Package Search Help

You can use boolean logic (e.g. AND/OR/NOT) for complex search queries. For more help and examples, see the search documentation.

Search by package name:
my-package (implicit)
name:my-package (explicit)

Search by package filename:
filename:my-package.ext 

Search by package tag:
tag:latest 

Search by package version:
version:1.0.0  prerelease:true (prereleases)
prerelease:false (no prereleases)

Search by package architecture:
architecture:x86_64 

Search by package distribution:
distribution:el 

Search by package license:
license:MIT 

Search by package format:
format:deb 

Search by package status:
status:in_progress 

Search by package file checksum:
checksum:5afba 

Search by package security status:
severity:critical 

Search by package vulnerabilities:
vulnerabilities:>1 
vulnerabilities:<1000 

Search by # of package downloads:
downloads:>8 
downloads:<100 

Search by package type:
type:binary 
type:source 

Search by package size (bytes):
size:>50000 
size:<10000 

Search by dependency name/version:
dependency:log4j 
dependency:log4j=1.0.0 
dependency:log4j>1.0.0 

Search by uploaded date:
uploaded:>"1 day ago" 
uploaded:<"August 14, 2022 EST" 

Search by entitlement token (identifier):
entitlement:3lKPVJPosCsY 

Search by policy violation:
policy_violated:true
deny_policy_violated:true
license_policy_violated:true
vulnerability_policy_violated:true

Search by repository:
repository:repo-name

Search by last download date:
last_downloaded:<"30 days ago" 
last_downloaded:>"August 14, 2022 EST" 

Search queries for all Debian-specific (and related) package types

Search by component:
deb_component:unstable

Search queries for all Maven-specific (and related) package types

Search by group ID:
maven_group_id:org.apache

Search queries for all Docker-specific (and related) package types

Search by image digest:
docker_image_digest:sha256:7c5..6d4
(full hashref only)

Search by layer digest:
docker_layer_digest:sha256:4c4..ae4
(full hashref only)

Search queries for all Generic-specific package types

Search by file path:
generic_filepath:path/to/file.txt

Search by directory:
generic_directory:path/to

Field type modifiers (depending on the type, you can influence behaviour)

For all queries, you can use:
~foo for negation

For string queries, you can use:
^foo to anchor to start of term
foo$ to anchor to end of term
foo*bar for fuzzy matching

For number/date or version queries, you can use:
>foo for values greater than
>=foo for values greater / equal
<foo for values less than
<=foo for values less / equal

Need a secure and centralised artifact repository to deliver Alpine, Cargo, CocoaPods, Composer, Conan, Conda, CRAN, Dart, Debian, Docker, Generic, Go, Helm, Hex, HuggingFace, LuaRocks, Maven, MCP, Nix, npm, NuGet, P2, Python, RedHat, Ruby, Swift, Terraform, Vagrant, VSX, Raw & More packages?

Cloudsmith is the new standard in Package / Artifact Management and Software Distribution.

With support for all major package formats, you can trust us to manage your software supply chain.

Start My Free Trial
 Open-Source — volkszaehler volkszaehler / volkszaehler-org-project —  GitHub Project
volkszaehler.org project: Open Source Smart Metering platform
Note: Packages in this repository are licensed as GNU General Public License v3.0 or later (dependencies may be licensed differently).

Tool-Specific Instructions

Although we use GPG (and RSA) keys across each repository and package format, client-side tools might have specific instructions that differ (or require manual steps). To add or use the signing key for these tools, please click on the package format specific tabs above.

Public GPG Key

GPG-based keys/signatures are used by:
Debian logo

The public GPG key for the volkszaehler/volkszaehler-org-project is:

-----BEGIN PGP PUBLIC KEY BLOCK-----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=GCO1
-----END PGP PUBLIC KEY BLOCK-----

It has the following long (20 bytes) and short (8 bytes) fingerprints:

AE4DC9B32D0F36A0BA3D3FB221DBDAC56DF44DA1
21DBDAC56DF44DA1

You can download the GPG key or fetch it via the command-line:

curl -1sLf 'https://dl.cloudsmith.io/public/volkszaehler/volkszaehler-org-project/gpg.21DBDAC56DF44DA1.key'

Public RSA Key

RSA-based keys/signatures are used by:

The public RSA key for the volkszaehler/volkszaehler-org-project is:

-----BEGIN PUBLIC KEY-----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-----END PUBLIC KEY-----

It has the following long (16 bytes) and short (8 bytes) fingerprints:

2DD623B9219CFA1C7DCBFAC738BBFBFA
7DCBFAC738BBFBFA

You can download the RSA key or fetch it via the command-line:

curl -1sLf 'https://dl.cloudsmith.io/public/volkszaehler/volkszaehler-org-project/rsa.7DCBFAC738BBFBFA.key'

Public ECDSA Key

ECDSA-based keys/signatures are used by:

The public ECDSA OpenSSH key for the volkszaehler/volkszaehler-org-project is:

-----BEGIN PUBLIC KEY-----
MFkwEwYHKoZIzj0CAQYIKoZIzj0DAQcDQgAEfrIse8tcm1s4E8lQnLOBh5IEDyEw
78/gTe1h3Vbie+JvUVr8kPTlWrLo0C4/H0LircGCT53ozStEjp5YuuNpng==
-----END PUBLIC KEY-----

It has the following long (16 bytes) and short (8 bytes) fingerprints:

52C3F89C9377856417089D4AFA74D229
17089D4AFA74D229

You can download the ECDSA key or fetch it via the command-line:

curl -1sLf 'https://dl.cloudsmith.io/public/volkszaehler/volkszaehler-org-project/ecdsa.17089D4AFA74D229.key'

Please note however that the NPM client does not require this key to be installed system-wide in order to allow for package verification - NPM tooling will handle keys automatically.

Public Ed25519 Key

Ed25519-based keys/signatures are used by:

The public Ed25519 key for the volkszaehler/volkszaehler-org-project is:

-----BEGIN PUBLIC KEY-----
MCowBQYDK2VwAyEAS92IEfC98yvZnAgLy2I2ocBJvZOrJVGyVjulsg70dDg=
-----END PUBLIC KEY-----

It has the following long (32 bytes) and short (8 bytes) fingerprints:

119DAAAD4585B56BFD63FA10D284D305897A19D3529F4F4285E4451943194651
85E4451943194651

You can download the Ed25519 key or fetch it via the command-line:

curl -1sLf 'https://dl.cloudsmith.io/public/volkszaehler/volkszaehler-org-project/ed25519.85E4451943194651.key'

For Nix, add this name:base64 line to trusted-public-keys:

volkszaehler-volkszaehler-org-project-165:S92IEfC98yvZnAgLy2I2ocBJvZOrJVGyVjulsg70dDg=

Need Help?

If you couldn't find what you needed in our documentation, then you can always chat to a member of our team instead. It's our mission to be your dedicated off-site team for package management, and we mean it. Come and chat with us, anytime.

What's this page? All Cloudsmith repositories and packages are signed using GPG, RSA or ECDSA keys where supported. Signatures and checksums provide reliable mechanisms to ensure that the packages that you download/install are neither corrupt nor modified. GPG is generally preferred, but RSA or ECDSA is used for some package formats (such as Alpine or NPM). Learn more in the signing keys documentation.

Top