Skip to content
Tools / cleanslate / Dependencies

Dependency Analysis

cleanslate

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

67% Freshness
1250 Dependencies
329 Outdated
0 Stale
10.0 Avg Behind

Dependency List

Latest release v4.19.0

Dependency Type Current Latest Behind CVE License
ua-parser-js
npm
Direct 2.0.9 2.0.10 1 behind AGPL-3.0-or-later
@img/sharp-libvips-darwin-arm64
npm
Transitive 1.2.4 1.2.4 Current BSD-2-Clause AND LGPL-2.0-only AND LGPL-2.1-only AND LGPL-3.0-only AND LGPL-3.0-or-later AND LicenseRef-scancode-other-permissive AND MIT AND MPL-2.0
@img/sharp-libvips-darwin-x64
npm
Transitive 1.2.4 1.2.4 Current BSD-2-Clause AND LGPL-2.0-only AND LGPL-2.1-only AND LGPL-3.0-only AND LGPL-3.0-or-later AND LicenseRef-scancode-other-permissive AND MIT AND MPL-2.0
@img/sharp-libvips-linux-arm
npm
Transitive 1.2.4 1.2.4 Current BSD-2-Clause AND LGPL-2.0-only AND LGPL-2.1-only AND LGPL-3.0-only AND LGPL-3.0-or-later AND LicenseRef-scancode-other-permissive AND MIT AND MPL-2.0
@img/sharp-libvips-linux-arm64
npm
Transitive 1.2.4 1.2.4 Current BSD-2-Clause AND LGPL-2.0-only AND LGPL-2.1-only AND LGPL-3.0-only AND LGPL-3.0-or-later AND LicenseRef-scancode-other-permissive AND MIT AND MPL-2.0
@img/sharp-libvips-linux-ppc64
npm
Transitive 1.2.4 1.2.4 Current BSD-2-Clause AND LGPL-2.0-only AND LGPL-2.1-only AND LGPL-3.0-only AND LGPL-3.0-or-later AND LicenseRef-scancode-other-permissive AND MIT AND MPL-2.0
@img/sharp-libvips-linux-riscv64
npm
Transitive 1.2.4 1.2.4 Current BSD-2-Clause AND LGPL-2.0-only AND LGPL-2.1-only AND LGPL-3.0-only AND LGPL-3.0-or-later AND LicenseRef-scancode-other-permissive AND MIT AND MPL-2.0
@img/sharp-libvips-linux-s390x
npm
Transitive 1.2.4 1.2.4 Current BSD-2-Clause AND LGPL-2.0-only AND LGPL-2.1-only AND LGPL-3.0-only AND LGPL-3.0-or-later AND LicenseRef-scancode-other-permissive AND MIT AND MPL-2.0
@img/sharp-libvips-linux-x64
npm
Transitive 1.2.4 1.2.4 Current BSD-2-Clause AND LGPL-2.0-only AND LGPL-2.1-only AND LGPL-3.0-only AND LGPL-3.0-or-later AND LicenseRef-scancode-other-permissive AND MIT AND MPL-2.0
@img/sharp-libvips-linuxmusl-arm64
npm
Transitive 1.2.4 1.2.4 Current BSD-2-Clause AND LGPL-2.0-only AND LGPL-2.1-only AND LGPL-3.0-only AND LGPL-3.0-or-later AND LicenseRef-scancode-other-permissive AND MIT AND MPL-2.0
@img/sharp-libvips-linuxmusl-x64
npm
Transitive 1.2.4 1.2.4 Current BSD-2-Clause AND LGPL-2.0-only AND LGPL-2.1-only AND LGPL-3.0-only AND LGPL-3.0-or-later AND LicenseRef-scancode-other-permissive AND MIT AND MPL-2.0
@img/sharp-win32-arm64
npm
Transitive 0.34.5 0.34.5 Current Apache-2.0 AND BSD-2-Clause AND LGPL-2.0-only AND LGPL-2.1-only AND LGPL-3.0-only AND LGPL-3.0-or-later AND LicenseRef-scancode-other-permissive AND MIT AND MPL-2.0
@img/sharp-win32-ia32
npm
Transitive 0.34.5 0.34.5 Current Apache-2.0 AND BSD-2-Clause AND LGPL-2.0-only AND LGPL-2.1-only AND LGPL-3.0-only AND LGPL-3.0-or-later AND LicenseRef-scancode-other-permissive AND MIT AND MPL-2.0
@img/sharp-win32-x64
npm
Transitive 0.34.5 0.34.5 Current Apache-2.0 AND BSD-2-Clause AND LGPL-2.0-only AND LGPL-2.1-only AND LGPL-3.0-only AND LGPL-3.0-or-later AND LicenseRef-scancode-other-permissive AND MIT AND MPL-2.0
@opentelemetry/api
npm
Transitive 1.9.1 1.9.1 Current Apache-2.0 OR (Apache-2.0 AND LGPL-3.0-only)
@opentelemetry/api
npm
Transitive 1.9.1 1.9.1 Current Apache-2.0 OR (Apache-2.0 AND LGPL-3.0-only)
node-forge
npm
Transitive 1.4.0 1.4.0 Current BSD-3-Clause OR GPL-2.0-only
node-forge
npm
Transitive 1.4.0 1.4.0 Current BSD-3-Clause OR GPL-2.0-only

License Breakdown

MIT 925
Apache-2.0 134
ISC 55
BSD-3-Clause 44
Apache-2.0 AND MIT 14
CC0-1.0 AND MIT 13
BSD-2-Clause AND LGPL-2.0-only AND LGPL-2.1-only AND LGPL-3.0-only AND LGPL-3.0-or-later AND LicenseRef-scancode-other-permissive AND MIT AND MPL-2.0 10
BlueOak-1.0.0 10
MIT OR Apache-2.0 8
BSD-2-Clause 7
Unknown 6
Apache-2.0 AND BSD-2-Clause AND LGPL-2.0-only AND LGPL-2.1-only AND LGPL-3.0-only AND LGPL-3.0-or-later AND LicenseRef-scancode-other-permissive AND MIT AND MPL-2.0 3
ISC AND MIT 3
0BSD 2
Apache-2.0 OR (Apache-2.0 AND LGPL-3.0-only) 2
BSD-3-Clause AND LicenseRef-scancode-protobuf 2
BSD-3-Clause OR GPL-2.0-only 2
LicenseRef-scancode-unicode AND MIT 2
(Apache-2.0 AND LicenseRef-scancode-unknown-license-reference AND MIT) OR (Apache-2.0 AND LicenseRef-scancode-unknown-license-reference) 1
AGPL-3.0-or-later 1
Apache-2.0 AND BSD-3-Clause AND MIT 1
BSD-2-Clause AND BSD-3-Clause 1
CC-BY-4.0 1
MIT AND Zlib 1
MIT OR (CC0-1.0 AND MIT) 1

CVE Severity

critical 0
high 3
medium 1
low 2
unknown 0

Beta — feedback welcome: [email protected]