{"_id":"@elephantseed/auto-depender","_rev":"25-3a6e61e5dfa898b9709094df8f7bb9f2","name":"@elephantseed/auto-depender","dist-tags":{"latest":"0.1.31"},"versions":{"0.1.2":{"name":"@elephantseed/auto-depender","version":"0.1.2","keywords":["security","vulnerability","osv","dependabot","scanner","gradle","maven","npm","offline"],"author":{"url":"https://www.npmjs.com/org/elephantseed","name":"Elephant Seed"},"license":"MIT","_id":"@elephantseed/auto-depender@0.1.2","maintainers":[{"name":"sloppylopez","email":"sloppy@sloppylopez.com"}],"homepage":"https://github.com/elephantseed/auto-depender#readme","bugs":{"url":"https://github.com/elephantseed/auto-depender/issues"},"bin":{"depender-fix":"cli/fix.ts","depender-scan":"cli/scan.ts","auto-depender-fix":"cli/fix.ts","auto-depender-scan":"cli/scan.ts","depender-update-db":"cli/update-db.ts","auto-depender-update-db":"cli/update-db.ts"},"dist":{"shasum":"8f7359d5891a1fffcbd470df468d80c8448359e2","tarball":"https://registry.npmjs.org/@elephantseed/auto-depender/-/auto-depender-0.1.2.tgz","fileCount":23,"integrity":"sha512-QvkKV5Y1p97JD5YGGYqPoJqPlUNQUcbjbesOFMIxRdvX+k3DQ++RyDI3xcV3aeVmbKLeqeQMqU2J8tX7qFEFNg==","signatures":[{"sig":"MEQCIF8ZNKAyXUFhJu8vOvYVKOj93bNvOUrlFTwLDDlI3/ktAiAd8B20PYVRthI/Kw6cySS79bC6rD1V1X5l2iPxfnSUBg==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":159450},"type":"module","engines":{"bun":">=1.0.0"},"exports":{".":"./src/index.ts","./scan":"./src/scan.ts"},"gitHead":"e316a1749b7f533830343b26ab09c42558ac45ba","scripts":{"fix":"bun cli/fix.ts","scan":"bun cli/scan.ts","test":"bun test","typecheck":"bunx tsc --noEmit","update-db":"bun cli/update-db.ts","prepublishOnly":"bun run typecheck"},"_npmUser":{"name":"sloppylopez","email":"sloppy@sloppylopez.com"},"repository":{"url":"git+https://github.com/elephantseed/auto-depender.git","type":"git"},"_npmVersion":"11.13.0","description":"Local offline polyglot dependency vulnerability scanner and auto-fixer (Java, npm, Rust, Python)","directories":{},"_nodeVersion":"24.16.0","dependencies":{"ora":"^9.4.1"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"@types/bun":"^1.1.0","typescript":"^5.7.0","@types/node":"^22.0.0"},"_npmOperationalInternal":{"tmp":"tmp/auto-depender_0.1.2_1783952348944_0.33951610651130815","host":"s3://npm-registry-packages-npm-production"},"deprecated":"Package no longer supported. Contact Support at https://www.npmjs.com/support for more info."},"0.1.3":{"name":"@elephantseed/auto-depender","version":"0.1.3","keywords":["security","vulnerability","osv","dependabot","scanner","gradle","maven","npm","offline"],"author":{"url":"https://www.npmjs.com/org/elephantseed","name":"Elephant Seed"},"license":"MIT","_id":"@elephantseed/auto-depender@0.1.3","maintainers":[{"name":"sloppylopez","email":"sloppy@sloppylopez.com"}],"homepage":"https://github.com/elephantseed/auto-depender#readme","bugs":{"url":"https://github.com/elephantseed/auto-depender/issues"},"bin":{"depender-fix":"cli/fix.ts","depender-scan":"cli/scan.ts","auto-depender-fix":"cli/fix.ts","auto-depender-scan":"cli/scan.ts","depender-update-db":"cli/update-db.ts","auto-depender-update-db":"cli/update-db.ts"},"dist":{"shasum":"7c2612058a3136850b57a9a10e8e6d9c6c2b58e9","tarball":"https://registry.npmjs.org/@elephantseed/auto-depender/-/auto-depender-0.1.3.tgz","fileCount":23,"integrity":"sha512-K5vnr/bBOrb0CoKALfC+9eM4voC5n3rAlao828Q4q1tyFcOx4XbaHBnDBuK37lRd/qhBuATurnUUonYhi6rKqQ==","signatures":[{"sig":"MEUCIQCMSU1srVJqc3yiofk362JLlpay9IiIcl1MvbbnLHZcNQIgUvZvqF1SEOhBgek8Y/4U3OIJhYgv5/DWiW7Qx+g++Q8=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":161336},"type":"module","engines":{"bun":">=1.0.0"},"exports":{".":"./src/index.ts","./scan":"./src/scan.ts"},"gitHead":"dfb2201784ec9fca321e9d1ee6bce784410af870","scripts":{"fix":"bun cli/fix.ts","scan":"bun cli/scan.ts","test":"bun test","typecheck":"bunx tsc --noEmit","update-db":"bun cli/update-db.ts","prepublishOnly":"bun run typecheck"},"_npmUser":{"name":"sloppylopez","email":"sloppy@sloppylopez.com"},"repository":{"url":"git+https://github.com/elephantseed/auto-depender.git","type":"git"},"_npmVersion":"11.13.0","description":"Local offline polyglot dependency vulnerability scanner and auto-fixer (Java, npm, Rust, Python)","directories":{},"_nodeVersion":"24.16.0","dependencies":{"ora":"^9.4.1"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"@types/bun":"^1.1.0","typescript":"^5.7.0","@types/node":"^22.0.0"},"_npmOperationalInternal":{"tmp":"tmp/auto-depender_0.1.3_1783952616052_0.10792184063410049","host":"s3://npm-registry-packages-npm-production"},"deprecated":"Package no longer supported. Contact Support at https://www.npmjs.com/support for more info."},"0.1.4":{"name":"@elephantseed/auto-depender","version":"0.1.4","keywords":["security","vulnerability","osv","dependabot","scanner","gradle","maven","npm","offline"],"author":{"url":"https://www.npmjs.com/org/elephantseed","name":"Elephant Seed"},"license":"MIT","_id":"@elephantseed/auto-depender@0.1.4","maintainers":[{"name":"sloppylopez","email":"sloppy@sloppylopez.com"}],"homepage":"https://github.com/elephantseed/auto-depender#readme","bugs":{"url":"https://github.com/elephantseed/auto-depender/issues"},"bin":{"depender-fix":"cli/fix.ts","depender-scan":"cli/scan.ts","auto-depender-fix":"cli/fix.ts","auto-depender-scan":"cli/scan.ts","depender-update-db":"cli/update-db.ts","auto-depender-update-db":"cli/update-db.ts"},"dist":{"shasum":"187bb6249dee782f09096da6f3705df2550e8d07","tarball":"https://registry.npmjs.org/@elephantseed/auto-depender/-/auto-depender-0.1.4.tgz","fileCount":24,"integrity":"sha512-hQ6QmxrhA2xRJ4tuJKwsHUuOqxQEofhBU8zJ0zSi206RjJS4DJ/Yuc9USAOh+DpOtHjtAlRNgdgb7RcAylebCQ==","signatures":[{"sig":"MEQCIEG1kr4KQWhEkKo7UnnH5pxFxltxOsQIemUtBDI0j1apAiA0IN0UKFOs2q8znGWndjTGltcg7RN8Z2diZ1Ngst5I2g==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":160767},"type":"module","engines":{"bun":">=1.0.0"},"exports":{".":"./src/index.ts","./scan":"./src/scan.ts"},"gitHead":"bfefafcd1964250d26142a986661f43022339d57","scripts":{"fix":"bun cli/fix.ts","scan":"bun cli/scan.ts","test":"bun test","typecheck":"bunx tsc --noEmit","update-db":"bun cli/update-db.ts","prepublishOnly":"bun run typecheck"},"_npmUser":{"name":"sloppylopez","email":"sloppy@sloppylopez.com"},"repository":{"url":"git+https://github.com/elephantseed/auto-depender.git","type":"git"},"_npmVersion":"11.13.0","description":"Local offline polyglot dependency vulnerability scanner and auto-fixer (Java, npm, Rust, Python)","directories":{},"_nodeVersion":"24.16.0","dependencies":{"ora":"^9.4.1"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"@types/bun":"^1.1.0","typescript":"^5.7.0","@types/node":"^22.0.0"},"_npmOperationalInternal":{"tmp":"tmp/auto-depender_0.1.4_1783953063530_0.2728000504740027","host":"s3://npm-registry-packages-npm-production"},"deprecated":"Package no longer supported. Contact Support at https://www.npmjs.com/support for more info."},"0.1.5":{"name":"@elephantseed/auto-depender","version":"0.1.5","keywords":["security","vulnerability","osv","dependabot","scanner","gradle","maven","npm","offline"],"author":{"url":"https://www.npmjs.com/org/elephantseed","name":"Elephant Seed"},"license":"MIT","_id":"@elephantseed/auto-depender@0.1.5","maintainers":[{"name":"sloppylopez","email":"sloppy@sloppylopez.com"}],"homepage":"https://github.com/elephantseed/auto-depender#readme","bugs":{"url":"https://github.com/elephantseed/auto-depender/issues"},"bin":{"depender-fix":"cli/fix.ts","depender-scan":"cli/scan.ts","auto-depender-fix":"cli/fix.ts","auto-depender-scan":"cli/scan.ts","depender-update-db":"cli/update-db.ts","auto-depender-update-db":"cli/update-db.ts"},"dist":{"shasum":"bf2214a5b2f4d891848a4d9537d8cfed755ef025","tarball":"https://registry.npmjs.org/@elephantseed/auto-depender/-/auto-depender-0.1.5.tgz","fileCount":24,"integrity":"sha512-Oa9B0HLnlvP02u+LaZl6j8kjDRTTSuNXpUP+/iln2EIRLrjpRnQeBU1rncBi9zAY7Y1M0vzkL2Qfmm0yS/X5fQ==","signatures":[{"sig":"MEUCIFnWELkdNcokDaoCQ+TyE4+fCnn23NP6CpSPhTmtPUWeAiEAjRgTFss3s0lcqTf4k5AQZXZDnd8+9VO7Qj8v2Tajc9Y=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":160650},"type":"module","engines":{"bun":">=1.0.0"},"exports":{".":"./src/index.ts","./scan":"./src/scan.ts"},"gitHead":"80eb64f31eb22eb1448b8a67680ad44720bf5e5d","scripts":{"fix":"bun cli/fix.ts","scan":"bun cli/scan.ts","test":"bun test","typecheck":"bunx tsc --noEmit","update-db":"bun cli/update-db.ts","prepublishOnly":"bun run typecheck"},"_npmUser":{"name":"sloppylopez","email":"sloppy@sloppylopez.com"},"repository":{"url":"git+https://github.com/elephantseed/auto-depender.git","type":"git"},"_npmVersion":"11.13.0","description":"Local offline polyglot dependency vulnerability scanner and auto-fixer (Java, npm, Rust, Python)","directories":{},"_nodeVersion":"24.16.0","dependencies":{"ora":"^9.4.1"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"@types/bun":"^1.1.0","typescript":"^5.7.0","@types/node":"^22.0.0"},"_npmOperationalInternal":{"tmp":"tmp/auto-depender_0.1.5_1783953197472_0.2583267266745688","host":"s3://npm-registry-packages-npm-production"},"deprecated":"Package no longer supported. Contact Support at https://www.npmjs.com/support for more info."