosystem install command graph
