Skip to content
Tools / llama_index / Dependencies

Dependency Analysis

llama_index

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

50% Freshness
4009 Dependencies
1358 Outdated
0 Stale
7.1 Avg Behind

Dependency List

Latest release v0.14.21

Dependency Type Current Latest Behind CVE License
astroid
pypi
Transitive 2.13.5 4.1.2 57 behind GPL-3.0-or-later AND LGPL-2.1-or-later
astroid
pypi
Transitive 2.13.5 4.1.2 57 behind GPL-3.0-or-later AND LGPL-2.1-or-later
astroid
pypi
Transitive 2.13.5 4.1.2 57 behind GPL-3.0-or-later AND LGPL-2.1-or-later
astroid
pypi
Transitive 2.13.5 4.1.2 57 behind GPL-3.0-or-later AND LGPL-2.1-or-later
astroid
pypi
Transitive 2.13.5 4.1.2 57 behind GPL-3.0-or-later AND LGPL-2.1-or-later
astroid
pypi
Transitive 2.13.5 4.1.2 57 behind GPL-3.0-or-later AND LGPL-2.1-or-later
astroid
pypi
Transitive 2.13.5 4.1.2 57 behind GPL-3.0-or-later AND LGPL-2.1-or-later
astroid
pypi
Transitive 2.13.5 4.1.2 57 behind GPL-3.0-or-later AND LGPL-2.1-or-later
astroid
pypi
Transitive 2.13.5 4.1.2 57 behind GPL-3.0-or-later AND LGPL-2.1-or-later
astroid
pypi
Transitive 2.13.5 4.1.2 57 behind GPL-3.0-or-later AND LGPL-2.1-or-later
astroid
pypi
Direct 2.13.5 4.1.2 57 behind GPL-3.0-or-later AND LGPL-2.1-or-later
pylint
pypi
Direct 2.15.10 4.0.5 50 behind GPL-2.0-or-later AND GPL-3.0-or-later
pylint
pypi
Direct 2.15.10 4.0.5 50 behind GPL-2.0-or-later AND GPL-3.0-or-later
pylint
pypi
Direct 2.15.10 4.0.5 50 behind GPL-2.0-or-later AND GPL-3.0-or-later
pylint
pypi
Direct 2.15.10 4.0.5 50 behind GPL-2.0-or-later AND GPL-3.0-or-later
pylint
pypi
Direct 2.15.10 4.0.5 50 behind GPL-2.0-or-later AND GPL-3.0-or-later
pylint
pypi
Direct 2.15.10 4.0.5 50 behind GPL-2.0-or-later AND GPL-3.0-or-later
pylint
pypi
Direct 2.15.10 4.0.5 50 behind GPL-2.0-or-later AND GPL-3.0-or-later
pylint
pypi
Direct 2.15.10 4.0.5 50 behind GPL-2.0-or-later AND GPL-3.0-or-later
pylint
pypi
Direct 2.15.10 4.0.5 50 behind GPL-2.0-or-later AND GPL-3.0-or-later
pylint
pypi
Direct 2.15.10 4.0.5 50 behind GPL-2.0-or-later AND GPL-3.0-or-later
pylint
pypi
Direct 2.15.10 4.0.5 50 behind GPL-2.0-or-later AND GPL-3.0-or-later
chardet
pypi
Direct 5.2.0 7.4.3 13 behind LGPL-2.1-or-later
chardet
pypi
Direct 6.0.0.post1 7.4.3 11 behind LGPL-2.1-only AND MIT
pymupdf
pypi
Direct 1.25.5 1.27.2.3 11 behind AGPL-3.0 AND AGPL-3.0-only AND AGPL-3.0-or-later
chardet
pypi
Direct 7.0.1 7.4.3 8 behind LGPL-2.0-or-later AND MIT
charset-normalizer
pypi
Direct 3.3.2 3.4.7 8 behind LGPL-2.1-only AND MIT AND MPL-1.1
chardet
pypi
Direct 7.1.0 7.4.3 7 behind LGPL-2.0-or-later AND MIT
pymupdf
pypi
Direct 1.26.4 1.27.2.3 7 behind AGPL-3.0 AND AGPL-3.0-only AND AGPL-3.0-or-later
ibm-cos-sdk-core
pypi
Direct 2.14.3 2.16.2 4 behind Apache-2.0 AND LGPL-2.1-or-later AND MIT
lxml
pypi
Direct 6.0.2 6.1.1 4 behind BSD-3-Clause AND GPL-1.0-or-later
codespell
pypi
Direct 2.3.0 2.4.2 3 behind GPL-2.0 AND GPL-2.0-only
charset-normalizer
pypi
Direct 3.4.5 3.4.7 2 behind LGPL-2.0-or-later AND LGPL-2.1-only AND LicenseRef-scancode-public-domain AND MIT AND MPL-1.1
typing-extensions
pypi
Direct 4.14.1 4.15.0 2 behind Python-2.0 AND GPL-1.0-or-later AND Python-2.0 AND BSD-3-Clause AND Python-2.0 AND BSD-3-Clause AND 0BSD
llama-index-readers-upstage
pypi
Direct 0.4.1 0.5.0 1 behind AGPL-3.0-only
psycopg2
pypi
Direct 2.9.11 2.9.12 1 behind LGPL-2.0-or-later AND LGPL-3.0-or-later
psycopg2-binary
pypi
Direct 2.9.11 2.9.12 1 behind LGPL-2.0-or-later AND LGPL-3.0-or-later
chardet
pypi
Transitive 7.4.3 7.4.3 Current 0BSD AND LGPL-2.0-or-later
chardet
pypi
Transitive 7.4.3 7.4.3 Current 0BSD AND LGPL-2.0-or-later
codespell
pypi
Direct 2.4.2 2.4.2 Current GPL-2.0
codespell
pypi
Direct 2.4.2 2.4.2 Current GPL-2.0
