Skip to content
Tools / semaphore / Dependencies

Dependency Analysis

semaphore

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

55% Freshness
1373 Dependencies
516 Outdated
0 Stale
8.7 Avg Behind

Dependency List

Latest release v2.18.1

Dependency Type Current Latest Behind CVE License
node-forge
npm
Transitive 1.4.0 1.4.0 Current BSD-3-Clause OR GPL-2.0-only

License Breakdown

MIT 1079
ISC 87
BSD-3-Clause 62
Apache-2.0 48
BSD-2-Clause 32
BSD-3-Clause AND LicenseRef-scancode-google-patent-license-golang 13
Unknown 13
BlueOak-1.0.0 4
Apache-2.0 AND MIT 3
CC0-1.0 AND MIT 3
MPL-2.0 3
Unlicense 3
Apache-2.0 AND BSD-2-Clause 2
BSD-2-Clause AND ISC 2
BSD-3-Clause AND LicenseRef-scancode-public-domain AND LicenseRef-scancode-unknown-license-reference 2
CC0-1.0 2
ISC AND MIT 2
MIT OR (CC0-1.0 AND MIT) 2
0BSD 1
BSD-2-Clause AND BSD-2-Clause-Views 1
BSD-2-Clause AND BSD-3-Clause 1
BSD-3-Clause OR GPL-2.0-only 1
CC-BY-3.0 1
CC-BY-3.0 AND MIT 1
CC-BY-4.0 1
CC-BY-SA-4.0 AND ISC 1
MIT OR WTFPL OR (MIT AND WTFPL) 1
Python-2.0 1

CVE Severity

critical 0
high 9
medium 12
low 4
unknown 2

Beta — feedback welcome: [email protected]