},"0.1.6":{"name":"@elephantseed/auto-depender","version":"0.1.6","keywords":["security","vulnerability","osv","dependabot","scanner","gradle","maven","npm","offline"],"author":{"url":"https://www.npmjs.com/org/elephantseed","name":"Elephant Seed"},"license":"MIT","_id":"@elephantseed/auto-depender@0.1.6","maintainers":[{"name":"sloppylopez","email":"sloppy@sloppylopez.com"}],"homepage":"https://github.com/elephantseed/auto-depender#readme","bugs":{"url":"https://github.com/elephantseed/auto-depender/issues"},"bin":{"depender-fix":"cli/fix.ts","depender-scan":"cli/scan.ts","auto-depender-fix":"cli/fix.ts","auto-depender-scan":"cli/scan.ts","depender-update-db":"cli/update-db.ts","auto-depender-update-db":"cli/update-db.ts"},"dist":{"shasum":"041fd31d7ca2d874f2e3d84921cad9508992b5a6","tarball":"https://registry.npmjs.org/@elephantseed/auto-depender/-/auto-depender-0.1.6.tgz","fileCount":24,"integrity":"sha512-5tSSYAyPfUWN1asE3OtdgJG3F5zV+uxPTo9VHTfKHHhNSIe4xjJX0hvSRLr+19TolsGEs2VvnxOE/ZqofKmyaQ==","signatures":[{"sig":"MEUCIQC9rX7lRMd7V98mlh3ERORNVIAsjbPtxlP0KWhEEo110wIgOWoz5C66NISLWb3skBlrQnFFakd7MLmks2onuWYh5D8=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":160650},"type":"module","engines":{"bun":">=1.0.0"},"exports":{".":"./src/index.ts","./scan":"./src/scan.ts"},"gitHead":"9c9d3f92d6c935b14f0c481a51b73949a9e4a715","scripts":{"fix":"bun cli/fix.ts","scan":"bun cli/scan.ts","test":"bun test","typecheck":"bunx tsc --noEmit","update-db":"bun cli/update-db.ts","prepublishOnly":"bun run typecheck"},"_npmUser":{"name":"sloppylopez","email":"sloppy@sloppylopez.com"},"repository":{"url":"git+https://github.com/elephantseed/auto-depender.git","type":"git"},"_npmVersion":"11.13.0","description":"Local offline polyglot dependency vulnerability scanner and auto-fixer (Java, npm, Rust, Python)","directories":{},"_nodeVersion":"24.16.0","dependencies":{"ora":"^9.4.1"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"@types/bun":"^1.1.0","typescript":"^5.7.0","@types/node":"^22.0.0"},"_npmOperationalInternal":{"tmp":"tmp/auto-depender_0.1.6_1783953301048_0.7173954465977235","host":"s3://npm-registry-packages-npm-production"},"deprecated":"Package no longer supported. Contact Support at https://www.npmjs.com/support for more info."},"0.1.7":{"name":"@elephantseed/auto-depender","version":"0.1.7","keywords":["security","vulnerability","osv","dependabot","scanner","gradle","maven","npm","offline"],"author":{"url":"https://www.npmjs.com/org/elephantseed","name":"Elephant Seed"},"license":"MIT","_id":"@elephantseed/auto-depender@0.1.7","maintainers":[{"name":"sloppylopez","email":"sloppy@sloppylopez.com"}],"homepage":"https://github.com/elephantseed/auto-depender#readme","bugs":{"url":"https://github.com/elephantseed/auto-depender/issues"},"bin":{"depender-fix":"cli/fix.ts","depender-scan":"cli/scan.ts","auto-depender-fix":"cli/fix.ts","auto-depender-scan":"cli/scan.ts","depender-update-db":"cli/update-db.ts","auto-depender-update-db":"cli/update-db.ts"},"dist":{"shasum":"40a9cc3924880791ed6ebdd642a4e788268e4ede","tarball":"https://registry.npmjs.org/@elephantseed/auto-depender/-/auto-depender-0.1.7.tgz","fileCount":25,"integrity":"sha512-YyKdWfrTYTbL6q0qo0HygzAeIqoBVILy1yANzIO1mZGoqdqXkAGWow+pgzKO7UdgBe3jbVuVURgD9cts6xVD5w==","signatures":[{"sig":"MEQCIEn+CZpGlea0AttVh+m14bgkFFz+kjHHzjlHyr/UQRBpAiBmXNK+1xm8b5pq/pzhv/JN6NteRx6hxi2H94h/FD3K6g==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":175862},"type":"module","engines":{"bun":">=1.0.0"},"exports":{".":"./src/index.ts","./scan":"./src/scan.ts"},"gitHead":"fdef0963e2184a1d65146d5869eb7c2f309744ab","scripts":{"fix":"bun cli/fix.ts","scan":"bun cli/scan.ts","test":"bun test","typecheck":"bunx tsc --noEmit","update-db":"bun cli/update-db.ts","prepublishOnly":"bun run typecheck"},"_npmUser":{"name":"sloppylopez","email":"sloppy@sloppylopez.com"},"repository":{"url":"git+https://github.com/elephantseed/auto-depender.git","type":"git"},"_npmVersion":"11.13.0","description":"Local offline polyglot dependency vulnerability scanner and auto-fixer (Java, npm, Rust, Python)","directories":{},"_nodeVersion":"24.16.0","dependencies":{"ora":"^9.4.1"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"@types/bun":"^1.1.0","typescript":"^5.7.0","@types/node":"^22.0.0"},"_npmOperationalInternal":{"tmp":"tmp/auto-depender_0.1.7_1783954632265_0.9465147880564624","host":"s3://npm-registry-packages-npm-production"},"deprecated":"Package no longer supported. Contact Support at https://www.npmjs.com/support for more info."},"0.1.8":{"name":"@elephantseed/auto-depender","version":"0.1.8","keywords":["security","vulnerability","osv","dependabot","scanner","gradle","maven","npm","offline"],"author":{"url":"https://www.npmjs.com/org/elephantseed","name":"Elephant Seed"},"license":"MIT","_id":"@elephantseed/auto-depender@0.1.8","maintainers":[{"name":"sloppylopez","email":"sloppy@sloppylopez.com"}],"homepage":"https://github.com/elephantseed/auto-depender#readme","bugs":{"url":"https://github.com/elephantseed/auto-depender/issues"},"bin":{"depender-fix":"cli/fix.ts","depender-scan":"cli/scan.ts","auto-depender-fix":"cli/fix.ts","auto-depender-scan":"cli/scan.ts","depender-update-db":"cli/update-db.ts","auto-depender-update-db":"cli/update-db.ts"},"dist":{"shasum":"8967b24d700662549ac2ec1161cce508695ae41b","tarball":"https://registry.npmjs.org/@elephantseed/auto-depender/-/auto-depender-0.1.8.tgz","fileCount":25,"integrity":"sha512-mzkV3YJkuciT4ZxAPi59FrvbOjokCpx+Bh8eNuz7u3uNqKl7O1NaS3558VnaTmmlaVf4pMxZizztsQABuTR4eQ==","signatures":[{"sig":"MEYCIQDd2K6Z0KcYpsYMJJzqv2pej1iHrfMAxCHPUcSb+5v2BgIhANK13lTWEzEKICFMn8AWaIzKGgaWurx3Z5WcagdG7vNn","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":177430},"type":"module","engines":{"bun":">=1.0.0"},"exports":{".":"./src/index.ts","./scan":"./src/scan.ts"},"gitHead":"7959e44215d76603afbac997971dc2d27a2a8d73","scripts":{"fix":"bun cli/fix.ts","scan":"bun cli/scan.ts","test":"bun test","typecheck":"bunx tsc --noEmit","update-db":"bun cli/update-db.ts","prepublishOnly":"bun run typecheck"},"_npmUser":{"name":"sloppylopez","email":"sloppy@sloppylopez.com"},"repository":{"url":"git+https://github.com/elephantseed/auto-depender.git","type":"git"},"_npmVersion":"11.13.0","description":"Local offline polyglot dependency vulnerability scanner and auto-fixer (Java, npm, Rust, Python)","directories":{},"_nodeVersion":"24.16.0","dependencies":{"ora":"^9.4.1"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"@types/bun":"^1.1.0","typescript":"^5.7.0","@types/node":"^22.0.0"},"_npmOperationalInternal":{"tmp":"tmp/auto-depender_0.1.8_1783955314487_0.3104100630493529","host":"s3://npm-registry-packages-npm-production"},"deprecated":"Package no longer supported. Contact Support at https://www.npmjs.com/support for more info."},"0.1.9":{"name":"@elephantseed/auto-depender","version":"0.1.9","keywords":["security","vulnerability","osv","dependabot","scanner","gradle","maven","npm","offline"],"author":{"url":"https://www.npmjs.com/org/elephantseed","name":"Elephant Seed"},"license":"MIT","_id":"@elephantseed/auto-depender@0.1.9","maintainers":[{"name":"sloppylopez","email":"sloppy@sloppylopez.com"}],"homepage":"https://github.com/elephantseed/auto-depender#readme","bugs":{"url":"https://github.com/elephantseed/auto-depender/issues"},"bin":{"depender-fix":"cli/fix.ts","depender-scan":"cli/scan.ts","auto-depender-fix":"cli/fix.ts","auto-depender-scan":"cli/scan.ts","depender-update-db":"cli/update-db.ts","auto-depender-update-db":"cli/update-db.ts"},"dist":{"shasum":"5b57aacb7d4b21cb19f58626b16c6887b0abffe9","tarball":"https://registry.npmjs.org/@elephantseed/auto-depender/-/auto-depender-0.1.9.tgz","fileCount":25,"integrity":"sha512-zIa2+E/y4v+llpBBFHqrhD4neXmZrtKMdMZCWELCzJYq1ZyuU44ElXS5nF6/ViNalJ+D+E9sMCWpjek4bTZFIQ==","signatures":[{"sig":"MEUCIEd0pJOQI5Jml9UOYV969nQJ3BU7JRhyWz+M27NH/0U2AiEAwGRxuYC9hoBvSLn5520s1j3TBsZUKaE0IoqyQba2UpQ=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":177430},"type":"module","engines":{"bun":">=1.0.0"},"exports":{".":"./src/index.ts","./scan":"./src/scan.ts"},"gitHead":"8c42e058766dd6caa39f7477374e8b1289420ebc","scripts":{"fix":"bun cli/fix.ts","scan":"bun cli/scan.ts","test":"bun test","typecheck":"bunx tsc --noEmit","update-db":"bun cli/update-db.ts","prepublishOnly":"bun run typecheck"},"_npmUser":{"name":"sloppylopez","email":"sloppy@sloppylopez.com"},"repository":{"url":"git+https://github.com/elephantseed/auto-depender.git","type":"git"},"_npmVersion":"11.13.0","description":"Local offline polyglot dependency vulnerability scanner and auto-fixer (Java, npm, Rust, Python)","directories":{},"_nodeVersion":"24.16.0","dependencies":{"ora":"^9.4.1"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"@types/bun":"^1.1.0","typescript":"^5.7.0","@types/node":"^22.0.0"},"_npmOperationalInternal":{"tmp":"tmp/auto-depender_0.1.9_1783955879508_0.2915573965889888","host":"s3://npm-registry-packages-npm-production"},"deprecated":"Package no longer supported. Contact Support at https://www.npmjs.com/support for more info."},"0.1.10":{"name":"@elephantseed/auto-depender","version":"0.1.10","keywords":["security","vulnerability","osv","dependabot","scanner","gradle","maven","npm","offline"],"author":{"url":"https://www.npmjs.com/org/elephantseed","name":"Elephant Seed"},"license":"MIT","_id":"@elephantseed/auto-depender@0.1.10","maintainers":[{"name":"sloppylopez","email":"sloppy@sloppylopez.com"}],"homepage":"https://github.com/elephantseed/auto-depender#readme","bugs":{"url":"https://github.com/elephantseed/auto-depender/issues"},"bin":{"depender-fix":"cli/fix.ts","depender-scan":"cli/scan.ts","auto-depender-fix":"cli/fix.ts","auto-depender-scan":"cli/scan.ts","depender-update-db":"cli/update-db.ts","auto-depender-update-db":"cli/update-db.ts"},"dist":{"shasum":"ba5acc46255fac2d8817de1cd0406586bfaaa830","tarball":"https://registry.npmjs.org/@elephantseed/auto-depender/-/auto-depender-0.1.10.tgz","fileCount":25,"integrity":"sha512-0ftizSTaTZhjWnQGT9tbuPBeXmvLVXn6GW1P+hZARnPrhBKDrh8jh7oFbYd711yYMn0MwBYDwQVvBsnIxCQbeQ==","signatures":[{"sig":"MEQCICYMW1rwUQKC5yfMYKpH0weZ+s64rD9JeGLuJjHrRb8HAiAsV1cY/2e7Z7UvsPxIXfQmoma9ZpC1fiHO+I4NHICE+A==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":173794},"type":"module","engines":{"bun":">=1.0.0"},"exports":{".":"./src/index.ts","./scan":"./src/scan.ts"},"gitHead":"ef66665a330ad3bece90abd1d0de7c0d64f166b7","scripts":{"fix":"bun cli/fix.ts","scan":"bun cli/scan.ts","test":"bun test","typecheck":"bunx tsc --noEmit","update-db":"bun cli/update-db.ts","prepublishOnly":"bun run typecheck"},"_npmUser":{"name":"sloppylopez","email":"sloppy@sloppylopez.com"},"repository":{"url":"git+https://github.com/elephantseed/auto-depender.git","type":"git"},"_npmVersion":"11.13.0","description":"Local offline polyglot dependency vulnerability scanner and auto-fixer (Java, npm, Rust, Python)","directories":{},"_nodeVersion":"24.16.0","dependencies":{"ora":"^9.4.1"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"@types/bun":"^1.1.0","typescript":"^5.7.0","@types/node":"^22.0.0"},"_npmOperationalInternal":{"tmp":"tmp/auto-depender_0.1.10_1783956059308_0.9731522245631277","host":"s3://npm-registry-packages-npm-production"},"deprecated":"Package no longer supported. Contact Support at https://www.npmjs.com/support for more info."