Skip to content
Tools / RSSBox / Dependencies

Dependency Analysis

RSSBox

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

84% Freshness
89 Dependencies
6 Outdated
0 Stale
0.7 Avg Behind

Dependency List

Latest release 2026.4.11

Dependency Type Current Latest Behind CVE License
mistune
pypi
Direct 3.2.0 3.2.1 1 behind 1 high BSD-3-Clause
lxml
pypi
Direct 6.0.3 1 high Unknown
openai
pypi
Direct 2.31.0 2.40.0 10 behind Unknown
pydantic
pypi
Direct 2.12.5 2.13.4 10 behind MIT
pydantic-core
pypi
Direct 2.41.5 2.47.0 9 behind MIT
requests
pypi
Direct 2.33.1 2.34.2 4 behind Apache-2.0
click
pypi
Direct 8.3.2 8.4.1 3 behind BSD-3-Clause
filelock
pypi
Direct 3.25.2 3.29.1 3 behind MIT
httpx
pypi
Direct 0.28.1 1.0.0.dev3 3 behind BSD-3-Clause
redis
pypi
Direct 7.4.0 8.0.0 3 behind Unknown
certifi
pypi
Direct 2026.2.25 2026.5.20 2 behind MPL-2.0
coverage
pypi
Direct 7.13.5 7.14.1 2 behind Apache-2.0
cryptography
pypi
Direct 46.0.7 48.0.0 2 behind BSD-3-Clause OR Apache-2.0
greenlet
pypi
Direct 3.4.0 3.5.1 2 behind Unknown
gevent
pypi
Direct 26.4.0 26.5.0 1 behind Unknown
gunicorn
pypi
Direct 25.3.0 26.0.0 1 behind MIT AND HPND
jiter
pypi
Direct 0.14.0 0.15.0 1 behind Unknown
lxml-html-clean
pypi
Direct 0.4.4 0.4.5 1 behind BSD-3-Clause
regex
pypi
Direct 2026.4.4 2026.5.9 1 behind CNRI-Python AND Apache-2.0
soupsieve
pypi
Direct 2.8.3 2.8.4 1 behind MIT
tiktoken
pypi
Direct 0.12.0 0.13.0 1 behind MIT
urllib3
pypi
Direct 2.6.3 2.7.0 1 behind MIT
actions/checkout
githubactions
Direct 3.*.* Unknown
actions/checkout
githubactions
Direct 4.*.* Unknown
actions/setup-python
githubactions
Direct 5.*.* Unknown
annotated-types
pypi
Direct 0.7.0 0.7.0 Current MIT
anyio
pypi
Direct 4.13.0 4.13.0 Current MIT
asgiref
pypi
Direct 3.11.1 3.11.1 Current BSD-3-Clause
beautifulsoup4
pypi
Direct 4.14.3 4.14.3 Current MIT
brotli
pypi
Direct 1.2.0 1.2.0 Current MIT
bs4
pypi
Direct 0.0.2 0.0.2 Current MIT
bx-django-utils
pypi
Direct 96 Unknown
bx-py-utils
pypi
Direct 116 Unknown
cffi
pypi
Direct 2.0.0 2.0.0 Current MIT-0
charset-normalizer
pypi
Direct 3.4.7 3.4.7 Current MIT
colorama
pypi
Direct 0.4.6 0.4.6 Current BSD-2-Clause AND BSD-3-Clause
deepl
pypi
Direct 1.30.0 Unknown
distro
pypi
Direct 1.9.0 1.9.0 Current Apache-2.0
django
pypi
Direct 6.0.4 Unknown
django-autoslug
pypi
Direct 1.9.9 GPL-3.0-or-later AND LGPL-2.0-or-later AND LGPL-2.1-or-later AND LGPL-3.0-only
django-debug-toolbar
pypi
Direct 6.3.0 Unknown
django-encrypted-model-fields
pypi
Direct 0.6.5 MIT
django-tagulous
pypi
Direct 2.1.1 (Apache-2.0 AND BSD-2-Clause AND BSD-3-Clause AND MIT) OR (BSD-2-Clause AND BSD-3-Clause AND GPL-2.0-only AND MIT)
docker/build-push-action
githubactions
Direct 5.*.* Unknown
docker/login-action
githubactions
Direct 3.*.* Unknown
docker/setup-buildx-action
githubactions
Direct 3.*.* Unknown
fake-useragent
pypi
Direct 2.2.0 2.2.0 Current Apache-2.0
feed2json
pypi
Direct 2025.7.15 MIT
feedgen
pypi
Direct 1.0.0 BSD-2-Clause AND LGPL-3.0-only
feedparser
pypi
Direct 6.0.12 6.0.12 Current BSD-2-Clause AND LicenseRef-scancode-other-permissive
h11
pypi
Direct 0.16.0 0.16.0 Current MIT
html2text
pypi
Direct 2025.4.15 2025.4.15 Current GPL-3.0 AND GPL-3.0-only
httpcore
pypi
Direct 1.0.9 1.0.9 Current BSD-2-Clause AND BSD-3-Clause
idna
pypi
Direct 3.11 3.18.0 BSD-3-Clause
iniconfig
pypi
Direct 2.3.0 2.3.0 Current MIT
joblib
pypi
Direct 1.5.3 1.5.3 Current BSD-3-Clause
mkdocs
Direct Unknown
mkdocs-exclude-search
Direct Unknown
mkdocs-git-revision-date-plugin
Direct Unknown
mkdocs-macros-plugin
Direct > 0.5.10 Unknown
mkdocs-shadcn
Direct Unknown
mkdocs-static-i18n
Direct Unknown
newspaper4k
pypi
Direct 0.9.4.1 MIT
nltk
pypi
Direct 3.9.4 3.9.4 Current Unknown
packaging
pypi
Direct 26.0 26.2.0 Apache-2.0 AND BSD-2-Clause
pillow
pypi
Direct 12.2.0 12.2.0 Current MIT-CMU
pluggy
pypi
Direct 1.6.0 1.6.0 Current MIT
pycparser
pypi
Direct 3.0 3.0.0 BSD-3-Clause
pygments
Direct >= 2.14 Unknown
pygments
pypi
Direct 2.20.0 2.20.0 Current BSD-2-Clause
pymdown-extensions
Direct >= 9.9 Unknown
pytest
pypi
Direct 9.0.3 9.0.3 Current MIT
python-dateutil
pypi
Direct 2.9.0.post0 2.9.0.post0 Current Apache-2.0 AND BSD-3-Clause AND LicenseRef-scancode-unknown-license-reference
python-stdnum
pypi
Direct 2.2 Unknown
pyyaml
pypi
Direct 6.0.3 6.0.3 Current MIT
requests-file
pypi
Direct 3.0.1 3.0.1 Current Apache-2.0
sgmllib3k
pypi
Direct 1.0.0 1.0.0 Current BSD-2-Clause
six
pypi
Direct 1.17.0 1.17.0 Current MIT
sniffio
pypi
Direct 1.3.1 1.3.1 Current Apache-2.0 AND MIT
sqlparse
pypi
Direct 0.5.5 0.5.5 Current BSD-2-Clause AND BSD-3-Clause
tldextract
pypi
Direct 5.3.1 5.3.1 Current BSD-3-Clause
tqdm
pypi
Direct 4.67.3 4.67.3 Current MIT AND MPL-2.0
typing-extensions
pypi
Direct 4.15.0 4.15.0 Current Python-2.0 AND GPL-1.0-or-later AND Python-2.0 AND BSD-3-Clause AND Python-2.0 AND BSD-3-Clause AND 0BSD
typing-inspection
pypi
Direct 0.4.2 0.4.2 Current MIT
tzdata
pypi
Direct 2026.1 2026.2.0 Unknown
whitenoise
pypi
Direct 6.12.0 Unknown
zope-event
pypi
Direct 6.1 6.2.0 Unknown
zope-interface
pypi
Direct 8.3 8.5.0 Unknown

