{"_id":"@synsoftworks/depgraph-cli","_rev":"26-a5c63f4fafa9fd0ee0e5ab196baf1c0e","name":"@synsoftworks/depgraph-cli","dist-tags":{"latest":"0.3.0"},"versions":{"0.0.1":{"name":"@synsoftworks/depgraph-cli","version":"0.0.1","keywords":["security","supply-chain","dependencies","npm-audit","risk-scoring","cli"],"author":{"name":"Synthesis Softworks","email":"sara@synthesissoftworks.com"},"license":"MIT","_id":"@synsoftworks/depgraph-cli@0.0.1","maintainers":[{"name":"synsoftworks","email":"sara@synthesissoftworks.com"}],"homepage":"https://depgraph.sh","bugs":{"url":"https://github.com/synsoftworks/depgraph-cli/issues"},"bin":{"depgraph":"dist/cli/index.js"},"dist":{"shasum":"269d19446662008adff1dce7cc535a4c2f5c2457","tarball":"https://registry.npmjs.org/@synsoftworks/depgraph-cli/-/depgraph-cli-0.0.1.tgz","fileCount":54,"integrity":"sha512-cTr7Ei+k6iaDpveJJUuTDMi+wOumC/ysyUWoNzNvh2DBcs6GL6XO7v3X56k46TiQCcnUSj7lybm+dH18dygFIA==","signatures":[{"sig":"MEYCIQCwy24Rg2cTfybRHBnnRwvSJi2clyJrbtz7s+isy1OetAIhAOMIyLpJ5TO27Yq5VszaOZX1+AVGbr2KLzb2EiuTNEph","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":74544},"main":"./dist/cli/index.js","type":"module","_from":"file:synsoftworks-depgraph-cli-0.0.1.tgz","types":"./dist/cli/index.d.ts","engines":{"node":">=20.0.0"},"scripts":{"dev":"tsx src/cli/index.ts","lint":"tsc --noEmit","test":"node --import tsx --test","build":"tsc -p tsconfig.json"},"_npmUser":{"name":"synsoftworks","email":"sara@synthesissoftworks.com"},"_resolved":"/private/var/folders/qr/d7200y4s6rl5lqfbwp4fxzk80000gn/T/8f0dc2b0f558c0a792768f1786a62839/synsoftworks-depgraph-cli-0.0.1.tgz","_integrity":"sha512-cTr7Ei+k6iaDpveJJUuTDMi+wOumC/ysyUWoNzNvh2DBcs6GL6XO7v3X56k46TiQCcnUSj7lybm+dH18dygFIA==","repository":{"url":"git+https://github.com/synsoftworks/depgraph-cli.git","type":"git"},"_npmVersion":"10.9.4","description":"ML-powered dependency risk detection for software supply chains","directories":{},"_nodeVersion":"22.22.1","dependencies":{"ink":"^5.0.0","chalk":"^5.6.2","react":"^18.3.1","semver":"^7.7.2","commander":"^14.0.3"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.21.0","typescript":"^6.0.2","@types/node":"^25.5.0","@types/react":"^18.3.12"},"_npmOperationalInternal":{"tmp":"tmp/depgraph-cli_0.0.1_1775067225617_0.9422677996719857","host":"s3://npm-registry-packages-npm-production"}},"0.0.2":{"name":"@synsoftworks/depgraph-cli","version":"0.0.2","keywords":["security","supply-chain","dependencies","npm-audit","risk-scoring","cli"],"author":{"name":"Synthesis Softworks","email":"sara@synthesissoftworks.com"},"license":"MIT","_id":"@synsoftworks/depgraph-cli@0.0.2","maintainers":[{"name":"synsoftworks","email":"sara@synthesissoftworks.com"}],"homepage":"https://depgraph.sh","bugs":{"url":"https://github.com/synsoftworks/depgraph-cli/issues"},"bin":{"depgraph":"dist/cli/index.js"},"dist":{"shasum":"6d4f752910f47aa21bcf8ba82e371754824eae05","tarball":"https://registry.npmjs.org/@synsoftworks/depgraph-cli/-/depgraph-cli-0.0.2.tgz","fileCount":58,"integrity":"sha512-tU/ybFYWDQLsnpQjCIJ3uWjAVqy0BupGt6aJlYbl+VnYriIKomm2i7Nqd5CDE4Pj/GXRKkpcpArMrNrIyfkj2g==","signatures":[{"sig":"MEQCIF18UsBvtFu441eKsU5UPbVFfUZ615PtaXTCRaqtOf+/AiBS/014R1FyqCIHeR9gbVb9SQO4B6MpHhELMYQvWc/EWQ==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":81106},"main":"./dist/cli/index.js","type":"module","_from":"file:synsoftworks-depgraph-cli-0.0.2.tgz","types":"./dist/cli/index.d.ts","engines":{"node":">=20.0.0"},"scripts":{"dev":"tsx src/cli/index.ts","lint":"tsc --noEmit","test":"node --import tsx --test","build":"tsc -p tsconfig.json"},"_npmUser":{"name":"synsoftworks","email":"sara@synthesissoftworks.com"},"_resolved":"/private/var/folders/qr/d7200y4s6rl5lqfbwp4fxzk80000gn/T/90c6accce488bb75c89b584400655991/synsoftworks-depgraph-cli-0.0.2.tgz","_integrity":"sha512-tU/ybFYWDQLsnpQjCIJ3uWjAVqy0BupGt6aJlYbl+VnYriIKomm2i7Nqd5CDE4Pj/GXRKkpcpArMrNrIyfkj2g==","repository":{"url":"git+https://github.com/synsoftworks/depgraph-cli.git","type":"git"},"_npmVersion":"10.9.4","description":"ML-powered dependency risk detection for software supply chains","directories":{},"_nodeVersion":"22.22.1","dependencies":{"ink":"^5.0.0","chalk":"^5.6.2","react":"^18.3.1","semver":"^7.7.2","commander":"^14.0.3"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.21.0","typescript":"^6.0.2","@types/node":"^25.5.0","@types/react":"^18.3.12"},"_npmOperationalInternal":{"tmp":"tmp/depgraph-cli_0.0.2_1775068737193_0.13293968686704383","host":"s3://npm-registry-packages-npm-production"}},"0.0.4":{"name":"@synsoftworks/depgraph-cli","version":"0.0.4","keywords":["security","supply-chain","dependencies","npm-audit","risk-scoring","cli"],"author":{"name":"Synthesis Softworks","email":"sara@synthesissoftworks.com"},"license":"MIT","_id":"@synsoftworks/depgraph-cli@0.0.4","maintainers":[{"name":"synsoftworks","email":"sara@synthesissoftworks.com"}],"homepage":"https://depgraph.sh","bugs":{"url":"https://github.com/synsoftworks/depgraph-cli/issues"},"bin":{"depgraph":"dist/cli/index.js","depgraph-cli":"dist/cli/index.js"},"dist":{"shasum":"4fd8fe97c7f63fe265d9df9c26b14ebf86cce36d","tarball":"https://registry.npmjs.org/@synsoftworks/depgraph-cli/-/depgraph-cli-0.0.4.tgz","fileCount":58,"integrity":"sha512-P6nmzIp55C3XGtBL0SAjR2HRWLdWf9GVDXOPWcRma93BJDhAoYI/1EYpi7uL8qsiH8q/6XMux6RveOfuKyuhCQ==","signatures":[{"sig":"MEUCIQCYZhqd2G73TUHt/Sf2YRarH2Rmp+1IDg7virfsUEli0gIgL1Q/d8jRtQp0MN8jVLHzPzW/FBc2UX0AjYb8wx/iCxw=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":81149},"main":"./dist/cli/index.js","type":"module","_from":"file:synsoftworks-depgraph-cli-0.0.4.tgz","types":"./dist/cli/index.d.ts","engines":{"node":">=20.0.0"},"scripts":{"dev":"tsx src/cli/index.ts","lint":"tsc --noEmit","test":"node --import tsx --test","build":"tsc -p tsconfig.json"},"_npmUser":{"name":"synsoftworks","email":"sara@synthesissoftworks.com"},"_resolved":"/private/var/folders/qr/d7200y4s6rl5lqfbwp4fxzk80000gn/T/db2e6afd90502d5ce237575c4598702f/synsoftworks-depgraph-cli-0.0.4.tgz","_integrity":"sha512-P6nmzIp55C3XGtBL0SAjR2HRWLdWf9GVDXOPWcRma93BJDhAoYI/1EYpi7uL8qsiH8q/6XMux6RveOfuKyuhCQ==","repository":{"url":"git+https://github.com/synsoftworks/depgraph-cli.git","type":"git"},"_npmVersion":"10.9.4","description":"ML-powered dependency risk detection for software supply chains","directories":{},"_nodeVersion":"22.22.1","dependencies":{"ink":"^5.0.0","chalk":"^5.6.2","react":"^18.3.1","semver":"^7.7.2","commander":"^14.0.3"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.21.0","typescript":"^6.0.2","@types/node":"^25.5.0","@types/react":"^18.3.12"},"_npmOperationalInternal":{"tmp":"tmp/depgraph-cli_0.0.4_1775071057534_0.692895006472531","host":"s3://npm-registry-packages-npm-production"}},"0.0.5":{"name":"@synsoftworks/depgraph-cli","version":"0.0.5","keywords":["security","supply-chain","dependencies","npm-audit","risk-scoring","cli"],"author":{"name":"Synthesis Softworks","email":"sara@synthesissoftworks.com"},"license":"MIT","_id":"@synsoftworks/depgraph-cli@0.0.5","maintainers":[{"name":"synsoftworks","email":"sara@synthesissoftworks.com"}],"homepage":"https://depgraph.sh","bugs":{"url":"https://github.com/synsoftworks/depgraph-cli/issues"},"bin":{"depgraph":"dist/cli/index.js","depgraph-cli":"dist/cli/index.js"},"dist":{"shasum":"8707e52344dc155cbe06733b31cf2a618fc6d589","tarball":"https://registry.npmjs.org/@synsoftworks/depgraph-cli/-/depgraph-cli-0.0.5.tgz","fileCount":58,"integrity":"sha512-p9FOIiDub3qpliqVaVgWlUK+nEflDyyosgdU5wYevbus3qEf2owrOZa1FbouF62YGchZ12vf8CoaBz09+Nax6A==","signatures":[{"sig":"MEUCIQDtTZ+T1aXgrruL6IHzggZjTE469rdg7wxhkvucreYgpQIgAZo7usFDfpzdaukob2gOUl3EE0x+L0RrqsUxcrOlgnc=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":81942},"main":"./dist/cli/index.js","type":"module","_from":"file:synsoftworks-depgraph-cli-0.0.5.tgz","types":"./dist/cli/index.d.ts","engines":{"node":">=20.0.0"},"scripts":{"dev":"tsx src/cli/index.ts","lint":"tsc --noEmit","test":"node --import tsx --test","build":"tsc -p