Skip to content
Tools / dribdat / Dependencies

Dependency Analysis

dribdat

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

90% Freshness
211 Dependencies
8 Outdated
0 Stale
1.3 Avg Behind

Dependency List

Latest release v0.9.4

Dependency Type Current Latest Behind CVE License
python-dotenv
pypi
Direct 0.21.1 1 medium BSD-2-Clause AND BSD-3-Clause
huggingface-hub
pypi
Direct 0.35.3 1.17.0 79 behind Apache-2.0
numpy
pypi
Direct 2.2.6 2.4.6 14 behind Apache-2.0 AND BSD-3-Clause AND MIT AND Zlib
chardet
pypi
Direct 5.2.0 7.4.3 13 behind LGPL-2.1-or-later
hiredis
pypi
Direct 2.4.0 3.4.0 10 behind MIT
rich
pypi
Direct 13.9.4 15.0.0 9 behind MIT
faker
pypi
Direct 40.15.0 40.21.0 7 behind Unknown
gevent
pypi
Direct 25.5.1 26.5.0 5 behind MIT AND Python-2.0
markupsafe
pypi
Direct 2.1.5 3.0.3 4 behind BSD-2-Clause AND BSD-3-Clause
requests
pypi
Direct 2.33.1 2.34.2 4 behind Apache-2.0
markdown-it-py
pypi
Direct 3.0.0 4.2.0 3 behind MIT
click
pypi
Direct 8.3.3 8.4.1 2 behind BSD-3-Clause
coverage
pypi
Direct 7.13.5 7.14.1 2 behind Apache-2.0
hf-xet
pypi
Transitive 1.4.3 1.5.1.dev1 2 behind Unknown
pydantic-core
pypi
Transitive 2.46.3 2.47.0 2 behind Unknown
s3transfer
pypi
Direct 0.17.0 0.18.0 2 behind Unknown
snowballstemmer
pypi
Direct 3.0.1 3.1.1 2 behind BSD-3-Clause
sqlalchemy
pypi
Direct 2.0.49 2.0.50 2 behind MIT
cachelib
pypi
Direct 0.13.0 0.14.0 1 behind BSD-2-Clause AND BSD-3-Clause
certifi
pypi
Direct 2026.4.22 2026.5.20 1 behind MPL-2.0
cryptography
pypi
Transitive 47.0.0 48.0.0 1 behind BSD-3-Clause OR Apache-2.0
filelock
pypi
Direct 3.29.0 3.29.1 1 behind Unknown
greenlet
pypi
Transitive 3.5.0 3.5.1 1 behind MIT AND PSF-2.0
gunicorn
pypi
Direct 25.3.0 26.0.0 1 behind MIT AND HPND
lxml
pypi
Direct 6.1.0 6.1.1 1 behind BSD-3-Clause AND GPL-1.0-or-later AND LicenseRef-scancode-unknown-license-reference
marko
pypi
Direct 2.2.2 2.2.3 1 behind MIT
pydantic
pypi
Transitive 2.13.3 2.13.4 1 behind MIT
pyopenssl
pypi
Direct 26.1.0 26.2.0 1 behind Unknown
rpds-py
pypi
Direct 0.30.0 2026.5.1 1 behind MIT
soupsieve
pypi
Transitive 2.8.3 2.8.4 1 behind MIT
urllib3
pypi
Direct 2.6.3 2.7.0 1 behind MIT
wtforms
pypi
Direct 3.2.1 3.2.2 1 behind BSD-3-Clause AND MIT
@barba/core
npm
Direct ^2 Unknown
actions/attest-build-provenance
githubactions
Direct 2.*.* Unknown
actions/cache
githubactions
Direct 3.*.* Unknown
actions/cache
githubactions
Direct 4.*.* Unknown
actions/checkout
githubactions
Direct 3.*.* Unknown
actions/checkout
githubactions
Direct 4.*.* Unknown
actions/setup-python
githubactions
Direct 4.*.* Unknown
alembic
pypi
Direct 1.18.4 1.18.4 Current MIT
annotated-types
pypi
Transitive 0.7.0 0.7.0 Current MIT
async-timeout
pypi
Direct 5.0.1 5.0.1 Current Apache-2.0
atomicwrites
Direct Unknown
atomicwrites
Direct Unknown
attrs
pypi
Direct 26.1.0 26.1.0 Current MIT
attrs
Direct Unknown
bcrypt
pypi
Direct 5.0.0 5.0.0 Current Apache-2.0
beautifulsoup4
pypi
Transitive 4.14.3 4.14.3 Current MIT
bleach
pypi
Direct 6.3.0 6.3.0 Current Apache-2.0
blinker
pypi
Direct 1.9.0 1.9.0 Current MIT
blinker
Direct Unknown
bootstrap
npm
Direct ^5 Unknown
bootswatch
npm
Direct ^5 Unknown
boto3
pypi
Direct 1.43.1 Unknown
botocore
pypi
Direct 1.43.1 Unknown
cffi
pypi
Transitive 2.0.0 2.0.0 Current MIT-0
charset-normalizer
pypi
Direct 3.4.7 3.4.7 Current MIT
codecov/codecov-action
githubactions
Direct 1.*.* Unknown
colorama
pypi
Direct 0.4.6 0.4.6 Current BSD-2-Clause AND BSD-3-Clause
