Dependency Analysis
server
Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.
88%
Freshness
118
Dependencies
8
Outdated
0
Stale
1.0
Avg Behind
Dependency List
Latest release 2.8.2
| Dependency | Type | Current | Latest | Behind | CVE | License |
|---|---|---|---|---|---|---|
|
ruff
pypi
|
Direct | 0.15.6 | 0.15.15 | 9 behind | — | MIT |
|
numpy
pypi
|
Direct | 2.3.5 | 2.4.6 | 8 behind | — | Apache-2.0 AND BSD-3-Clause AND MIT AND Zlib |
|
mypy
pypi
|
Direct | 1.19.1 | 2.1.0 | 5 behind | — | BSD-2-Clause AND MIT AND Python-2.0 AND Python-2.0.1 |
|
certifi
pypi
|
Direct | 2025.11.12 | 2026.5.20 | 4 behind | — | MPL-2.0 |
|
orjson
pypi
|
Direct | 3.11.6 | 3.11.9 | 3 behind | — | Apache-2.0 AND MIT AND MPL-2.0 |
|
av
pypi
|
Direct | 16.1.0 | 17.0.1 | 2 behind | — | Unknown |
|
cryptography
pypi
|
Direct | 46.0.7 | 48.0.0 | 2 behind | — | BSD-3-Clause OR Apache-2.0 |
|
pycares
pypi
|
Direct | 4.11.0 | 5.0.1 | 2 behind | — | MIT |
|
aiofiles
pypi
|
Direct | 24.1.0 | 25.1.0 | 1 behind | — | Apache-2.0 |
|
aiohttp
pypi
|
Direct | 3.13.5 | 3.14.0 | 1 behind | — | Apache-2.0 AND MIT |
|
codespell
pypi
|
Direct | 2.4.1 | 2.4.2 | 1 behind | — | Unknown |
|
pre-commit
pypi
|
Direct | 4.5.1 | 4.6.0 | 1 behind | — | MIT |
|
pytest-cov
pypi
|
Direct | 7.0.0 | 7.1.0 | 1 behind | — | MIT |
|
syrupy
pypi
|
Direct | 5.1.0 | 2026.4.6.124150327040 | 1 behind | — | Unknown |
|
torch
pypi
|
Direct | 2.11.0 | 2.12.0 | 1 behind | — | Unknown |
|
actions/cache
githubactions
|
Direct | 5.*.* | — | — | — | Unknown |
|
actions/checkout
githubactions
|
Direct | 6.*.* | — | — | — | Unknown |
|
actions/download-artifact
githubactions
|
Direct | 8.*.* | — | — | — | Unknown |
|
actions/github-script
githubactions
|
Direct | 9.*.* | — | — | — | Unknown |
|
actions/setup-python
githubactions
|
Direct | 6.2.0 | — | — | — | Unknown |
|
actions/upload-artifact
githubactions
|
Direct | 7.*.* | — | — | — | Unknown |
|
aioaudiobookshelf
pypi
|
Direct | 0.1.20 | — | — | — | Unknown |
|
aiodns
|
Direct | — | — | — | — | Unknown |
|
aiohttp
|
Direct | — | — | — | — | Unknown |
|
aiohttp-asyncmdnsresolver
pypi
|
Direct | 0.1.1 | — | — | — | Apache-2.0 |
|
aiohttp-fast-zlib
pypi
|
Direct | 0.3.0 | — | — | — | Apache-2.0 |
|
aiohttp-socks
pypi
|
Direct | 0.11.0 | 0.11.0 | Current | — | Apache-2.0 |
|
aiojellyfin
pypi
|
Direct | 0.14.1 | — | — | — | Unknown |
|
aiomusiccast
pypi
|
Direct | 0.15.0 | — | — | — | MIT |
|
aiortc
|
Direct | — | — | — | — | Unknown |
|
aiosendspin
pypi
|
Direct | 5.2.0 | — | — | — | Unknown |
|
aioslimproto
pypi
|
Direct | 3.1.8 | — | — | — | Unknown |
|
aiosonos
pypi
|
Direct | 0.1.12 | — | — | — | Unknown |
|
aiosqlite
pypi
|
Direct | 0.22.1 | 0.22.1 | Current | — | LicenseRef-scancode-free-unknown AND MIT |
|
aiovban
pypi
|
Direct | 1.1.0 | — | — | — | Unknown |
|
alexapy
pypi
|
Direct | 1.29.17 | — | — | — | Unknown |
|
async-upnp-client
pypi
|
Direct | 0.46.2 | — | — | — | Unknown |
|
audible
pypi
|