tsconfig.json"},"_npmUser":{"name":"synsoftworks","email":"sara@synthesissoftworks.com"},"_resolved":"/private/var/folders/qr/d7200y4s6rl5lqfbwp4fxzk80000gn/T/74b2beb661c168353da1646432c8fd5f/synsoftworks-depgraph-cli-0.0.5.tgz","_integrity":"sha512-p9FOIiDub3qpliqVaVgWlUK+nEflDyyosgdU5wYevbus3qEf2owrOZa1FbouF62YGchZ12vf8CoaBz09+Nax6A==","repository":{"url":"git+https://github.com/synsoftworks/depgraph-cli.git","type":"git"},"_npmVersion":"10.9.4","description":"ML-powered dependency risk detection for software supply chains","directories":{},"_nodeVersion":"22.22.1","dependencies":{"ink":"^5.0.0","chalk":"^5.6.2","react":"^18.3.1","semver":"^7.7.2","commander":"^14.0.3"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.21.0","typescript":"^6.0.2","@types/node":"^25.5.0","@types/react":"^18.3.12"},"_npmOperationalInternal":{"tmp":"tmp/depgraph-cli_0.0.5_1775071335917_0.08519887405269477","host":"s3://npm-registry-packages-npm-production"}},"0.0.6":{"name":"@synsoftworks/depgraph-cli","version":"0.0.6","keywords":["security","supply-chain","dependencies","npm-audit","risk-scoring","cli"],"author":{"name":"Synthesis Softworks","email":"sara@synthesissoftworks.com"},"license":"MIT","_id":"@synsoftworks/depgraph-cli@0.0.6","maintainers":[{"name":"synsoftworks","email":"sara@synthesissoftworks.com"}],"homepage":"https://depgraph.sh","bugs":{"url":"https://github.com/synsoftworks/depgraph-cli/issues"},"bin":{"depgraph":"dist/cli/index.js","depgraph-cli":"dist/cli/index.js"},"dist":{"shasum":"527d3b1602daff2347884ee4d4dcacbe0c4101cb","tarball":"https://registry.npmjs.org/@synsoftworks/depgraph-cli/-/depgraph-cli-0.0.6.tgz","fileCount":58,"integrity":"sha512-kme9/OCYbCFswQWPzb+ID7ot6BgmJLW531j4TNCE2w9cEaQXKMNG24W8+zS70PfYp+70ncGlufcrXsz0cQgmvA==","signatures":[{"sig":"MEYCIQCUy/tySRz5C8oaH8DUx+2uAQpvRIb9ejHJQSi5y6SrewIhAJcZqyy9n0yxdiVKrUJl0djbVV3ClWB2hHTcZ5dajSv5","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":82019},"main":"./dist/cli/index.js","type":"module","types":"./dist/cli/index.d.ts","engines":{"node":">=20.0.0"},"gitHead":"9a34db26b9afd1f9bd2919aa2bd22084ebaa74c6","scripts":{"dev":"tsx src/cli/index.ts","lint":"tsc --noEmit","test":"node --import tsx --test","build":"tsc -p tsconfig.json","prepublishOnly":"pnpm run build"},"_npmUser":{"name":"synsoftworks","email":"sara@synthesissoftworks.com"},"repository":{"url":"git+https://github.com/synsoftworks/depgraph-cli.git","type":"git"},"_npmVersion":"10.9.4","description":"ML-powered dependency risk detection for software supply chains","directories":{},"_nodeVersion":"22.22.1","dependencies":{"ink":"^5.0.0","chalk":"^5.6.2","react":"^18.3.1","semver":"^7.7.2","commander":"^14.0.3"},"_hasShrinkwrap":false,"packageManager":"pnpm@10.33.0","devDependencies":{"tsx":"^4.21.0","typescript":"^6.0.2","@types/node":"^25.5.0","@types/react":"^18.3.12"},"_npmOperationalInternal":{"tmp":"tmp/depgraph-cli_0.0.6_1775071444152_0.7732474988190638","host":"s3://npm-registry-packages-npm-production"}},"0.0.7":{"name":"@synsoftworks/depgraph-cli","version":"0.0.7","keywords":["security","supply-chain","dependencies","npm-audit","risk-scoring","cli"],"author":{"name":"Synthesis Softworks","email":"sara@synthesissoftworks.com"},"license":"MIT","_id":"@synsoftworks/depgraph-cli@0.0.7","maintainers":[{"name":"synsoftworks","email":"sara@synthesissoftworks.com"}],"homepage":"https://depgraph.sh","bugs":{"url":"https://github.com/synsoftworks/depgraph-cli/issues"},"bin":{"depgraph":"dist/cli/index.js","depgraph-cli":"dist/cli/index.js"},"dist":{"shasum":"6d1bacc7934afea2e777bd79e6bc71329b44736c","tarball":"https://registry.npmjs.org/@synsoftworks/depgraph-cli/-/depgraph-cli-0.0.7.tgz","fileCount":58,"integrity":"sha512-bX0nfEsKX8CDSuMLAE4MkZwS+1mVxEmjdgwRbqTgL19LlUG8PR13fo/bqFMS7rpdhOLyK7IVHN1DbL/KiXRWXA==","signatures":[{"sig":"MEUCIQDUXvZIheGrueZStOWrp1fkoMyTLzfC71oHbYvF2EKlMgIgB/EkK38ycSj1Pvq5jNpi2R5jYjfwg9GF/M0aOyUcMls=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":82019},"main":"./dist/cli/index.js","type":"module","types":"./dist/cli/index.d.ts","engines":{"node":">=20.0.0"},"gitHead":"228c10a2ea0c7ac2db8993c35ac0ddec03c3c1d4","scripts":{"dev":"tsx src/cli/index.ts","lint":"tsc --noEmit","test":"node --import tsx --test","build":"tsc -p tsconfig.json","prepublishOnly":"pnpm run build"},"_npmUser":{"name":"synsoftworks","email":"sara@synthesissoftworks.com"},"repository":{"url":"git+https://github.com/synsoftworks/depgraph-cli.git","type":"git"},"_npmVersion":"10.9.4","description":"ML-powered dependency risk detection for software supply chains","directories":{},"_nodeVersion":"22.22.1","dependencies":{"ink":"^5.0.0","chalk":"^5.6.2","react":"^18.3.1","semver":"^7.7.2","commander":"^14.0.3"},"_hasShrinkwrap":false,"packageManager":"pnpm@10.33.0","devDependencies":{"tsx":"^4.21.0","typescript":"^6.0.2","@types/node":"^25.5.0","@types/react":"^18.3.12"},"_npmOperationalInternal":{"tmp":"tmp/depgraph-cli_0.0.7_1775071452293_0.6996042564700342","host":"s3://npm-registry-packages-npm-production"}},"0.0.8":{"name":"@synsoftworks/depgraph-cli","version":"0.0.8","keywords":["security","supply-chain","dependencies","npm-audit","risk-scoring","cli"],"author":{"name":"Synthesis Softworks","email":"sara@synthesissoftworks.com"},"license":"MIT","_id":"@synsoftworks/depgraph-cli@0.0.8","maintainers":[{"name":"synsoftworks","email":"sara@synthesissoftworks.com"}],"homepage":"https://depgraph.sh","bugs":{"url":"https://github.com/synsoftworks/depgraph-cli/issues"},"bin":{"depgraph":"dist/cli/index.js","depgraph-cli":"dist/cli/index.js"},"dist":{"shasum":"5b2ff6876061f34cc4f2686e8d96e37060e17a55","tarball":"https://registry.npmjs.org/@synsoftworks/depgraph-cli/-/depgraph-cli-0.0.8.tgz","fileCount":54,"integrity":"sha512-v+u5omVP4dltoTnZQLig4I6/fCpltKKwUHioNpMeNWkVCm/qqNA1pUO1A+KRvSqkCzxKCE3eVj8X4P8JHQmFbA==","signatures":[{"sig":"MEUCIF5SQLcl5yrgdTkRSsmB6Cos8IbXrQCae3OuLyhK4fHlAiEAo4DMyAZAQKIzhzzps6rWgxSTwehSEHiHmZQRtqlyb6E=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":76390},"main":"./dist/cli/index.js","type":"module","_from":"file:synsoftworks-depgraph-cli-0.0.8.tgz","types":"./dist/cli/index.d.ts","engines":{"node":">=20.0.0"},"scripts":{"dev":"tsx src/cli/index.ts","lint":"tsc --noEmit","test":"node --import tsx --test","build":"tsc -p tsconfig.json"},"_npmUser":{"name":"synsoftworks","email":"sara@synthesissoftworks.com"},"_resolved":"/private/var/folders/qr/d7200y4s6rl5lqfbwp4fxzk80000gn/T/465ed851b084be9036715cb02f6cfb44/synsoftworks-depgraph-cli-0.0.8.tgz","_integrity":"sha512-v+u5omVP4dltoTnZQLig4I6/fCpltKKwUHioNpMeNWkVCm/qqNA1pUO1A+KRvSqkCzxKCE3eVj8X4P8JHQmFbA==","repository":{"url":"git+https://github.com/synsoftworks/depgraph-cli.git","type":"git"},"_npmVersion":"10.9.4","description":"ML-powered dependency risk detection for software supply chains","directories":{},"_nodeVersion":"22.22.1","dependencies":{"ink":"^5.0.0","chalk":"^5.6.2","react":"^18.3.1","semver":"^7.7.2","commander":"^14.0.3"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.21.0","typescript":"^6.0.2","@types/node":"^25.5.0","@types/react":"^18.3.12"},"_npmOperationalInternal":{"tmp":"tmp/depgraph-cli_0.0.8_1775071947468_0.49341860084220257","host":"s3://npm-registry-packages-npm-production"}},"0.0.9":{"name":"@synsoftworks/depgraph-cli","version":"0.0.9","keywords":["security","supply-chain","dependencies","npm-audit","risk-scoring","cli"],"author":{"name":"Synthesis Softworks","email":"sara@synthesissoftworks.com"},"license":"MIT","_id":"@synsoftworks/depgraph-cli@0.0.9","maintainers":[{"name":"synsoftworks","email":"sara@synthesissoftworks.com"}],"homepage":"https://depgraph.sh","bugs":{"url":"https://github.com/synsoftworks/depgraph-cli/issues"},"bin":{"depgraph":"dist/cli/index.js","depgraph-cli":"dist/cli/index.js"},"dist":{"shasum":"81ee744ae99c48f0bb8c55ba3093d0212a7caee3","tarball":"https://registry.npmjs.org/@synsoftworks/depgraph-cli/-/depgraph-cli-0.0.9.tgz","fileCount":54,"integrity":"sha512-U4R9k3ianaK0hlaqukohL+KAKom1Dp6krxKltkToZ9LLzAXfk814kbxOFG0cwYlwy5+6Gh5IQaSc0gnH608DvA==","signatures":[{"sig":"MEYCIQCwd2x1hM6CrdX/PLhj3Q8Rubt2lKnPMu0+clShF1g/ZAIhAKCyIlfRxMubFLAd8BYCIaRUCnMcb5d3ypg8Yxy6+VTZ","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":76390},"main":"./dist/cli/index.js","type":"module","_from":"file:synsoftworks-depgraph-cli-0.0.9.tgz","types":"./dist/cli/index.d.ts","engines":{"node":">=20.0.0"},"scripts":{"dev":"tsx