},"0.1.11":{"name":"@elephantseed/auto-depender","version":"0.1.11","keywords":["security","vulnerability","osv","dependabot","scanner","gradle","maven","npm","offline"],"author":{"url":"https://www.npmjs.com/org/elephantseed","name":"Elephant Seed"},"license":"MIT","_id":"@elephantseed/auto-depender@0.1.11","maintainers":[{"name":"sloppylopez","email":"sloppy@sloppylopez.com"}],"homepage":"https://github.com/elephantseed/auto-depender#readme","bugs":{"url":"https://github.com/elephantseed/auto-depender/issues"},"bin":{"fix":"cli/fix.ts","scan":"cli/scan.ts","update-db":"cli/update-db.ts","depender-fix":"cli/fix.ts","depender-scan":"cli/scan.ts","auto-depender-fix":"cli/fix.ts","auto-depender-scan":"cli/scan.ts","depender-update-db":"cli/update-db.ts","auto-depender-update-db":"cli/update-db.ts"},"dist":{"shasum":"eba21df2e6e739f431813b3c34fb3d1f4a08ec97","tarball":"https://registry.npmjs.org/@elephantseed/auto-depender/-/auto-depender-0.1.11.tgz","fileCount":25,"integrity":"sha512-sWt9ls1MBsv1esVtWRQnyomM/hmL8gWKBzU0cG0OlO7WLwiGK7V6UhIu+MKs6/HY5CDJt9oxCqDQpZeB+n/Zag==","signatures":[{"sig":"MEUCIBQC6BmLXAZODeqA0qV7UYufvTE57jZO0AYxTdSWtm8fAiEAjA/if4Vj1ecRFe8vnq3cW2SjA6aj3T+m3OSd+R0zPXI=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":173469},"type":"module","engines":{"bun":">=1.0.0"},"exports":{".":"./src/index.ts","./scan":"./src/scan.ts"},"gitHead":"4edbddd1103cb42183504f93176c65b017158a89","scripts":{"fix":"bun cli/fix.ts","scan":"bun cli/scan.ts","test":"bun test","typecheck":"bunx tsc --noEmit","update-db":"bun cli/update-db.ts","prepublishOnly":"bun run typecheck"},"_npmUser":{"name":"sloppylopez","email":"sloppy@sloppylopez.com"},"repository":{"url":"git+https://github.com/elephantseed/auto-depender.git","type":"git"},"_npmVersion":"11.13.0","description":"Local offline polyglot dependency vulnerability scanner and auto-fixer (Java, npm, Rust, Python)","directories":{},"_nodeVersion":"24.16.0","dependencies":{"ora":"^9.4.1"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"@types/bun":"^1.1.0","typescript":"^5.7.0","@types/node":"^22.0.0"},"_npmOperationalInternal":{"tmp":"tmp/auto-depender_0.1.11_1783956274516_0.0775794221737851","host":"s3://npm-registry-packages-npm-production"},"deprecated":"Package no longer supported. Contact Support at https://www.npmjs.com/support for more info."},"0.1.12":{"name":"@elephantseed/auto-depender","version":"0.1.12","keywords":["security","vulnerability","osv","dependabot","scanner","gradle","maven","npm","offline"],"author":{"url":"https://www.npmjs.com/org/elephantseed","name":"Elephant Seed"},"license":"MIT","_id":"@elephantseed/auto-depender@0.1.12","maintainers":[{"name":"sloppylopez","email":"sloppy@sloppylopez.com"}],"homepage":"https://github.com/elephantseed/auto-depender#readme","bugs":{"url":"https://github.com/elephantseed/auto-depender/issues"},"bin":{"fix":"cli/fix.ts","scan":"cli/scan.ts","update-db":"cli/update-db.ts","depender-fix":"cli/fix.ts","depender-scan":"cli/scan.ts","auto-depender-fix":"cli/fix.ts","auto-depender-scan":"cli/scan.ts","depender-update-db":"cli/update-db.ts","auto-depender-update-db":"cli/update-db.ts"},"dist":{"shasum":"4455902c9c5fa370ca1f5783e2065210be1e09bc","tarball":"https://registry.npmjs.org/@elephantseed/auto-depender/-/auto-depender-0.1.12.tgz","fileCount":25,"integrity":"sha512-Yy9kqsnHmnHKMxRVQ30AvSOmf7rGDFgOR526Sr2IKj9QziBVU7TaSvWFiqYdGi5oOxdPeF8fIK8c7R9rHjr3kA==","signatures":[{"sig":"MEUCIGKxh3g+ophRpPFJ/2TTpoxbx4ZlQ3UUTutN7sVG2jWsAiEAwhycBhikcFJ8fZ+5Lzjq2QGOAGIHpT4Z5pjJfJFw790=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":172239},"type":"module","engines":{"bun":">=1.0.0"},"exports":{".":"./src/index.ts","./scan":"./src/scan.ts"},"gitHead":"ed684456a36e0c9436fbcd8b60abb5973380eb07","scripts":{"fix":"bun cli/fix.ts","scan":"bun cli/scan.ts","test":"bun test","typecheck":"bunx tsc --noEmit","update-db":"bun cli/update-db.ts","prepublishOnly":"bun run typecheck"},"_npmUser":{"name":"sloppylopez","email":"sloppy@sloppylopez.com"},"repository":{"url":"git+https://github.com/elephantseed/auto-depender.git","type":"git"},"_npmVersion":"11.13.0","description":"Local offline polyglot dependency vulnerability scanner and auto-fixer (Java, npm, Rust, Python)","directories":{},"_nodeVersion":"24.16.0","dependencies":{"ora":"^9.4.1"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"@types/bun":"^1.1.0","typescript":"^5.7.0","@types/node":"^22.0.0"},"_npmOperationalInternal":{"tmp":"tmp/auto-depender_0.1.12_1783957024534_0.3099065211281582","host":"s3://npm-registry-packages-npm-production"},"deprecated":"Package no longer supported. Contact Support at https://www.npmjs.com/support for more info."},"0.1.13":{"name":"@elephantseed/auto-depender","version":"0.1.13","keywords":["security","vulnerability","osv","dependabot","scanner","gradle","maven","npm","offline"],"author":{"url":"https://www.npmjs.com/org/elephantseed","name":"Elephant Seed"},"license":"MIT","_id":"@elephantseed/auto-depender@0.1.13","maintainers":[{"name":"sloppylopez","email":"sloppy@sloppylopez.com"}],"homepage":"https://github.com/elephantseed/auto-depender#readme","bugs":{"url":"https://github.com/elephantseed/auto-depender/issues"},"bin":{"fix":"cli/fix.ts","scan":"cli/scan.ts","update-db":"cli/update-db.ts","depender-fix":"cli/fix.ts","depender-scan":"cli/scan.ts","auto-depender-fix":"cli/fix.ts","auto-depender-scan":"cli/scan.ts","depender-update-db":"cli/update-db.ts","auto-depender-update-db":"cli/update-db.ts"},"dist":{"shasum":"8c8c3747a580eadc3a9a5391efac2c97a348800f","tarball":"https://registry.npmjs.org/@elephantseed/auto-depender/-/auto-depender-0.1.13.tgz","fileCount":26,"integrity":"sha512-hkkdt1a8Zuoew1VcUPVdogrTTZSaiTe3i9/eFs/6DPIjnnQOM4l6xkTpl9R8gU4MWkz2CKCQcafj963Rr0YGgg==","signatures":[{"sig":"MEYCIQDMuSdU3gp/xYs55TLdN3b38rRq+LvSJ6+9oqrU1TQ+zAIhAPcWmnXSxe674qmBGXNcjmEIsRETeokRzNJAe14TFUMt","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":175359},"type":"module","engines":{"bun":">=1.0.0"},"exports":{".":"./src/index.ts","./scan":"./src/scan.ts"},"gitHead":"c155bec3f3eb628ec5eed04a52d83bcbd7266072","scripts":{"fix":"bun cli/fix.ts","scan":"bun cli/scan.ts","test":"bun test","typecheck":"bunx tsc --noEmit","update-db":"bun cli/update-db.ts","prepublishOnly":"bun run typecheck"},"_npmUser":{"name":"sloppylopez","email":"sloppy@sloppylopez.com"},"repository":{"url":"git+https://github.com/elephantseed/auto-depender.git","type":"git"},"_npmVersion":"11.13.0","description":"Local offline polyglot dependency vulnerability scanner and auto-fixer (Java, npm, Rust, Python)","directories":{},"_nodeVersion":"24.16.0","dependencies":{"ora":"^9.4.1"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"@types/bun":"^1.1.0","typescript":"^5.7.0","@types/node":"^22.0.0"},"_npmOperationalInternal":{"tmp":"tmp/auto-depender_0.1.13_1783958056537_0.5492272555993651","host":"s3://npm-registry-packages-npm-production"},"deprecated":"Package no longer supported. Contact Support at https://www.npmjs.com/support for more info."},"0.1.14":{"name":"@elephantseed/auto-depender","version":"0.1.14","keywords":["security","vulnerability","osv","dependabot","scanner","gradle","maven","npm","offline"],"author":{"url":"https://www.npmjs.com/org/elephantseed","name":"Elephant Seed"},"license":"MIT","_id":"@elephantseed/auto-depender@0.1.14","maintainers":[{"name":"sloppylopez","email":"sloppy@sloppylopez.com"}],"homepage":"https://github.com/elephantseed/auto-depender#readme","bugs":{"url":"https://github.com/elephantseed/auto-depender/issues"},"bin":{"fix":"cli/fix.ts","scan":"cli/scan.ts","update-db":"cli/update-db.ts","depender-fix":"cli/fix.ts","depender-scan":"cli/scan.ts","auto-depender-fix":"cli/fix.ts","auto-depender-scan":"cli/scan.ts","depender-update-db":"cli/update-db.ts","auto-depender-update-db":"cli/update-db.ts"},"dist":{"shasum":"031e59fb67adec626e40ab120d5ec34cfe99c734","tarball":"https://registry.npmjs.org/@elephantseed/auto-depender/-/auto-depender-0.1.14.tgz","fileCount":27,"integrity":"sha512-GIJzUxDEkmSyqBkBnUlSga+c+NpVidywSmLYNwmOKGySyx5l/mLmsE1JDGIv8UK4WlMx5vg9K74wHX24cVV5fQ==","signatures":[{"sig":"MEQCIHe9gZu+tTZtlwR8bOWx1ZMvsP8tK7QslQ85G3K+5YYVAiB4EzpAbzq4lh6RAe/UflRUN/eLqInKDsvujtI6x8cDjg==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":177610},"type":"module","engines":{"bun":">=1.0.0"},"exports":{".":"./src/index.ts","./scan":"./src/scan.ts"},"gitHead":"07c52ad43184f588f40a08f7f0c754fe9e6e2357","scripts":{"fix":"bun cli/fix.ts","scan":"bun cli/scan.ts","test":"bun test","typecheck":"bunx tsc --noEmit","update-db":"bun cli/update-db.ts","prepublishOnly":"bun run typecheck"},"_npmUser":{"name":"sloppylopez","email":"sloppy@sloppylopez.com"},"repository":{"url":"git+https://github.com/elephantseed/auto-depender.git","type":"git"},"_npmVersion":"11.13.0","description":"Local offline polyglot dependency vulnerability scanner and auto-fixer (Java, npm, Rust, Python)","directories":{},"_nodeVersion":"24.16.0","dependencies":{"ora":"^9.4.1"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"@types/bun":"^1.1.0","typescript":"^5.7.0","@types/node":"^22.0.0"},"_npmOperationalInternal":{"tmp":"tmp/auto-depender_0.1.14_1783958317193_0.34091671492584474","host":"s3://npm-registry-packages-npm-production"},"deprecated":"Package no longer supported. Contact Support at https://www.npmjs.com/support for more info."