codespell
pypi
Direct 2.4.2 2.4.2 Current GPL-2.0
codespell
pypi
Direct 2.4.2 2.4.2 Current GPL-2.0
codespell
pypi
Direct 2.4.2 2.4.2 Current GPL-2.0
codespell
pypi
Direct 2.4.2 2.4.2 Current GPL-2.0
codespell
pypi
Direct 2.4.2 2.4.2 Current GPL-2.0
codespell
pypi
Direct 2.4.2 2.4.2 Current GPL-2.0
codespell
pypi
Direct 2.4.2 2.4.2 Current GPL-2.0
codespell
pypi
Direct 2.4.2 2.4.2 Current GPL-2.0
contextlib2
pypi
Direct 21.6.0 21.6.0 Current Apache-2.0 AND GPL-1.0-or-later AND LicenseRef-scancode-other-copyleft AND PSF-2.0 AND Python-2.0
gitdb
pypi
Direct 4.0.12 4.0.12 Current BSD-2-Clause AND BSD-3-Clause AND GPL-1.0-or-later
psycopg2-yugabytedb
pypi
Direct 2.9.3.5 2.9.3.5 Current LGPL-2.0-or-later AND LGPL-3.0-or-later
pycountry
pypi
Direct 26.2.16 26.2.16 Current LGPL-2.0-only AND LGPL-2.1 AND LGPL-2.1-only
rfc3987-syntax
pypi
Direct 1.1.0 1.1.0 Current Apache-2.0 AND GPL-1.0-or-later AND MIT
rfc3987-syntax
pypi
Direct 1.1.0 1.1.0 Current Apache-2.0 AND GPL-1.0-or-later AND MIT
rfc3987-syntax
pypi
Direct 1.1.0 1.1.0 Current Apache-2.0 AND GPL-1.0-or-later AND MIT
rfc3987-syntax
pypi
Direct 1.1.0 1.1.0 Current Apache-2.0 AND GPL-1.0-or-later AND MIT
rfc3987-syntax
pypi
Direct 1.1.0 1.1.0 Current Apache-2.0 AND GPL-1.0-or-later AND MIT
rfc3987-syntax
pypi
Direct 1.1.0 1.1.0 Current Apache-2.0 AND GPL-1.0-or-later AND MIT
rfc3987-syntax
pypi
Direct 1.1.0 1.1.0 Current Apache-2.0 AND GPL-1.0-or-later AND MIT
rfc3987-syntax
pypi
Direct 1.1.0 1.1.0 Current Apache-2.0 AND GPL-1.0-or-later AND MIT
rfc3987-syntax
pypi
Direct 1.1.0 1.1.0 Current Apache-2.0 AND GPL-1.0-or-later AND MIT
rfc3987-syntax
pypi
Direct 1.1.0 1.1.0 Current Apache-2.0 AND GPL-1.0-or-later AND MIT
text-unidecode
pypi
Direct 1.3 1.3.0 Artistic-1.0-Perl OR GPL-1.0-only OR GPL-2.0-or-later
typing-extensions
pypi
Transitive 4.15.0 4.15.0 Current Python-2.0 AND GPL-1.0-or-later AND Python-2.0 AND BSD-3-Clause AND Python-2.0 AND BSD-3-Clause AND 0BSD
typing-extensions
pypi
Transitive 4.15.0 4.15.0 Current Python-2.0 AND GPL-1.0-or-later AND Python-2.0 AND BSD-3-Clause AND Python-2.0 AND BSD-3-Clause AND 0BSD
typing-extensions
pypi
Transitive 4.15.0 4.15.0 Current Python-2.0 AND GPL-1.0-or-later AND Python-2.0 AND BSD-3-Clause AND Python-2.0 AND BSD-3-Clause AND 0BSD
typing-extensions
pypi
Transitive 4.15.0 4.15.0 Current Python-2.0 AND GPL-1.0-or-later AND Python-2.0 AND BSD-3-Clause AND Python-2.0 AND BSD-3-Clause AND 0BSD
typing-extensions
pypi
Transitive 4.15.0 4.15.0 Current Python-2.0 AND GPL-1.0-or-later AND Python-2.0 AND BSD-3-Clause AND Python-2.0 AND BSD-3-Clause AND 0BSD
typing-extensions
pypi
Transitive 4.15.0 4.15.0 Current Python-2.0 AND GPL-1.0-or-later AND Python-2.0 AND BSD-3-Clause AND Python-2.0 AND BSD-3-Clause AND 0BSD
typing-extensions
pypi
Transitive 4.15.0 4.15.0 Current Python-2.0 AND GPL-1.0-or-later AND Python-2.0 AND BSD-3-Clause AND Python-2.0 AND BSD-3-Clause AND 0BSD
typing-extensions
pypi
Transitive 4.15.0 4.15.0 Current Python-2.0 AND GPL-1.0-or-later AND Python-2.0 AND BSD-3-Clause AND Python-2.0 AND BSD-3-Clause AND 0BSD
typing-extensions
pypi
Transitive 4.15.0 4.15.0 Current Python-2.0 AND GPL-1.0-or-later AND Python-2.0 AND BSD-3-Clause AND Python-2.0 AND BSD-3-Clause AND 0BSD
typing-extensions
pypi
Transitive 4.15.0 4.15.0 Current Python-2.0 AND GPL-1.0-or-later AND Python-2.0 AND BSD-3-Clause AND Python-2.0 AND BSD-3-Clause AND 0BSD
typing-extensions
pypi
Direct 4.15.0 4.15.0 Current Python-2.0 AND GPL-1.0-or-later AND Python-2.0 AND BSD-3-Clause AND Python-2.0 AND BSD-3-Clause AND 0BSD
warc3-wet
pypi
Direct 0.2.5 0.2.5 Current GPL-2.0-only
warc3-wet-clueweb09
pypi
Direct 0.2.5 0.2.5 Current GPL-3.0-or-later