src/cli/index.ts","lint":"tsc --noEmit","test":"node --import tsx --test","build":"tsc -p tsconfig.json"},"_npmUser":{"name":"synsoftworks","email":"sara@synthesissoftworks.com"},"_resolved":"/private/var/folders/qr/d7200y4s6rl5lqfbwp4fxzk80000gn/T/ed4bae584e9fe79804c7bf483c388f4a/synsoftworks-depgraph-cli-0.0.9.tgz","_integrity":"sha512-U4R9k3ianaK0hlaqukohL+KAKom1Dp6krxKltkToZ9LLzAXfk814kbxOFG0cwYlwy5+6Gh5IQaSc0gnH608DvA==","repository":{"url":"git+https://github.com/synsoftworks/depgraph-cli.git","type":"git"},"_npmVersion":"10.9.4","description":"ML-powered dependency risk detection for software supply chains","directories":{},"_nodeVersion":"22.22.1","dependencies":{"ink":"^5.0.0","chalk":"^5.6.2","react":"^18.3.1","semver":"^7.7.2","commander":"^14.0.3"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.21.0","typescript":"^6.0.2","@types/node":"^25.5.0","@types/react":"^18.3.12"},"_npmOperationalInternal":{"tmp":"tmp/depgraph-cli_0.0.9_1775072323905_0.8366749828006812","host":"s3://npm-registry-packages-npm-production"}},"0.1.0":{"name":"@synsoftworks/depgraph-cli","version":"0.1.0","keywords":["security","supply-chain","dependencies","npm-audit","risk-scoring","cli"],"author":{"name":"Synthesis Softworks","email":"sara@synthesissoftworks.com"},"license":"MIT","_id":"@synsoftworks/depgraph-cli@0.1.0","maintainers":[{"name":"synsoftworks","email":"sara@synthesissoftworks.com"}],"homepage":"https://depgraph.sh","bugs":{"url":"https://github.com/synsoftworks/depgraph-cli/issues"},"bin":{"depgraph":"dist/cli/index.js","depgraph-cli":"dist/cli/index.js"},"dist":{"shasum":"85d53e957a64f8548cb8223fb58e3d136c3cf8b7","tarball":"https://registry.npmjs.org/@synsoftworks/depgraph-cli/-/depgraph-cli-0.1.0.tgz","fileCount":54,"integrity":"sha512-2Ovgp1lDb9ecFWUSqJD/YnOc2IGsbE/hGjTZz1zUEG9u3aJn7vTOqi6FC9qiTpSFiv0nJ6bb/wBDIs350wNi4w==","signatures":[{"sig":"MEYCIQD2RZcQIrSLyI3dvi9AJK/eqJDyzXF1/VkO2Vte+pmcdwIhAKlxEs/T0vnrUlQ6iw7XBrWc2MTLoJAkLFTUZKebuG8l","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":96996},"main":"./dist/cli/index.js","type":"module","types":"./dist/cli/index.d.ts","engines":{"node":">=20.0.0"},"gitHead":"85a4dab7547130c0f05a0c42110779779b464046","scripts":{"dev":"tsx src/cli/index.ts","lint":"tsc --noEmit","test":"node --import tsx --test","build":"tsc -p tsconfig.json","prepublishOnly":"pnpm run build"},"_npmUser":{"name":"synsoftworks","email":"sara@synthesissoftworks.com"},"repository":{"url":"git+https://github.com/synsoftworks/depgraph-cli.git","type":"git"},"_npmVersion":"10.9.4","description":"ML-powered dependency risk detection for software supply chains","directories":{},"_nodeVersion":"22.22.1","dependencies":{"ink":"^5.0.0","chalk":"^5.6.2","react":"^18.3.1","semver":"^7.7.2","commander":"^14.0.3"},"_hasShrinkwrap":false,"packageManager":"pnpm@10.33.0","devDependencies":{"tsx":"^4.21.0","typescript":"^6.0.2","@types/node":"^25.5.0","@types/react":"^18.3.12"},"_npmOperationalInternal":{"tmp":"tmp/depgraph-cli_0.1.0_1775087450580_0.4993597930162912","host":"s3://npm-registry-packages-npm-production"}},"0.1.1":{"name":"@synsoftworks/depgraph-cli","version":"0.1.1","keywords":["security","supply-chain","supply-chain-security","dependencies","dependency-security","npm-audit","risk-scoring","cli","terminal-ui"],"author":{"name":"Synthesis Softworks","email":"sara@synthesissoftworks.com"},"license":"MIT","_id":"@synsoftworks/depgraph-cli@0.1.1","maintainers":[{"name":"synsoftworks","email":"sara@synthesissoftworks.com"}],"homepage":"https://depgraph.sh","bugs":{"url":"https://github.com/synsoftworks/depgraph-cli/issues"},"bin":{"depgraph":"dist/cli/index.js","depgraph-cli":"dist/cli/index.js"},"dist":{"shasum":"03b9ebee2aaf8563d801259f844a45e69b640b6a","tarball":"https://registry.npmjs.org/@synsoftworks/depgraph-cli/-/depgraph-cli-0.1.1.tgz","fileCount":55,"integrity":"sha512-CRFhtcRmp7iisugZFbFoIkb0KvMU2B3TowWqi/vu9T5xYy+6erCus3Je0q1tyOXE+1KXkUYUeUo17G1MzZCvQw==","signatures":[{"sig":"MEUCIAgvq3S6vq7F5F1ny2u2TvbpB1etKqii2wHmAJhVEr1OAiEAmAqy1ubTmFDzxmKFdCEzHeMR6L3WpUJ7h34LMx6nQYM=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":101169},"main":"./dist/cli/index.js","type":"module","types":"./dist/cli/index.d.ts","engines":{"node":">=20.0.0"},"gitHead":"e87638b83bdef4ccb9861dbb8ce86d16cebf7a3d","scripts":{"dev":"tsx src/cli/index.ts","lint":"tsc --noEmit","test":"node --import tsx --test","build":"tsc -p tsconfig.json","prepublishOnly":"pnpm run build"},"_npmUser":{"name":"synsoftworks","email":"sara@synthesissoftworks.com"},"repository":{"url":"git+https://github.com/synsoftworks/depgraph-cli.git","type":"git"},"_npmVersion":"10.9.4","description":"Graph-first dependency risk analysis for npm packages and dependency trees","directories":{},"_nodeVersion":"22.22.1","dependencies":{"ink":"^5.0.0","chalk":"^5.6.2","react":"^18.3.1","semver":"^7.7.2","commander":"^14.0.3"},"_hasShrinkwrap":false,"packageManager":"pnpm@10.33.0","devDependencies":{"tsx":"^4.21.0","typescript":"^6.0.2","@types/node":"^25.5.0","@types/react":"^18.3.12"},"_npmOperationalInternal":{"tmp":"tmp/depgraph-cli_0.1.1_1775095791691_0.7625358457042679","host":"s3://npm-registry-packages-npm-production"}},"0.1.2":{"name":"@synsoftworks/depgraph-cli","version":"0.1.2","keywords":["security","supply-chain","supply-chain-security","dependencies","dependency-security","npm-audit","risk-scoring","cli","terminal-ui"],"author":{"name":"Synthesis Softworks","email":"sara@synthesissoftworks.com"},"license":"MIT","_id":"@synsoftworks/depgraph-cli@0.1.2","maintainers":[{"name":"synsoftworks","email":"sara@synthesissoftworks.com"}],"homepage":"https://depgraph.sh","bugs":{"url":"https://github.com/synsoftworks/depgraph-cli/issues"},"bin":{"depgraph":"dist/cli/index.js","depgraph-cli":"dist/cli/index.js"},"dist":{"shasum":"04a84e5754cbcc876aedcfb9a0e71ef806d3d299","tarball":"https://registry.npmjs.org/@synsoftworks/depgraph-cli/-/depgraph-cli-0.1.2.tgz","fileCount":83,"integrity":"sha512-dE3AYHFP0jows4TIiM5vHdjesFqp4TiBRUg9ufREud/Zx9FVwhpX023SkV3XVq70Z//9bhWPx3RG8Vgqtd6pbQ==","signatures":[{"sig":"MEUCIQD2njStC1oBMaOwJKzxlTyrXXBNgDxT3vNJ3TYZpofL7QIgPaf1IegDT33wyAT0zfd4XgRdQ5nZ0q2FlSprVK3usIc=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":180929},"main":"./dist/cli/index.js","type":"module","_from":"file:synsoftworks-depgraph-cli-0.1.2.tgz","types":"./dist/cli/index.d.ts","engines":{"node":">=20.0.0"},"scripts":{"dev":"tsx src/cli/index.ts","lint":"tsc --noEmit","test":"node --import tsx --test","build":"tsc -p tsconfig.json","test:smoke":"node --import tsx --test test/json-renderer.test.ts test/review-renderer.test.ts test/evaluation-renderer.test.ts test/integrated-scenarios.test.ts"},"_npmUser":{"name":"synsoftworks","email":"sara@synthesissoftworks.com"},"_resolved":"/private/var/folders/qr/d7200y4s6rl5lqfbwp4fxzk80000gn/T/a428615c0070314c4f90dd23907269f0/synsoftworks-depgraph-cli-0.1.2.tgz","_integrity":"sha512-dE3AYHFP0jows4TIiM5vHdjesFqp4TiBRUg9ufREud/Zx9FVwhpX023SkV3XVq70Z//9bhWPx3RG8Vgqtd6pbQ==","repository":{"url":"git+https://github.com/synsoftworks/depgraph-cli.git","type":"git"},"_npmVersion":"10.9.4","description":"Graph-first dependency risk analysis for npm packages and dependency trees","directories":{},"_nodeVersion":"22.22.1","dependencies":{"ink":"^5.0.0","chalk":"^5.6.2","react":"^18.3.1","semver":"^7.7.2","commander":"^14.0.3"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.21.0","typescript":"^6.0.2","@types/node":"^25.5.0","@types/react":"^18.3.12"},"_npmOperationalInternal":{"tmp":"tmp/depgraph-cli_0.1.2_1775230419466_0.147688594253919","host":"s3://npm-registry-packages-npm-production"}},"0.1.3":{"name":"@synsoftworks/depgraph-cli","version":"0.1.3","keywords":["security","supply-chain","supply-chain-security","dependencies","dependency-security","npm-audit","risk-scoring","cli","terminal-ui"],"author":{"name":"Synthesis