},"0.1.15":{"name":"@elephantseed/auto-depender","version":"0.1.15","keywords":["security","vulnerability","osv","dependabot","scanner","gradle","maven","npm","offline"],"author":{"url":"https://www.npmjs.com/org/elephantseed","name":"Elephant Seed"},"license":"MIT","_id":"@elephantseed/auto-depender@0.1.15","maintainers":[{"name":"sloppylopez","email":"sloppy@sloppylopez.com"}],"homepage":"https://github.com/elephantseed/auto-depender#readme","bugs":{"url":"https://github.com/elephantseed/auto-depender/issues"},"bin":{"fix":"cli/fix.ts","scan":"cli/scan.ts","update-db":"cli/update-db.ts","depender-fix":"cli/fix.ts","depender-scan":"cli/scan.ts","auto-depender-fix":"cli/fix.ts","auto-depender-scan":"cli/scan.ts","depender-update-db":"cli/update-db.ts","auto-depender-update-db":"cli/update-db.ts"},"dist":{"shasum":"afd817f7daacb1b5dfbe51f0924b3c3ba34e44c5","tarball":"https://registry.npmjs.org/@elephantseed/auto-depender/-/auto-depender-0.1.15.tgz","fileCount":27,"integrity":"sha512-l1/0x/sWZhj7rPjcG83Cv9mBzhfkeWqe9pMiyDAF6j7uLK/h65qHRc8yKnMl8Mo53qH5PJijO4QGopJNS9+4DQ==","signatures":[{"sig":"MEUCIQC0mm+kURruMPVp61rDWuMqwVA5c7hENK+NokmMxRBcCAIgUZR0LVP890yYFTH1SEZWV3FDoCX91pPkm4FCxJQGOXk=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":184009},"type":"module","engines":{"bun":">=1.0.0"},"exports":{".":"./src/index.ts","./scan":"./src/scan.ts"},"gitHead":"d36d22eeafac8707f81cb216831c8a8f41b64945","scripts":{"fix":"bun cli/fix.ts","scan":"bun cli/scan.ts","test":"bun test","typecheck":"bunx tsc --noEmit","update-db":"bun cli/update-db.ts","prepublishOnly":"bun run typecheck"},"_npmUser":{"name":"sloppylopez","email":"sloppy@sloppylopez.com"},"repository":{"url":"git+https://github.com/elephantseed/auto-depender.git","type":"git"},"_npmVersion":"11.13.0","description":"Local offline polyglot dependency vulnerability scanner and auto-fixer (Java, npm, Rust, Python)","directories":{},"_nodeVersion":"24.16.0","dependencies":{"ora":"^9.4.1"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"@types/bun":"^1.1.0","typescript":"^5.7.0","@types/node":"^22.0.0"},"_npmOperationalInternal":{"tmp":"tmp/auto-depender_0.1.15_1783958554809_0.694760884411505","host":"s3://npm-registry-packages-npm-production"},"deprecated":"Package no longer supported. Contact Support at https://www.npmjs.com/support for more info."},"0.1.17":{"name":"@elephantseed/auto-depender","version":"0.1.17","keywords":["security","vulnerability","osv","dependabot","scanner","gradle","maven","npm","offline"],"author":{"url":"https://www.npmjs.com/org/elephantseed","name":"Elephant Seed"},"license":"MIT","_id":"@elephantseed/auto-depender@0.1.17","maintainers":[{"name":"sloppylopez","email":"sloppy@sloppylopez.com"}],"homepage":"https://github.com/elephantseed/auto-depender#readme","bugs":{"url":"https://github.com/elephantseed/auto-depender/issues"},"bin":{"fix":"cli/fix.ts","scan":"cli/scan.ts","update-db":"cli/update-db.ts","depender-fix":"cli/fix.ts","depender-scan":"cli/scan.ts","auto-depender-fix":"cli/fix.ts","auto-depender-scan":"cli/scan.ts","depender-update-db":"cli/update-db.ts","auto-depender-update-db":"cli/update-db.ts"},"dist":{"shasum":"7f442a92a7118ffde19fbaad88e76eddfeb98ff5","tarball":"https://registry.npmjs.org/@elephantseed/auto-depender/-/auto-depender-0.1.17.tgz","fileCount":28,"integrity":"sha512-4HQThxs+61H8aqr3OYdUVrpvpsMTCBlh2NrKGNVuHj6dJt9vWuhHVeD26AHx/+2IbnU1E+fOztI2P8siHSqB0Q==","signatures":[{"sig":"MEUCIQCi3ff52+t9QqkXECrZhJyOFFU+3556gPUIv+Luii9TbQIgDtB2BE7EPfPj0GOMcr5/R7wBFQVMgAm9Na/uu1wyi7o=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":194603},"type":"module","engines":{"bun":">=1.0.0"},"exports":{".":"./src/index.ts","./scan":"./src/scan.ts"},"gitHead":"beb9bbf03e556cf69926474e90052e9bcd6baeb0","scripts":{"fix":"bun cli/fix.ts","scan":"bun cli/scan.ts","test":"bun test","typecheck":"bunx tsc --noEmit","update-db":"bun cli/update-db.ts","prepublishOnly":"bun run typecheck"},"_npmUser":{"name":"sloppylopez","email":"sloppy@sloppylopez.com"},"repository":{"url":"git+https://github.com/elephantseed/auto-depender.git","type":"git"},"_npmVersion":"11.13.0","description":"Local offline polyglot dependency vulnerability scanner and auto-fixer (Java, npm, Rust, Python)","directories":{},"_nodeVersion":"24.16.0","dependencies":{"ora":"^9.4.1"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"@types/bun":"^1.1.0","typescript":"^5.7.0","@types/node":"^22.0.0"},"_npmOperationalInternal":{"tmp":"tmp/auto-depender_0.1.17_1783959163143_0.21740294410448535","host":"s3://npm-registry-packages-npm-production"},"deprecated":"Package no longer supported. Contact Support at https://www.npmjs.com/support for more info."},"0.1.18":{"name":"@elephantseed/auto-depender","version":"0.1.18","keywords":["security","vulnerability","osv","dependabot","scanner","gradle","maven","npm","offline"],"author":{"url":"https://www.npmjs.com/org/elephantseed","name":"Elephant Seed"},"license":"MIT","_id":"@elephantseed/auto-depender@0.1.18","maintainers":[{"name":"sloppylopez","email":"sloppy@sloppylopez.com"}],"homepage":"https://github.com/elephantseed/auto-depender#readme","bugs":{"url":"https://github.com/elephantseed/auto-depender/issues"},"bin":{"fix":"cli/fix.ts","scan":"cli/scan.ts","update-db":"cli/update-db.ts","depender-fix":"cli/fix.ts","depender-scan":"cli/scan.ts","auto-depender-fix":"cli/fix.ts","auto-depender-scan":"cli/scan.ts","depender-update-db":"cli/update-db.ts","auto-depender-update-db":"cli/update-db.ts"},"dist":{"shasum":"ddb662758d6c2adcf3c609744dfea720e58950f2","tarball":"https://registry.npmjs.org/@elephantseed/auto-depender/-/auto-depender-0.1.18.tgz","fileCount":28,"integrity":"sha512-91yEKKEa4ZjwtC6sLMePYy+Z/oOsDi2n3e8Q9xf9zhKJd2lplOeYhVY2EVU8lPxSL2AvmFveh4bBgacFwkUxrA==","signatures":[{"sig":"MEQCIAEMgEolU2g2NrrWG/Op/PEDdVX2ToIfhhA8ii5L4vbbAiAVmp9tIpmiHPytqd5aPoyIGss6ncTih2e4FZZHIHoOkw==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":195419},"type":"module","engines":{"bun":">=1.0.0"},"exports":{".":"./src/index.ts","./scan":"./src/scan.ts"},"gitHead":"cb7187ee2a3af0a832db35d8a2312e3d49ca71a8","scripts":{"fix":"bun cli/fix.ts","scan":"bun cli/scan.ts","test":"bun test","typecheck":"bunx tsc --noEmit","update-db":"bun cli/update-db.ts","prepublishOnly":"bun run typecheck"},"_npmUser":{"name":"sloppylopez","email":"sloppy@sloppylopez.com"},"repository":{"url":"git+https://github.com/elephantseed/auto-depender.git","type":"git"},"_npmVersion":"11.13.0","description":"Local offline polyglot dependency vulnerability scanner and auto-fixer (Java, npm, Rust, Python)","directories":{},"_nodeVersion":"24.16.0","dependencies":{"ora":"^9.4.1"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"@types/bun":"^1.1.0","typescript":"^5.7.0","@types/node":"^22.0.0"},"_npmOperationalInternal":{"tmp":"tmp/auto-depender_0.1.18_1783959573992_0.5386398284662144","host":"s3://npm-registry-packages-npm-production"},"deprecated":"Package no longer supported. Contact Support at https://www.npmjs.com/support for more info."},"0.1.19":{"name":"@elephantseed/auto-depender","version":"0.1.19","keywords":["security","vulnerability","osv","dependabot","scanner","gradle","maven","npm","offline"],"author":{"url":"https://www.npmjs.com/org/elephantseed","name":"Elephant Seed"},"license":"MIT","_id":"@elephantseed/auto-depender@0.1.19","maintainers":[{"name":"sloppylopez","email":"sloppy@sloppylopez.com"}],"homepage":"https://github.com/elephantseed/auto-depender#readme","bugs":{"url":"https://github.com/elephantseed/auto-depender/issues"},"bin":{"fix":"cli/fix.ts","scan":"cli/scan.ts","update-db":"cli/update-db.ts","depender-fix":"cli/fix.ts","depender-scan":"cli/scan.ts","auto-depender-fix":"cli/fix.ts","auto-depender-scan":"cli/scan.ts","depender-update-db":"cli/update-db.ts","auto-depender-update-db":"cli/update-db.ts"},"dist":{"shasum":"36e3f46ce87ef907687906924b6925d0b4b36bc2","tarball":"https://registry.npmjs.org/@elephantseed/auto-depender/-/auto-depender-0.1.19.tgz","fileCount":28,"integrity":"sha512-GSgBoFKKCQTBpgKE/hZev9lkarpkaryFyhLYveJBq+Td59+7TyJdHapHN7lAKE1/WIIGjgVXH2tyemRSPF2gtw==","signatures":[{"sig":"MEUCIGbeX9cSdaXxMY0d8UszhOzbHSMRC7eFhvR395yRiS4DAiEA3zlDE1oOV76T4ZxlMoqjb1EGb5OHYdnmBGPWBD76wfo=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":197365},"type":"module","engines":{"bun":">=1.0.0"},"exports":{".":"./src/index.ts","./scan":"./src/scan.ts"},"gitHead":"1f8f1d7a91b0601940b284251b49bae0a17e0349","scripts":{"fix":"bun cli/fix.ts","scan":"bun cli/scan.ts","test":"bun test","typecheck":"bunx tsc --noEmit","update-db":"bun cli/update-db.ts","prepublishOnly":"bun run typecheck"},"_npmUser":{"name":"sloppylopez","email":"sloppy@sloppylopez.com"},"repository":{"url":"git+https://github.com/elephantseed/auto-depender.git","type":"git"},"_npmVersion":"11.13.0","description":"Local offline polyglot dependency vulnerability scanner and auto-fixer (Java, npm, Rust, Python)","directories":{},"_nodeVersion":"24.16.0","dependencies":{"ora":"^9.4.1"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"@types/bun":"^1.1.0","typescript":"^5.7.0","@types/node":"^22.0.0"},"_npmOperationalInternal":{"tmp":"tmp/auto-depender_0.1.19_1783960198163_0.07303485300424195","host":"s3://npm-registry-packages-npm-production"},"deprecated":"Package no longer supported. Contact Support at https://www.npmjs.com/support for more info."