License Breakdown

Unknown 1120
MIT 986
Apache-2.0 528
BSD-3-Clause 440
BSD-2-Clause AND BSD-3-Clause 221
BSD-2-Clause 97
Apache-2.0 AND MIT 52
ISC 43
BSD-3-Clause AND MIT 41
MPL-2.0 38
Apache-2.0 AND BSD-2-Clause 27
MIT AND MPL-2.0 23
CNRI-Python AND Apache-2.0 16
PSF-2.0 15
MIT AND Python-2.0 14
Apache-2.0 AND BSD-3-Clause AND MIT AND Zlib 13
BSD-3-Clause OR Apache-2.0 13
BSD-3-Clause AND CC0-1.0 AND ISC AND MIT 12
MIT AND HPND-Markus-Kuhn 12
MIT-0 12
Python-2.0 AND GPL-1.0-or-later AND Python-2.0 AND BSD-3-Clause AND Python-2.0 AND BSD-3-Clause AND 0BSD 12
0BSD AND BSD-3-Clause AND LicenseRef-scancode-unknown-license-reference AND PSF-2.0 AND Python-2.0 11
Apache-2.0 AND BSD-3-Clause AND LicenseRef-scancode-unknown-license-reference 11
GPL-2.0-or-later AND GPL-3.0-or-later 11
GPL-3.0-or-later AND LGPL-2.1-or-later 11
0BSD AND Apache-2.0 AND BSD-3-Clause AND MIT 10
Apache-2.0 AND GPL-1.0-or-later AND MIT 10
GPL-2.0 10
LicenseRef-scancode-free-unknown AND MIT 10
LicenseRef-scancode-generic-cla AND MIT 10
LicenseRef-scancode-unknown-license-reference AND MIT AND Python-2.0 10
MIT AND AFL-3.0 10
MIT AND CC0-1.0 10
MIT AND PSF-2.0 10
MIT-CMU 10
PSF-2.0 AND Python-2.0 10
BSD-3-Clause AND LicenseRef-scancode-protobuf 7
Apache-2.0 AND BSD-3-Clause AND MPL-2.0 6
Apache-2.0 AND MIT AND MPL-2.0 6
BSD-2-Clause AND BSD-3-Clause AND MIT 6
LicenseRef-scancode-secret-labs-2011 AND MIT-CMU 6
Unlicense 6
Python-2.0.1 5
Apache-2.0 AND BSD-3-Clause 4
Apache-2.0 OR BSD-3-Clause OR (Apache-2.0 AND BSD-3-Clause) 4
MIT AND PSF-2.0 AND Python-2.0 4
BSD-3-Clause AND LicenseRef-scancode-unknown-license-reference 3
LGPL-2.0-or-later AND LGPL-3.0-or-later 3
0BSD AND LGPL-2.0-or-later 2
AGPL-3.0 AND AGPL-3.0-only AND AGPL-3.0-or-later 2
Apache-2.0 AND BSD-3-Clause AND MIT AND OFL-1.1 2
Apache-2.0 AND LicenseRef-scancode-generic-cla 2
Apache-2.0 AND Python-2.0 2
BSD-2-Clause AND BSD-3-Clause AND ISC AND Python-2.0 2
LGPL-2.0-or-later AND MIT 2
MIT AND ZPL-2.1 2
(AFL-2.1 AND MIT AND Python-2.0) OR (AFL-2.1 AND MIT) 1
(Apache-2.0 AND BSD-3-Clause AND MIT) OR (Apache-2.0 AND MIT) 1
(Apache-2.0 AND LicenseRef-scancode-unknown-license-reference) OR (LicenseRef-scancode-unknown-license-reference AND UPL-1.0) 1