Softworks","email":"sara@synthesissoftworks.com"},"license":"MIT","_id":"@synsoftworks/depgraph-cli@0.1.3","maintainers":[{"name":"synsoftworks","email":"sara@synthesissoftworks.com"}],"homepage":"https://depgraph.sh","bugs":{"url":"https://github.com/synsoftworks/depgraph-cli/issues"},"bin":{"depgraph":"dist/cli/index.js","depgraph-cli":"dist/cli/index.js"},"dist":{"shasum":"f3dc6c6055ecbb6e8e198743bf926036670e4ead","tarball":"https://registry.npmjs.org/@synsoftworks/depgraph-cli/-/depgraph-cli-0.1.3.tgz","fileCount":83,"integrity":"sha512-GLD9oNKZiMghywUFOg+kXsY+WBX+1XGbScwlV43lNz0K9XyubgPgrNbkh7rKuluso7qotY3GXAJpL0naQQv6nA==","signatures":[{"sig":"MEYCIQC4DTc42J267nQ9AeM2C5k8ERRWtLff1dTqvTE33GeiKAIhAJDiiMlOph07rDm9D+7EFGWQHVn8ar5tZEYvAmPpzw1g","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":180555},"main":"./dist/cli/index.js","type":"module","_from":"file:synsoftworks-depgraph-cli-0.1.3.tgz","types":"./dist/cli/index.d.ts","engines":{"node":">=20.0.0"},"scripts":{"dev":"tsx src/cli/index.ts","lint":"tsc --noEmit","test":"node --import tsx --test","build":"tsc -p tsconfig.json","test:smoke":"node --import tsx --test test/json-renderer.test.ts test/review-renderer.test.ts test/evaluation-renderer.test.ts test/integrated-scenarios.test.ts"},"_npmUser":{"name":"synsoftworks","email":"sara@synthesissoftworks.com"},"_resolved":"/private/var/folders/qr/d7200y4s6rl5lqfbwp4fxzk80000gn/T/b748ed73c4ff775d2a74b169fcd41526/synsoftworks-depgraph-cli-0.1.3.tgz","_integrity":"sha512-GLD9oNKZiMghywUFOg+kXsY+WBX+1XGbScwlV43lNz0K9XyubgPgrNbkh7rKuluso7qotY3GXAJpL0naQQv6nA==","repository":{"url":"git+https://github.com/synsoftworks/depgraph-cli.git","type":"git"},"_npmVersion":"10.9.4","description":"Graph-first dependency risk analysis for npm packages and dependency trees","directories":{},"_nodeVersion":"22.22.1","dependencies":{"ink":"^5.0.0","chalk":"^5.6.2","react":"^18.3.1","semver":"^7.7.2","commander":"^14.0.3"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.21.0","typescript":"^6.0.2","@types/node":"^25.5.0","@types/react":"^18.3.12"},"_npmOperationalInternal":{"tmp":"tmp/depgraph-cli_0.1.3_1775231597898_0.7723189666544212","host":"s3://npm-registry-packages-npm-production"}},"0.1.4":{"name":"@synsoftworks/depgraph-cli","version":"0.1.4","keywords":["security","supply-chain","supply-chain-security","dependencies","dependency-security","npm-audit","risk-scoring","cli","terminal-ui"],"author":{"name":"Synthesis Softworks","email":"sara@synthesissoftworks.com"},"license":"MIT","_id":"@synsoftworks/depgraph-cli@0.1.4","maintainers":[{"name":"synsoftworks","email":"sara@synthesissoftworks.com"}],"homepage":"https://depgraph.sh","bugs":{"url":"https://github.com/synsoftworks/depgraph-cli/issues"},"bin":{"depgraph":"dist/cli/index.js","depgraph-cli":"dist/cli/index.js"},"dist":{"shasum":"20a10f216bd1c51f2360a7c09d33c98c0455b91a","tarball":"https://registry.npmjs.org/@synsoftworks/depgraph-cli/-/depgraph-cli-0.1.4.tgz","fileCount":83,"integrity":"sha512-UO3LXcc4YEQ391qKyt7TubFbKKKl6fEC90JZpNW3VKFO1nG6+Ppdubtbmm9AoGniiTn/BubXs7aq+OU/d91XSg==","signatures":[{"sig":"MEUCIQDRGuS0rrDoUoNsDPKCXf/EUty0neIuXzCg3SVyUSPxbwIga10uoNRQhxlN2HLQ2oVfj4kqsL+/SsXZyxPyBRw1pt0=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":180555},"main":"./dist/cli/index.js","type":"module","_from":"file:synsoftworks-depgraph-cli-0.1.4.tgz","types":"./dist/cli/index.d.ts","engines":{"node":">=20.0.0"},"scripts":{"dev":"tsx src/cli/index.ts","lint":"tsc --noEmit","test":"node --import tsx --test","build":"tsc -p tsconfig.json","test:smoke":"node --import tsx --test test/json-renderer.test.ts test/review-renderer.test.ts test/evaluation-renderer.test.ts test/integrated-scenarios.test.ts"},"_npmUser":{"name":"synsoftworks","email":"sara@synthesissoftworks.com"},"_resolved":"/private/var/folders/qr/d7200y4s6rl5lqfbwp4fxzk80000gn/T/511b5f3be3047c99d465328d1d4af189/synsoftworks-depgraph-cli-0.1.4.tgz","_integrity":"sha512-UO3LXcc4YEQ391qKyt7TubFbKKKl6fEC90JZpNW3VKFO1nG6+Ppdubtbmm9AoGniiTn/BubXs7aq+OU/d91XSg==","repository":{"url":"git+https://github.com/synsoftworks/depgraph-cli.git","type":"git"},"_npmVersion":"10.9.4","description":"Graph-first dependency risk analysis for npm packages and dependency trees","directories":{},"_nodeVersion":"22.22.1","dependencies":{"ink":"^5.0.0","chalk":"^5.6.2","react":"^18.3.1","semver":"^7.7.2","commander":"^14.0.3"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.21.0","typescript":"^6.0.2","@types/node":"^25.5.0","@types/react":"^18.3.12"},"_npmOperationalInternal":{"tmp":"tmp/depgraph-cli_0.1.4_1775231919998_0.09837654825951292","host":"s3://npm-registry-packages-npm-production"}},"0.2.0":{"name":"@synsoftworks/depgraph-cli","version":"0.2.0","keywords":["security","supply-chain","supply-chain-security","dependencies","dependency-security","npm-audit","risk-scoring","cli","terminal-ui"],"author":{"name":"Synthesis Softworks","email":"sara@synthesissoftworks.com"},"license":"MIT","_id":"@synsoftworks/depgraph-cli@0.2.0","maintainers":[{"name":"synsoftworks","email":"sara@synthesissoftworks.com"}],"homepage":"https://depgraph.sh","bugs":{"url":"https://github.com/synsoftworks/depgraph-cli/issues"},"bin":{"depgraph":"dist/cli/index.js","depgraph-cli":"dist/cli/index.js"},"dist":{"shasum":"96f088990d400ba9beb87fcd984f7026870a405b","tarball":"https://registry.npmjs.org/@synsoftworks/depgraph-cli/-/depgraph-cli-0.2.0.tgz","fileCount":99,"integrity":"sha512-GMJApqMraGK+F42vHy3FCFqblEBqjvzGcs7AcAbLeZOWX/h+xmiV2sFdO57oPVhjckfaZO708ofkD4yy+UOcCw==","signatures":[{"sig":"MEQCIDXFMmbEJcKE2lAs80VKx7jAJVKNUNyoO/KuQDLQtLGqAiBZOcm+AcmgN6W++Br5TtLKTOT9M6dryUUvEcc3NXSylA==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":236317},"main":"./dist/cli/index.js","type":"module","_from":"file:synsoftworks-depgraph-cli-0.2.0.tgz","types":"./dist/cli/index.d.ts","engines":{"node":">=20.0.0"},"scripts":{"dev":"tsx src/cli/index.ts","lint":"tsc --noEmit","test":"node --import tsx --test","build":"tsc -p tsconfig.json","test:smoke":"node --import tsx --test test/json-renderer.test.ts test/review-renderer.test.ts test/evaluation-renderer.test.ts test/integrated-scenarios.test.ts"},"_npmUser":{"name":"synsoftworks","email":"sara@synthesissoftworks.com"},"_resolved":"/private/var/folders/qr/d7200y4s6rl5lqfbwp4fxzk80000gn/T/127f5339aa72211986344e60eef74e49/synsoftworks-depgraph-cli-0.2.0.tgz","_integrity":"sha512-GMJApqMraGK+F42vHy3FCFqblEBqjvzGcs7AcAbLeZOWX/h+xmiV2sFdO57oPVhjckfaZO708ofkD4yy+UOcCw==","repository":{"url":"git+https://github.com/synsoftworks/depgraph-cli.git","type":"git"},"_npmVersion":"10.9.4","description":"Graph-first dependency risk analysis for npm packages and dependency trees","directories":{},"_nodeVersion":"22.22.1","dependencies":{"ink":"^5.0.0","chalk":"^5.6.2","react":"^18.3.1","semver":"^7.7.2","commander":"^14.0.3"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.21.0","typescript":"^6.0.2","@types/node":"^25.5.0","@types/react":"^18.3.12"},"_npmOperationalInternal":{"tmp":"tmp/depgraph-cli_0.2.0_1775243039366_0.11435757093773091","host":"s3://npm-registry-packages-npm-production"}},"0.2.1":{"name":"@synsoftworks/depgraph-cli","version":"0.2.1","keywords":["security","supply-chain","supply-chain-security","dependencies","dependency-security","npm-audit","risk-scoring","cli","terminal-ui"],"author":{"name":"Synthesis Softworks","email":"sara@synthesissoftworks.com"},"license":"MIT","_id":"@synsoftworks/depgraph-cli@0.2.1","maintainers":[{"name":"synsoftworks","email":"sara@synthesissoftworks.com"}],"homepage":"https://depgraph.sh","bugs":{"url":"https://github.com/synsoftworks/depgraph-cli/issues"},"bin":{"depgraph":"dist/cli/index.js","depgraph-cli":"dist/cli/index.js"},"dist":{"shasum":"2461a373a03f62167f010309bfeaeeb9eb9abe79","tarball":"https://registry.npmjs.org/@synsoftworks/depgraph-cli/-/depgraph-cli-0.2.1.tgz","fileCount":99,"integrity":"sha512-lQZXPibBla6LLKKDdIRJweRDcrZbXUoqAztGkMVjG8Cf/JHbp2qa9iH2uHyQ6C3lbjjt2ldt9dDdEXz6TtEM4g==","signatures":[{"sig":"MEQCIDtf3NQLsgPJCexBdZe1GpVLu+nJNqNEnuf4zXYceycQAiBCYuCiRrz3Ff3EfJxDg4Dp3O+hV2R3x1kffDai1pyvYg==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":251260},"main":"./dist/cli/index.js","type":"module","_from":"file:synsoftworks-depgraph-cli-0.2.1.tgz","types":"./dist/cli/index.d.ts","engines":{"node":">=20.0.0"},"scripts":{"dev":"tsx