View packages at a commit

Paste a `locked_commit` from your `minimal.toml`, or a recent commit from the list.

Back to search results
rizin owner avatar

rizin

Version: 0.9.1

UNIX-like reverse engineering framework and command-line toolset.

Install package

min add rizin
Librarydebuggingexploitationprogram-analysis

OpenSSF Score

OpenSSF Scorecard — rizin

Scored 0–10, as OpenSSF Scorecard reports them.N/A: not applicable or inconclusive.

Binary-Artifacts

No binaries found in the repo

10
Branch-Protection

Branch protection is not maximal on development and all release branches

4
CII-Best-Practices

No effort to earn an OpenSSF best practices badge detected

0
Code-Review

Found 23/25 approved changesets -- score normalized to 9

9
Dangerous-Workflow

No dangerous workflow patterns detected

10
Fuzzing

Project is not fuzzed

0
License

License file detected

10
Maintained

30 commit(s) and 22 issue activity found in the last 90 days -- score normalized to 10

10
Packaging

Packaging workflow detected

10
Pinned-Dependencies

Dependency not pinned by hash detected -- score normalized to 0

0
SAST

SAST tool detected but not run on all commits

9
Security-Policy

Security policy file detected

10
Signed-Releases

Project has not signed or included provenance with any releases.

0
Token-Permissions

Detected GitHub workflow tokens with excessive permissions

0

Scored by OpenSSF Scorecard, from OpenSSF's weekly scan of public GitHub repositories.

rizinorg/rizinscanned

Last scored on

What is "rizin"?

UNIX-like reverse engineering framework and command-line toolset.

How to use this package

Quick install

Installs the package into the current environment for this session. Use --build or --runtime to persist it as a build-time or runtime dependency.

min add rizin

Declare as a task dependency in minimal.toml

Listing the package under tasks.<name>.packages makes it available inside that task’s sandbox.

[tasks.dev]
packages = ["rizin"]

Build-time vs runtime

Choose build-time for tools needed during compilation, runtime for dynamic libraries loaded at runtime.

min add --build rizin
min add --runtime rizin

Dependencies (16)

Dependencies
NameVersionKind
base—build
bash5.3runtime
gcc15.2.0build
glibc2.44build + runtime
lz41.10.0build + runtime
meson1.12.0build
ninja1.13.2build
opensslCVE:133.6.4build + runtime
pcre210.49build + runtime
pkgconf3.0.5build
pythonCVE:93.14.7build
toolchain—build
tree-sitter0.27.0build + runtime
xz5.8.4build + runtime
zlib1.3.2build + runtime
zstd1.5.7build + runtime

No dependants

No other packages in the registry depend on this one.

  1. rizin v0.9.13ccfc4f
    Diff
    Lines:+203Deps:16(+16)
    Released:

No direct advisories

This package inherits 13 transitive advisories from its dependencies.

Build provenance

Loading provenance

For the signed record of what the build used, see the Provenance tab.

Software Bill of Materials — every package this build depends on
PackagesVersion
rizinROOT0.9.1
acl2.4.0
attr2.6.0
bash5.3
bash-bootstrap5.3
binutils2.47
bison3.8.2
bzip21.0.8
coreutils9.12
diffutils3.12
expat2.8.5
file5.48
findutils4.11.0
flex2.6.4
gawk5.4.1
gawk-bootstrap5.4.1
gcc15.2.0
gdbm1.26
glibc2.44
gmp6.3.0
grep3.12
gzip1.15
libcap2.78
libffi3.8.0
linux_headers6.12.43
lz41.10.0
m41.4.21
make4.4.1
meson1.12.0
mpc1.4.1
mpfr4.2.2
ncurses6.6
ninja1.13.2
openssl3.6.4
patch2.8
pcre210.49
perl5.44.0
pkgconf3.0.5
python3.14.7
readline8.3
sed4.10
setuptools84.0.0
sqlite3.53.4
tar1.35
tree-sitter0.27.0
tzdata2026e
util-linux2.42.4
xz5.8.4
zlib1.3.2
zstd1.5.7

Join the waitlist

Confirm your identity by email or GitHub.

or