Skip to content
Tools / Beats / Dependencies

Dependency Analysis

Beats

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

97% Freshness
693 Dependencies
20 Outdated
0 Stale
8.7 Avg Behind

Dependency List

Latest release v9.4.0

Dependency Type Current Latest Behind CVE License
cryptography
pypi
Direct 44.0.1 48.0.0 20 behind 2 high Apache-2.0 OR BSD-3-Clause OR (Apache-2.0 AND BSD-3-Clause)
urllib3
pypi
Direct 1.26.19 2.7.0 10 behind 3 high MIT
urllib3
pypi
Direct 2.6.0 2.7.0 4 behind 1 high MIT
github.com/apache/thrift
golang
Transitive v0.22.0 1 high Apache-2.0 AND BSD-3-Clause AND FSFAP-no-warranty-disclaimer AND LicenseRef-scancode-public-domain-disclaimer AND MIT
github.com/containerd/containerd/v2
golang
Direct v2.1.0 3 high Apache-2.0 AND CC-BY-4.0
github.com/docker/docker
golang
Direct v28.5.2+incompatible 2 high Apache-2.0
github.com/moby/spdystream
golang
Transitive v0.5.0 1 high Apache-2.0
github.com/prometheus/prometheus
golang
Direct v0.311.2-0.20260410083055-07c6232d159b 3 high Unknown
golang.org/x/text
golang
Transitive v0.3.1-0.20180807135948-17ff2d5776d2 3 high BSD-3-Clause AND LicenseRef-scancode-google-patent-license-golang
protobuf
pypi
Direct 3.19.5 2 high BSD-3-Clause
pyasn1
pypi
Direct 0.4.8 1 high BSD-2-Clause
requests
pypi
Direct 2.32.4 2.34.2 7 behind 1 medium Apache-2.0
pynacl
pypi
Direct 1.5.0 1.6.2 3 behind 1 medium Apache-2.0
awscli
pypi
Direct 1.18.48 1 medium Apache-2.0
pytest
pypi
Direct 7.3.2 1 medium MIT
python-dotenv
pypi
Direct 0.21.1 1 medium BSD-2-Clause AND BSD-3-Clause
golang.org/x/net
golang
Direct v0.52.0 1 unknown BSD-3-Clause AND LicenseRef-scancode-google-patent-license-golang
py
pypi
Direct 1.11.0 1.11.0 Current 1 unknown MIT

License Breakdown

Apache-2.0 197
Unknown 182
MIT 152
BSD-3-Clause 50
BSD-2-Clause 17
Apache-2.0 AND BSD-3-Clause 16
BSD-3-Clause AND LicenseRef-scancode-google-patent-license-golang 15
MPL-2.0 11
BSD-2-Clause AND BSD-3-Clause 6
LicenseRef-scancode-generic-cla AND MIT 6
Apache-2.0 AND MIT 5
ISC 4
Apache-2.0 AND BSD-3-Clause AND MIT 3
Apache-2.0 AND BSD-2-Clause AND BSD-3-Clause AND ISC AND MIT 2
Apache-2.0 AND CC-BY-SA-4.0 2
BSD-3-Clause AND (BSD-3-Clause OR GPL-2.0-or-later) AND GPL-1.0-or-later AND GPL-2.0-only 2
LGPL-2.1-or-later 2
PSF-2.0 2
Apache-2.0 AND BSD-2-Clause 1
Apache-2.0 AND BSD-2-Clause AND BSD-3-Clause AND BSL-1.0 AND CC-BY-3.0 AND HPND AND MIT AND NCSA AND OpenSSL AND Zlib 1
Apache-2.0 AND BSD-3-Clause AND FSFAP-no-warranty-disclaimer AND LicenseRef-scancode-public-domain-disclaimer AND MIT 1
Apache-2.0 AND BSD-3-Clause AND MIT AND UPL-1.0 1
Apache-2.0 AND CC-BY-4.0 1
Apache-2.0 AND GPL-1.0-or-later AND GPL-3.0-only 1
Apache-2.0 AND GPL-3.0-only 1
Apache-2.0 AND LicenseRef-scancode-dco-1.1 AND MIT 1
Apache-2.0 OR BSD-3-Clause OR (Apache-2.0 AND BSD-3-Clause) 1
BSD-2-Clause AND BSD-3-Clause AND EPL-2.0 AND LicenseRef-scancode-generic-export-compliance AND LicenseRef-scancode-unknown 1
BSD-2-Clause-Views 1
BSD-2-Clause-Views AND BSD-3-Clause 1
BSD-3-Clause AND CC0-1.0 AND LicenseRef-scancode-public-domain AND LicenseRef-scancode-unknown-license-reference AND LicenseRef-scancode-w3c-03-bsd-license AND MIT 1
CDDL-1.0 1
GPL-3.0-or-later 1
LGPL-2.1-only AND MIT AND MPL-1.1 1
LGPL-3.0 AND LGPL-3.0-only AND MIT 1
Python-2.0.1 1

CVE Severity

critical 0
high 11
medium 5
low 0
unknown 2

Beta — feedback welcome: [email protected]