coverage
Direct Unknown
cssmin
pypi
Direct 0.2.0 Unknown
cssselect
pypi
Direct 1.4.0 1.4.0 Current Unknown
dnspython
pypi
Direct 2.8.0 2.8.0 Current ISC AND MPL-2.0
docker/build-push-action
githubactions
Direct 6.*.* Unknown
docker/login-action
githubactions
Direct 3.*.* Unknown
docker/metadata-action
githubactions
Direct 5.*.* Unknown
docker/setup-buildx-action
githubactions
Direct 3.*.* Unknown
docker/setup-qemu-action
githubactions
Direct 3.*.* Unknown
easymde
npm
Direct ^2 Unknown
email-validator
pypi
Direct 1.3.1 CC0-1.0
exceptiongroup
pypi
Transitive 1.3.1 1.3.1 Current MIT AND Python-2.0
factory-boy
pypi
Direct 3.3.3 MIT
factory-boy
Direct Unknown
faker
Direct Unknown
flake8
pypi
Direct 7.3.0 7.3.0 Current MIT
flake8
Direct Unknown
flake8-blind-except
pypi
Direct 0.2.1 MIT
flake8-blind-except
Direct Unknown
flake8-debugger
pypi
Direct 4.1.2 MIT
flake8-debugger
Direct Unknown
flake8-docstrings
pypi
Direct 1.7.0 MIT
flake8-docstrings
Direct Unknown
flake8-isort
pypi
Direct 7.0.0 CAL-1.0 AND GPL-2.0-only
flake8-isort
Direct Unknown
flake8-polyfill
Direct Unknown
flake8-polyfill
Direct Unknown
flake8-quotes
pypi
Direct 3.4.0 MIT
flake8-quotes
Direct Unknown
flask
pypi
Direct 3.1.3 3.1.3 Current BSD-3-Clause
flask
Direct Unknown
flask-assets
pypi
Direct 2.1.0 BSD-2-Clause
flask-bcrypt
pypi
Direct 1.0.1 1.0.1 Current BSD-2-Clause AND BSD-3-Clause
flask-caching
pypi
Direct 2.4.0 Unknown
flask-cors
pypi
Direct 6.0.2 6.0.2 Current MIT
flask-dance
pypi
Direct 6.2.0 MIT
flask-debugtoolbar
pypi
Direct 0.16.0 BSD-2-Clause AND BSD-3-Clause
flask-debugtoolbar
Direct Unknown
flask-hashing
pypi
Direct 1.1 MIT
flask-login
pypi
Direct 0.6.3 0.6.3 Current MIT
flask-mailman
pypi
Direct 1.1.1 BSD-3-Clause
flask-migrate
pypi
Direct 4.1.0 4.1.0 Current MIT
flask-openapi3
pypi
Direct 3.1.3 MIT
flask-sqlalchemy
pypi
Direct 3.1.1 3.1.1 Current BSD-2-Clause AND BSD-3-Clause
flask-talisman
pypi
Direct 1.1.0 Apache-2.0
flask-wtf
pypi
Direct 1.3.0 BSD-3-Clause AND MIT
flipdown
npm
Direct ^0.3 Unknown
font-awesome
npm
Direct ^4 Unknown
frictionless
pypi
Direct 4.40.11 MIT
fsspec
pypi
Direct 2026.4.0 2026.4.0 Current Unknown
future
pypi
Direct 1.0.0 1.0.0 Current MIT
github/codeql-action/analyze
githubactions
Direct 3.*.* Unknown
github/codeql-action/autobuild
githubactions
Direct 3.*.* Unknown
github/codeql-action/init
githubactions
Direct 3.*.* Unknown
graphene
pypi
Direct 3.4.3 3.4.3 Current MIT
graphql-core
pypi
Direct 3.2.8 3.2.8 Current MIT
graphql-relay
pypi
Direct 3.2.0 3.2.0 Current MIT
highspy
pypi
Direct 1.14.0 Unknown
huggingface-hub
Direct Unknown
icalendar
pypi
Direct 6.3.2 BSD-2-Clause AND BSD-3-Clause
idna
pypi
Direct 3.13 3.18.0 BSD-3-Clause
iniconfig
pypi
Transitive 2.3.0 2.3.0 Current MIT
isodate
pypi
Direct 0.7.2 0.7.2 Current MIT
isort
pypi
Direct 8.0.1 8.0.1 Current MIT
isort
Direct Unknown
itsdangerous
pypi
Direct 2.2.0 2.2.0 Current BSD-2-Clause AND BSD-3-Clause
jinja2
pypi
Direct 3.1.6 3.1.6 Current BSD-2-Clause AND BSD-3-Clause
jmespath
pypi
Direct 1.1.0 1.1.0 Current MIT
jquery
npm
Direct ^3 Unknown
jquery-resizable-dom
npm
Direct ^0 Unknown
jsmin
pypi
Direct 3.0.1 MIT
jsonschema
pypi
Direct 4.26.0 4.26.0 Current MIT
jsonschema-specifications
pypi
Direct 2025.9.1 2025.9.1 Current MIT
legacy-cgi
pypi
Transitive 2.6.4 2.6.4 Current Python-2.0 AND Python-2.0 AND BSD-3-Clause AND Python-2.0.1
linkify-it-py
pypi