License Breakdown

Unknown 31
MIT 22
BSD-3-Clause 9
Apache-2.0 5
BSD-2-Clause AND BSD-3-Clause 3
BSD-2-Clause 2
(Apache-2.0 AND BSD-2-Clause AND BSD-3-Clause AND MIT) OR (BSD-2-Clause AND BSD-3-Clause AND GPL-2.0-only AND MIT) 1
Apache-2.0 AND BSD-2-Clause 1
Apache-2.0 AND BSD-3-Clause AND LicenseRef-scancode-unknown-license-reference 1
Apache-2.0 AND MIT 1
BSD-2-Clause AND LGPL-3.0-only 1
BSD-2-Clause AND LicenseRef-scancode-other-permissive 1
BSD-3-Clause OR Apache-2.0 1
CNRI-Python AND Apache-2.0 1
GPL-3.0 AND GPL-3.0-only 1
GPL-3.0-or-later AND LGPL-2.0-or-later AND LGPL-2.1-or-later AND LGPL-3.0-only 1
MIT AND HPND 1
MIT AND MPL-2.0 1
MIT-0 1
MIT-CMU 1
MPL-2.0 1
Python-2.0 AND GPL-1.0-or-later AND Python-2.0 AND BSD-3-Clause AND Python-2.0 AND BSD-3-Clause AND 0BSD 1

CVE Severity

critical 0
high 2
medium 0
low 0
unknown 0

Beta — feedback welcome: [email protected]