},"0.1.20":{"name":"@elephantseed/auto-depender","version":"0.1.20","keywords":["security","vulnerability","osv","dependabot","scanner","gradle","maven","npm","offline"],"author":{"url":"https://www.npmjs.com/org/elephantseed","name":"Elephant Seed"},"license":"MIT","_id":"@elephantseed/auto-depender@0.1.20","maintainers":[{"name":"sloppylopez","email":"sloppy@sloppylopez.com"}],"homepage":"https://github.com/elephantseed/auto-depender#readme","bugs":{"url":"https://github.com/elephantseed/auto-depender/issues"},"bin":{"fix":"cli/fix.ts","scan":"cli/scan.ts","update-db":"cli/update-db.ts","depender-fix":"cli/fix.ts","depender-scan":"cli/scan.ts","auto-depender-fix":"cli/fix.ts","auto-depender-scan":"cli/scan.ts","depender-update-db":"cli/update-db.ts","auto-depender-update-db":"cli/update-db.ts"},"dist":{"shasum":"3396f8b12d2313794aecac9f3a199dd2bff1ecce","tarball":"https://registry.npmjs.org/@elephantseed/auto-depender/-/auto-depender-0.1.20.tgz","fileCount":29,"integrity":"sha512-oRUr+0zkj0JU97EToUkb/2ReJQMsbR7u7I02yGVlUNyX+W0aBGlQ+wj4bPb7Q6WCtHNDiJPpjZWVaq3uYQOMGQ==","signatures":[{"sig":"MEUCIQC5PyVXau+rVuvumYHgxzXR2Qas/qoU/aT2tbpJlNd/qQIgcNZzgPav2sSix5gLi+seay6UdL0XcsGqA+DQpqQoe9A=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":203912},"type":"module","engines":{"bun":">=1.0.0"},"exports":{".":"./src/index.ts","./scan":"./src/scan.ts"},"gitHead":"fb52a73cc04616088889ca995bf1fbf9f8afbe0c","scripts":{"fix":"bun cli/fix.ts","scan":"bun cli/scan.ts","test":"bun test","typecheck":"bunx tsc --noEmit","update-db":"bun cli/update-db.ts","prepublishOnly":"bun run typecheck"},"_npmUser":{"name":"sloppylopez","email":"sloppy@sloppylopez.com"},"repository":{"url":"git+https://github.com/elephantseed/auto-depender.git","type":"git"},"_npmVersion":"11.13.0","description":"Local offline polyglot dependency vulnerability scanner and auto-fixer (Java, npm, Rust, Python)","directories":{},"_nodeVersion":"24.16.0","dependencies":{"ora":"^9.4.1"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"@types/bun":"^1.1.0","typescript":"^5.7.0","@types/node":"^22.0.0"},"_npmOperationalInternal":{"tmp":"tmp/auto-depender_0.1.20_1783960751654_0.11771670763970854","host":"s3://npm-registry-packages-npm-production"},"deprecated":"Package no longer supported. Contact Support at https://www.npmjs.com/support for more info."},"0.1.21":{"name":"@elephantseed/auto-depender","version":"0.1.21","keywords":["security","vulnerability","osv","dependabot","scanner","gradle","maven","npm","offline"],"author":{"url":"https://www.npmjs.com/org/elephantseed","name":"Elephant Seed"},"license":"MIT","_id":"@elephantseed/auto-depender@0.1.21","maintainers":[{"name":"sloppylopez","email":"sloppy@sloppylopez.com"}],"homepage":"https://github.com/elephantseed/auto-depender#readme","bugs":{"url":"https://github.com/elephantseed/auto-depender/issues"},"bin":{"fix":"cli/fix.ts","scan":"cli/scan.ts","update-db":"cli/update-db.ts","depender-fix":"cli/fix.ts","depender-scan":"cli/scan.ts","auto-depender-fix":"cli/fix.ts","auto-depender-scan":"cli/scan.ts","depender-update-db":"cli/update-db.ts","auto-depender-update-db":"cli/update-db.ts"},"dist":{"shasum":"6ce808f36033f2c476685c6ca2f5def6623f1150","tarball":"https://registry.npmjs.org/@elephantseed/auto-depender/-/auto-depender-0.1.21.tgz","fileCount":29,"integrity":"sha512-Bu8FMAHTUHxc3mF1ogF1bK1BeYE8sDYjGYZIUqPe6fSomuP1EtB2jlVetDPM16AlX/E236EDEW44j+EgFqEOcg==","signatures":[{"sig":"MEUCIAMPep0YCJbiJsELtZ8Z34IYFtG4z5GCZwdCkGRhHAP0AiEA6yt5Xrq33G0g3+qgMzalW89qxoKsH/nCKkjzsy8smSU=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":207341},"type":"module","engines":{"bun":">=1.0.0"},"exports":{".":"./src/index.ts","./scan":"./src/scan.ts"},"gitHead":"355ebe231853f3d7fd9baa5eeeb1adf36fc21189","scripts":{"fix":"bun cli/fix.ts","scan":"bun cli/scan.ts","test":"bun test","typecheck":"bunx tsc --noEmit","update-db":"bun cli/update-db.ts","prepublishOnly":"bun run typecheck"},"_npmUser":{"name":"sloppylopez","email":"sloppy@sloppylopez.com"},"repository":{"url":"git+https://github.com/elephantseed/auto-depender.git","type":"git"},"_npmVersion":"11.13.0","description":"Local offline polyglot dependency vulnerability scanner and auto-fixer (Java, npm, Rust, Python)","directories":{},"_nodeVersion":"24.16.0","dependencies":{"ora":"^9.4.1"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"@types/bun":"^1.1.0","typescript":"^5.7.0","@types/node":"^22.0.0"},"_npmOperationalInternal":{"tmp":"tmp/auto-depender_0.1.21_1783962023429_0.9745064440973359","host":"s3://npm-registry-packages-npm-production"},"deprecated":"Package no longer supported. Contact Support at https://www.npmjs.com/support for more info."},"0.1.23":{"name":"@elephantseed/auto-depender","version":"0.1.23","keywords":["security","vulnerability","osv","dependabot","scanner","gradle","maven","npm","offline"],"author":{"url":"https://www.npmjs.com/org/elephantseed","name":"Elephant Seed"},"license":"MIT","_id":"@elephantseed/auto-depender@0.1.23","maintainers":[{"name":"sloppylopez","email":"sloppy@sloppylopez.com"}],"homepage":"https://github.com/elephantseed/auto-depender#readme","bugs":{"url":"https://github.com/elephantseed/auto-depender/issues"},"bin":{"fix":"cli/fix.ts","scan":"cli/scan.ts","update-db":"cli/update-db.ts","depender-fix":"cli/fix.ts","depender-scan":"cli/scan.ts","auto-depender-fix":"cli/fix.ts","auto-depender-scan":"cli/scan.ts","depender-update-db":"cli/update-db.ts","auto-depender-update-db":"cli/update-db.ts"},"dist":{"shasum":"3aba3f5cfed41d51f2d2f039acbf87f7154dbe4a","tarball":"https://registry.npmjs.org/@elephantseed/auto-depender/-/auto-depender-0.1.23.tgz","fileCount":29,"integrity":"sha512-NiXrtroePaDyczQVLMEcFQ7l8lGp4DAdV9IF9f1o5M/qfl171EVUWU+tLKHcaHCaBv4szqxKMqKKbl6pvTNrvQ==","signatures":[{"sig":"MEQCIDAjSW64nb/2uWMWfetapdEXbj3BFPkVTb0HTHal0F6KAiBHlYdfjI9aexhjWvuVOWz0G0xAxVO0N3Eea9zQIJ1lRA==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":208924},"type":"module","engines":{"bun":">=1.0.0"},"exports":{".":"./src/index.ts","./scan":"./src/scan.ts"},"gitHead":"873adf1ee3cbbc903c67e02c15676c124ce9faf2","scripts":{"fix":"bun cli/fix.ts","scan":"bun cli/scan.ts","test":"bun test","typecheck":"bunx tsc --noEmit","update-db":"bun cli/update-db.ts","prepublishOnly":"bun run typecheck"},"_npmUser":{"name":"sloppylopez","email":"sloppy@sloppylopez.com"},"repository":{"url":"git+https://github.com/elephantseed/auto-depender.git","type":"git"},"_npmVersion":"11.13.0","description":"Local offline polyglot dependency vulnerability scanner and auto-fixer (Java, npm, Rust, Python)","directories":{},"_nodeVersion":"24.16.0","dependencies":{"ora":"^9.4.1"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"@types/bun":"^1.1.0","typescript":"^5.7.0","@types/node":"^22.0.0"},"_npmOperationalInternal":{"tmp":"tmp/auto-depender_0.1.23_1784019202521_0.28535655953866157","host":"s3://npm-registry-packages-npm-production"},"deprecated":"Package no longer supported. Contact Support at https://www.npmjs.com/support for more info."},"0.1.24":{"name":"@elephantseed/auto-depender","version":"0.1.24","keywords":["security","vulnerability","osv","dependabot","scanner","gradle","maven","npm","offline"],"author":{"url":"https://www.npmjs.com/org/elephantseed","name":"Elephant Seed"},"license":"MIT","_id":"@elephantseed/auto-depender@0.1.24","maintainers":[{"name":"sloppylopez","email":"sloppy@sloppylopez.com"}],"homepage":"https://github.com/elephantseed/auto-depender#readme","bugs":{"url":"https://github.com/elephantseed/auto-depender/issues"},"bin":{"fix":"cli/fix.ts","scan":"cli/scan.ts","update-db":"cli/update-db.ts","depender-fix":"cli/fix.ts","depender-scan":"cli/scan.ts","auto-depender-fix":"cli/fix.ts","auto-depender-scan":"cli/scan.ts","depender-update-db":"cli/update-db.ts","auto-depender-update-db":"cli/update-db.ts"},"dist":{"shasum":"cd46f09bc9ac5fd9c7258163459ddd374cae5ba8","tarball":"https://registry.npmjs.org/@elephantseed/auto-depender/-/auto-depender-0.1.24.tgz","fileCount":29,"integrity":"sha512-uZSEKhg7zOrwk1yR22AAx0f4VZgSGd2AxpvncAbL7Ilt6rrHAzZNYbpp3dJbobsyVir2bdwrMuXVh3gT+guRwQ==","signatures":[{"sig":"MEQCIDJwsVL4n7tr7OBkiIijeCisvGcrWhxdX1mMyqqgPwCxAiAtOeJIRKZUq7HZ6um4ENCNgj3kspObEoxQER+g6LdAaA==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":209628},"type":"module","engines":{"bun":">=1.0.0"},"exports":{".":"./src/index.ts","./scan":"./src/scan.ts"},"gitHead":"eca9b77035e775f4178bf3b52199130c530d8adf","scripts":{"fix":"bun cli/fix.ts","scan":"bun cli/scan.ts","test":"bun test","typecheck":"bunx tsc --noEmit","update-db":"bun cli/update-db.ts","prepublishOnly":"bun run typecheck"},"_npmUser":{"name":"sloppylopez","email":"sloppy@sloppylopez.com"},"repository":{"url":"git+https://github.com/elephantseed/auto-depender.git","type":"git"},"_npmVersion":"11.13.0","description":"Local offline polyglot dependency vulnerability scanner and auto-fixer (Java, npm, Rust, Python)","directories":{},"_nodeVersion":"24.16.0","dependencies":{"ora":"^9.4.1"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"@types/bun":"^1.1.0","typescript":"^5.7.0","@types/node":"^22.0.0"},"_npmOperationalInternal":{"tmp":"tmp/auto-depender_0.1.24_1784020253791_0.1631354744781437","host":"s3://npm-registry-packages-npm-production"},"deprecated":"Package no longer supported. Contact Support at https://www.npmjs.com/support for more info."