Skip to content
Tools / picoshare / Dependencies

Dependency Analysis

picoshare

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

42% Freshness
154 Dependencies
74 Outdated
0 Stale
15.2 Avg Behind

Dependency List

Latest release 1.5.1

Dependency Type Current Latest Behind CVE License
golang.org/x/crypto
golang
Direct v0.0.0-20220331220935-ae2d96664a29 7 critical Unknown
minimatch
npm
Transitive 5.0.1 10.2.5 89 behind 3 high ISC
picomatch
npm
Transitive 2.3.1 4.0.4 9 behind 2 high MIT
serialize-javascript
npm
Transitive 6.0.0 7.0.5 8 behind 3 high BSD-3-Clause
cross-spawn
npm
Transitive 7.0.3 7.0.6 3 behind 1 high MIT
braces
npm
Transitive 3.0.2 3.0.3 1 behind 1 high MIT
flatted
npm
Transitive 3.2.5 2 high ISC
ajv
npm
Transitive 6.12.6 8.20.0 67 behind 1 medium MIT
nanoid
npm
Transitive 3.3.3 5.1.11 34 behind 1 medium MIT
brace-expansion
npm
Transitive 2.0.1 5.0.6 16 behind 2 medium MIT
js-yaml
npm
Transitive 4.1.0 4.2.0 3 behind 1 medium MIT
word-wrap
npm
Transitive 1.2.3 1 medium MIT
diff
npm
Transitive 5.0.0 9.0.0 17 behind 1 low BSD-3-Clause

License Breakdown

MIT 105
ISC 18
Apache-2.0 8
BSD-2-Clause 6
BSD-3-Clause 6
Unknown 3
Apache-2.0 AND BSD-2-Clause 1
BSD-2-Clause AND BSD-2-Clause-Views 1
BSD-3-Clause AND LicenseRef-scancode-google-patent-license-golang 1
CC-BY-SA-4.0 AND ISC 1
CC0-1.0 AND MIT 1
ISC AND MIT 1
Python-2.0 1

CVE Severity

critical 1
high 6
medium 5
low 1
unknown 0

Beta — feedback welcome: [email protected]