Skip to content
Tools / eddrit / Dependencies

Dependency Analysis

eddrit

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

82% Freshness
66 Dependencies
8 Outdated
0 Stale
0.7 Avg Behind

Dependency List

Latest release v0.18.1

Dependency Type Current Latest Behind CVE License
gunicorn
pypi
Direct 23.0.0 26.0.0 11 behind MIT
starlette
pypi
Direct 0.52.1 1.2.1 6 behind BSD-3-Clause
uvicorn
pypi
Direct 0.44.0 0.49.0 5 behind Unknown
requests
pypi
Transitive 2.33.1 2.34.2 4 behind Apache-2.0
click
pypi
Transitive 8.3.2 8.4.1 3 behind BSD-3-Clause
filelock
pypi
Transitive 3.25.2 3.29.1 3 behind MIT
httpx
pypi
Direct 0.28.1 1.0.0.dev3 3 behind BSD-3-Clause
ruff
pypi
Direct 0.15.12 0.15.15 3 behind MIT
certifi
pypi
Transitive 2026.2.25 2026.5.20 2 behind MPL-2.0
coverage
pypi
Direct 7.13.5 7.14.1 2 behind Apache-2.0
environs
pypi
Direct 14.6.0 15.0.1 2 behind Unknown
markdown-it-py
pypi
Transitive 4.0.0 4.2.0 2 behind MIT
rich
pypi
Transitive 14.3.3 15.0.0 2 behind MIT
httptools
pypi
Transitive 0.7.1 0.8.0 1 behind MIT
urllib3
pypi
Transitive 2.6.3 2.7.0 1 behind MIT
watchfiles
pypi
Transitive 1.1.1 1.2.0 1 behind MIT

License Breakdown

MIT 24
Unknown 17
BSD-3-Clause 9
Apache-2.0 4
BSD-2-Clause AND BSD-3-Clause 4
Apache-2.0 AND BSD-2-Clause 1
Apache-2.0 AND MIT 1
BSD-2-Clause 1
BSD-3-Clause AND MIT 1
MIT-0 1
MPL-2.0 1
Python-2.0 AND GPL-1.0-or-later AND Python-2.0 AND BSD-3-Clause AND Python-2.0 AND BSD-3-Clause AND 0BSD 1

CVE Severity

critical 0
high 2
medium 0
low 0
unknown 0

Beta — feedback welcome: [email protected]