Skip to content
Tools / KICS / Dependencies

Dependency Analysis

KICS

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

93% Freshness
396 Dependencies
20 Outdated
0 Stale
3.0 Avg Behind

Dependency List

Latest release v2.1.20

Dependency Type Current Latest Behind CVE License
path-to-regexp
npm
Transitive 0.1.12 8.4.2 5 behind 1 high MIT
github.com/distribution/distribution/v3
golang
Transitive v3.1.0 1 medium Unknown
qs
npm
Transitive 6.14.1 6.15.2 32 behind 1 low BSD-3-Clause
golang.org/x/net
golang
Direct v0.52.0 1 unknown BSD-3-Clause AND LicenseRef-scancode-google-patent-license-golang

License Breakdown

MIT 160
Apache-2.0 100
Unknown 61
BSD-3-Clause 24
BSD-3-Clause AND LicenseRef-scancode-google-patent-license-golang 12
Apache-2.0 AND BSD-3-Clause 10
MPL-2.0 9
ISC 4
Apache-2.0 AND MIT 3
Apache-2.0 AND BSD-3-Clause AND MIT 2
BSD-2-Clause 2
Apache-2.0 AND CC-BY-4.0 1
Apache-2.0 AND CC-BY-SA-4.0 1
Apache-2.0 AND LicenseRef-scancode-dco-1.1 AND MIT 1
Apache-2.0 AND LicenseRef-scancode-unknown-license-reference 1
BSD-2-Clause-Views 1
BSD-3-Clause AND MPL-2.0 1
GPL-3.0 AND GPL-3.0-only 1
MIT-0 1

CVE Severity

critical 0
high 1
medium 1
low 1
unknown 1

Beta — feedback welcome: [email protected]