Dependency health Explore packages

Explore packages

Find the package you depend on.

Search by name and registry. Open a package for maintenance trends, project details, release and licence history, incident reports and alternatives where available.

i
Search up to 50 package names separated by commas or semicolons, for example express, ast. Each name is matched separately. Pick registries to narrow it, or leave all ecosystems unchecked and every match is listed — django on npm and on PyPI are two rows. A Go module is its import path, like github.com/gorilla/mux. No match? You can ask for the package to be judged.
Search help

Separate package names with commas. Choose ecosystems in the filter menu, or leave them unchecked to include all. Clear filters

Packages assessed · 5,967

Packages with a current assessment.

All assessed packages →
PackageStatusHealthSecurity
libcstpypiactive74 /100
libdbus-syscratesactive89 /100
libflatecratesactive96 /100
libflate_lz77cratesactive95 /100
libfuzzer-syscratescoasting71 /100
libgit2-syscratesactive88 /100
libloadingcratesactive95 /100
libmcratesactive93 /100
libmimalloc-syscratesactive79 /100
librdkafka.redistnugetactive88 /100
libredoxcratesactive71 /100
librocksdb-syscratesactive77 /100
librosapypiactive76 /100
librtpypiactive87 /100
libsqlite3-syscratesactive92 /100
libssh2-syscratesactive95 /100
libtmuxpypiactive70 /100
libz-rs-syscratesactive95 /100
libz-syscratesactive97 /100
license-expressionpypicoasting80 /100
lightgbmpypiactive92 /100
lightningpypiactive86 /100
lightning-utilitiespypiactive98 /100
limitspypiactive68 /100
line-bot-sdkpypiactive85 /100
link-cpluspluscratesactive64 /100
linked-hash-mapcratesfinished20 /100
linkify-it-pypypiactive75 /100
linux-raw-syscratescoasting68 /100
listenrubygemscoasting73 /100
litellmpypiactive91 /100
⚠ Caution
Documented supply-chain incident

Check your installed version against the affected releases. This historical report does not mean every version is compromised.

· JFrog Security Research
Affected versions: 1.82.7 and 1.82.8

Read incident details →
litellm-enterprisepypiactive82 /100
litellm-proxy-extraspypiactive83 /100
litemapcratesactive90 /100
litrscratescoasting56 /100
llama-cloudpypiactive83 /100
llama-cloud-servicespypicoasting76 /100
llama-index-corepypiactive97 /100
llama-index-indices-managed-llama-cloudpypiactive63 /100
llama-index-llms-openaipypiactive63 /100
llama-index-workflowspypiactive63 /100
llama-parsepypicoasting76 /100
llvmlitepypiactive92 /100
lmnrpypiactive63 /100
lmnr-claude-code-proxypypiactive63 /100
loader-runnernpmabandoned10 /100
loader-utilsnpmabandoned10 /100
local-channelcratesactive70 /100
local-wakercratesactive70 /100
lock_apicratesactive78 /100

Repository trendlines

Historical activity for three widely used projects. Open any package to see its own chart.

Checking several dependencies? Check a project →