Skip to content
Tools / CAPA / Dependencies

Dependency Analysis

CAPA

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

36% Freshness
434 Dependencies
229 Outdated
0 Stale
10.0 Avg Behind

Dependency List

Latest release v9.4.0

Dependency Type Current Latest Behind CVE License
cross-spawn
npm
Transitive 7.0.3 7.0.6 3 behind 1 high MIT
ajv
npm
Transitive 6.12.6 8.20.0 67 behind 1 medium MIT
postcss
npm
Transitive 8.5.3 8.5.15 12 behind 1 medium MIT
brace-expansion
npm
Transitive 2.0.2 5.0.6 11 behind 1 medium MIT
pytest
pypi
Direct 9.0.2 9.0.3 1 behind 1 medium MIT
brace-expansion
npm
Transitive 1.1.11 5.0.6 18 behind 1 low MIT

License Breakdown

MIT 282
Unknown 56
ISC 28
Apache-2.0 16
BSD-2-Clause 10
BSD-3-Clause 9
BSD-2-Clause AND BSD-3-Clause 7
Apache-2.0 AND MIT 3
BlueOak-1.0.0 3
CC0-1.0 AND MIT 2
ISC AND MIT 2
0BSD 1
0BSD AND ISC AND MIT 1
Apache-2.0 AND BSD-2-Clause 1
Apache-2.0 AND BSD-2-Clause AND CC0-1.0 AND ISC AND MIT 1
BSD-2-Clause AND BSD-2-Clause-Views 1
BSD-2-Clause AND BSD-3-Clause AND MIT 1
BSD-3-Clause AND ISC AND MIT 1
BSD-3-Clause AND LicenseRef-scancode-protobuf 1
GPL-2.0-only AND GPL-2.0-or-later 1
GPL-3.0 AND GPL-3.0-only AND LGPL-3.0-only AND LGPL-3.0-or-later 1
LicenseRef-scancode-public-domain AND Unlicense 1
MIT AND Python-2.0 1
MIT AND Python-2.0 AND Python-2.0.1 AND BSD-2-Clause AND MIT AND Python-2.0 AND Python-2.0.1 AND BSD-2-Clause 1
MIT AND Zlib 1
Python-2.0 1

CVE Severity

critical 0
high 1
medium 4
low 1
unknown 0

Beta — feedback welcome: [email protected]