Skip to content
Tools / speaches / Dependencies

Dependency Analysis

speaches

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

54% Freshness
264 Dependencies
102 Outdated
0 Stale
4.8 Avg Behind

Dependency List

Latest release v0.9.0-rc.3

Dependency Type Current Latest Behind CVE License
h11
pypi
Direct 0.14.0 0.16.0 2 behind 1 critical MIT
protobuf
pypi
Direct 5.29.3 7.35.0 36 behind 2 high BSD-3-Clause AND LicenseRef-scancode-protobuf
cryptography
pypi
Direct 44.0.1 48.0.0 20 behind 2 high Apache-2.0 OR BSD-3-Clause OR (Apache-2.0 AND BSD-3-Clause)
black
pypi
Direct 24.10.0 26.5.1 10 behind 1 high MIT
lxml
pypi
Direct 5.3.0 6.1.1 10 behind 1 high BSD-2-Clause AND BSD-3-Clause
python-multipart
pypi
Direct 0.0.20 0.0.30 10 behind 3 high Apache-2.0
pillow
pypi
Direct 10.4.0 12.2.0 8 behind 5 high MIT-CMU
urllib3
pypi
Direct 2.2.3 2.7.0 8 behind 5 high MIT
pyopenssl
pypi
Direct 25.0.0 26.2.0 6 behind 2 high Apache-2.0
mako
pypi
Direct 1.3.10 1.3.12 2 behind 2 high MIT
brotli
pypi
Direct 1.1.0 1.2.0 1 behind 1 high MIT
gradio
pypi
Direct 5.49.1 4 high Apache-2.0
orjson
pypi
Direct 3.10.7 1 high Apache-2.0 AND MIT
setuptools
pypi
Direct 75.2.0 1 high MIT
requests
pypi
Direct 2.32.3 2.34.2 8 behind 2 medium Apache-2.0
pytest
pypi
Direct 8.4.1 9.0.3 5 behind 1 medium MIT
python-dotenv
pypi
Direct 1.0.1 1.2.2 5 behind 1 medium BSD-2-Clause AND BSD-3-Clause
aiohttp
pypi
Direct 3.13.3 3.14.0 3 behind 10 medium Apache-2.0 AND MIT
jinja2
pypi
Direct 3.1.4 3.1.6 2 behind 3 medium BSD-2-Clause AND BSD-3-Clause
markdown
pypi
Direct 3.7 3.10.2 1 medium BSD-2-Clause AND BSD-3-Clause
virtualenv
pypi
Direct 20.26.6 1 medium MIT
pygments
pypi
Direct 2.18.0 2.20.0 4 behind 1 low BSD-2-Clause
pymdown-extensions
pypi
Direct 10.11.1 1 low BSD-3-Clause AND LicenseRef-scancode-unknown-license-reference AND MIT

License Breakdown

MIT 89
Unknown 55
Apache-2.0 47
BSD-3-Clause 20
BSD-2-Clause AND BSD-3-Clause 13
ISC 6
Apache-2.0 AND MIT 5
BSD-2-Clause 4
Apache-2.0 AND BSD-3-Clause 2
MPL-2.0 2
0BSD AND BSD-3-Clause AND LicenseRef-scancode-unknown-license-reference AND PSF-2.0 AND Python-2.0 1
AGPL-3.0-or-later AND GPL-3.0-only AND GPL-3.0-or-later 1
Apache-2.0 AND BSD-3-Clause AND LicenseRef-scancode-unknown-license-reference 1
Apache-2.0 AND BSD-3-Clause AND MIT AND OFL-1.1 1
Apache-2.0 AND BSD-3-Clause AND MIT AND Zlib 1
Apache-2.0 AND CNRI-Python 1
Apache-2.0 OR BSD-3-Clause OR (Apache-2.0 AND BSD-3-Clause) 1
BSD-3-Clause AND LicenseRef-scancode-protobuf 1
BSD-3-Clause AND LicenseRef-scancode-unknown-license-reference 1
BSD-3-Clause AND LicenseRef-scancode-unknown-license-reference AND MIT 1
BSD-3-Clause AND MIT 1
BSD-3-Clause AND Python-2.0 1
LGPL-2.1-only AND MIT AND MPL-1.1 1
MIT AND Apache-2.0 1
MIT AND MPL-2.0 1
MIT AND PSF-2.0 1
MIT AND Python-2.0 1
MIT-CMU 1
PSF-2.0 1
Python-2.0 AND GPL-1.0-or-later AND Python-2.0 AND BSD-3-Clause AND Python-2.0 AND BSD-3-Clause AND 0BSD 1

CVE Severity

critical 1
high 13
medium 7
low 2
unknown 0

Beta — feedback welcome: [email protected]