src/cli/index.ts","lint":"tsc --noEmit","test":"node --import tsx --test","build":"tsc -p tsconfig.json","test:smoke":"node --import tsx --test test/json-renderer.test.ts test/review-renderer.test.ts test/evaluation-renderer.test.ts test/integrated-scenarios.test.ts"},"_npmUser":{"name":"synsoftworks","email":"sara@synthesissoftworks.com"},"_resolved":"/private/var/folders/qr/d7200y4s6rl5lqfbwp4fxzk80000gn/T/0e5fb8d3260c438f37192c26fdd1e546/synsoftworks-depgraph-cli-0.2.1.tgz","_integrity":"sha512-lQZXPibBla6LLKKDdIRJweRDcrZbXUoqAztGkMVjG8Cf/JHbp2qa9iH2uHyQ6C3lbjjt2ldt9dDdEXz6TtEM4g==","repository":{"url":"git+https://github.com/synsoftworks/depgraph-cli.git","type":"git"},"_npmVersion":"10.9.4","description":"Graph-first dependency risk analysis for npm packages and dependency trees","directories":{},"_nodeVersion":"22.22.1","dependencies":{"ink":"^5.0.0","chalk":"^5.6.2","react":"^18.3.1","semver":"^7.7.2","commander":"^14.0.3"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.21.0","typescript":"^6.0.2","@types/node":"^25.5.0","@types/react":"^18.3.12"},"_npmOperationalInternal":{"tmp":"tmp/depgraph-cli_0.2.1_1775250595641_0.9201433308534903","host":"s3://npm-registry-packages-npm-production"}},"0.2.2":{"name":"@synsoftworks/depgraph-cli","version":"0.2.2","keywords":["security","supply-chain","supply-chain-security","dependencies","dependency-security","npm-audit","risk-scoring","cli","terminal-ui"],"author":{"name":"Synthesis Softworks","email":"sara@synthesissoftworks.com"},"license":"MIT","_id":"@synsoftworks/depgraph-cli@0.2.2","maintainers":[{"name":"synsoftworks","email":"sara@synthesissoftworks.com"}],"homepage":"https://depgraph.sh","bugs":{"url":"https://github.com/synsoftworks/depgraph-cli/issues"},"bin":{"depgraph":"dist/cli/index.js","depgraph-cli":"dist/cli/index.js"},"dist":{"shasum":"d81ea5f926883de2ce7c8a221ac24d4bb8a04edf","tarball":"https://registry.npmjs.org/@synsoftworks/depgraph-cli/-/depgraph-cli-0.2.2.tgz","fileCount":111,"integrity":"sha512-DycDg4/dZvuyW9jl7XL06Dz2ebH/4WIWRk7akq4mF17MbCKdA3JjJroR3pII5ZcrScsYP0V30TAfjcghzVXRug==","signatures":[{"sig":"MEUCIH9kmNHRC9cnqAlVvMwTb/tbJ1UFAg/vhe0k5V5ZM6AbAiEAtATFSlqaEdiFMSXgrjutyHqbUC88GFHPrvKlG+X+Y1Y=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":295193},"main":"./dist/cli/index.js","type":"module","_from":"file:synsoftworks-depgraph-cli-0.2.2.tgz","types":"./dist/cli/index.d.ts","engines":{"node":">=20.0.0"},"scripts":{"dev":"tsx src/cli/index.ts","lint":"tsc --noEmit","test":"node --import tsx --test","build":"tsc -p tsconfig.json","test:smoke":"node --import tsx --test test/json-renderer.test.ts test/review-renderer.test.ts test/evaluation-renderer.test.ts test/integrated-scenarios.test.ts"},"_npmUser":{"name":"synsoftworks","email":"sara@synthesissoftworks.com"},"_resolved":"/private/var/folders/qr/d7200y4s6rl5lqfbwp4fxzk80000gn/T/ecf9193a6c9e078d0049e0882588c3e2/synsoftworks-depgraph-cli-0.2.2.tgz","_integrity":"sha512-DycDg4/dZvuyW9jl7XL06Dz2ebH/4WIWRk7akq4mF17MbCKdA3JjJroR3pII5ZcrScsYP0V30TAfjcghzVXRug==","repository":{"url":"git+https://github.com/synsoftworks/depgraph-cli.git","type":"git"},"_npmVersion":"10.9.4","description":"Graph-first dependency risk analysis for npm packages and dependency trees","directories":{},"_nodeVersion":"22.22.1","dependencies":{"ink":"^5.0.0","chalk":"^5.6.2","react":"^18.3.1","semver":"^7.7.2","commander":"^14.0.3"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.21.0","typescript":"^6.0.2","@types/node":"^25.5.0","@types/react":"^18.3.12"},"_npmOperationalInternal":{"tmp":"tmp/depgraph-cli_0.2.2_1775360373504_0.6283033532723934","host":"s3://npm-registry-packages-npm-production"}},"0.2.3":{"name":"@synsoftworks/depgraph-cli","version":"0.2.3","keywords":["security","supply-chain","supply-chain-security","dependencies","dependency-security","npm-audit","risk-scoring","cli","terminal-ui"],"author":{"name":"Synthesis Softworks","email":"sara@synthesissoftworks.com"},"license":"MIT","_id":"@synsoftworks/depgraph-cli@0.2.3","maintainers":[{"name":"synsoftworks","email":"sara@synthesissoftworks.com"}],"homepage":"https://depgraph.sh","bugs":{"url":"https://github.com/synsoftworks/depgraph-cli/issues"},"bin":{"depgraph":"dist/cli/index.js","depgraph-cli":"dist/cli/index.js"},"dist":{"shasum":"0e735c7538e25084e664858feb68de5cc20484a6","tarball":"https://registry.npmjs.org/@synsoftworks/depgraph-cli/-/depgraph-cli-0.2.3.tgz","fileCount":111,"integrity":"sha512-mXKwa8iYjX9LReWeZvUeXibQRSQ4PFLyiO9fUrICfgPKiu//YYzvJeqx10NpEiJPk0B8JgH3S8mvDWLkiTleHw==","signatures":[{"sig":"MEQCICX30+FRIoJgYalIvBYEaDAlTQJL4J5vwkoDUyl8d5qDAiB1Od1tjcOvgdn315rAEh64UH4b+3CKZrEPhiwZiHcd4A==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":295142},"main":"./dist/cli/index.js","type":"module","_from":"file:synsoftworks-depgraph-cli-0.2.3.tgz","types":"./dist/cli/index.d.ts","engines":{"node":">=20.0.0"},"scripts":{"dev":"tsx src/cli/index.ts","lint":"tsc --noEmit","test":"node --import tsx --test","build":"tsc -p tsconfig.json","test:smoke":"node --import tsx --test test/json-renderer.test.ts test/review-renderer.test.ts test/evaluation-renderer.test.ts test/integrated-scenarios.test.ts"},"_npmUser":{"name":"synsoftworks","email":"sara@synthesissoftworks.com"},"_resolved":"/private/var/folders/qr/d7200y4s6rl5lqfbwp4fxzk80000gn/T/7d98e45bf2cd5a0d50d1cce795762ac8/synsoftworks-depgraph-cli-0.2.3.tgz","_integrity":"sha512-mXKwa8iYjX9LReWeZvUeXibQRSQ4PFLyiO9fUrICfgPKiu//YYzvJeqx10NpEiJPk0B8JgH3S8mvDWLkiTleHw==","repository":{"url":"git+https://github.com/synsoftworks/depgraph-cli.git","type":"git"},"_npmVersion":"10.9.4","description":"Graph-first dependency risk analysis for npm packages and dependency trees","directories":{},"_nodeVersion":"22.22.1","dependencies":{"ink":"^5.0.0","chalk":"^5.6.2","react":"^18.3.1","semver":"^7.7.2","commander":"^14.0.3"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.21.0","typescript":"^6.0.2","@types/node":"^25.5.0","@types/react":"^18.3.12"},"_npmOperationalInternal":{"tmp":"tmp/depgraph-cli_0.2.3_1775360924630_0.3442203667155215","host":"s3://npm-registry-packages-npm-production"}},"0.2.4":{"name":"@synsoftworks/depgraph-cli","version":"0.2.4","keywords":["security","supply-chain","supply-chain-security","dependencies","dependency-security","npm-audit","risk-scoring","cli","terminal-ui"],"author":{"name":"Synthesis Softworks","email":"sara@synthesissoftworks.com"},"license":"MIT","_id":"@synsoftworks/depgraph-cli@0.2.4","maintainers":[{"name":"synsoftworks","email":"sara@synthesissoftworks.com"}],"homepage":"https://depgraph.sh","bugs":{"url":"https://github.com/synsoftworks/depgraph-cli/issues"},"bin":{"depgraph":"dist/cli/index.js","depgraph-cli":"dist/cli/index.js"},"dist":{"shasum":"9c8c94e6f9849ebb15aca5eedf88c9f09c448bfe","tarball":"https://registry.npmjs.org/@synsoftworks/depgraph-cli/-/depgraph-cli-0.2.4.tgz","fileCount":123,"integrity":"sha512-IXWzadIEAy3La/85NF/HYMJj6RRTMLSXqsIadRKbLv89GgqswEjOM5Kg2R20e2ZGyCOXrXHxFf6no0WHXJs5AQ==","signatures":[{"sig":"MEYCIQCWwJPuZX+YI8VnZ7xjocgugcYiKlZufonOPEbV7R+tdwIhAL67Y+liX+IOQXkqzh8U2Fa/i3Q/bV0Wg3CXRgB4hHUI","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":326775},"main":"./dist/cli/index.js","type":"module","_from":"file:synsoftworks-depgraph-cli-0.2.4.tgz","types":"./dist/cli/index.d.ts","engines":{"node":">=20.0.0"},"scripts":{"dev":"tsx src/cli/index.ts","lint":"tsc --noEmit","test":"node --import tsx --test","build":"tsc -p tsconfig.json","test:smoke":"node --import tsx --test test/json-renderer.test.ts test/review-renderer.test.ts test/evaluation-renderer.test.ts