Dependency Analysis
Xandikos
Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.
94%
Freshness
56
Dependencies
0
Outdated
0
Stale
0.5
Avg Behind
Dependency List
Latest release v0.3.7
| Dependency | Type | Current | Latest | Behind | CVE | License |
|---|---|---|---|---|---|---|
|
ruff
pypi
|
Direct | 0.15.12 | 0.15.15 | 3 behind | — | MIT |
|
mypy
pypi
|
Direct | 1.20.2 | 2.1.0 | 2 behind | — | MIT AND Python-2.0 AND Python-2.0.1 AND BSD-2-Clause AND MIT AND Python-2.0 AND Python-2.0.1 AND BSD-2-Clause |
|
actions/checkout
githubactions
|
Direct | 6.*.* | — | — | — | Unknown |
|
actions/download-artifact
githubactions
|
Direct | 8.*.* | — | — | — | Unknown |
|
actions/setup-python
githubactions
|
Direct | 6.*.* | — | — | — | Unknown |
|
actions/upload-artifact
githubactions
|
Direct | 7.*.* | — | — | — | Unknown |
|
aiohttp
|
Direct | — | — | — | — | Unknown |
|
caldav
|
Direct | — | — | — | — | Unknown |
|
caldav
|
Direct | — | — | — | — | Unknown |
|
caldav-server-tester
|
Direct | — | — | — | — | Unknown |
|
caldav-server-tester
|
Direct | — | — | — | — | Unknown |
|
defusedxml
|
Direct | — | — | — | — | Unknown |
|
dependabot/fetch-metadata
githubactions
|
Direct | 3.*.* | — | — | — | Unknown |
|
docker/build-push-action
githubactions
|
Direct | d08e5c354a6adb9ed34480a06d141179aa583294 | — | — | — | Unknown |
|
docker/build-push-action
githubactions
|
Direct | 7.*.* | — | — | — | Unknown |
|
docker/login-action
githubactions
|
Direct | 4907a6ddec9925e35a0a9e82d7399ccc52663121 | — | — | — | Unknown |
|
docker/metadata-action
githubactions
|
Direct | 030e881283bb7a6894de51c315a6bfe6a94e05cf | — | — | — | Unknown |
|
docker/setup-buildx-action
githubactions
|
Direct | 4.*.* | — | — | — | Unknown |
|
docker/setup-qemu-action
githubactions
|
Direct | 4.*.* | — | — | — | Unknown |
|
dulwich
|
Direct | — | — | — | — | Unknown |
|
dulwich
|
Direct | >= 0.25.0,< 2 | — | — | — | Unknown |
|
dulwich
|
Direct | >= 0.19.1 | — | — | — | Unknown |
|
icalendar
|
Direct | — | — | — | — | Unknown |
|
icalendar
|
Direct | — | — | — | — | Unknown |
|
icalendar
|
Direct | >= 5.0.4,< 8.0 | — | — | — | Unknown |
|
icalendar
|
Direct | >= 5.0,< 7.0 | — | — | — | Unknown |
|
jelmer/action-disperse-validate
githubactions
|
Direct | 2.*.* | — | — | — | Unknown |
|
jinja2
|
Direct | — | — | — | — | Unknown |
|
lxml
|
Direct | — | — | — | — | Unknown |
|
lxml
|
Direct | — | — | — | — | Unknown |
|
lxml
|
Direct | — | — | — | — | Unknown |
|
multidict
|
Direct | — | — | — | — | Unknown |
|
prometheus-client
|
Direct | — | — | — | — | Unknown |
|
pypa/gh-action-pypi-publish
githubactions
|
Direct | release/v1 | — | — | — | Unknown |
|
pytest
|
Direct | — | — | — | — | Unknown |
|
pytest
|
Direct | — | — | — | — | Unknown |
|
pytest
|
Direct | — | — | — | — | Unknown |
|
python-dateutil
|
Direct | — | — | — | — | Unknown |
|
python-dateutil
|
Direct | — | — | — | — | Unknown |
|
python-dateutil
|
Direct | — | — | — | — | Unknown |
|
pytz
|
Direct | — | — | — | — | Unknown |
|
pytz
|
Direct | — | — | — | — | Unknown |
|
pytz
|
Direct | — | — | — | — | Unknown |
|
recurring-ical-events
|
Direct | — | — | — | — | Unknown |
|
recurring-ical-events
|
Direct | — | — | — | — | Unknown |
|
recurring-ical-events
|
Direct | — | — | — | — | Unknown |
|
requests
|
Direct | — | — | — | — | Unknown |
|
requests
|
Direct | — | — | — | — | Unknown |
|
requests
|
Direct | — | — | — | — | Unknown |
|
setuptools
|
Direct | — | — | — | — | Unknown |
|
tzlocal
|
Direct | — | — | — | — | Unknown |
|
tzlocal
|
Direct | — | — | — | — | Unknown |
|
tzlocal
|
Direct | — | — | — | — | Unknown |
|
vobject
|
Direct | — | — | — | — | Unknown |
|
vobject
|
Direct | — | — | — | — | Unknown |
License Breakdown
Unknown
53
MIT
1
MIT AND Python-2.0 AND Python-2.0.1 AND BSD-2-Clause AND MIT AND Python-2.0 AND Python-2.0.1 AND BSD-2-Clause
1
CVE Severity
critical
0
high
0
medium
0
low
0
unknown
0