},"0.1.25":{"name":"@elephantseed/auto-depender","version":"0.1.25","keywords":["security","vulnerability","osv","dependabot","scanner","gradle","maven","npm","offline"],"author":{"url":"https://www.npmjs.com/org/elephantseed","name":"Elephant Seed"},"license":"MIT","_id":"@elephantseed/auto-depender@0.1.25","maintainers":[{"name":"sloppylopez","email":"sloppy@sloppylopez.com"}],"homepage":"https://github.com/elephantseed/auto-depender#readme","bugs":{"url":"https://github.com/elephantseed/auto-depender/issues"},"bin":{"fix":"cli/fix.ts","scan":"cli/scan.ts","update-db":"cli/update-db.ts","depender-fix":"cli/fix.ts","depender-scan":"cli/scan.ts","auto-depender-fix":"cli/fix.ts","auto-depender-scan":"cli/scan.ts","depender-update-db":"cli/update-db.ts","auto-depender-update-db":"cli/update-db.ts"},"dist":{"shasum":"94b52b6549fc3a974768cc1dd9ed3c46a369e6d6","tarball":"https://registry.npmjs.org/@elephantseed/auto-depender/-/auto-depender-0.1.25.tgz","fileCount":30,"integrity":"sha512-ZbWUDnDRsW42qHaNiQwLBfKls71ZdKbAbMDGzeMCO/brO399B4Lxfilg4pUndYVtyIMFa3CIOVASZsIhMlCWPA==","signatures":[{"sig":"MEYCIQCVzzVdGb1BiCyshLZIwJGqFx7OPjlVEHo8AlNS+JdS9AIhAPQq+ByCCEyeMJ1BWyXloMhKIsGtaXmunByTqOrsZhrq","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":220529},"type":"module","engines":{"bun":">=1.0.0"},"exports":{".":"./src/index.ts","./scan":"./src/scan.ts"},"gitHead":"1ce0a6e15853080140e994e02da948064a8eaab9","scripts":{"fix":"bun cli/fix.ts","scan":"bun cli/scan.ts","test":"bun test","typecheck":"bunx tsc --noEmit","update-db":"bun cli/update-db.ts","prepublishOnly":"bun run typecheck"},"_npmUser":{"name":"sloppylopez","email":"sloppy@sloppylopez.com"},"repository":{"url":"git+https://github.com/elephantseed/auto-depender.git","type":"git"},"_npmVersion":"11.13.0","description":"Local offline polyglot dependency vulnerability scanner and auto-fixer (Java, npm, Rust, Python)","directories":{},"_nodeVersion":"24.16.0","dependencies":{"ora":"^9.4.1"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"@types/bun":"^1.1.0","typescript":"^5.7.0","@types/node":"^22.0.0"},"_npmOperationalInternal":{"tmp":"tmp/auto-depender_0.1.25_1784023219587_0.38859992762926265","host":"s3://npm-registry-packages-npm-production"},"deprecated":"Package no longer supported. Contact Support at https://www.npmjs.com/support for more info."},"0.1.27":{"name":"@elephantseed/auto-depender","version":"0.1.27","keywords":["security","vulnerability","osv","dependabot","scanner","gradle","maven","npm","offline"],"author":{"url":"https://www.npmjs.com/org/elephantseed","name":"Elephant Seed"},"license":"MIT","_id":"@elephantseed/auto-depender@0.1.27","maintainers":[{"name":"sloppylopez","email":"sloppy@sloppylopez.com"}],"homepage":"https://github.com/elephantseed/auto-depender#readme","bugs":{"url":"https://github.com/elephantseed/auto-depender/issues"},"bin":{"fix":"cli/fix.ts","scan":"cli/scan.ts","update-db":"cli/update-db.ts","depender-fix":"cli/fix.ts","depender-scan":"cli/scan.ts","auto-depender-fix":"cli/fix.ts","auto-depender-scan":"cli/scan.ts","depender-update-db":"cli/update-db.ts","auto-depender-update-db":"cli/update-db.ts"},"dist":{"shasum":"54f479ea26c65f315bdf2efb4e0f8f6339089fdf","tarball":"https://registry.npmjs.org/@elephantseed/auto-depender/-/auto-depender-0.1.27.tgz","fileCount":30,"integrity":"sha512-uudwvP6TG9qfl42EAORX9dYwM/fNuqvc8Vu7i8ENgbVewa6Fjk2CfFQ/bcBi/P3ZPxBKuW+885bjvPcDSIUjTw==","signatures":[{"sig":"MEQCID7wDI2faIp2z9kHvL18fPAFokGFMHYSZIFStjhabM7TAiAu4V79iLzF5+65gWzAg53B6RU7uTY6szeGBdtA33fhHg==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":224051},"type":"module","engines":{"bun":">=1.0.0"},"exports":{".":"./src/index.ts","./scan":"./src/scan.ts"},"gitHead":"20c68fac59a8b8cfe43139ef63fe9ea2908edbf3","scripts":{"fix":"bun cli/fix.ts","scan":"bun cli/scan.ts","test":"bun test","typecheck":"bunx tsc --noEmit","update-db":"bun cli/update-db.ts","prepublishOnly":"bun run typecheck"},"_npmUser":{"name":"sloppylopez","email":"sloppy@sloppylopez.com"},"repository":{"url":"git+https://github.com/elephantseed/auto-depender.git","type":"git"},"_npmVersion":"11.13.0","description":"Local offline polyglot dependency vulnerability scanner and auto-fixer (Java, npm, Rust, Python)","directories":{},"_nodeVersion":"24.16.0","dependencies":{"ora":"^9.4.1"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"@types/bun":"^1.1.0","typescript":"^5.7.0","@types/node":"^22.0.0"},"_npmOperationalInternal":{"tmp":"tmp/auto-depender_0.1.27_1784023731148_0.839471334836174","host":"s3://npm-registry-packages-npm-production"},"deprecated":"Package no longer supported. Contact Support at https://www.npmjs.com/support for more info."},"0.1.31":{"name":"@elephantseed/auto-depender","version":"0.1.31","keywords":["security","vulnerability","osv","dependabot","scanner","gradle","maven","npm","offline"],"author":{"url":"https://www.npmjs.com/org/elephantseed","name":"Elephant Seed"},"license":"MIT","_id":"@elephantseed/auto-depender@0.1.31","maintainers":[{"name":"sloppylopez","email":"sloppy@sloppylopez.com"}],"homepage":"https://github.com/elephantseed/auto-depender#readme","bugs":{"url":"https://github.com/elephantseed/auto-depender/issues"},"bin":{"fix":"cli/fix.ts","scan":"cli/scan.ts","update-db":"cli/update-db.ts","depender-fix":"cli/fix.ts","depender-scan":"cli/scan.ts","auto-depender-fix":"cli/fix.ts","auto-depender-scan":"cli/scan.ts","depender-update-db":"cli/update-db.ts","auto-depender-update-db":"cli/update-db.ts"},"dist":{"shasum":"8b96ccc0fc9aab50e02dcc6714074727897386d1","tarball":"https://registry.npmjs.org/@elephantseed/auto-depender/-/auto-depender-0.1.31.tgz","fileCount":37,"integrity":"sha512-5TdeSI0jKeqpdQRgwJueXGfRpOAstvnGE70sO3JHISmB57zx4ma5PH4GDSNapcPHcseE33cwnEmifxDqsNunLA==","signatures":[{"sig":"MEYCIQDQ2P/CYNdHEQZ9LD3ZB2vnA/EoD7U5ZwN0zQrxIC200wIhAPdMJEUxpLrh1AtK1LRziX8JqiSQqpK70MzTu0c/Snd4","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":266753},"type":"module","engines":{"bun":">=1.0.0"},"exports":{".":"./src/index.ts","./scan":"./src/scan.ts"},"gitHead":"b88ec3957b0925423c9728d7f2c7033d979ce826","scripts":{"fix":"bun cli/fix.ts","scan":"bun cli/scan.ts","test":"bun test","typecheck":"bunx tsc --noEmit","update-db":"bun cli/update-db.ts","prepublishOnly":"bun run typecheck"},"_npmUser":{"name":"sloppylopez","email":"sloppy@sloppylopez.com"},"repository":{"url":"git+https://github.com/elephantseed/auto-depender.git","type":"git"},"_npmVersion":"11.13.0","description":"Local offline polyglot dependency vulnerability scanner and auto-fixer (Java, npm, Rust, Python)","directories":{},"_nodeVersion":"24.16.0","dependencies":{"ora":"^9.4.1"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"@types/bun":"^1.1.0","typescript":"^5.7.0","@types/node":"^22.0.0"},"_npmOperationalInternal":{"tmp":"tmp/auto-depender_0.1.31_1784028084044_0.5437685604549978","host":"s3://npm-registry-packages-npm-production"},"deprecated":"Package no longer supported. Contact Support at https://www.npmjs.com/support for more info."}},"time":{"created":"2026-07-13T14:19:08.745Z","modified":"2026-07-17T12:50:10.481Z","0.1.2":"2026-07-13T14:19:09.107Z","0.1.3":"2026-07-13T14:23:36.192Z","0.1.4":"2026-07-13T14:31:03.678Z","0.1.5":"2026-07-13T14:33:17.620Z","0.1.6":"2026-07-13T14:35:01.193Z","0.1.7":"2026-07-13T14:57:12.401Z","0.1.8":"2026-07-13T15:08:34.614Z","0.1.9":"2026-07-13T15:17:59.659Z","0.1.10":"2026-07-13T15:20:59.445Z","0.1.11":"2026-07-13T15:24:34.665Z","0.1.12":"2026-07-13T15:37:04.694Z","0.1.13":"2026-07-13T15:54:16.675Z","0.1.14":"2026-07-13T15:58:37.352Z","0.1.15":"2026-07-13T16:02:34.937Z","0.1.17":"2026-07-13T16:12:43.290Z","0.1.18":"2026-07-13T16:19:34.145Z","0.1.19":"2026-07-13T16:29:58.303Z","0.1.20":"2026-07-13T16:39:11.789Z","0.1.21":"2026-07-13T17:00:23.634Z","0.1.23":"2026-07-14T08:53:22.664Z","0.1.24":"2026-07-14T09:10:53.920Z","0.1.25":"2026-07-14T10:00:19.718Z","0.1.27":"2026-07-14T10:08:51.280Z","0.1.31":"2026-07-14T11:21:24.236Z"},"bugs":{"url":"https://github.com/elephantseed/auto-depender/issues"},"author":{"url":"https://www.npmjs.com/org/elephantseed","name":"Elephant Seed"},"license":"MIT","homepage":"https://github.com/elephantseed/auto-depender#readme","keywords":["security","vulnerability","osv","dependabot","scanner","gradle","maven","npm","offline"],"repository":{"url":"git+https://github.com/elephantseed/auto-depender.git","type":"git"},"description":"Local offline polyglot dependency vulnerability scanner and auto-fixer (Java, npm, Rust, Python)","maintainers":[{"name":"sloppylopez","email":"sloppy@sloppylopez.com"}],"readme":"# Auto-Depender\n\n**Local-first polyglot dependency scanner & auto-fixer.** Scans npm, Rust, Python, and Java projects for vulnerabilities using the [OSV (Open Source Vulnerabilities)](https://osv.dev/) database — no LLM, no API keys, no cloud after initial download. Runs offline once cached.\n\n[![License: MIT](https://img.shields.io/badge/License-MIT-blue.svg)](LICENSE)\n[![Bun](https://img.shields.io/badge/Requires-Bun%20%E2%89%A51.0-brightgreen)](https://bun.sh)\n\n---\n\n## At a Glance\n\n| Feature | Detail |\n|---------|--------|\n| **What it does** | Finds vulnerable dependencies → proposes minimal version bumps → edits your manifest files |\n| **How it knows** | Downloads GitHub's OSV advisory database (~few MB per ecosystem, gzipped) and keeps it cached locally |\n| **Where data lives** | `.auto-depender/db/osv/` in your current working directory — never leaves your machine |\n| **Network needed?** | First scan downloads OSV cache (~7 day TTL). Each scan also queries the live OSV API for fresh advisories unless you pass `--offline` |\n| **LLM involved?