Direct | 0.10.0 | — | — | — | AGPL-3.0 AND AGPL-3.0-only AND LicenseRef-scancode-unknown-license-reference |
|
auntie-sounds
pypi
|
Direct | 1.1.8 | — | — | — | Unknown |
|
awesomeversion
|
Direct | — | — | — | — | Unknown |
|
bandcamp-async-api
pypi
|
Direct | 0.1.1 | — | — | — | Unknown |
|
beat-this
pypi
|
Direct | 1.1.0 | — | — | — | Unknown |
|
bidict
pypi
|
Direct | 0.23.1 | 0.23.1 | Current | — | MPL-2.0 |
|
brotli
|
Direct | — | — | — | — | Unknown |
|
chardet
|
Direct | — | — | — | — | Unknown |
|
colorlog
pypi
|
Direct | 6.10.1 | 6.10.1 | Current | — | MIT |
|
deezer-python-async
pypi
|
Direct | 0.3.0 | — | — | — | Unknown |
|
defusedxml
pypi
|
Direct | 0.7.1 | 0.7.1 | Current | — | PSF-2.0 |
|
deno
pypi
|
Direct | 2.7.12 | — | — | — | Unknown |
|
docker/build-push-action
githubactions
|
Direct | 7.1.0 | — | — | — | Unknown |
|
docker/login-action
githubactions
|
Direct | 4.1.0 | — | — | — | Unknown |
|
docker/setup-buildx-action
githubactions
|
Direct | 4.0.0 | — | — | — | Unknown |
|
duration-parser
pypi
|
Direct | 1.0.1 | — | — | — | MIT |
|
getmac
pypi
|
Direct | 0.9.5 | — | — | — | MIT |
|
gql
pypi
|
Direct | 4.0.0 | 4.0.0 | Current | — | MIT |
|
hass-client
pypi
|
Direct | 1.2.3 | — | — | — | Unknown |
|
hmarr/auto-approve-action
githubactions
|
Direct | 4.*.* | — | — | — | Unknown |
|
ibroadcastaio
pypi
|
Direct | 0.6.0 | — | — | — | Unknown |
|
ifaddr
pypi
|
Direct | 0.2.0 | 0.2.0 | Current | — | MIT |
|
liblistenbrainz
pypi
|
Direct | 0.7.0 | — | — | — | Unknown |
|
librosa
pypi
|
Direct | 0.11.0 | 0.11.0 | Current | — | ISC |
|
ludeeus/action-require-labels
githubactions
|
Direct | 1.1.0 | — | — | — | Unknown |
|
lyricsgenius
pypi
|
Direct | 3.11.0 | — | — | — | Unknown |
|
mashumaro
pypi
|
Direct | 3.20 | — | — | — | Unknown |
|
mashumaro
|
Direct | — | — | — | — | Unknown |
|
music-assistant-frontend
pypi
|
Direct | 2.17.154 | — | — | — | Unknown |
|
music-assistant-models
pypi
|
Direct | 1.1.117 | — | — | — | Unknown |
|
mutagen
pypi
|
Direct | 1.47.0 | — | — | — | GPL-2.0 AND GPL-2.0-or-later AND GPL-3.0-or-later |
|
niconico-py-ma
pypi
|
Direct | 2.1.0.post2 | — | — | — | Unknown |
|
nnaudio
pypi
|
Direct | 0.3.3 | — | — | — | Unknown |
|
orjson
|
Direct | — | — | — | — | Unknown |
|
peter-evans/repository-dispatch
githubactions
|
Direct | 4.*.* | — | — | — | Unknown |
|
pillow
pypi
|
Direct | 12.2.0 | 12.2.0 | Current | — | MIT-CMU |
|
pkce
pypi
|
Direct | 1.0.3 | — | — | — | MIT |
|
plexapi
pypi
|
Direct | 4.17.2 | — | — | — | BSD-3-Clause |
|
podcastparser
pypi
|
Direct | 0.6.11 | — | — | — | ISC |
|
pre-commit-hooks
pypi
|
Direct | 6.0.0 | — | — | — | MIT |
|
propcache
|
Direct | — | — | — | — | Unknown |
|
py-opensonic
pypi
|
Direct | 9.0.1 | — | — | — | Unknown |
|
pyblu
pypi
|
Direct | 2.0.6 | — | — | — | Unknown |
|
pychromecast
pypi
|
Direct | 14.0.9 | — | — | — | MIT |
|
pycryptodome
pypi
|
Direct | 3.23.0 | 3.23.0 | Current | — | BSD-2-Clause AND BSD-3-Clause AND LicenseRef-scancode-public-domain AND Unlicense |
|
pyheos
