Ross ROSS = Recommend OSS · open-source software intelligence for agents

latchset/clevis

Automated Encryption Framework observed · 2026-08-28

github.com/latchset/clevis · Shell · GPL-3.0 (copyleft) observed · 2026-08-28

Health v2 · maintenance only

80/100

  • Activity 94
  • Release rhythm 51
  • Longevity 100
How is this computed?

round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-03. Adoption (stars, forks) is never an input.

  • gap_med: 298.0
  • age_days: 3925
  • days_rel: 112
  • days_push: 39
  • n_releases_24m: 3

Full methodology

Adoption not part of the score

1246 stars · 124 forks observed · 2026-08-28

What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-30, confidence not recorded

Clevis is a pluggable framework for automated encryption and decryption, producing JWE ciphertexts that can be decrypted without user interaction. It supports pins such as Tang servers and TPM1/TPM2 chips, and is commonly used for automated unlocking of LUKS disk encryption volumes.

Use cases

  • automatically unlock LUKS encrypted disks at boot
  • encrypt data so it decrypts without user interaction
  • bind encryption keys to a TPM chip
  • use a Tang server for network-bound encryption without escrow
  • encrypt secrets into JWE objects from the command line
  • set up automated decryption for headless servers

When to choose

  • you need unattended unlocking of LUKS volumes on Linux
  • you want key binding to TPM hardware or a Tang server
  • you need a scriptable CLI for automated encryption/decryption

When to avoid

  • you need interactive, password-based encryption for end users
  • you need a cross-platform GUI encryption tool
  • you are not on Linux or lack TPM/Tang infrastructure

Facets

cli-tool · maturity active

cryptography security cli plugin-system security privacy developer-tools cli luks disk-encryption jwe tpm tang automated-decryption network-bound-disk-encryption command-line linux

1 source

Member repositories

RepositoryRoleHealth v2
latchset/clevismain80

For agents

markdown · JSON · MCP: product_card(name="latchset/clevis")

Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem