Skip to content
Tools / ChatDev / Dependencies

Dependency Analysis

ChatDev

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

45% Freshness
406 Dependencies
165 Outdated
0 Stale
4.7 Avg Behind

Dependency List

Latest release v2.2.0

Dependency Type Current Latest Behind CVE License
fastmcp
pypi
Direct 3.1.0 3.4.0 14 behind 3 critical Unknown
minimatch
npm
Transitive 3.1.2 10.2.5 91 behind 3 high ISC
vite
npm
Direct 7.3.0 8.0.16 37 behind 3 high BSD-2-Clause AND CC0-1.0 AND ISC AND MIT
rollup
npm
Transitive 4.55.1 4.61.0 16 behind 1 high 0BSD AND ISC AND MIT
python-multipart
pypi
Transitive 0.0.22 0.0.30 8 behind 2 high Apache-2.0
flatted
npm
Transitive 3.3.3 3.4.2 4 behind 2 high ISC
lxml
pypi
Transitive 6.0.2 6.1.1 4 behind 1 high BSD-3-Clause AND GPL-1.0-or-later
picomatch
npm
Transitive 4.0.3 4.0.4 3 behind 2 high MIT
pyjwt
pypi
Transitive 2.11.0 2.13.0 3 behind 1 high MIT
pillow
pypi
Transitive 12.1.1 12.2.0 1 behind 5 high LicenseRef-scancode-secret-labs-2011 AND MIT-CMU
pyasn1
pypi
Transitive 0.6.2 0.6.3 1 behind 1 high BSD-2-Clause AND BSD-3-Clause AND MIT
ajv
npm
Transitive 6.12.6 8.20.0 67 behind 1 medium MIT
brace-expansion
npm
Transitive 1.1.12 5.0.6 10 behind 1 medium MIT
pypdf
pypi
Transitive 6.8.0 6.12.2 10 behind 7 medium Unknown
postcss
npm
Transitive 8.5.6 8.5.15 9 behind 1 medium MIT
authlib
pypi
Transitive 1.6.9 1.7.2 6 behind 1 medium BSD-3-Clause
requests
pypi
Direct 2.32.5 2.34.2 6 behind 1 medium Apache-2.0
cryptography
pypi
Transitive 46.0.5 48.0.0 4 behind 2 medium Apache-2.0 AND BSD-3-Clause
markdown-it
npm
Direct 14.1.0 14.2.0 2 behind 1 medium MIT
pytest
pypi
Direct 9.0.2 9.0.3 1 behind 1 medium MIT
pygments
pypi
Transitive 2.19.2 2.20.0 1 behind 1 low BSD-2-Clause

License Breakdown

MIT 228
Unknown 59
Apache-2.0 26
BSD-3-Clause 21
ISC 16
BSD-2-Clause 10
BSD-2-Clause AND BSD-3-Clause 9
MIT AND Python-2.0 3
0BSD AND BSD-3-Clause AND LicenseRef-scancode-other-permissive AND MIT AND Python-2.0 1
0BSD AND ISC AND MIT 1
Apache-2.0 AND BSD-2-Clause 1
Apache-2.0 AND BSD-3-Clause 1
Apache-2.0 AND BSD-3-Clause AND LicenseRef-scancode-unknown-license-reference 1
Apache-2.0 AND BSD-3-Clause AND MIT AND OFL-1.1 1
Apache-2.0 AND BSD-3-Clause AND MPL-2.0 1
Apache-2.0 AND MIT 1
BSD-2-Clause AND BSD-2-Clause-Views 1
BSD-2-Clause AND BSD-3-Clause AND CC-PDDC AND GPL-1.0-or-later AND GPL-3.0-only AND GPL-3.0-or-later AND LicenseRef-scancode-free-unknown AND LicenseRef-scancode-other-copyleft AND LicenseRef-scancode-public-domain 1
BSD-2-Clause AND BSD-3-Clause AND MIT 1
BSD-2-Clause AND CC0-1.0 AND ISC AND MIT 1
BSD-3-Clause AND GPL-1.0-or-later 1
BSD-3-Clause AND LGPL-2.1-only 1
BSD-3-Clause AND MIT 1
CC0-1.0 AND Unlicense 1
ISC AND MPL-2.0 1
LGPL-2.0-only AND LGPL-2.0-or-later AND LGPL-3.0-or-later AND LicenseRef-scancode-public-domain 1
LGPL-2.0-or-later AND LGPL-2.1-only AND LicenseRef-scancode-public-domain AND MIT AND MPL-1.1 1
LGPL-2.0-or-later AND LGPL-2.1-only AND MPL-1.1 1
LGPL-2.0-or-later AND MIT 1
LGPL-3.0 AND LGPL-3.0-only AND LGPL-3.0-or-later 1
LicenseRef-scancode-secret-labs-2011 AND MIT-CMU 1
LicenseRef-scancode-us-govt-public-domain AND MIT 1
MIT AND MPL-2.0 1
MIT AND PSF-2.0 1
MIT AND ZPL-2.1 1
MIT-0 1
MPL-2.0 1
PSF-2.0 1
Python-2.0 1
Python-2.0 AND GPL-1.0-or-later AND Python-2.0 AND BSD-3-Clause AND Python-2.0 AND BSD-3-Clause AND 0BSD 1
Unlicense 1

CVE Severity

critical 1
high 10
medium 9
low 1
unknown 0

Beta — feedback welcome: [email protected]