Skip to content
Tools / receipt-wrangler / Dependencies

Dependency Analysis

receipt-wrangler

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

63% Freshness
1445 Dependencies
399 Outdated
0 Stale
4.1 Avg Behind

Dependency List

Latest release v6.7.0

Dependency Type Current Latest Behind CVE License
handlebars
npm
Transitive 4.7.8 4.7.9 1 behind 8 critical MIT
github.com/jackc/pgx/v5
golang
Transitive v5.7.6 3 critical MIT
google.golang.org/grpc
golang
Transitive v1.75.1 1 critical Apache-2.0
vite
npm
Transitive 7.3.1 8.0.16 33 behind 3 high BSD-2-Clause AND CC0-1.0 AND ISC AND MIT
undici
npm
Transitive 7.22.0 8.3.0 21 behind 6 high MIT
express-rate-limit
npm
Transitive 8.2.1 8.5.2 11 behind 1 high MIT
picomatch
npm
Transitive 2.3.1 4.0.4 9 behind 2 high MIT
serialize-javascript
npm
Transitive 6.0.2 7.0.5 6 behind 2 high BSD-3-Clause
path-to-regexp
npm
Transitive 0.1.12 8.4.2 5 behind 1 high MIT
path-to-regexp
npm
Transitive 8.3.0 8.4.2 4 behind 2 high MIT
fast-uri
npm
Transitive 3.1.0 3.1.2 2 behind 2 high BSD-3-Clause
lodash-es
npm
Transitive 4.17.23 4.18.1 2 behind 2 high MIT
@angular/compiler
npm
Direct 21.2.1 1 high MIT
@angular/core
npm
Direct 21.2.1 1 high MIT
go.opentelemetry.io/otel
golang
Transitive v1.37.0 1 high Apache-2.0
tar
npm
Transitive 7.5.10 1 high BlueOak-1.0.0
@hono/node-server
npm
Transitive 1.19.10 2.0.4 11 behind 1 medium MIT
brace-expansion
npm
Transitive 1.1.12 5.0.6 10 behind 1 medium MIT
postcss
npm
Transitive 8.5.6 8.5.15 9 behind 1 medium MIT
ip-address
npm
Transitive 10.0.1 10.2.0 3 behind 1 medium MIT
follow-redirects
npm
Transitive 1.15.11 1.16.0 1 behind 1 medium MIT
golang.org/x/crypto
golang
Direct v0.42.0 3 medium BSD-3-Clause AND LicenseRef-scancode-google-patent-license-golang
hono
npm
Transitive 4.12.5 9 medium MIT
filippo.io/edwards25519
golang
Transitive v1.1.0 1 low BSD-3-Clause
github.com/go-chi/chi/v5
golang
Direct v5.2.3 1 unknown MIT
golang.org/x/net
golang
Direct v0.44.0 3 unknown BSD-3-Clause AND LicenseRef-scancode-google-patent-license-golang

License Breakdown

MIT 1009
Unknown 156
ISC 86
Apache-2.0 76
BSD-3-Clause 36
BSD-2-Clause 22
BlueOak-1.0.0 13
BSD-3-Clause AND LicenseRef-scancode-google-patent-license-golang 8
BSD-2-Clause AND BSD-3-Clause 4
ISC AND MIT 4
Apache-2.0 AND MIT 3
CC0-1.0 AND MIT 3
MIT-0 3
0BSD 2
CC0-1.0 2
LicenseRef-scancode-unicode AND MIT 2
0BSD AND ISC AND MIT 1
Apache-2.0 AND BSD-3-Clause AND MIT 1
Apache-2.0 AND OFL-1.1 AND Ubuntu-font-1.0 1
BSD-2-Clause AND CC0-1.0 AND ISC AND MIT 1
BSD-2-Clause AND JSON 1
BSD-3-Clause AND LicenseRef-scancode-public-domain AND LicenseRef-scancode-unknown-license-reference 1
CC-BY-3.0 1
CC-BY-3.0 AND MIT 1
CC-BY-4.0 1
LicenseRef-scancode-generic-cla AND MIT 1
MIT AND Zlib 1
MPL-2.0 1
OFL-1.1 1
Python-2.0 1
Unlicense 1

CVE Severity

critical 3
high 13
medium 7
low 1
unknown 2

Beta — feedback welcome: [email protected]