** | No. Fixed versions come directly from OSV advisory metadata |\n\n---\n\n## How It Works\n\n```\n┌─────────────────────────────────────────────────────────────────────┐\n│                              SCAN FLOW                              │\n├─────────────────────────────────────────────────────────────────────┤\n│                                                                     │\n│  Lockfile scanner                                                   │\n│        │                                                            │\n│        ▼                                                            │\n│  Parse packages (pure TS)  -->  PackageRef[]                        │\n│        │                                                            │\n│        ▼                                                            │\n│  Detect ecosystems (npm / pypi / maven / gradle)                    │\n│        │                                                            │\n│        ▼                                                            │\n│  .auto-depender/db/osv/                                             │\n│    cache miss  -->  download OSV zip from GCS (gzip)                │\n│    cache hit   -->  read local advisory JSON                        │\n│    stale       -->  update-db                                       │\n│        │                                                            │\n│        ▼                                                            │\n│  AdvisoryEntry[]                                                    │\n│        │                                                            │\n│        ▼                                                            │\n│  MATCH ENGINE (matcher.ts)                                          │\n│    Maven: compareMavenVersion + matchesMavenRange                   │\n│    PyPI:  comparePEP440 + matchesPEP440Range                        │\n│    npm/Rust: semver ranges                                          │\n│        │                                                            │\n│        ▼                                                            │\n│  Finding[] sorted by severity                                       │\n│        │                                                            │\n│        ▼                                                            │\n│  REPORTER (reporter.ts)                                             │\n│    --format markdown | json                                         │\n└─────────────────────────────────────────────────────────────────────┘\n\n\n┌─────────────────────────────────────────────────────────────────────┐\n│                              FIX FLOW                               │\n├─────────────────────────────────────────────────────────────────────┤\n│                                                                     │\n│  Finding[]                                                          │\n│        │                                                            │\n│        ▼                                                            │\n│  buildFixPlan() (fixer.ts)                                          │\n│    group by package, pick minimal fix version                       │\n│    detectMavenRenames() — OSV + known group migrations              │\n│        │                                                            │\n│        ▼                                                            │\n│  FixPlan: fixable | unfixable | renames                             │\n│    expandRenameBundle() — sibling coords in same migration cluster  │\n│    health warnings — mixed groups, risky managed constraints        │\n│        │                                                            │\n│        ▼                                                            │\n│  Gates: major (--allow-major) | rename (--allow-renames)            │\n│  --yolo: loop apply until clean (combine with gates as needed)      │\n│    dry-run shows plan; TTY prompts; CI skips risky                  │\n│        │                                                            │\n│        ▼                                                            │\n│  MANIFEST EDITORS                                                   │\n│    gradle-editor / pom-editor / npm-editor                          │\n│    cargo-editor / python-editor                                     │\n│    backup .auto-depender-bak before edit                            │\n└─────────────────────────────────────────────────────────────────────┘\n```\n\n---\n\n## Install & Quick Start\n\n| | |\n|---|---|\n| **Package** | `@elephantseed/auto-depender` |\n| **Commands** | `scan`, `fix`, `update-db` |\n\nBins ship **inside** the package — not separate npm packages. Use `bunx` or `npx` with `--package`. **Both require [Bun](https://bun.sh) installed** — bins are `#!/usr/bin/env bun` TypeScript, not precompiled Node binaries.\n\n```bash\nbunx --package @elephantseed/auto-depender scan -- ./my-project\n```\n\n(`npx --package @elephantseed/auto-depender …` works the same **if Bun is on PATH**.)\n\n**More examples** (each line is a full command):\n\n```bash\nbunx --package @elephantseed/auto-depender scan -- ./my-project --ecosystem=npm\nbunx --package @elephantseed/auto-depender scan -- ./my-project --format=json\nbunx --package @elephantseed/auto-depender fix -- ./my-project --dry-run\nbunx --package @elephantseed/auto-depender fix -- ./my-project --apply\nbunx --package @elephantseed/auto-depender fix -- ./my-project --yolo --allow-renames\nbunx --package @elephantseed/auto-depender fix -- ./my-project --apply --allow-major --allow-renames --allow-source-migrations\nbunx --package @elephantseed/auto-depender update-db\n```\n\nWindows:\n\n```powershell\nbunx --package @elephantseed/auto-depender scan -- C:\\dev\\code\\my-app\nbunx --package @elephantseed/auto-depender fix -- C:\\dev\\code\\my-app --dry-run\nbunx --package @elephantseed/auto-depender fix -- C:\\dev\\code\\my-app --yolo --allow-renames\n```\n\n**Local install** (optional):\n\n```bash\nbun add -d @elephantseed/auto-depender\n```\n\n```json\n{\n  \"scripts\": {\n    \"security:scan\": \"scan\",\n    \"security:fix\": \"fix\",\n    \"security:update-db\": \"update-db\"\n  }\n}\n```\n\n```bash\nbun run security:scan -- .\nbun run security:fix -- . --dry-run\n```\n\n`fix --dry-run` shows planned bumps/renames. `fix --apply` backs up manifests (`.auto-depender-bak`), edits files, re-scans; restores backup on failure. **Fix re-scans use `runtimeClasspath` only** (not test deps) to keep yolo loops faster — use `scan` for full runtime+test coverage.\n\n`fix --yolo` implies `--apply` and loops re-scan/apply for **same-package bumps** until clean or stalled (default cap: 10 passes). Majors, coordinate renames, and source migrations still need `--allow-major`, `--allow-renames`, and `--allow-source-migrations` when dry-run shows them. On pass 2+, YOLO does not re-prompt — flags only. Exits **non-zero** if vulnerabilities remain.\n\n**npm / Rust:** re-scans overlay direct deps from `package.json` / `Cargo.toml` onto the lockfile tree so bump loops progress without `npm install`. Transitive-only fixes still need a lock refresh after.\n\nAfter large **coordinate migrations**, later passes may pin transitive deps via managed constraints. Results are deterministic for a fixed OSV cache and resolved dependency tree; live OSV API refreshes or Gradle re-resolve can surface new findings mid-run.\n\n**YOLO is still wet behind the ears** — mixed classpaths, coordinate migrations, and Gradle managed blocks can still stall. Stall messages now say if `--allow-major` or `--allow-renames` blocked progress. Prefer `--dry-run` first; run your build/test suite after.\n\n### Coordinate migrations\n\nSome CVE fixes move to **new Maven coordinates** (new `group:artifact`), not just a higher version. When OSV lists both a **same-major patch** (e.g. Jackson `2.21.4` → `2.21.5`) and a **coordinate migration** (Jackson 3), fix prefers the patch unless you pass `--allow-renames`.\n\n| Ecosystem | Manifest rename | Source rewrite |\n|-----------|-----------------|----------------|\n| Maven / Gradle | Yes (`--allow-renames`) | Java import prefixes (`--allow-source-migrations`) |\n| npm | Yes when OSV lists rename | JS/TS import/require strings |\n| pypi | Yes when OSV lists rename | Python import/from lines |\n| crates.io | Yes when OSV lists rename | Rust use statements |\n\n- **Scan** warns when old and new groups from the same migration both appear on the classpath.\n- **Fix** can rename coords (`--allow-renames`), bundles siblings in the same migration cluster, and prints **health warnings** (mixed groups, managed-block excludes, platform pins that should be plugin/BOM bumps).\n- **Jackson 3** (`com.fasterxml.jackson.core` → `tools.jackson.core`): fix auto-adds global excludes for legacy `com.fasterxml.jackson.core` artifacts and pins `tools.jackson` constraints for transitives.\n- **Source migrations (opt-in):** `--allow-renames` updates dependency declarations only. `--allow-source-migrations` applies known source rewrite rules from migration clusters (Java import prefixes for Jackson today). Dry-run shows **Planned source migrations**. Does **not** migrate full API breaking changes — only known import paths.\n- **Jackson annotations:** Jackson 3 still uses `com.fasterxml.jackson.core:jackson-annotations` **2.x** on the classpath for `@Json*` — the tool does not exclude or rename that artifact.\n- **Scan clean ≠ ship ready** — after coordinate migrations, health warnings may still mention mixed groups or managed excludes. Always run `gradlew build` / `mvn verify` and your test suite before merge; scan only reflects the resolved tree at scan time.\n\n`--allow-java-imports` is deprecated; use `--allow-source-migrations`.\n\nExample dry-run output (Jackson is one real migration; others work the same way):\n\n```\n# Auto-Depender Gradle Fix Report\n\n## Planned renames (1)\n\n| From | To | Version | Advisories |\n|------|----|---------|------------|\n| com.fasterxml.jackson.core:jackson-databind | tools.jackson.core:jackson-databind | 3.1.4 | GHSA-5jmj-h7xm-6q6v |\n\n## Health warnings (2)\n\n- Mixed Maven coordinates during migration: com.fasterxml.jackson.core and tools.jackson.core both on classpath — align related artifacts.\n- org.springframework.boot:spring-boot bump to 3.5.14 will likely become a managed constraint — bump platform plugin/BOM instead when possible.\n```\n\n---\n\n## CLI Reference\n\nPrefix: `bunx --package @elephantseed/auto-depender` (or `npx --package …`). Examples below show `<command>` only.\n\n### `scan`\n\nScan a project for dependency vulnerabilities.\n\n```\nscan [path] [options]\n```\n\n| Option | Default | Description |\n|--------|---------|-------------|\n| `[path]` | `.` | Directory containing lockfiles |\n| `--format=markdown\\|json` | `markdown` | Output format |\n| `--ecosystem=<name>` | *(all)* | Filter: `npm`, `crates.io`, `pypi`, `maven`, `gradle` (Gradle = deps from `build.gradle` via `gradlew`) |\n\n**Gradle scan scope:** `runtimeClasspath` + `testRuntimeClasspath` via `gradlew dependencies` (285 pkgs typical Spring app). Not scanned: Gradle plugin classpath, custom configs (e.g. `jaxb` in applied scripts), `annotationProcessor` deps. **`fix --yolo`** uses `runtimeClasspath` only (215 pkgs) — use plain `scan` for full coverage.