Skip to content
Tools / riven / Dependencies

Dependency Analysis

riven

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

62% Freshness
167 Dependencies
47 Outdated
0 Stale
4.7 Avg Behind

Dependency List

Latest release v0.23.6

Dependency Type Current Latest Behind CVE License
starlette
pypi
Direct 0.37.2 1.2.1 44 behind 2 high BSD-2-Clause AND BSD-3-Clause
python-multipart
pypi
Direct 0.0.21 0.0.30 9 behind 3 high Apache-2.0
black
pypi
Direct 25.11.0 26.5.1 7 behind 1 high MIT
lxml
pypi
Direct 5.4.0 6.1.1 7 behind 1 high BSD-3-Clause AND GPL-1.0-or-later
orjson
pypi
Direct 3.11.4 3.11.9 5 behind 1 high Apache-2.0 AND MIT
urllib3
pypi
Direct 2.5.0 2.7.0 5 behind 3 high MIT
mako
pypi
Direct 1.3.10 1.3.12 2 behind 2 high MIT
filelock
pypi
Direct 3.20.0 3.29.1 19 behind 2 medium Unlicense
virtualenv
pypi
Direct 20.35.4 21.4.2 19 behind 1 medium MIT
requests
pypi
Direct 2.32.5 2.34.2 6 behind 1 medium Apache-2.0
pytest
pypi
Direct 8.4.2 9.0.3 4 behind 1 medium MIT
python-dotenv
pypi
Direct 1.2.1 1.2.2 1 behind 1 medium BSD-3-Clause
pygments
pypi
Direct 2.19.2 2.20.0 1 behind 1 low BSD-2-Clause

License Breakdown

MIT 67
Unknown 22
Apache-2.0 19
BSD-3-Clause 13
BSD-2-Clause AND BSD-3-Clause 10
Apache-2.0 AND MIT 7
BSD-2-Clause 3
Apache-2.0 AND BSD-2-Clause 2
MPL-2.0 2
PSF-2.0 2
(Apache-2.0 AND BSD-3-Clause) OR (Apache-2.0 AND MIT) 1
Apache-2.0 AND BSD-3-Clause AND LicenseRef-scancode-unknown-license-reference 1
Apache-2.0 OR (Apache-2.0 AND MIT) 1
BSD-2-Clause AND BSD-3-Clause AND MIT AND Python-2.0 AND Ruby 1
BSD-3-Clause AND GPL-1.0-or-later 1
CNRI-Python AND Apache-2.0 1
GPL-2.0-only 1
GPL-2.0-or-later 1
GPL-3.0-or-later AND LGPL-3.0 AND LGPL-3.0-only 1
ISC 1
LGPL-2.0-only AND LGPL-2.0-or-later AND LGPL-2.1-or-later AND LGPL-3.0-or-later 1
LGPL-2.0-or-later AND LGPL-3.0-or-later 1
LGPL-2.1-or-later 1
MIT AND PSF-2.0 AND Python-2.0 1
MIT AND Python-2.0 AND Python-2.0.1 1
MIT-0 1
PSF-2.0 AND Python-2.0 1
Python-2.0 AND GPL-1.0-or-later AND Python-2.0 AND BSD-3-Clause AND Python-2.0 AND BSD-3-Clause AND 0BSD 1
Unlicense 1

CVE Severity

critical 0
high 7
medium 5
low 1
unknown 0

Beta — feedback welcome: [email protected]