pypi
|
Direct | 1.0.6 | — | — | — | Apache-2.0 |
|
pyjwt
|
Direct | — | — | — | — | Unknown |
|
pylast
pypi
|
Direct | 7.0.2 | — | — | — | Unknown |
|
pypa/gh-action-pypi-publish
githubactions
|
Direct | release/v1 | — | — | — | Unknown |
|
pytest
pypi
|
Direct | 9.0.3 | 9.0.3 | Current | — | MIT |
|
pytest-aiohttp
pypi
|
Direct | 1.1.0 | 1.1.0 | Current | — | Apache-2.0 |
|
python-fullykiosk
pypi
|
Direct | 0.0.14 | — | — | — | Apache-2.0 |
|
python-mpd2
|
Direct | — | — | — | — | Unknown |
|
python-slugify
pypi
|
Direct | 8.0.4 | 8.0.4 | Current | — | MIT |
|
pytz
pypi
|
Direct | 2025.2 | 2026.2.0 | — | — | MIT AND ZPL-2.1 |
|
pywidevine
pypi
|
Direct | 1.9.0 | — | — | — | GPL-3.0 AND GPL-3.0-only |
|
qqmusic-api-python
pypi
|
Direct | 0.4.1 | — | — | — | MIT |
|
radios
pypi
|
Direct | 0.3.2 | — | — | — | MIT |
|
rokuecp
pypi
|
Direct | 0.19.5 | — | — | — | MIT |
|
setuptools
|
Direct | — | — | — | — | Unknown |
|
shortuuid
pypi
|
Direct | 1.0.13 | 1.0.13 | Current | — | BSD-3-Clause |
|
snapcast
pypi
|
Direct | 2.3.7 | — | — | — | MIT |
|
soco
pypi
|
Direct | 0.31.0 | — | — | — | Unknown |
|
softprops/action-gh-release
githubactions
|
Direct | 3.*.* | — | — | — | Unknown |
|
soundcloudpy
pypi
|
Direct | 0.1.4 | — | — | — | Apache-2.0 |
|
sounddevice
pypi
|
Direct | 0.5.5 | 0.5.5 | Current | — | MIT |
|
srptools
|
Direct | — | — | — | — | Unknown |
|
sxm
pypi
|
Direct | 0.2.8 | — | — | — | Unknown |
|
tomli
pypi
|
Direct | 2.4.1 | 2.4.1 | Current | — | MIT |
|
torchaudio
pypi
|
Direct | 2.11.0 | 2.11.0 | Current | — | Unknown |
|
unidecode
pypi
|
Direct | 1.4.0 | — | — | — | BSD-3-Clause AND GPL-2.0 AND GPL-2.0-only AND GPL-2.0-or-later AND GPL-3.0-only |
|
uv
|
Direct | — | — | — | — | Unknown |
|
websocket-client
pypi
|
Direct | 1.9.0 | 1.9.0 | Current | — | Apache-2.0 |
|
wiim
pypi
|
Direct | 0.1.4 | — | — | — | Unknown |
|
xmltodict
pypi
|
Direct | 1.0.4 | 1.0.4 | Current | — | MIT |
|
ya-passport-auth
pypi
|
Direct | 1.3.0 | — | — | — | Unknown |
|
yandex-music
pypi
|
Direct | 3.0.0 | — | — | — | Unknown |
|
ytmusicapi
pypi
|
Direct | 1.11.5 | — | — | — | Unknown |
|
zeroconf
pypi
|
Direct | 0.148.0 | — | — | — | LGPL-2.1-only |
|
zvuk-music
pypi
|
Direct | 0.6.1 | — | — | — | Unknown |
License Breakdown
Unknown
65
MIT
22
Apache-2.0
9
BSD-3-Clause
2
ISC
2
MPL-2.0
2
AGPL-3.0 AND AGPL-3.0-only AND LicenseRef-scancode-unknown-license-reference
1
Apache-2.0 AND BSD-3-Clause AND MIT AND Zlib
1
Apache-2.0 AND MIT
1
Apache-2.0 AND MIT AND MPL-2.0
1
BSD-2-Clause AND BSD-3-Clause AND LicenseRef-scancode-public-domain AND Unlicense
1
BSD-2-Clause AND MIT AND Python-2.0 AND Python-2.0.1
1
BSD-3-Clause AND GPL-2.0 AND GPL-2.0-only AND GPL-2.0-or-later AND GPL-3.0-only
1
BSD-3-Clause OR Apache-2.0
1
GPL-2.0 AND GPL-2.0-or-later AND GPL-3.0-or-later
1
GPL-3.0 AND GPL-3.0-only
1
LGPL-2.1-only
1
LicenseRef-scancode-free-unknown AND MIT
1
MIT AND ZPL-2.1
1
MIT-CMU
1
PSF-2.0
1
CVE Severity
critical
0
high
0
medium
0
low
0
unknown
0