\n| `--offline` | false | Skip live OSV API; use cached advisory DB only |\n\n**Exit codes:**\n- `0` — Clean (no vulnerabilities found)\n- `1` — Vulnerabilities detected\n- `2` — Error (invalid path, network failure)\n\n**Example outputs:**\n\nMarkdown (default):\n```\nScanning: /home/user/my-project\nEcosystems: NPM, MAVEN\nTotal packages: 147\n\nMatching against 8,432 advisory entries...\n\n🚨 5 vulnerabilities found\n\nCRITICAL (2)\n┌───────────────────────────┬───────────┬─────────┬──────────────────────────┐\n│ Package                   │ Version   │ Severity│ Summary                  │\n├───────────────────────────┼───────────┼─────────┼──────────────────────────┤\n│ com.google.guava:guava    │ 31.1.0    │ Critical│ Multiple CVEs in Guava   │\n│                           │           │         │ Fixed: 32.0, 33.0        │\n│ requests@2.28.0           │ 2.28.0    │ Critical│ CVE-202X-XXXXX           │\n│                           │           │         │ Fixed: 2.31.0, 2.32.0    │\n└───────────────────────────┴───────────┴─────────┴──────────────────────────┘\n\nHIGH (2)\n┌───────────────────────────┬───────────┬─────────┬──────────────────────────┐\n│ Package                   │ Version   │ Severity│ Summary                  │\n├───────────────────────────┼───────────┼─────────┼──────────────────────────┤\n│ org.apache.commons:commons│ 3.14.0    │ High    │ Integer overflow         │\n│   -lang                   │           │         │ Fixed: 3.15.0            │\n│ tokio@1.34.0              │ 1.34.0    │ High    │ Race condition in timer  │\n│                           │           │         │ Fixed: 1.35.0            │\n└───────────────────────────┴───────────┴─────────┴──────────────────────────┘\n```\n\nJSON (`--format=json`):\n```json\n[\n  {\n    \"id\": \"GHSA-xxxx\",\n    \"packageName\": \"com.google.guava:guava\",\n    \"installedVersion\": \"31.1.0\",\n    \"fixedVersions\": [\"32.0.0\", \"33.0.0\"],\n    \"severity\": \"CRITICAL\",\n    \"summary\": \"Multiple CVEs in Guava\",\n    \"aliases\": [\"CVE-2024-1234\"]\n  }\n]\n```\n\n### `fix`\n\nPropose and apply version bumps to fix vulnerabilities.\n\n```\nfix [path] [options]\n```\n\n| Option | Default | Description |\n|--------|---------|-------------|\n| `[path]` | `.` | Project directory |\n| `--dry-run` | false | Show plan without modifying files |\n| `--apply` | false | Write changes to manifest files |\n| `--yolo` | false | Implies `--apply`; bump loop until clean or stalled (`--max-iterations` default 10). Exits 1 if not clean. **Experimental** |\n| `--allow-major` | false | Skip interactive prompts for major bumps |\n| `--allow-renames` | false | Skip prompts for Maven coordinate renames (group:artifact migrations from OSV / known group moves) |\n| `--allow-source-migrations` | false | Apply known source rewrites for applied rename clusters (Java, JS/TS, Python, Rust) |\n| `--ecosystem=<name>` | *(all)* | Limit to one ecosystem |\n| `--max-iterations=N` | `5` (`10` with `--yolo`) | Safety cap on apply re-scan loops |\n| `--exclude=group:pkg` | *(none)* | Packages to skip (repeatable) |\n| `--offline` | false | Skip live OSV API during re-scans |\n| `--format=markdown\\|json` | `markdown` | Output format |\n\n**Safety guarantees:**\n- Backup created before any edit (`.auto-depender-bak`; skipped if backup already exists for that file)\n- Restored automatically on apply failure or uncaught error\n- Backup discarded after successful full resolution\n- Dry-run mode does not write manifests\n\n**CI note:** non-TTY environments skip interactive prompts. Use `fix --apply` (or `--yolo`) explicitly — `fix` alone in CI only prints the plan and exits.\n\n### `update-db`\n\nDownload or refresh the OSV advisory databases.\n\n```\nupdate-db [--ecosystem=<name>]\n```\n\n| Option | Default | Description |\n|--------|---------|-------------|\n| `--ecosystem=<name>` | *(all)* | Refresh only one ecosystem's DB |\n\n**What happens:**\n1. Checks local `.auto-depender/db/osv/` for existing caches\n2. For each missing/expired cache: downloads from GitHub's advisory-database\n3. Stores as gzip-compressed JSON (~few MB per ecosystem)\n4. Falls back to cached data if download fails (never breaks your workflow)\n\n---\n\n## Supported Ecosystems\n\n| Ecosystem | Scanned Lockfile(s) | Auto-Fix Manifest(s) | Transitive Resolution |\n|-----------|---------------------|----------------------|----------------------|\n| **npm** | `package-lock.json` (v1/v2/v3) | `package.json` | Built-in (lockfile has full tree) |\n| **Rust** | `Cargo.lock` | `Cargo.toml` | Built-in (lockfile has full tree) |\n| **Python** | `requirements.txt`, `poetry.lock` | `requirements.txt`, `pyproject.toml` | Built-in (lockfile has full tree) |\n| **Java (Maven)** | `pom.xml` | `pom.xml` | Via `mvn dependency:tree` (requires `mvn`/`mvnw` on PATH) |\n| **Java (Gradle)** | `build.gradle` | `build.gradle` | Via `gradlew dependencies` (requires `gradlew` present) |\n\n**Not supported yet:** `build.gradle.kts`, `libs.versions.toml`, Gradle version catalogs. Use `build.gradle` or `pom.xml` workflows.\n\n### Deduplication rules\n\nWhen multiple manifests exist in the same directory:\n- `poetry.lock` + `requirements.txt` → poetry.lock wins (authoritative)\n- `pom.xml` + `build.gradle` → pom.xml wins (more structured)\n- Different ecosystems → all scanned independently\n\n---\n\n## Programmatic API\n\nUse auto-depender as a library in your own tools:\n\n```ts\nimport {\n  runAutoDependerScan,\n  buildFixPlan,\n  reportMarkdown,\n} from \"@elephantseed/auto-depender\";\n\n// Scan\nconst result = await runAutoDependerScan(\"/path/to/project\");\nconsole.log(`Found ${result.findings.length} vulnerabilities`);\nconsole.log(reportMarkdown(result.findings));\n\n// Build fix plan\nconst plan = buildFixPlan(result.findings);\nplan.fixable.forEach(c => {\n  console.log(\n    `${c.packageName}: ${c.installedVersion} → ${c.targetVersion}`\n  );\n});\n\n// Filter by ecosystem\nconst npmOnly = await runAutoDependerScan(\"/path/to/project\", {\n  ecosystemFilter: \"npm\",\n});\n```\n\n### Available exports\n\n| Module | Exports |\n|--------|---------|\n| **scan** | `runAutoDependerScan()`, `loadAdvisoriesForEcosystem()`, `readCacheFile()` |\n| **fixer** | `buildFixPlan(findings[])` → `{ fixable[], unfixable[] }` |\n| **matcher** | `matchVulnerabilities(packages[], advisories[])` → `Finding[]` |\n| **reporter** | `reportMarkdown()`, `reportJson()`, `reportSummary()` |\n| **editors** | `applyNpmBumps()`, `applyCargoBumps()`, `applyMavenBumps()`, etc. |\n| **types** | `Finding`, `PackageRef`, `FixCandidate`, `FixPlan` |\n\n---\n\n## Cache Architecture\n\n```\n.auto-depender/\n└── db/\n    └── osv/\n        ├── NPM.json.gz          ← ~2MB compressed\n        ├── CRATES.IO.json.gz    ← ~1.5MB compressed\n        ├── PyPI.json.gz         ← ~1MB compressed\n        └── Maven.json.gz        ← ~3MB compressed\n```\n\n- **Location:** Always under current working directory\n- **Format:** Gzip-compressed JSON arrays of OSV advisory entries\n- **TTL:** 7 days (configurable via `CACHE_TTL_MS` constant)\n- **Fallback strategy:** Stale cache > no cache. If download fails, uses whatever is cached\n- **Disk usage:** ~8MB total across all four ecosystems\n\n---\n\n## CI Integration\n\nThe tool returns non-zero exit codes on findings, making it ideal for CI gates:\n\n```yaml\n# GitHub Actions — scan gate (needs Bun)\n- uses: oven-sh/setup-bun@v2\n- name: Check dependencies\n  run: bunx --package @elephantseed/auto-depender scan -- . --format=json\n\n# Apply fixes in CI (non-TTY — must pass --apply)\n- name: Apply security fixes\n  run: bunx --package @elephantseed/auto-depender fix -- . --apply --allow-major\n```\n\nOr pipe JSON into custom logic:\n\n```bash\nbunx --package @elephantseed/auto-depender scan -- . --format=json | \\\n  jq '[.[] | select(.severity == \"CRITICAL\")] | length'\n```\n\n---\n\n## Security Model\n\n- **No telemetry** — nothing is sent from your machine\n- **No LLM** — fixed versions come directly from OSV metadata\n- **No credentials** — reads from the public [GitHub Advisory Database](https://github.com/github/advisory-database)\n- **Backups first** — every edit creates a `.auto-depender-bak` (legacy `.depender-bak` still restored)\n- **Deterministic** — given the same lockfile + advisory DB, output is identical\n\n---\n\n## FAQ\n\n**Q: `bunx scan` returns 404**  \nA: The published package is `@elephantseed/auto-depender`. Use `bunx --package @elephantseed/auto-depender scan -- <path>` (see **Install & Quick Start**).\n\n**Q: Why Bun?**  \nA: Bun's native TypeScript execution means zero compilation step. The package ships `.ts` source directly (no bundling). It also gives us access to Bun's fast `fetch` and `fs` APIs out of the box.\n\n**Q: Can I use this with Node.js?**  \nA: Install [Bun](https://bun.sh). Bins are Bun TypeScript scripts — `npx`/`bunx` invoke them via Bun, not plain Node.\n\n**Q: How does this differ from Dependabot / Renovate?**  \nA: Those are PR-driven bots that live in your repo. This is a local CLI/library you run on demand — useful for pre-commit checks, CI gates, or ad-hoc auditing. No account setup needed.\n\n**Q: What about transitive dependencies?**  \nA: npm's `package-lock.json` already contains the full resolved tree. Rust's `Cargo.lock` too. Java needs `mvn`/`gradlew` installed to resolve transitively; otherwise falls back to direct deps only.\n\n**Q: My project uses both Maven and Gradle — which wins?**  \nA: `pom.xml` takes priority since it's more structured. Use `--ecosystem=gradle` to force Gradle-only scanning.\n\n---\n\n## Development\n\n```bash\ngit clone https://github.com/elephantseed/auto-depender.git\ncd auto-depender\nbun install\n\n# Typecheck\nbun run typecheck\n\n# Run tests\nbun test\n\n# Manual CLI testing\nbun run scan -- /path/to/project\nbun run fix -- /path/to/project --dry-run\n```\n\n## License\n\nMIT © Elephant Seed\n","readmeFilename":"README.md"}