Skip to content
Tools / fider / Dependencies

Dependency Analysis

fider

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

54% Freshness
1523 Dependencies
578 Outdated
0 Stale
18.6 Avg Behind

Dependency List

Latest release v0.35.0

Dependency Type Current Latest Behind CVE License
dompurify
npm
Direct 3.3.2 3.4.8 10 behind 4 medium (Apache-2.0 AND GPL-1.0-only AND MPL-2.0 AND MS-PL) OR (Apache-2.0 AND GPL-1.0-only AND MPL-2.0) OR (Apache-2.0 AND GPL-2.0-only AND MPL-2.0 AND MS-PL) OR (Apache-2.0 AND GPL-2.0-only AND MPL-2.0)
github.com/cosmtrek/air
golang
Direct v1.27.3 GPL-3.0 AND GPL-3.0-only
github.com/denis-tingaikin/go-header
golang
Transitive v0.5.0 GPL-3.0 AND GPL-3.0-only
github.com/firefart/nonamedreturns
golang
Transitive v1.0.6 GPL-3.0 AND GPL-3.0-only
github.com/golang/freetype
golang
Direct v0.0.0-20170609003504-e2365dfdc4a0 FTL OR GPL-2.0-or-later
github.com/golangci/golangci-lint/v2
golang
Direct v2.7.2 GPL-3.0 AND GPL-3.0-only
github.com/leonklingele/grouper
golang
Transitive v1.1.2 GPL-3.0 AND GPL-3.0-only
github.com/openpeedeep/depguard/v2
golang
Transitive v2.2.1 GPL-3.0 AND GPL-3.0-only
github.com/xen0n/gosmopolitan
golang
Transitive v1.3.0 GPL-1.0-or-later AND GPL-3.0 AND GPL-3.0-only

License Breakdown

MIT 1208
Apache-2.0 69
ISC 66
BSD-3-Clause 62
BSD-2-Clause 35
Unknown 14
BSD-3-Clause AND LicenseRef-scancode-google-patent-license-golang 9
Apache-2.0 AND MIT 6
CC0-1.0 AND MIT 6
GPL-3.0 AND GPL-3.0-only 6
MPL-2.0 6
BlueOak-1.0.0 5
BSD-3-Clause AND MIT 3
0BSD 2
Apache-2.0 AND BSD-2-Clause 2
BSD-3-Clause AND CC-BY-3.0 2
ISC AND MIT 2
LicenseRef-scancode-public-domain AND Unlicense 2
(Apache-2.0 AND GPL-1.0-only AND MPL-2.0 AND MS-PL) OR (Apache-2.0 AND GPL-1.0-only AND MPL-2.0) OR (Apache-2.0 AND GPL-2.0-only AND MPL-2.0 AND MS-PL) OR (Apache-2.0 AND GPL-2.0-only AND MPL-2.0) 1
Apache-2.0 AND BSD-3-Clause 1
Apache-2.0 OR MIT 1
BSD-2-Clause AND BSD-2-Clause-Views 1
BSD-2-Clause AND BSD-3-Clause 1
BSD-3-Clause AND LicenseRef-scancode-protobuf 1
CC-BY-4.0 1
CC-BY-SA-4.0 AND ISC 1
CC0-1.0 1
FTL OR GPL-2.0-or-later 1
GPL-1.0-or-later AND GPL-3.0 AND GPL-3.0-only 1
LicenseRef-scancode-unknown-license-reference AND MIT 1
MIT OR (MIT AND Unlicense) 1
MIT OR WTFPL OR (MIT AND WTFPL) 1
MPL-1.0 AND MPL-2.0 1
OFL-1.1 1
Python-2.0 1

CVE Severity

critical 1
high 11
medium 10
low 5
unknown 3

Beta — feedback welcome: [email protected]