<!--
Copyright (c) 2021 LG Electronics
SPDX-License-Identifier: Apache-2.0
-->
# FOSSLight Dependency Scanner
<img src="https://img.shields.io/pypi/l/fosslight_dependency" alt="License" /> <a href="https://pypi.org/project/fosslight-dependency/"><img src="https://img.shields.io/pypi/v/fosslight_dependency" alt="Current python package version." /></a> <img src="https://img.shields.io/pypi/pyversions/fosslight_dependency" /> [](https://api.reuse.software/info/github.com/fosslight/fosslight_dependency_scanner)
## 💡 Introduction
This is the tool that supports the analysis of dependencies for multiple package managers. It detects the manifest file of package managers automatically and analyzes the dependencies with using open source tools. Then, it generates the report file that contains OSS information of dependencies.
## 📖 User Guide
We describe the user guide in the [**FOSSLight Guide page**](https://fosslight.org/fosslight-guide-en/scanner/3_dependency.html).
In this user guide, you can see how to install the FOSSLight Dependency Scanner and how to set up the prerequisite step and run it according to the package manager of your project. Also, you can check the results of the FOSSLight Dependency Scanner.
## 👀 Package Support Level
<table>
<thead>
<tr>
<th>Language/<br>Project</th>
<th>Package Manager</th>
<th>Manifest file</th>
<th>Direct dependencies</th>
<th>Transitive dependencies</th>
<th>Relationship of dependencies<br>(Dependencies of each dependency)</th>
</tr>
</thead>
<tbody>
<tr>
<td rowspan="2">Javascript</td>
<td>Npm</td>
<td>package.json</td>
<td>O</td>
<td>O</td>
<td>O</td>
</tr>
<tr>
<td>Pnpm</td>
<td>pnpm-lock.yaml</td>
<td>O</td>
<td>O</td>
<td>O</td>
</tr>
<tr>
<td rowspan="2">Java</td>
<td>Gradle</td>
<td>build.gradle</td>
<td>O</td>
<td>O</td>
<td>O</td>
</tr>
<tr>
<td>Maven</td>
<td>pom.xml</td>
<td>O</td>
<td>O</td>
<td>O</td>
</tr>
<tr>
<td>Java (Android)</td>
<td>Gradle</td>
<td>build.gradle</td>
<td>O</td>
<td>O</td>
<td>O</td>
</tr>
<tr>
<td rowspan="2">ObjC, Swift (iOS)</td>
<td>Cocoapods</td>
<td>Podfile.lock</td>
<td>O</td>
<td>O</td>
<td>O</td>
</tr>
<tr>
<td>Carthage</td>
<td>Cartfile.resolved</td>
<td>O</td>
<td>O</td>
<td>X</td>
</tr>
<tr>
<td>Swift (iOS)</td>
<td>Swift</td>
<td>Package.resolved</td>
<td>O</td>
<td>O</td>
<td>O</td>
</tr>
<tr>
<td>Dart, Flutter</td>
<td>Pub</td>
<td>pubspec.yaml</td>
<td>O</td>
<td>O</td>
<td>O</td>
</tr>
<tr>
<td>Go</td>
<td>Go</td>
<td>go.mod</td>
<td>O</td>
<td>O</td>
<td>O</td>
</tr>
<tr>
<td>Python</td>
<td>Pypi</td>
<td>requirements.txt, setup.py, pyproject.toml</td>
<td>O</td>
<td>O</td>
<td>O</td>
</tr>
<tr>
<td>.NET</td>
<td>Nuget</td>
<td>packages.config, obj/project.assets.json</td>
<td>O</td>
<td>O</td>
<td>O</td>
</tr>
<tr>
<td>Kubernetes</td>
<td>Helm</td>
<td>Chart.yaml</td>
<td>O</td>
<td>X</td>
<td>X</td>
</tr>
<tr>
<td>Unity</td>
<td>Unity</td>
<td>Library/PackageManager/ProjectCache</td>
<td>O</td>
<td>O</td>
<td>X</td>
</tr>
<tr>
<td>Rust</td>
<td>Cargo</td>
<td>Cargo.toml</td>
<td>O</td>
<td>O</td>
<td>O</td>
</tr>
</tbody>
</table>
## 👏 Contributing Guide
We always welcome your contributions.
Please see the [CONTRIBUTING guide](https://github.com/fosslight/fosslight_dependency_scanner/blob/main/CONTRIBUTING.md) for how to contribute.
## 📄 License
Copyright (c) 2020 LG Electronics, Inc.
FOSSLight Dependency Scanner is licensed under Apache-2.0, as found in the [LICENSE](https://github.com/fosslight/fosslight_dependency_scanner/blob/main/LICENSE) file.
