spdx-tools

v0.8.3

SPDX parser and tools. For more information about how to use this package see README

Latest version published 1 month ago
License: Apache-2.0

Ensure you're using the healthiest python packages

Snyk scans all the packages in your projects for vulnerabilities and provides automated fix advice

Package Health Score

82 / 100

Popularity

Popular
GitHub Stars
186
Forks
134
Contributors
60

Direct Usage Popularity

TOP 30%

Based on project statistics from the GitHub repository for the PyPI package spdx-tools, we found that it has been starred 186 times.

Security

Security review needed
Powered by Snyk
0.8.3 (Latest)

Security and license risk for latest version

Release Date
Sep 30, 2024
Direct Vulnerabilities
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
Indirect Vulnerabilities
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
License Risk
  • 0
    H
  • 0
    M
  • 0
    L
All security vulnerabilities belong to production dependencies of direct and indirect packages.

License
Apache-2.0

Security Policy
No

We found a way for you to contribute to the project! Looks like spdx-tools is missing a security policy.


You can connect your project's repository to Snyk to stay up to date on security alerts and receive automatic fix pull requests.

Keep your project free of vulnerabilities with Snyk

Maintenance

Healthy

Commit Frequency

Open Issues
61
Open PR
12
Last Release
1 month ago
Last Commit
1 month ago

Further analysis of the maintenance status of spdx-tools based on released PyPI versions cadence, the repository activity, and other data points determined that its maintenance is Healthy.

We found that spdx-tools demonstrates a positive version release cadence with at least one new version released in the past 3 months.

As a healthy sign for on-going project maintenance, we found that the GitHub repository had at least 1 pull request or issue interacted with by the community.

Community

Active
Readme
Yes
Contributing.md
Yes
Code of Conduct
No
Contributors
60
Funding
No

With more than 10 contributors for the spdx-tools repository, this is possibly a sign for a growing and inviting community.

We found a way for you to contribute to the project! Looks like spdx-tools is missing a Code of Conduct.


Embed Package Health Score Badge

package health: 82/100 package health 82/100

Package

Python Versions Compatibility
>=3.7

Age
8 years
Latest Release
1 month ago
Dependencies
9 Direct / 16 Total
Versions
25
Maintainers
3
Wheels
OS Independent