Direct 2.1.0 2.1.0 Current Unknown
mako
pypi
Direct 1.3.12 1.3.12 Current Unknown
mccabe
pypi
Direct 0.7.0 0.7.0 Current MIT
mccabe
Direct Unknown
mdurl
pypi
Direct 0.1.2 0.1.2 Current MIT
micawber
pypi
Direct 0.5.6 MIT
more-itertools
Direct Unknown
more-itertools
Direct Unknown
oauthlib
pypi
Direct 3.3.1 3.3.1 Current BSD-3-Clause
packaging
pypi
Direct 26.2 26.2.0 Apache-2.0 AND BSD-2-Clause
pep8-naming
pypi
Direct 0.15.1 0.15.1 Current MIT
pep8-naming
Direct Unknown
petl
pypi
Direct 1.7.17 MIT
pluggy
pypi
Direct 1.6.0 1.6.0 Current MIT
pluggy
Direct Unknown
psycopg2-binary
pypi
Direct 2.9.12 2.9.12 Current LGPL-2.0-or-later AND LGPL-3.0-or-later
py
Direct Unknown
py
Direct Unknown
pycodestyle
pypi
Direct 2.14.0 2.14.0 Current MIT
pycodestyle
Direct Unknown
pycparser
pypi
Transitive 3.0 3.0.0 BSD-3-Clause
pydocstyle
pypi
Direct 6.3.0 6.3.0 Current MIT
pydocstyle
Direct Unknown
pyflakes
pypi
Direct 3.4.0 3.4.0 Current MIT
pyflakes
Direct Unknown
pygments
pypi
Direct 2.20.0 2.20.0 Current BSD-2-Clause
pyomo
pypi
Direct 6.10.0 Unknown
pyopenssl
Direct Unknown
pyquery
pypi
Direct 2.0.1 BSD-2-Clause AND BSD-3-Clause
pystache
pypi
Direct 0.6.8 0.6.8 Current CC-BY-SA-3.0 AND MIT AND Python-2.0
pytest
pypi
Direct 9.0.3 9.0.3 Current MIT
pytest
Direct Unknown
python-dateutil
pypi
Direct 2.9.0.post0 2.9.0.post0 Current Apache-2.0 AND BSD-3-Clause AND LicenseRef-scancode-unknown-license-reference
python-slugify
pypi
Direct 8.0.4 8.0.4 Current MIT
pytz
pypi
Direct 2023.4 2026.2.0 MIT
pyyaml
pypi
Direct 6.0.3 6.0.3 Current MIT
redis
pypi
Direct 4.6.0 MIT
referencing
pypi
Direct 0.37.0 0.37.0 Current MIT
requests-oauthlib
pypi
Direct 2.0.0 2.0.0 Current ISC
reveal.js
npm
Direct ^5 Unknown
rfc3986
pypi
Direct 2.0.0 2.0.0 Current Apache-2.0
setuptools
pypi
Transitive 82.0.1 82.0.1 Current MIT
shellingham
pypi
Direct 1.5.4 1.5.4 Current ISC
simpleeval
pypi
Direct 1.0.7 1.0.7 Current Unknown
simplelightbox
npm
Direct ^2 Unknown
six
pypi
Direct 1.17.0 1.17.0 Current MIT
snok/install-poetry
githubactions
Direct 1.*.* Unknown
snowballstemmer
Direct Unknown
sqlalchemy-continuum
pypi
Direct 1.6.0 Unknown
stringcase
pypi
Direct 1.2.0 MIT
tabulate
pypi
Direct 0.10.0 0.10.0 Current MIT
testfixtures
Direct Unknown
testfixtures
Direct Unknown
text-unidecode
pypi
Direct 1.3 1.3.0 Artistic-1.0-Perl OR GPL-1.0-only OR GPL-2.0-or-later
text-unidecode
Direct Unknown
tomli
pypi
Transitive 2.4.1 2.4.1 Current MIT
tqdm
pypi
Direct 4.67.3 4.67.3 Current MIT AND MPL-2.0
typer
pypi
Direct 0.11.1 MIT
typing-extensions
pypi
Direct 4.15.0 4.15.0 Current Python-2.0 AND GPL-1.0-or-later AND Python-2.0 AND BSD-3-Clause AND Python-2.0 AND BSD-3-Clause AND 0BSD
typing-inspection
pypi
Transitive 0.4.2 0.4.2 Current MIT
tzdata
pypi
Direct 2026.2 2026.2.0 Apache-2.0
uc-micro-py
pypi
Direct 2.0.0 2.0.0 Current Unknown
urlobject
pypi
Direct 3.0.0 Unlicense AND MIT
validators
pypi
Direct 0.35.0 0.35.0 Current MIT
waitress
pypi
Direct 3.0.2 3.0.2 Current ZPL-2.1
waitress
Direct Unknown
webassets
pypi
Direct 3.0.0 BSD-2-Clause
webencodings
pypi
Direct 0.5.1 0.5.1 Current BSD-2-Clause
webob
pypi
Direct 1.8.9 MIT
webob
Direct Unknown
webtest
pypi
Direct 3.0.7 MIT
webtest
Direct Unknown
werkzeug
pypi
Direct 3.1.8 3.1.8 Current BSD-3-Clause
whitenoise
pypi
Direct 5.3.0 MIT
zope-dottedname
pypi
Direct 7.1 Unknown
zope-event
pypi
Direct 6.2 6.2.0 Unknown
zope-interface
pypi
Direct 8.4 8.5.0 Unknown