Raw data
{
"_id": null,
"home_page": "https://github.com/fosslight/fosslight_dependency_scanner",
"name": "fosslight-dependency",
"maintainer": null,
"docs_url": null,
"requires_python": null,
"maintainer_email": null,
"keywords": null,
"author": "LG Electronics",
"author_email": null,
"download_url": "https://files.pythonhosted.org/packages/73/bd/9f9cc6c188ce24776791ad71854ab55096938652206f7b67290499511e9e/fosslight_dependency-4.1.18.tar.gz",
"platform": null,
"description": "<!--\nCopyright (c) 2021 LG Electronics\nSPDX-License-Identifier: Apache-2.0\n -->\n\n# FOSSLight Dependency Scanner\n\n<img src=\"https://img.shields.io/pypi/l/fosslight_dependency\" alt=\"License\" /> <a href=\"https://pypi.org/project/fosslight-dependency/\"><img src=\"https://img.shields.io/pypi/v/fosslight_dependency\" alt=\"Current python package version.\" /></a> <img src=\"https://img.shields.io/pypi/pyversions/fosslight_dependency\" /> [](https://api.reuse.software/info/github.com/fosslight/fosslight_dependency_scanner)\n\n## \ud83d\udca1 Introduction\n\nThis is the tool that supports the analysis of dependencies for multiple package managers. It detects the manifest file of package managers automatically and analyzes the dependencies with using open source tools. Then, it generates the report file that contains OSS information of dependencies.\n\n## \ud83d\udcd6 User Guide\n\nWe describe the user guide in the [**FOSSLight Guide page**](https://fosslight.org/fosslight-guide-en/scanner/3_dependency.html).\nIn this user guide, you can see how to install the FOSSLight Dependency Scanner and how to set up the prerequisite step and run it according to the package manager of your project. Also, you can check the results of the FOSSLight Dependency Scanner.\n\n## \ud83d\udc40 Package Support Level\n\n<table>\n<thead>\n <tr>\n <th>Language/<br>Project</th>\n <th>Package Manager</th>\n <th>Manifest file</th>\n <th>Direct dependencies</th>\n <th>Transitive dependencies</th>\n <th>Relationship of dependencies<br>(Dependencies of each dependency)</th>\n </tr>\n</thead>\n<tbody>\n <tr>\n <td rowspan=\"2\">Javascript</td>\n <td>Npm</td>\n <td>package.json</td>\n <td>O</td>\n <td>O</td>\n <td>O</td>\n </tr>\n <tr>\n <td>Pnpm</td>\n <td>pnpm-lock.yaml</td>\n <td>O</td>\n <td>O</td>\n <td>O</td>\n </tr>\n <tr>\n <td rowspan=\"2\">Java</td>\n <td>Gradle</td>\n <td>build.gradle</td>\n <td>O</td>\n <td>O</td>\n <td>O</td>\n </tr>\n <tr>\n <td>Maven</td>\n <td>pom.xml</td>\n <td>O</td>\n <td>O</td>\n <td>O</td>\n </tr>\n <tr>\n <td>Java (Android)</td>\n <td>Gradle</td>\n <td>build.gradle</td>\n <td>O</td>\n <td>O</td>\n <td>O</td>\n </tr>\n <tr>\n <td rowspan=\"2\">ObjC, Swift (iOS)</td>\n <td>Cocoapods</td>\n <td>Podfile.lock</td>\n <td>O</td>\n <td>O</td>\n <td>O</td>\n </tr>\n <tr>\n <td>Carthage</td>\n <td>Cartfile.resolved</td>\n <td>O</td>\n <td>O</td>\n <td>X</td>\n </tr>\n <tr>\n <td>Swift (iOS)</td>\n <td>Swift</td>\n <td>Package.resolved</td>\n <td>O</td>\n <td>O</td>\n <td>O</td>\n </tr>\n <tr>\n <td>Dart, Flutter</td>\n <td>Pub</td>\n <td>pubspec.yaml</td>\n <td>O</td>\n <td>O</td>\n <td>O</td>\n </tr>\n <tr>\n <td>Go</td>\n <td>Go</td>\n <td>go.mod</td>\n <td>O</td>\n <td>O</td>\n <td>O</td>\n </tr>\n <tr>\n <td>Python</td>\n <td>Pypi</td>\n <td>requirements.txt, setup.py, pyproject.toml</td>\n <td>O</td>\n <td>O</td>\n <td>O</td>\n </tr>\n <tr>\n <td>.NET</td>\n <td>Nuget</td>\n <td>packages.config, obj/project.assets.json</td>\n <td>O</td>\n <td>O</td>\n <td>O</td>\n </tr>\n <tr>\n <td>Kubernetes</td>\n <td>Helm</td>\n <td>Chart.yaml</td>\n <td>O</td>\n <td>X</td>\n <td>X</td>\n </tr>\n <tr>\n <td>Unity</td>\n <td>Unity</td>\n <td>Library/PackageManager/ProjectCache</td>\n <td>O</td>\n <td>O</td>\n <td>X</td>\n </tr>\n <tr>\n <td>Rust</td>\n <td>Cargo</td>\n <td>Cargo.toml</td>\n <td>O</td>\n <td>O</td>\n <td>O</td>\n </tr>\n</tbody>\n</table>\n\n## \ud83d\udc4f Contributing Guide\n\nWe always welcome your contributions.