Skip to content
Tools / Kometa / Dependencies

Dependency Analysis

Kometa

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

86% Freshness
60 Dependencies
4 Outdated
0 Stale
0.8 Avg Behind

Dependency List

Latest release v2.3.1

Dependency Type Current Latest Behind CVE License
gitpython
pypi
Direct 3.1.46 3.1.50 4 behind 4 high BSD-3-Clause
lxml
pypi
Direct 6.0.2 6.1.1 4 behind 1 high BSD-3-Clause AND GPL-1.0-or-later
pillow
pypi
Direct 12.1.1 12.2.0 1 behind 5 high LicenseRef-scancode-secret-labs-2011 AND MIT-CMU
prek
pypi
Direct 0.3.8 0.4.3 9 behind MIT
mypy
pypi
Direct 1.20.0 2.1.0 4 behind MIT AND Python-2.0 AND Python-2.0.1 AND BSD-2-Clause AND MIT AND Python-2.0 AND Python-2.0.1 AND BSD-2-Clause
requests
pypi
Direct 2.33.1 2.34.2 4 behind Apache-2.0
black
pypi
Direct 26.3.1 26.5.1 2 behind MIT
actions/cache
githubactions
Direct 5.*.* Unknown
actions/checkout
githubactions
Direct 4.*.* Unknown
actions/checkout
githubactions
Direct 6.*.* Unknown
actions/checkout
githubactions
Direct 3.*.* Unknown
actions/create-github-app-token
githubactions
Direct 3.*.* Unknown
actions/setup-python
githubactions
Direct 6.*.* Unknown
actions/setup-python
githubactions
Direct 5.*.* Unknown
arrapi
pypi
Direct 1.4.14 MIT
babel
Direct Unknown
bandit
pypi
Direct 1.9.4 1.9.4 Current Apache-2.0
cloudscraper
pypi
Direct 1.2.71 1.2.71 Current MIT
colorama
Direct Unknown
docker/build-push-action
githubactions
Direct 7.*.* Unknown
docker/login-action
githubactions
Direct 4.*.* Unknown
docker/setup-buildx-action
githubactions
Direct 4.*.* Unknown
docker/setup-qemu-action
githubactions
Direct master Unknown
flake8
pypi
Direct 7.3.0 7.3.0 Current MIT
isort
pypi
Direct 8.0.1 8.0.1 Current MIT
jinja2
Direct Unknown
Kometa-Team/discord-notifications
githubactions
Direct master Unknown
Kometa-Team/tag-new-version
githubactions
Direct master Unknown
markdown
Direct Unknown
material-plausible-plugin
Direct Unknown
mkdocs
Direct Unknown
mkdocs-glightbox
Direct Unknown
mkdocs-material
Direct Unknown
mkdocs-material-extensions
Direct Unknown
mkdocs-open-in-new-tab
Direct Unknown
mkdocs-redirects
Direct Unknown
neoteroi-mkdocs
Direct Unknown
num2words
pypi
Direct 0.5.14 0.5.14 Current LGPL-2.1-only AND LGPL-3.0-or-later
packaging
pypi
Direct 26.0 26.2.0 Apache-2.0 AND BSD-2-Clause
paginate
Direct Unknown
pathvalidate
pypi
Direct 3.3.1 3.3.1 Current MIT
plexapi
pypi
Direct 4.18.1 Unknown
psutil
pypi
Direct 7.2.2 7.2.2 Current BSD-3-Clause
pygments
Direct Unknown
pymdown-extensions
Direct Unknown
python-dateutil
pypi
Direct 2.9.0.post0 2.9.0.post0 Current Apache-2.0 AND BSD-3-Clause AND LicenseRef-scancode-unknown-license-reference
python-dotenv
pypi
Direct 1.2.2 1.2.2 Current BSD-3-Clause
pywin32
pypi
Direct 311 311.0.0 PSF-2.0
regex
Direct Unknown
requests
Direct Unknown
rojopolis/spellcheck-github-actions
githubactions
Direct 0.58.0 Unknown
rojopolis/spellcheck-github-actions
githubactions
Direct 0.*.* Unknown
ruamel-yaml
pypi
Direct 0.19.1 0.19.1 Current Unknown
schedule
pypi
Direct 1.2.2 1.2.2 Current MIT
setuptools
pypi
Direct 82.0.1 82.0.1 Current MIT
softprops/action-gh-release
githubactions
Direct 2.*.* Unknown
tenacity
pypi
Direct 9.1.4 9.1.4 Current Apache-2.0
tj-actions/changed-files
githubactions
Direct 47.*.* Unknown
tmdbapis
pypi
Direct 1.2.30 MIT

License Breakdown

Unknown 36
MIT 10
Apache-2.0 3
BSD-3-Clause 3
Apache-2.0 AND BSD-2-Clause 1
Apache-2.0 AND BSD-3-Clause AND LicenseRef-scancode-unknown-license-reference 1
BSD-3-Clause AND GPL-1.0-or-later 1
LGPL-2.1-only AND LGPL-3.0-or-later 1
LicenseRef-scancode-secret-labs-2011 AND MIT-CMU 1
MIT AND Python-2.0 AND Python-2.0.1 AND BSD-2-Clause AND MIT AND Python-2.0 AND Python-2.0.1 AND BSD-2-Clause 1
PSF-2.0 1

CVE Severity

critical 0
high 3
medium 0
low 0
unknown 0

Beta — feedback welcome: [email protected]