github.com/google/go-tpm-tools
Go Modulesvv0.4.9Go module: github.com/google/go-tpm-tools
Not recommended for new projects
No — github.com/google/go-tpm-tools should not be adopted for new projects. Depended on by 3 known packages. Pulls in 1204 transitive packages (at least — some of the tree is still being crawled). This package lists no maintainer, exposes a 1204-package audit surface. No license declared — you have no explicit right to use this code.
- CAdoption: grade C, Fair — worth a look.
Depended on by 3 known packages.
- BMaintenance: grade B, Good.
Last published 97 days ago. 5 releases in the last 2 years.
- FWeight: grade F, Failing.
Pulls in 1204 transitive packages (at least — some of the tree is still being crawled).
- DSupply chain: grade D, Poor — a real concern.
This package lists no maintainer, exposes a 1204-package audit surface.
- FLicense: grade F, Failing.
No license declared — you have no explicit right to use this code.
Grades are computed deterministically from registry metadata collected by PackageGraph — downloads, dependents, publish dates, the resolved dependency tree, maintainer count, and declared licenses. No third-party scores are used.
Install cost
What you actually take on by adding github.com/google/go-tpm-tools to a project.
Runtime packages this one declares itself.
Distinct packages in the full runtime tree, deduplicated the way a package manager would.
Longest resolved dependency chain below this package.
Part of this dependency tree has not been crawled yet, so these figures are a lower bound rather than a final total.
Compatibility
- Go
- No constraint declared
Dependencies
Declared by github.com/google/go-tpm-tools vv0.4.9. Runtime dependencies are installed with the package; dev dependencies are not.
Runtime (17)
Used by
Popular packages that depend on github.com/google/go-tpm-tools.
Go module: github.com/google/go-tpm
Go module: github.com/GoogleCloudPlatform/confidential-space/server
Go module: github.com/google/go-attestation
Relationship graph
Dependencies (left) and dependents (right) of github.com/google/go-tpm-tools.
Frequently installed together
Go module: golang.org/x/sys
Go module: github.com/google/go-cmp
Go module: golang.org/x/crypto
Go module: github.com/google/go-tpm
Go module: go.uber.org/multierr
Go module: github.com/cespare/xxhash/v2
Go module: golang.org/x/text
Go module: golang.org/x/net
Go module: golang.org/x/oauth2
Go module: github.com/golang-jwt/jwt/v5
Go module: cloud.google.com/go/auth
Go module: google.golang.org/protobuf
Release history
5 releases in the last two years, typically about 43 days apart.
| Version | Published | License |
|---|---|---|
| v0.4.9latest | 3 months ago | — |
| v0.4.8 | 6 months ago | — |
| v0.4.7 | 10 months ago | — |
| v0.4.6 | 11 months ago | — |
| v0.4.5 | 1 year ago | — |
| v0.4.4 | 2 years ago | — |
| v0.4.3 | 2 years ago | — |
| v0.4.2 | 2 years ago | — |
| v0.4.1 | 3 years ago | — |
| v0.4.0 | 3 years ago | — |
| v0.3.12 | 3 years ago | — |
| v0.3.11 | 3 years ago | — |
| v0.3.10 | 3 years ago | — |
| v0.3.9 | 4 years ago | — |
| v0.3.8 | 4 years ago | — |
Overview
github.com/google/go-tpm-tools is an Go Modules package that go module: github.com/google/go-tpm-tools. It has 3 known dependents in the graph. The latest version is v0.4.9.
Who should use it
Teams working in the Go Modules ecosystem who need go module: github.com/google/go-tpm-tools and value a focused solution.
When not to use it
Consider an alternative if you need to minimize your dependency tree, or if a more actively-maintained option better fits your Go Modules stack.
Pros
- Actively published to the registry.
Cons
- Large dependency tree (17 direct dependencies) increases install size and audit surface.
- No license detected — review usage terms before adopting.
Auto-generated from collected registry metadata. No external claims are inferred.
Frequently asked questions
Should I use github.com/google/go-tpm-tools?
No — github.com/google/go-tpm-tools should not be adopted for new projects. Depended on by 3 known packages. Pulls in 1204 transitive packages (at least — some of the tree is still being crawled). This package lists no maintainer, exposes a 1204-package audit surface. No license declared — you have no explicit right to use this code.
How do I install github.com/google/go-tpm-tools?
Run `go get github.com/google/go-tpm-tools` to add github.com/google/go-tpm-tools to your Go Modules project.
How many dependencies does github.com/google/go-tpm-tools have?
github.com/google/go-tpm-tools declares 17 direct dependencies and pulls in 1204 packages in total once its runtime tree is resolved.
What license is github.com/google/go-tpm-tools released under?
No license was detected in github.com/google/go-tpm-tools's metadata; review the repository before use.
How popular is github.com/google/go-tpm-tools?
Go Modules does not publish download counts. Within PackageGraph's crawl, 3 known packages depend on github.com/google/go-tpm-tools.
Is github.com/google/go-tpm-tools still maintained?
The most recent release of github.com/google/go-tpm-tools (vv0.4.9) was published 3 months ago.