Skip to content
Tools / dawarich / Dependencies

Dependency Analysis

dawarich

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

96% Freshness
313 Dependencies
9 Outdated
0 Stale
23.1 Avg Behind

Dependency List

Latest release 1.7.5

Dependency Type Current Latest Behind CVE License
dompurify
npm
Transitive 3.3.2 3.4.8 10 behind 4 medium (Apache-2.0 AND GPL-1.0-only AND MPL-2.0 AND MS-PL) OR (Apache-2.0 AND GPL-1.0-only AND MPL-2.0) OR (Apache-2.0 AND GPL-2.0-only AND MPL-2.0 AND MS-PL) OR (Apache-2.0 AND GPL-2.0-only AND MPL-2.0)
bundler-audit
gem
Direct 0.9.3 GPL-3.0-or-later
diff-lcs
gem
Direct 1.6.2 (Artistic-1.0-Perl AND Artistic-2.0 AND GPL-1.0-or-later AND GPL-2.0-only AND GPL-2.0-or-later AND MIT) OR (Artistic-2.0 AND GPL-1.0-or-later AND GPL-2.0-only AND GPL-2.0-or-later AND MIT)
fit4ruby
gem
Direct 3.13.0 GPL-2.0 AND GPL-2.0-only
net-smtp
gem
Direct 0.5.1 (Apache-2.0 AND BSD-2-Clause AND MIT AND Ruby) OR (BSD-2-Clause AND GPL-2.0-only AND MIT AND Ruby)
nio4r
gem
Direct 2.7.5 BSD-2-Clause AND GPL-2.0-or-later AND MIT
rdoc
gem
Direct 7.2.0 (Artistic-1.0-Perl AND BSD-3-Clause AND LicenseRef-scancode-unknown-license-reference AND MIT AND OFL-1.1 AND Ruby) OR (BSD-3-Clause AND GPL-1.0-or-later AND LicenseRef-scancode-unknown-license-reference AND MIT AND OFL-1.1 AND Ruby)
sidekiq
gem
Direct 8.0.10 (LGPL-3.0 AND LGPL-3.0-only AND LicenseRef-scancode-unknown-license-reference) OR (LGPL-3.0 AND LicenseRef-scancode-commercial-license AND LicenseRef-scancode-unknown-license-reference)

License Breakdown

MIT 179
Unknown 25
Apache-2.0 17
ISC 11
BSD-2-Clause OR (BSD-2-Clause AND Ruby) 10
BSD-2-Clause OR Ruby OR (BSD-2-Clause AND Ruby) 9
MIT OR Apache-2.0 9
BSD-3-Clause 8
(BSD-2-Clause AND MIT AND Ruby) OR (BSD-2-Clause AND MIT) 5
BSD-2-Clause 4
LicenseRef-scancode-unknown-license-reference AND MIT 4
MIT AND Ruby 2
Ruby 2
(Apache-2.0 AND BSD-2-Clause AND MIT AND Ruby) OR (BSD-2-Clause AND GPL-2.0-only AND MIT AND Ruby) 1
(Apache-2.0 AND GPL-1.0-only AND MPL-2.0 AND MS-PL) OR (Apache-2.0 AND GPL-1.0-only AND MPL-2.0) OR (Apache-2.0 AND GPL-2.0-only AND MPL-2.0 AND MS-PL) OR (Apache-2.0 AND GPL-2.0-only AND MPL-2.0) 1
(Artistic-1.0-Perl AND Artistic-2.0 AND GPL-1.0-or-later AND GPL-2.0-only AND GPL-2.0-or-later AND MIT) OR (Artistic-2.0 AND GPL-1.0-or-later AND GPL-2.0-only AND GPL-2.0-or-later AND MIT) 1
(Artistic-1.0-Perl AND BSD-3-Clause AND LicenseRef-scancode-unknown-license-reference AND MIT AND OFL-1.1 AND Ruby) OR (BSD-3-Clause AND GPL-1.0-or-later AND LicenseRef-scancode-unknown-license-reference AND MIT AND OFL-1.1 AND Ruby) 1
(BSD-2-Clause AND BSD-3-Clause AND Ruby) OR (BSD-2-Clause AND BSD-3-Clause) 1
(BSD-2-Clause AND PostgreSQL AND Ruby) OR (BSD-2-Clause AND PostgreSQL) 1
(LGPL-3.0 AND LGPL-3.0-only AND LicenseRef-scancode-unknown-license-reference) OR (LGPL-3.0 AND LicenseRef-scancode-commercial-license AND LicenseRef-scancode-unknown-license-reference) 1
Apache-2.0 AND CC-BY-SA-2.5 AND CC-BY-SA-3.0 AND CC-BY-SA-4.0 AND MIT 1
Apache-2.0 AND MIT 1
Apache-2.0 OR MIT OR (Apache-2.0 AND MIT) 1
BSD-2-Clause AND BSD-3-Clause 1
BSD-2-Clause AND GPL-2.0-or-later AND MIT 1
BSD-2-Clause AND LicenseRef-scancode-ietf AND LicenseRef-scancode-ietf-trust AND MIT AND Ruby 1
BSD-2-Clause AND MIT 1
BSD-2-Clause AND Ruby 1
BSD-2-Clause OR Ruby 1
BSD-3-Clause AND ISC AND MIT 1
BSD-3-Clause AND MIT 1
BSD-3-Clause AND Ruby 1
CC-BY-SA-2.5 AND CC-BY-SA-4.0 AND MIT 1
GPL-2.0 AND GPL-2.0-only 1
GPL-3.0-or-later 1
LicenseRef-scancode-free-unknown AND MIT 1
LicenseRef-scancode-proprietary-license 1
LicenseRef-scancode-warranty-disclaimer AND MIT 1
MIT AND OFL-1.1 1
WTFPL OR (MIT AND WTFPL) 1

CVE Severity

critical 0
high 5
medium 8
low 1
unknown 0

Beta — feedback welcome: [email protected]