\nPlease see the [CONTRIBUTING guide](https://github.com/fosslight/fosslight_dependency_scanner/blob/main/CONTRIBUTING.md) for how to contribute.\n\n## \ud83d\udcc4 License\n\nCopyright (c) 2020 LG Electronics, Inc.\nFOSSLight Dependency Scanner is licensed under Apache-2.0, as found in the [LICENSE](https://github.com/fosslight/fosslight_dependency_scanner/blob/main/LICENSE) file.\n\n\n",
"bugtrack_url": null,
"license": "Apache-2.0",
"summary": "FOSSLight Dependency Scanner",
"version": "4.1.18",
"project_urls": {
"Download": "https://github.com/fosslight/fosslight_dependency_scanner",
"Homepage": "https://github.com/fosslight/fosslight_dependency_scanner"
},
"split_keywords": [],
"urls": [
{
"comment_text": null,
"digests": {
"blake2b_256": "74d87338aa54d5217067b0d75c4ddeacfd9c592c185733eb86a9e25de1879b86",
"md5": "8994d59f30b055b8200f2b198b45b370",
"sha256": "6dcb0454d14f4338d72046c616f74534a7960efc1f6ec912395a0791b52d4a19"
},
"downloads": -1,
"filename": "fosslight_dependency-4.1.18-py3-none-any.whl",
"has_sig": false,
"md5_digest": "8994d59f30b055b8200f2b198b45b370",
"packagetype": "bdist_wheel",
"python_version": "py3",
"requires_python": null,
"size": 118344,
"upload_time": "2025-07-11T07:28:39",
"upload_time_iso_8601": "2025-07-11T07:28:39.147586Z",
"url": "https://files.pythonhosted.org/packages/74/d8/7338aa54d5217067b0d75c4ddeacfd9c592c185733eb86a9e25de1879b86/fosslight_dependency-4.1.18-py3-none-any.whl",
"yanked": false,
"yanked_reason": null
},
{
"comment_text": null,
"digests": {
"blake2b_256": "73bd9f9cc6c188ce24776791ad71854ab55096938652206f7b67290499511e9e",
"md5": "4af9d58651ee221a6adcd7ca52073b9f",
"sha256": "5a3e52f22c0bb01c1d19bdc48d525c5c84ea84c6fc3d0eca310b56c1450849b5"
},
"downloads": -1,
"filename": "fosslight_dependency-4.1.18.tar.gz",
"has_sig": false,
"md5_digest": "4af9d58651ee221a6adcd7ca52073b9f",
"packagetype": "sdist",
"python_version": "source",
"requires_python": null,
"size": 62773,
"upload_time": "2025-07-11T07:28:40",
"upload_time_iso_8601": "2025-07-11T07:28:40.295298Z",
"url": "https://files.pythonhosted.org/packages/73/bd/9f9cc6c188ce24776791ad71854ab55096938652206f7b67290499511e9e/fosslight_dependency-4.1.18.tar.gz",
"yanked": false,
"yanked_reason": null
}
],
"upload_time": "2025-07-11 07:28:40",
"github": true,
"gitlab": false,
"bitbucket": false,
"codeberg": false,
"github_user": "fosslight",
"github_project": "fosslight_dependency_scanner",
"travis_ci": false,
"coveralls": false,
"github_actions": true,
"requirements": [
{
"name": "openpyxl",
"specs": []
},
{
"name": "beautifulsoup4",
"specs": []
},
{
"name": "lxml",
"specs": []
},
{
"name": "virtualenv",
"specs": []
},
{
"name": "pyyaml",
"specs": []
},
{
"name": "lastversion",
"specs": []
},
{
"name": "fosslight_util",
"specs": [
[
">=",
"2.1.18"
]
]
},
{
"name": "PyGithub",
"specs": []
},
{
"name": "requirements-parser",
"specs": []
},
{
"name": "defusedxml",
"specs": []
},
{
"name": "packageurl-python",
"specs": []
},
{
"name": "igraph",
"specs": []
},
{
"name": "matplotlib",
"specs": []
},
{
"name": "pyaskalono",
"specs": []
}
],
"tox": true,
"lcname": "fosslight-dependency"
}