test/integrated-scenarios.test.ts"},"_npmUser":{"name":"synsoftworks","email":"sara@synthesissoftworks.com"},"_resolved":"/private/var/folders/qr/d7200y4s6rl5lqfbwp4fxzk80000gn/T/7bce268018378c1a782a178ff409c6b1/synsoftworks-depgraph-cli-0.2.4.tgz","_integrity":"sha512-IXWzadIEAy3La/85NF/HYMJj6RRTMLSXqsIadRKbLv89GgqswEjOM5Kg2R20e2ZGyCOXrXHxFf6no0WHXJs5AQ==","repository":{"url":"git+https://github.com/synsoftworks/depgraph-cli.git","type":"git"},"_npmVersion":"10.9.4","description":"Graph-first dependency risk analysis for npm packages and dependency trees","directories":{},"_nodeVersion":"22.22.1","dependencies":{"ink":"^5.0.0","yaml":"^2.8.3","chalk":"^5.6.2","react":"^18.3.1","semver":"^7.7.2","commander":"^14.0.3"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.21.0","typescript":"^6.0.2","@types/node":"^25.5.0","@types/react":"^18.3.12"},"_npmOperationalInternal":{"tmp":"tmp/depgraph-cli_0.2.4_1775445134246_0.9032869504650047","host":"s3://npm-registry-packages-npm-production"}},"0.2.5":{"name":"@synsoftworks/depgraph-cli","version":"0.2.5","keywords":["security","supply-chain","supply-chain-security","dependencies","dependency-security","npm-audit","risk-scoring","cli","terminal-ui"],"author":{"name":"Synthesis Softworks","email":"sara@synthesis.software"},"license":"MIT","_id":"@synsoftworks/depgraph-cli@0.2.5","maintainers":[{"name":"synsoftworks","email":"sara@synthesissoftworks.com"},{"name":"saraeloop","email":"sara@saraeloop.com"}],"homepage":"https://depgraph.sh","bugs":{"url":"https://github.com/synsoftworks/depgraph-cli/issues"},"bin":{"depgraph":"dist/cli/index.js","depgraph-cli":"dist/cli/index.js"},"dist":{"shasum":"9077c60102093861f48a55fefe08746307bd562c","tarball":"https://registry.npmjs.org/@synsoftworks/depgraph-cli/-/depgraph-cli-0.2.5.tgz","fileCount":163,"integrity":"sha512-ChMPThs8422S+POC306ioB7592jNsX0LuBHGMTbqMpG+lKSjbPiwqV+C45my+eInA2sm2RY51sPSMvbVPQ3M3A==","signatures":[{"sig":"MEYCIQCqMGIyt6OWaolZImKH5W/65C8WsHk2uYdAi4aF+ZpHkgIhALSrjxQ4H4W1uKVW6U03hYFOjox85asyoeYjfOy0h3TZ","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":388943},"main":"./dist/cli/index.js","type":"module","types":"./dist/cli/index.d.ts","engines":{"node":">=20.0.0"},"gitHead":"9cd2bfd20507b59ae7e3c84261a0ddd05ad5ebab","scripts":{"dev":"tsx src/cli/index.ts","lint":"tsc --noEmit","test":"node --import tsx --test","build":"tsc -p tsconfig.json","benchmark":"node dist/benchmark/index.js","test:smoke":"node --import tsx --test test/json-renderer.test.ts test/review-renderer.test.ts test/evaluation-renderer.test.ts test/integrated-scenarios.test.ts","prepublishOnly":"pnpm run build"},"_npmUser":{"name":"saraeloop","email":"sara@saraeloop.com"},"repository":{"url":"git+https://github.com/synsoftworks/depgraph-cli.git","type":"git"},"_npmVersion":"10.9.3","description":"Graph-first dependency risk analysis for npm packages and dependency trees","directories":{},"_nodeVersion":"22.19.0","dependencies":{"ink":"^5.0.0","yaml":"^2.8.3","chalk":"^5.6.2","react":"^18.3.1","semver":"^7.7.2","commander":"^14.0.3"},"_hasShrinkwrap":false,"packageManager":"pnpm@10.33.0","devDependencies":{"tsx":"^4.21.0","typescript":"^6.0.2","@types/node":"^25.5.0","@types/react":"^18.3.12"},"_npmOperationalInternal":{"tmp":"tmp/depgraph-cli_0.2.5_1775519676851_0.018236798918140007","host":"s3://npm-registry-packages-npm-production"}},"0.2.6":{"name":"@synsoftworks/depgraph-cli","version":"0.2.6","keywords":["security","supply-chain","supply-chain-security","dependencies","dependency-security","npm-audit","risk-scoring","cli","terminal-ui"],"author":{"name":"Synthesis Softworks","email":"sara@synthesis.software"},"license":"MIT","_id":"@synsoftworks/depgraph-cli@0.2.6","maintainers":[{"name":"synsoftworks","email":"sara@synthesissoftworks.com"},{"name":"saraeloop","email":"sara@saraeloop.com"}],"homepage":"https://depgraph.sh","bugs":{"url":"https://github.com/synsoftworks/depgraph-cli/issues"},"bin":{"depgraph":"dist/cli/index.js","depgraph-cli":"dist/cli/index.js"},"dist":{"shasum":"73d1db35788833e12c86a88158b3e4dfab9f4380","tarball":"https://registry.npmjs.org/@synsoftworks/depgraph-cli/-/depgraph-cli-0.2.6.tgz","fileCount":167,"integrity":"sha512-VZ37R05FtdXb+L1BV6cexmTseq3+t0URDHvXrc5fIiG169waqyr4m8wh1jIWhmv+ii7+hBr4tldu1scFV1ywqw==","signatures":[{"sig":"MEQCIH7QIRcKItx9RXFtxqgACeOXv7y93TFeuYyAsmlRRjR/AiAN8WCuvmOHyON2r3JqeFQ8SlP6kxUsylzo21JSQ8ALEQ==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":409319},"main":"./dist/cli/index.js","type":"module","types":"./dist/cli/index.d.ts","engines":{"node":">=20.0.0"},"gitHead":"8e49ad80ff6bf3279501843bb9c014c569df25e8","scripts":{"dev":"tsx src/cli/index.ts","lint":"tsc --noEmit","test":"node --import tsx --test","build":"tsc -p tsconfig.json","benchmark":"node dist/benchmark/index.js","test:smoke":"node --import tsx --test test/json-renderer.test.ts test/review-renderer.test.ts test/evaluation-renderer.test.ts test/integrated-scenarios.test.ts","prepublishOnly":"pnpm run build"},"_npmUser":{"name":"saraeloop","email":"sara@saraeloop.com"},"repository":{"url":"git+https://github.com/synsoftworks/depgraph-cli.git","type":"git"},"_npmVersion":"10.9.3","description":"Graph-first dependency risk analysis for npm packages and dependency trees","directories":{},"_nodeVersion":"22.19.0","dependencies":{"ink":"^5.0.0","yaml":"^2.8.3","chalk":"^5.6.2","react":"^18.3.1","semver":"^7.7.2","commander":"^14.0.3"},"_hasShrinkwrap":false,"packageManager":"pnpm@10.33.0","devDependencies":{"tsx":"^4.21.0","typescript":"^6.0.2","@types/node":"^25.5.0","@types/react":"^18.3.12"},"_npmOperationalInternal":{"tmp":"tmp/depgraph-cli_0.2.6_1775583863470_0.6168623958218775","host":"s3://npm-registry-packages-npm-production"}},"0.2.7":{"name":"@synsoftworks/depgraph-cli","version":"0.2.7","keywords":["security","supply-chain","supply-chain-security","dependencies","dependency-security","npm-audit","risk-scoring","cli","terminal-ui"],"author":{"name":"Synthesis Softworks","email":"sara@synthesis.software"},"license":"MIT","_id":"@synsoftworks/depgraph-cli@0.2.7","maintainers":[{"name":"synsoftworks","email":"sara@synthesissoftworks.com"},{"name":"saraeloop","email":"sara@saraeloop.com"}],"homepage":"https://depgraph.sh","bugs":{"url":"https://github.com/synsoftworks/depgraph-cli/issues"},"bin":{"depgraph":"dist/cli/index.js","depgraph-cli":"dist/cli/index.js"},"dist":{"shasum":"97e99a1efe8622c0e2dccac83f8ac965453918ba","tarball":"https://registry.npmjs.org/@synsoftworks/depgraph-cli/-/depgraph-cli-0.2.7.tgz","fileCount":171,"integrity":"sha512-HsBzAML40Lnz5fC6n1E4A9a1CYwUS/x7ESiweJ5OU84nhawnYgLoXwb9Xc63x+2ncb1z26NVV7UpbDeTBJjMLQ==","signatures":[{"sig":"MEYCIQCVKzANxqZJaEjlBwSn1QhQ5lBE7yD4hID0bJJSEn+AnQIhAN136fQidn03qyTdaBUtJ9jPN9ytR5gf2zqRZCnTI4Wm","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":425979},"main":"./dist/cli/index.js","type":"module","types":"./dist/cli/index.d.ts","engines":{"node":">=20.0.0"},"gitHead":"5a303b8f7da27f826563e251f507617b7c87717e","scripts":{"dev":"tsx src/cli/index.ts","lint":"tsc --noEmit","test":"node --import tsx --test","build":"tsc -p tsconfig.json","benchmark":"node dist/benchmark/index.js","test:smoke":"node --import tsx --test test/json-renderer.test.ts test/review-renderer.test.ts test/evaluation-renderer.test.ts test/integrated-scenarios.test.ts","prepublishOnly":"pnpm run build"},"_npmUser":{"name":"saraeloop","email":"sara@saraeloop.com"},"repository":{"url":"git+https://github.com/synsoftworks/depgraph-cli.git","type":"git"},"_npmVersion":"10.9.3","description":"Graph-first dependency risk analysis for npm packages and dependency trees","directories":{},"_nodeVersion":"22.19.0","dependencies":{"ink":"^5.0.0","yaml":"^2.8.3","chalk":"^5.6.2","react":"^18.3.1","semver":"^7.7.2","commander":"^14.0.3"},"_hasShrinkwrap":false,"packageManager":"pnpm@10.33.0","devDependencies":{"tsx":"^4.21.0","typescript":"^6.0.2","@types/node":"^25.5.0","@types/react":"^18.3.12"},"_npmOperationalInternal":{"tmp":"tmp/depgraph-cli_0.2.7_1775593929181_0.40216032986689987","host":"s3://npm-registry-packages-npm-production"}},"0.2.8":{"name":"@synsoftworks/depgraph-cli","version":"0.2.8","keywords":["security","supply-chain","supply-chain-security","dependencies","dependency-security","npm-audit","risk-scoring","cli","terminal-ui"],"author":{"name":"Synthesis