Skip to content
Tools / nanote / Dependencies

Dependency Analysis

nanote

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

56% Freshness
1426 Dependencies
520 Outdated
0 Stale
8.3 Avg Behind

Dependency List

Latest release 0.11.0

Dependency Type Current Latest Behind CVE License
basic-ftp
npm
Transitive 5.0.5 6.0.1 8 behind 4 critical Apache-2.0 AND MIT
simple-git
npm
Transitive 3.28.0 3 critical MIT
h3
npm
Transitive 1.15.4 2.0.1-rc.22 34 behind 5 high MIT
minimatch
npm
Transitive 10.0.3 10.2.5 32 behind 3 high ISC
rollup
npm
Transitive 4.52.5 4.61.0 25 behind 1 high 0BSD AND ISC AND MIT
tar
npm
Transitive 7.5.1 7.5.16 15 behind 7 high ISC
glob
npm
Transitive 10.4.5 13.0.6 13 behind 1 high ISC
seroval
npm
Transitive 1.3.2 1.5.4 8 behind 5 high MIT
serialize-javascript
npm
Transitive 6.0.2 7.0.5 6 behind 2 high BSD-3-Clause
flatted
npm
Transitive 3.3.3 3.4.2 4 behind 2 high ISC
lodash-es
npm
Transitive 4.17.21 4.18.1 4 behind 3 high CC0-1.0 AND MIT
defu
npm
Transitive 6.1.4 6.1.7 3 behind 1 high MIT
lodash
npm
Transitive 4.17.21 4.18.1 3 behind 3 high CC0-1.0 AND MIT
node-forge
npm
Transitive 1.3.1 1.4.0 3 behind 7 high BSD-3-Clause OR GPL-2.0 OR (BSD-3-Clause AND GPL-2.0)
picomatch
npm
Transitive 4.0.3 4.0.4 3 behind 2 high MIT
@isaacs/brace-expansion
npm
Transitive 5.0.0 5.0.1 1 behind 1 high MIT
svgo
npm
Transitive 4.0.0 4.0.1 1 behind 1 high MIT
devalue
npm
Transitive 5.4.2 6 high MIT
drizzle-orm
npm
Direct 0.43.1 1 high Apache-2.0
happy-dom
npm
Direct 20.1.0 2 high MIT
vite
npm
Transitive 7.2.1 3 high BSD-2-Clause AND CC0-1.0 AND ISC AND MIT
ajv
npm
Transitive 6.12.6 8.20.0 67 behind 1 medium MIT
esbuild
npm
Transitive 0.18.20 0.28.0 50 behind 1 medium MIT
unhead
npm
Transitive 2.0.19 3.1.1 37 behind 3 medium MIT
dompurify
npm
Transitive 3.3.0 3.4.8 13 behind 8 medium Apache-2.0 OR MPL-2.0
brace-expansion
npm
Transitive 2.0.2 5.0.6 11 behind 1 medium MIT
postcss
npm
Transitive 8.5.6 8.5.15 9 behind 1 medium MIT
yaml
npm
Transitive 2.8.1 2.9.0 7 behind 1 medium ISC
js-yaml
npm
Transitive 4.1.0 4.2.0 3 behind 1 medium MIT
ip-address
npm
Transitive 10.1.0 10.2.0 2 behind 1 medium MIT
nanotar
npm
Transitive 0.2.0 0.3.0 1 behind 1 medium MIT
nitropack
npm
Transitive 2.12.9 2 medium MIT
srvx
npm
Transitive 0.9.5 1 medium MIT
diff
npm
Transitive 8.0.2 9.0.0 8 behind 1 low BSD-3-Clause

License Breakdown

MIT 1242
Apache-2.0 49
ISC 48
BSD-2-Clause 21
BSD-3-Clause 13
MPL-2.0 12
BlueOak-1.0.0 5
CC0-1.0 4
CC0-1.0 AND MIT 4
Unknown 4
Apache-2.0 AND MIT 3
BSD-3-Clause AND ISC AND MIT 2
ISC AND MIT 2
JSON AND MIT 2
0BSD 1
0BSD AND ISC AND MIT 1
Apache-2.0 OR MIT OR (Apache-2.0 AND MIT) 1
Apache-2.0 OR MPL-2.0 1
BSD-2-Clause AND BSD-2-Clause-Views 1
BSD-2-Clause AND BSD-3-Clause 1
BSD-2-Clause AND CC0-1.0 AND ISC AND MIT 1
BSD-3-Clause AND MIT 1
BSD-3-Clause OR GPL-2.0 OR (BSD-3-Clause AND GPL-2.0) 1
BlueOak-1.0.0 AND ISC AND MIT 1
CC-BY-3.0 1
CC-BY-4.0 1
LicenseRef-scancode-unknown-license-reference AND Zlib 1
Python-2.0 1

CVE Severity

critical 2
high 19
medium 12
low 1
unknown 0

Beta — feedback welcome: [email protected]