0BSD AND BSD-2-Clause AND BSD-3-Clause AND BSD-4-Clause AND LicenseRef-scancode-python-cwi AND LicenseRef-scancode-secret-labs-2011 AND LicenseRef-scancode-unicode AND MIT AND Python-2.0 1
0BSD AND BSD-3-Clause AND LicenseRef-scancode-other-permissive AND MIT AND Python-2.0 1
AGPL-3.0-only 1
Apache-2.0 AND BSD-2-Clause AND BSD-3-Clause AND BSL-1.0 AND LicenseRef-scancode-generic-cla AND LicenseRef-scancode-secret-labs-2011 AND MIT AND MIT-0 AND MPL-2.0 1
Apache-2.0 AND CC-BY-4.0 1
Apache-2.0 AND CC-BY-SA-4.0 1
Apache-2.0 AND CC0-1.0 AND LicenseRef-scancode-public-domain 1
Apache-2.0 AND GPL-1.0-or-later AND LicenseRef-scancode-other-copyleft AND PSF-2.0 AND Python-2.0 1
Apache-2.0 AND ISC AND OpenSSL AND OpenSSL-standalone AND SSLeay-standalone 1
Apache-2.0 AND LGPL-2.1-or-later AND MIT 1
Apache-2.0 AND LicenseRef-scancode-generic-cla AND MIT 1
Apache-2.0 AND LicenseRef-scancode-unknown-license-reference 1
Apache-2.0 OR (Apache-2.0 AND BSD-3-Clause) 1
Artistic-1.0-Perl OR GPL-1.0-only OR GPL-2.0-or-later 1
BSD-2-Clause AND BSD-3-Clause AND BSD-3-Clause-Modification AND HPND AND LicenseRef-scancode-proprietary-license 1
BSD-2-Clause AND BSD-3-Clause AND GPL-1.0-or-later 1
BSD-2-Clause AND BSD-3-Clause AND ISC 1
BSD-2-Clause AND BSD-3-Clause AND LicenseRef-scancode-public-domain AND Unlicense 1
BSD-2-Clause AND BSD-3-Clause AND Python-2.0 AND Ruby 1
BSD-2-Clause AND MIT AND Python-2.0 AND Python-2.0.1 1
BSD-3-Clause AND GPL-1.0-or-later 1
BSD-3-Clause AND ISC 1
CAL-1.0 AND LicenseRef-scancode-unknown AND PSF-2.0 AND Python-2.0 1
CC0-1.0 AND Unlicense 1
GPL-2.0 AND GPL-2.0-only 1
GPL-2.0-only 1
GPL-3.0-or-later 1
ISC AND MPL-2.0 1
LGPL-2.0-only AND LGPL-2.1 AND LGPL-2.1-only 1
LGPL-2.0-or-later AND LGPL-2.1-only AND LicenseRef-scancode-public-domain AND MIT AND MPL-1.1 1
LGPL-2.1-only AND MIT 1
LGPL-2.1-only AND MIT AND MPL-1.1 1
LGPL-2.1-or-later 1
LicenseRef-scancode-commercial-license AND LicenseRef-scancode-other-permissive AND MIT 1
LicenseRef-scancode-proprietary-license AND MIT 1
MIT AND BSD-3-Clause 1
MIT AND Python-2.0 AND Python-2.0.1 AND BSD-2-Clause AND MIT AND Python-2.0 AND Python-2.0.1 AND BSD-2-Clause 1
MIT AND Zlib 1
MPL-2.0 AND Apache-2.0 1
ZPL-2.1 1

CVE Severity

critical 6
high 86
medium 48
low 4
unknown 0

Beta — feedback welcome: [email protected]