Softworks","email":"sara@synthesis.software"},"license":"MIT","_id":"@synsoftworks/depgraph-cli@0.2.8","maintainers":[{"name":"synsoftworks","email":"sara@synthesissoftworks.com"},{"name":"saraeloop","email":"sara@saraeloop.com"}],"homepage":"https://depgraph.sh","bugs":{"url":"https://github.com/synsoftworks/depgraph-cli/issues"},"bin":{"depgraph":"dist/cli/index.js","depgraph-cli":"dist/cli/index.js"},"dist":{"shasum":"1914b1cabb1177cc1b30f1a48fde42df21501971","tarball":"https://registry.npmjs.org/@synsoftworks/depgraph-cli/-/depgraph-cli-0.2.8.tgz","fileCount":171,"integrity":"sha512-CNcKu8rOLhtYs6rY8zMKnYK5AUh3SPIx8E8SCPF2XeR0NnRiYjH+gf9yLMErKEmNMLcViMgs5Di4V0rqdvJ/Cg==","signatures":[{"sig":"MEQCICmVpe10yDZ+gscN1mGJWMnvTQH3Ij/Q5YMerfXlRl+sAiA8N4ncYP1TvpMXf1Zfgb6xtlDzbHZ5/BaVdzCnYgk5rQ==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":431577},"main":"./dist/cli/index.js","type":"module","types":"./dist/cli/index.d.ts","engines":{"node":">=20.0.0"},"gitHead":"16fdd846cfefab41cb1685e5b5a0def8a0ef47e6","scripts":{"dev":"tsx src/cli/index.ts","lint":"tsc --noEmit","test":"node --import tsx --test","build":"tsc -p tsconfig.json","benchmark":"node dist/benchmark/index.js","test:smoke":"node --import tsx --test test/json-renderer.test.ts test/review-renderer.test.ts test/evaluation-renderer.test.ts test/integrated-scenarios.test.ts","prepublishOnly":"pnpm run build"},"_npmUser":{"name":"saraeloop","email":"sara@saraeloop.com"},"repository":{"url":"git+https://github.com/synsoftworks/depgraph-cli.git","type":"git"},"_npmVersion":"10.9.3","description":"Graph-first dependency risk analysis for npm packages and dependency trees","directories":{},"_nodeVersion":"22.19.0","dependencies":{"ink":"^5.0.0","yaml":"^2.8.3","chalk":"^5.6.2","react":"^18.3.1","semver":"^7.7.2","commander":"^14.0.3"},"_hasShrinkwrap":false,"packageManager":"pnpm@10.33.0","devDependencies":{"tsx":"^4.21.0","typescript":"^6.0.2","@types/node":"^25.5.0","@types/react":"^18.3.12"},"_npmOperationalInternal":{"tmp":"tmp/depgraph-cli_0.2.8_1775612184211_0.5065885103580103","host":"s3://npm-registry-packages-npm-production"}},"0.2.9":{"name":"@synsoftworks/depgraph-cli","version":"0.2.9","keywords":["security","supply-chain","supply-chain-security","dependencies","dependency-security","npm-audit","risk-scoring","cli","terminal-ui"],"author":{"name":"Synthesis Softworks","email":"sara@synthesis.software"},"license":"MIT","_id":"@synsoftworks/depgraph-cli@0.2.9","maintainers":[{"name":"synsoftworks","email":"sara@synthesissoftworks.com"},{"name":"saraeloop","email":"sara@saraeloop.com"}],"homepage":"https://depgraph.sh","bugs":{"url":"https://github.com/synsoftworks/depgraph-cli/issues"},"bin":{"depgraph":"dist/cli/index.js","depgraph-cli":"dist/cli/index.js"},"dist":{"shasum":"3170756566043a7b80faba4fe825611188bac034","tarball":"https://registry.npmjs.org/@synsoftworks/depgraph-cli/-/depgraph-cli-0.2.9.tgz","fileCount":179,"integrity":"sha512-njXLhgWddAzUF9Ed709DwLjIumXmwYW9fuOv7taAFXY2q38zimszZaNhDiKB3uR/xK9jWsmCtCGuXE6x+lpRJA==","signatures":[{"sig":"MEQCIHfbqn7l3l5XBAY6+JW2H82msrW4gS0ANH9YZ6JpMN/cAiAnjSrxl6tG53l0G+y9hmxdJqvShuR+82dA+WCpdpEG9Q==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":479965},"main":"./dist/cli/index.js","type":"module","types":"./dist/cli/index.d.ts","engines":{"node":">=20.0.0"},"gitHead":"0b128b3e5c7a2b140248f4e8d1dad928353e0d41","scripts":{"dev":"tsx src/cli/index.ts","lint":"tsc --noEmit","test":"node --import tsx --test","build":"tsc -p tsconfig.json","benchmark":"node dist/benchmark/index.js","test:smoke":"node --import tsx --test test/json-renderer.test.ts test/review-renderer.test.ts test/evaluation-renderer.test.ts test/integrated-scenarios.test.ts","prepublishOnly":"pnpm run build"},"_npmUser":{"name":"saraeloop","email":"sara@saraeloop.com"},"repository":{"url":"git+https://github.com/synsoftworks/depgraph-cli.git","type":"git"},"_npmVersion":"10.9.3","description":"Graph-first dependency risk analysis for npm packages and dependency trees","directories":{},"_nodeVersion":"22.19.0","dependencies":{"ink":"^5.0.0","yaml":"^2.8.3","chalk":"^5.6.2","react":"^18.3.1","semver":"^7.7.2","commander":"^14.0.3"},"_hasShrinkwrap":false,"packageManager":"pnpm@10.33.0","devDependencies":{"tsx":"^4.21.0","typescript":"^6.0.2","@types/node":"^25.5.0","@types/react":"^18.3.12"},"_npmOperationalInternal":{"tmp":"tmp/depgraph-cli_0.2.9_1776134997835_0.6733745531426087","host":"s3://npm-registry-packages-npm-production"}},"0.3.0":{"name":"@synsoftworks/depgraph-cli","version":"0.3.0","keywords":["security","supply-chain","supply-chain-security","dependencies","dependency-security","npm-audit","risk-scoring","cli","terminal-ui"],"author":{"name":"Synthesis Softworks","email":"sara@synthesis.software"},"license":"MIT","_id":"@synsoftworks/depgraph-cli@0.3.0","maintainers":[{"name":"synsoftworks","email":"sara@synthesissoftworks.com"},{"name":"saraeloop","email":"sara@saraeloop.com"}],"homepage":"https://depgraph.sh","bugs":{"url":"https://github.com/synsoftworks/depgraph-cli/issues"},"bin":{"depgraph":"dist/cli/index.js","depgraph-cli":"dist/cli/index.js"},"dist":{"shasum":"911c3cc4ce0414f046ab4d3d90a3d834464ef4ec","tarball":"https://registry.npmjs.org/@synsoftworks/depgraph-cli/-/depgraph-cli-0.3.0.tgz","fileCount":179,"integrity":"sha512-4IiurtW1iXpf9mgojyRABp4W/LkTulqGpQq21rTu3/V45/gBbq+GGP88+LJ7IYlr48wUgOvjTQ8wZ9zFHJ07jw==","signatures":[{"sig":"MEUCIB7gfykh7Wa4xByaBk8A/n9I3w0p23oQP86mUk2IbMwDAiEAv0LH34Tr2reugiCa1l15HtZ3WnZUo4bILXJGxu22hs4=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"attestations":{"url":"https://registry.npmjs.org/-/npm/v1/attestations/@synsoftworks%2fdepgraph-cli@0.3.0","provenance":{"predicateType":"https://slsa.dev/provenance/v1"}},"unpackedSize":480692},"main":"./dist/cli/index.js","type":"module","types":"./dist/cli/index.d.ts","engines":{"node":">=20.0.0"},"gitHead":"31f0451c10577f357787b29ce9b98fcecbddb20d","scripts":{"dev":"tsx src/cli/index.ts","lint":"tsc --noEmit","test":"node --import tsx --test test/**/*.test.ts","build":"tsc -p tsconfig.json","test:e2e":"node --import tsx --test test/**/*.e2e.ts","benchmark":"node dist/benchmark/index.js","test:smoke":"node --import tsx --test test/json-renderer.test.ts test/review-renderer.test.ts test/evaluation-renderer.test.ts test/integrated-scenarios.test.ts","pack:dry-run":"npm --cache .npm-pack-cache pack --dry-run","release:check":"pnpm test && pnpm run build && pnpm run test:e2e && pnpm run pack:dry-run","prepublishOnly":"pnpm run release:check"},"_npmUser":{"name":"GitHub Actions","email":"npm-oidc-no-reply@github.com","trustedPublisher":{"id":"github","oidcConfigId":"oidc:daedfcef-0487-4b00-9ba1-ee7ecc4cf876"}},"repository":{"url":"git+https://github.com/synsoftworks/depgraph-cli.git","type":"git"},"_npmVersion":"11.11.0","description":"Graph-first dependency risk analysis for npm packages and dependency trees","directories":{},"_nodeVersion":"24.14.1","dependencies":{"ink":"^5.0.0","yaml":"^2.8.3","chalk":"^5.6.2","react":"^18.3.1","semver":"^7.7.2","commander":"^14.0.3"},"_hasShrinkwrap":false,"packageManager":"pnpm@10.33.0","devDependencies":{"tsx":"^4.21.0","typescript":"^6.0.2","@types/node":"^25.5.0","@types/react":"^18.3.12"},"_npmOperationalInternal":{"tmp":"tmp/depgraph-cli_0.3.0_1776208102130_0.7941295953042837","host":"s3://npm-registry-packages-npm-production"}}},"time":{"created":"2026-04-01T18:13:45.479Z","modified":"2026-04-24T00:55:20.389Z","0.0.1":"2026-04-01T18:13:45.798Z","0.0.2":"2026-04-01T18:38:57.345Z","0.0.4":"2026-04-01T19:17:37.710Z","0.0.5":"2026-04-01T19:22:16.066Z","0.0.6":"2026-04-01T19:24:04.289Z","0.0.7":"2026-04-01T19:24:12.454Z","0.0.8":"2026-04-01T19:32:27.606Z","0.0.9":"2026-04-01T19:38:44.058Z","0.1.0":"2026-04-01T23:50:50.721Z","0.1.1":"2026-04-02T02:09:51.853Z","0.1.2":"2026-04-03T15:33:39.840Z","0.1.3":"2026-04-03T15:53:18.077Z","0.1.4":"2026-04-03T15:58:40.150Z","0.2.0":"2026-04-03T19:03:59.545Z","0.2.1":"2026-04-03T21:09:55.788Z","0.2.2":"2026-04-05T03:39:33.667Z","0.2.3":"2026-04-05T03:48:44.784Z","0.2.4":"2026-04-06T03:12:14.397Z","0.2.5":"2026-04-06T23:54:37.049Z","0.2.6":"2026-04-07T17:44:23.663Z","0.2.7":"2026-04-07T20:32:09.329Z","0.2.8":"2026-04-08T01:36:24.374Z","0.2.9":"2026-04-14T02:49:57.988Z","0.3.0":"2026-04-14T23:08:22.297Z"},"bugs":{"url":"https://github.com/synsoftworks/depgraph-cli/issues"},"author":{"name":"Synthesis