Skip to content
Tools / dribdat / Dependencies

Dependency Analysis

dribdat

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

90% Freshness
211 Dependencies
8 Outdated
0 Stale
1.3 Avg Behind

Dependency List

Latest release v0.9.4

Dependency Type Current Latest Behind CVE License
huggingface-hub
pypi
Direct 0.35.3 1.17.0 79 behind Apache-2.0
numpy
pypi
Direct 2.2.6 2.4.6 14 behind Apache-2.0 AND BSD-3-Clause AND MIT AND Zlib
chardet
pypi
Direct 5.2.0 7.4.3 13 behind LGPL-2.1-or-later
hiredis
pypi
Direct 2.4.0 3.4.0 10 behind MIT
rich
pypi
Direct 13.9.4 15.0.0 9 behind MIT
faker
pypi
Direct 40.15.0 40.21.0 7 behind Unknown
gevent
pypi
Direct 25.5.1 26.5.0 5 behind MIT AND Python-2.0
markupsafe
pypi
Direct 2.1.5 3.0.3 4 behind BSD-2-Clause AND BSD-3-Clause
requests
pypi
Direct 2.33.1 2.34.2 4 behind Apache-2.0
markdown-it-py
pypi
Direct 3.0.0 4.2.0 3 behind MIT
click
pypi
Direct 8.3.3 8.4.1 2 behind BSD-3-Clause
coverage
pypi
Direct 7.13.5 7.14.1 2 behind Apache-2.0
hf-xet
pypi
Transitive 1.4.3 1.5.1.dev1 2 behind Unknown
pydantic-core
pypi
Transitive 2.46.3 2.47.0 2 behind Unknown
s3transfer
pypi
Direct 0.17.0 0.18.0 2 behind Unknown
snowballstemmer
pypi
Direct 3.0.1 3.1.1 2 behind BSD-3-Clause
sqlalchemy
pypi
Direct 2.0.49 2.0.50 2 behind MIT
cachelib
pypi
Direct 0.13.0 0.14.0 1 behind BSD-2-Clause AND BSD-3-Clause
certifi
pypi
Direct 2026.4.22 2026.5.20 1 behind MPL-2.0
cryptography
pypi
Transitive 47.0.0 48.0.0 1 behind BSD-3-Clause OR Apache-2.0
filelock
pypi
Direct 3.29.0 3.29.1 1 behind Unknown
greenlet
pypi
Transitive 3.5.0 3.5.1 1 behind MIT AND PSF-2.0
gunicorn
pypi
Direct 25.3.0 26.0.0 1 behind MIT AND HPND
lxml
pypi
Direct 6.1.0 6.1.1 1 behind BSD-3-Clause AND GPL-1.0-or-later AND LicenseRef-scancode-unknown-license-reference
marko
pypi
Direct 2.2.2 2.2.3 1 behind MIT
pydantic
pypi
Transitive 2.13.3 2.13.4 1 behind MIT
pyopenssl
pypi
Direct 26.1.0 26.2.0 1 behind Unknown
rpds-py
pypi
Direct 0.30.0 2026.5.1 1 behind MIT
soupsieve
pypi
Transitive 2.8.3 2.8.4 1 behind MIT
urllib3
pypi
Direct 2.6.3 2.7.0 1 behind MIT
wtforms
pypi
Direct 3.2.1 3.2.2 1 behind BSD-3-Clause AND MIT

License Breakdown

Unknown 86
MIT 65
BSD-2-Clause AND BSD-3-Clause 11
Apache-2.0 9
BSD-3-Clause 8
BSD-2-Clause 4
BSD-3-Clause AND MIT 2
ISC 2
MIT AND Python-2.0 2
Apache-2.0 AND BSD-2-Clause 1
Apache-2.0 AND BSD-3-Clause AND LicenseRef-scancode-unknown-license-reference 1
Apache-2.0 AND BSD-3-Clause AND MIT AND Zlib 1
Artistic-1.0-Perl OR GPL-1.0-only OR GPL-2.0-or-later 1
BSD-3-Clause AND GPL-1.0-or-later AND LicenseRef-scancode-unknown-license-reference 1
BSD-3-Clause OR Apache-2.0 1
CAL-1.0 AND GPL-2.0-only 1
CC-BY-SA-3.0 AND MIT AND Python-2.0 1
CC0-1.0 1
ISC AND MPL-2.0 1
LGPL-2.0-or-later AND LGPL-3.0-or-later 1
LGPL-2.1-or-later 1
MIT AND HPND 1
MIT AND MPL-2.0 1
MIT AND PSF-2.0 1
MIT-0 1
MPL-2.0 1
Python-2.0 AND GPL-1.0-or-later AND Python-2.0 AND BSD-3-Clause AND Python-2.0 AND BSD-3-Clause AND 0BSD 1
Python-2.0 AND Python-2.0 AND BSD-3-Clause AND Python-2.0.1 1
Unlicense AND MIT 1
ZPL-2.1 1

CVE Severity

critical 0
high 0
medium 1
low 0
unknown 0

Beta — feedback welcome: [email protected]