License Breakdown

Unknown 86
MIT 65
BSD-2-Clause AND BSD-3-Clause 11
Apache-2.0 9
BSD-3-Clause 8
BSD-2-Clause 4
BSD-3-Clause AND MIT 2
ISC 2
MIT AND Python-2.0 2
Apache-2.0 AND BSD-2-Clause 1
Apache-2.0 AND BSD-3-Clause AND LicenseRef-scancode-unknown-license-reference 1
Apache-2.0 AND BSD-3-Clause AND MIT AND Zlib 1
Artistic-1.0-Perl OR GPL-1.0-only OR GPL-2.0-or-later 1
BSD-3-Clause AND GPL-1.0-or-later AND LicenseRef-scancode-unknown-license-reference 1
BSD-3-Clause OR Apache-2.0 1
CAL-1.0 AND GPL-2.0-only 1
CC-BY-SA-3.0 AND MIT AND Python-2.0 1
CC0-1.0 1
ISC AND MPL-2.0 1
LGPL-2.0-or-later AND LGPL-3.0-or-later 1
LGPL-2.1-or-later 1
MIT AND HPND 1
MIT AND MPL-2.0 1
MIT AND PSF-2.0 1
MIT-0 1
MPL-2.0 1
Python-2.0 AND GPL-1.0-or-later AND Python-2.0 AND BSD-3-Clause AND Python-2.0 AND BSD-3-Clause AND 0BSD 1
Python-2.0 AND Python-2.0 AND BSD-3-Clause AND Python-2.0.1 1
Unlicense AND MIT 1
ZPL-2.1 1

CVE Severity

critical 0
high 0
medium 1
low 0
unknown 0

Beta — feedback welcome: [email protected]