Skip to content
Tools / figranium / Dependencies

Dependency Analysis

figranium

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

52% Freshness
1914 Dependencies
744 Outdated
0 Stale
10.1 Avg Behind

Dependency List

Latest release v0.12.2

Dependency Type Current Latest Behind CVE License
protobufjs
npm
Transitive 7.5.4 8.5.0 20 behind 1 critical BSD-3-Clause AND LicenseRef-scancode-protobuf
protobufjs
npm
Transitive 7.5.4 8.5.0 20 behind 1 critical BSD-3-Clause AND LicenseRef-scancode-protobuf
@google/gemini-cli
npm
Direct 0.29.7 1 critical Apache-2.0
@google/gemini-cli
npm
Direct 0.29.7 1 critical Apache-2.0
minimatch
npm
Transitive 3.1.2 10.2.5 91 behind 1 high ISC
minimatch
npm
Transitive 10.2.1 10.2.5 26 behind 2 high BlueOak-1.0.0
undici
npm
Transitive 7.22.0 8.3.0 21 behind 6 high MIT
rollup
npm
Transitive 4.54.0 4.61.0 18 behind 1 high 0BSD AND ISC AND MIT
@hono/node-server
npm
Transitive 1.19.9 2.0.4 12 behind 2 high MIT
express-rate-limit
npm
Direct 8.2.1 8.5.2 11 behind 1 high MIT
picomatch
npm
Transitive 2.3.1 4.0.4 9 behind 2 high MIT
picomatch
npm
Transitive 2.3.1 4.0.4 9 behind 2 high MIT
tar
npm
Transitive 7.5.9 7.5.16 7 behind 2 high BlueOak-1.0.0
path-to-regexp
npm
Transitive 8.3.0 8.4.2 4 behind 2 high MIT
path-to-regexp
npm
Transitive 8.3.0 8.4.2 4 behind 2 high MIT
fast-uri
npm
Transitive 3.1.0 3.1.2 2 behind 2 high BSD-3-Clause
fast-uri
npm
Transitive 3.1.0 3.1.2 2 behind 2 high BSD-3-Clause
hono
npm
Transitive 4.12.3 12 high MIT
simple-git
npm
Transitive 3.32.3 1 high MIT
postcss
npm
Direct 8.5.6 8.5.15 9 behind 1 medium MIT
brace-expansion
npm
Transitive 5.0.4 5.0.6 7 behind 1 medium MIT
brace-expansion
npm
Transitive 5.0.4 5.0.6 7 behind 1 medium MIT
ip-address
npm
Transitive 10.0.1 10.2.0 3 behind 1 medium MIT
bn.js
npm
Transitive 4.12.2 5.2.3 1 behind 1 medium MIT
uuid
npm
Transitive 13.0.0 14.0.0 1 behind 1 medium MIT
uuid
npm
Transitive 13.0.0 14.0.0 1 behind 1 medium MIT
@tootallnate/once
npm
Transitive 2.0.0 3.0.1 2 behind 1 low MIT
@tootallnate/once
npm
Transitive 2.0.0 3.0.1 2 behind 1 low MIT

License Breakdown

MIT 1488
Apache-2.0 158
ISC 95
BSD-3-Clause 44
BlueOak-1.0.0 26
MPL-2.0 24
BSD-2-Clause 22
Unknown 11
Apache-2.0 AND MIT 4
CC0-1.0 AND MIT 4
0BSD AND ISC AND MIT 2
Apache-2.0 OR (Apache-2.0 AND LGPL-3.0-only) 2
Apache-2.0 OR BSD-2-Clause OR MIT OR (Apache-2.0 AND BSD-2-Clause) OR (Apache-2.0 AND MIT) OR (BSD-2-Clause AND MIT) 2
BSD-2-Clause AND BSD-3-Clause 2
BSD-2-Clause AND CC0-1.0 AND ISC AND MIT 2
BSD-2-Clause AND JSON 2
BSD-3-Clause AND LicenseRef-scancode-generic-cla AND MIT 2
BSD-3-Clause AND LicenseRef-scancode-protobuf 2
CC-BY-3.0 2
CC-BY-4.0 2
CC0-1.0 2
CC0-1.0 OR MIT OR (CC0-1.0 AND MIT) 2
GPL-3.0-only OR MIT 2
ISC AND MIT 2
MIT AND Zlib 2
MIT OR (CC0-1.0 AND MIT) 2
MIT OR (MIT AND WTFPL) 2
Python-2.0 2
0BSD 1

CVE Severity

critical 4
high 15
medium 7
low 2
unknown 0

Beta — feedback welcome: [email protected]