Softworks","email":"sara@synthesis.software"},"license":"MIT","homepage":"https://depgraph.sh","keywords":["security","supply-chain","supply-chain-security","dependencies","dependency-security","npm-audit","risk-scoring","cli","terminal-ui"],"repository":{"url":"git+https://github.com/synsoftworks/depgraph-cli.git","type":"git"},"description":"Graph-first dependency risk analysis for npm packages and dependency trees","maintainers":[{"email":"sara@synthesissoftworks.com","name":"synthesisengineering"},{"email":"sara@saraeloop.com","name":"saraeloop"}],"readme":"<h1 align=\"center\">\n  DepGraph CLI\n</h1>\n\n<p align=\"center\">\n  <a href=\"https://www.npmjs.com/package/@synsoftworks/depgraph-cli\"><img alt=\"npm version\" src=\"https://img.shields.io/npm/v/%40synsoftworks%2Fdepgraph-cli?style=flat-square\"></a>\n  <a href=\"https://www.npmjs.com/package/@synsoftworks/depgraph-cli\"><img alt=\"npm downloads per month\" src=\"https://img.shields.io/npm/dm/%40synsoftworks%2Fdepgraph-cli?style=flat-square\"></a>\n  <a href=\"https://nodejs.org/\"><img alt=\"node version\" src=\"https://img.shields.io/node/v/%40synsoftworks%2Fdepgraph-cli?style=flat-square\"></a>\n  <a href=\"https://github.com/synsoftworks/depgraph-cli/actions/workflows/ci.yml\"><img alt=\"CI\" src=\"https://github.com/synsoftworks/depgraph-cli/actions/workflows/ci.yml/badge.svg\"></a>\n  <a href=\"https://github.com/synsoftworks/depgraph-cli/blob/main/LICENSE\"><img alt=\"License\" src=\"https://img.shields.io/github/license/synsoftworks/depgraph-cli?style=flat-square\"></a>\n</p>\n\nDepGraph scores npm packages and their transitive dependencies against behavioral signals, publish age, version velocity, and registry deprecation. It tells you exactly why something looks suspicious. Signature-based scanners miss what DepGraph catches by design.\n\nRun it before every install. Use the JSON output in CI. Built for agents.\n\n## Get Started\n\nInstall globally:\n\n```bash\nnpm install -g @synsoftworks/depgraph-cli\n```\n\nRun without installing:\n\n```bash\nnpx @synsoftworks/depgraph-cli scan axios\n```\n\n## Quick Start\n\nShow help:\n\n```bash\ndepgraph --help\n```\n\nScan a package with plain terminal output:\n\n```bash\ndepgraph scan axios --no-tui --depth 2\n```\n\nScan the same package with JSON output:\n\n```bash\ndepgraph scan axios --json --depth 2\n```\n\nScan a local project from an explicit lockfile path:\n\n```bash\ndepgraph scan --package-lock ./package-lock.json\ndepgraph scan --pnpm-lock ./pnpm-lock.yaml\n```\n\nDetect a supported lockfile in the current project root:\n\n```bash\ndepgraph scan --project . --json\n```\n\n`--project` will resolve either `package-lock.json` or `pnpm-lock.yaml` when present.\n\nAppend a review outcome to a stored scan finding:\n\n```bash\ndepgraph review <record_id> --target package_finding:axios@1.14.0 --outcome benign --notes \"reviewed by analyst\"\n```\n\nCheck how many of your scanned packages have full metadata enrichment versus degraded coverage:\n\n```bash\ndepgraph eval\n```\n\n## Plain-Text Example\n\nPlain-text output from a real scan:\n\n```text\nScan: plain-crypto-js@0.0.1-security.0\nMode: registry_package\nTarget: plain-crypto-js\nOverall risk: critical (1.00)\nTotal scanned: 1\nSuspicious packages: 1\n\nChanged edges in current tree view:\n- none\n\nFindings:\n- plain-crypto-js@0.0.1-security.0 [critical 1.00] via plain-crypto-js@0.0.1-security.0\n  target: package_finding:plain-crypto-js@0.0.1-security.0\n  explanation: package was published 1 day(s) ago; package has only 1 published version(s); package is an npm security placeholder or tombstone for a previously malicious package\n\nCurrent tree view:\n- plain-crypto-js@0.0.1-security.0 [critical 1.00]\n```\n\n## Summary Example\n\nCompact summary output for CI logs or quick review:\n\n```text\nnext@15.1.7\n\nreview (0.64)\n\n- packages requiring review: 1\n- findings with security-related signals: 1\n- packages that appear safe: 13\n```\n\n## JSON Example\n\nUse `--json` when DepGraph is being called from CI, scripts, or agents. JSON mode bypasses terminal rendering and emits a deterministic result shape.\n\n```bash\ndepgraph scan axios --json --depth 2\n```\n\nTrimmed example:\n\n```json\n{\n  \"record_id\": \"2026-04-02T00:00:00.000Z:axios@1.14.0:depth=2\",\n  \"scan_mode\": \"registry_package\",\n  \"scan_target\": \"axios\",\n  \"baseline_record_id\": null,\n  \"requested_depth\": 2,\n  \"threshold\": 0.4,\n  \"root\": {\n    \"name\": \"axios\",\n    \"version\": \"1.14.0\",\n    \"risk_score\": 0.32,\n    \"risk_level\": \"safe\"\n  },\n  \"findings\": [],\n  \"total_scanned\": 9,\n  \"suspicious_count\": 0,\n  \"overall_risk_score\": 0.32,\n  \"overall_risk_level\": \"safe\"\n}\n```\n\nThis mode is intended for automation, CI checks, and agent tooling that needs machine-readable output instead of terminal formatting.\n\n## CI Integration\n\nUse `--summary` for compact, deterministic scan results in CI logs.\n\n```yaml\n- name: Scan dependencies\n  run: depgraph scan --project . --summary\n```\n\nExit code is `1` when any findings exist, `0` when all packages appear safe.\n\n## Current Scan Modes\n\n- `registry_package` scans start from an npm package spec and resolve structure from registry metadata\n- `package_lock` scans start from a local `package-lock.json` and read dependency structure from the lockfile itself\n- `pnpm_lock` scans start from a local `pnpm-lock.yaml` importer view and normalize it into the same dependency graph shape used by other scan modes\n\n`package_lock` scanning currently supports `package-lock.json` with `lockfileVersion >= 2` and a `packages` map only.\n\n`pnpm_lock` scanning currently supports `pnpm-lock.yaml` importer-backed project scans with a `packages` snapshot map. Local `workspace:`, `link:`, and `file:` dependency references are reported as unsupported rather than projected dishonestly.\n\n## Local Data Model\n\nDepGraph now persists repo-local history under `.depgraph/`:\n\nThis history powers baseline diffing and the `depgraph eval` dataset readiness report.\n\n- `scans.jsonl` for immutable scan records\n- `review-events.jsonl` for append-only review annotations\n\n## Status\n\nCore scanning is stable. Registry package scanning, lockfile scanning \n(npm and pnpm), baseline diffing, and CI integration all work reliably \ntoday. Some dependency types — private packages, workspace references, \nlocal file links — degrade gracefully rather than failing.\n\nPre-v1. Interfaces may change before 1.0.\n\n## Roadmap\n\n### v0.2 — Shipped\n\n- [x] npm package scanning with traversal\n- [x] rich Ink terminal UI and plain text mode\n- [x] deterministic JSON output for agents and CI\n- [x] local scan persistence and append-only review history\n- [x] projected dependency edge delta against prior baseline\n- [x] package-lock.json project scanning\n- [x] pnpm-lock.yaml project scanning\n- [x] graceful degradation for private and non-registry dependencies\n- [x] finding-level review targets and source-precedence label integrity\n- [x] local dataset evaluation\n- [x] depgraph.sh\n\n### v0.3 — In Progress\n\n- [ ] yarn lockfile support\n- [ ] explain command\n- [ ] CI/CD GitHub Action\n\n### Later\n\n- [ ] sensitive import analysis\n- [ ] maintainer history signals\n- [ ] organization-level scan aggregation\n\n## Contributing\n\nSee [CONTRIBUTING.md](CONTRIBUTING.md) for local setup, workflow, and contribution guidelines.\n\n## Security\n\nIf you believe you found a security issue in DepGraph itself, see [SECURITY.md](SECURITY.md).\n\n## License\n\nDepGraph is available under the [MIT License](LICENSE).\n","readmeFilename":"README.md"}