Dependency Analysis
StencilBox
Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.
59%
Freshness
423
Dependencies
116
Outdated
0
Stale
1.5
Avg Behind
Dependency List
Latest release 2.5.2
| Dependency | Type | Current | Latest | Behind | CVE | License |
|---|---|---|---|---|---|---|
|
cache-directory
npm
|
Transitive | 2.0.0 | — | — | — | GPL-3.0 AND GPL-3.0-only AND LGPL-3.0+ AND LGPL-3.0-only AND LGPL-3.0-or-later |
|
connectrpc.com/connect
golang
|
Direct | v1.19.2 | — | — | — | Apache-2.0 OR (Apache-2.0 AND LGPL-3.0-only) |
|
femtocrank
npm
|
Transitive | 2.5.0 | — | — | — | AGPL-3.0 |
License Breakdown
MIT
305
MPL-2.0
43
ISC
16
Unknown
14
Apache-2.0
13
BSD-2-Clause
6
BSD-3-Clause
6
BSD-3-Clause AND LicenseRef-scancode-google-patent-license-golang
3
0BSD
2
BSD-3-Clause AND MIT
2
MIT AND Zlib
2
0BSD AND ISC AND MIT
1
AGPL-3.0
1
Apache-2.0 AND BSD-3-Clause
1
Apache-2.0 OR (Apache-2.0 AND LGPL-3.0-only)
1
BSD-2-Clause AND BSD-3-Clause
1
BSD-2-Clause AND CC0-1.0 AND ISC AND MIT
1
GPL-3.0 AND GPL-3.0-only AND LGPL-3.0+ AND LGPL-3.0-only AND LGPL-3.0-or-later
1
ISC AND MIT
1
MPL-1.1
1
Python-2.0
1
CVE Severity
critical
0
high
0
medium
0
low
0
unknown
0