Skip to content
Tools / monetr / Dependencies

Dependency Analysis

monetr

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

69% Freshness
1157 Dependencies
277 Outdated
0 Stale
24.2 Avg Behind

Dependency List

Latest release v1.13.4

Dependency Type Current Latest Behind CVE License
minimatch
npm
Transitive 9.0.5 10.2.5 36 behind 3 high ISC
undici
npm
Transitive 7.21.0 8.3.0 22 behind 6 high MIT
picomatch
npm
Transitive 2.3.1 4.0.4 9 behind 2 high MIT
lodash-es
npm
Transitive 4.17.21 4.18.1 4 behind 3 high CC0-1.0 AND MIT
lodash
npm
Transitive 4.17.21 4.18.1 3 behind 3 high CC0-1.0 AND MIT
svgo
npm
Transitive 4.0.0 4.0.1 1 behind 1 high MIT
brace-expansion
npm
Transitive 2.0.1 5.0.6 16 behind 2 medium MIT
yaml
npm
Transitive 2.7.1 2.9.0 9 behind 1 medium ISC
mdast-util-to-hast
npm
Transitive 13.2.0 13.2.1 1 behind 1 medium MIT

License Breakdown

MIT 900
Unknown 57
Apache-2.0 55
ISC 33
BSD-2-Clause 18
BSD-3-Clause 18
Apache-2.0 AND MIT 16
MPL-2.0 13
MIT OR Apache-2.0 9
BSD-3-Clause AND LicenseRef-scancode-google-patent-license-golang 7
Apache-2.0 AND BSD-3-Clause AND MIT 5
CC0-1.0 AND MIT 5
BlueOak-1.0.0 3
OFL-1.1 3
Apache-2.0 AND BSD-3-Clause 2
CC0-1.0 2
MIT AND OSL-3.0 2
(Apache-2.0 AND LicenseRef-scancode-unknown-license-reference AND MIT) OR (Apache-2.0 AND LicenseRef-scancode-unknown-license-reference) 1
0BSD 1
CC-BY-4.0 1
GPL-2.0 1
ISC AND MIT 1
LGPL-2.1 1
MIT-0 1
Python-2.0 1

CVE Severity

critical 0
high 6
medium 3
low 0
unknown 0

Beta — feedback welcome: [email protected]