Skip to content
Tools / Bearer / Dependencies

Dependency Analysis

Bearer

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

64% Freshness
600 Dependencies
176 Outdated
0 Stale
7.0 Avg Behind

Dependency List

Latest release v2.0.1

Dependency Type Current Latest Behind CVE License
ajv
npm
Transitive 6.12.6 8.20.0 67 behind 1 medium MIT
yaml
npm
Transitive 2.3.1 2.9.0 24 behind 1 medium ISC
brace-expansion
npm
Transitive 1.1.12 5.0.6 10 behind 1 medium MIT
markdown-it
npm
Direct 13.0.2 14.2.0 4 behind 1 medium MIT

License Breakdown

MIT 448
ISC 39
BSD-2-Clause 22
Unknown 22
Apache-2.0 20
BSD-3-Clause 20
BSD-3-Clause AND LicenseRef-scancode-google-patent-license-golang 8
BlueOak-1.0.0 3
Apache-2.0 AND BSD-2-Clause 2
Apache-2.0 AND MIT 2
CC0-1.0 AND MIT 2
Apache-2.0 AND BSD-3-Clause AND MIT 1
BSD-2-Clause AND BSD-2-Clause-Views 1
BSD-2-Clause AND BSD-3-Clause 1
BSD-2-Clause-Views 1
CC-BY-SA-4.0 AND ISC 1
ISC AND MIT 1
LicenseRef-scancode-unknown-license-reference AND MIT 1
MIT-0 1
MPL-2.0 1
Python-2.0 1
Unlicense 1

CVE Severity

critical 0
high 0
medium 4
low 0
unknown 0

Beta — feedback welcome: [email protected]