Skip to content
Tools / tracktor / Dependencies

Dependency Analysis

tracktor

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

58% Freshness
734 Dependencies
251 Outdated
0 Stale
9.2 Avg Behind

Dependency List

Latest release 1.4.0

Dependency Type Current Latest Behind CVE License
picomatch
npm
Transitive 4.0.3 4.0.4 3 behind 2 high MIT
lodash-es
npm
Transitive 4.17.23 4.18.1 2 behind 2 high MIT
esbuild
npm
Transitive 0.18.20 0.28.0 50 behind 1 medium MIT
yaml
npm
Transitive 1.10.2 2.9.0 49 behind 1 medium ISC
brace-expansion
npm
Transitive 5.0.4 5.0.6 7 behind 1 medium MIT
postcss
npm
Transitive 8.5.8 8.5.15 7 behind 1 medium MIT
uuid
npm
Transitive 13.0.0 14.0.0 1 behind 1 medium MIT
cookie
npm
Transitive 0.6.0 1.1.1 8 behind 1 low MIT

License Breakdown

MIT 592
ISC 43
Apache-2.0 28
BSD-3-Clause 21
MPL-2.0 12
BSD-2-Clause 11
Unknown 10
BlueOak-1.0.0 2
ISC AND MIT 2
MIT-0 2
0BSD 1
0BSD AND ISC AND MIT 1
Apache-2.0 AND ISC 1
Apache-2.0 AND MIT 1
BSD-2-Clause AND BSD-2-Clause-Views 1
BSD-2-Clause AND BSD-3-Clause 1
CC0-1.0 1
CC0-1.0 OR MIT OR (CC0-1.0 AND MIT) 1
MIT AND MIT-0 1
Unlicense 1

CVE Severity

critical 0
high 2
medium 5
low 1
unknown 0

Beta — feedback welcome: [email protected]