Software Passport · public repository

balajz/meine

Observed by SPR on 2026-09-14 at commit 9b665f806776fb7b80358ff94a53e49e1b6db547 (main). Source: github.com/balajz/meine.

SBOM components32
Open findings21
Critical / high0 / 0
Evidence items36

What was observed

Syft generated the software bill of materials from the repository's manifests; each component was checked against the OSV vulnerability database; the tree was scanned for secrets, infrastructure-as-code issues and licence signals. Vendor-supplied attestations: none — this page contains only independent observation.

Open findings

SeverityFindingComponentFixed in
MEDIUMLicense not observeduc-micro-py
MEDIUMLicense not observedtyping-extensions
MEDIUMLicense not observedtextual
MEDIUMLicense not observedrich
MEDIUMLicense not observedpygments
MEDIUMLicense not observedpsutil
MEDIUMLicense not observedplatformdirs
MEDIUMLicense not observedmultivolumefile
MEDIUMLicense not observedmeine
MEDIUMLicense not observedmdurl
MEDIUMLicense not observedmdit-py-plugins
MEDIUMLicense not observedmarkdown-it-py
MEDIUMLicense not observedlinkify-it-py
MEDIUMLicense not observedcolorama
MEDIUMLicense not observedclick
MEDIUMLicense not observedappdirs
MEDIUMLicense not observedaiofiles
LOWGHSA-5239-wwwm-4pmqpygments@2.19.2
UNKNOWNPYSEC-2026-2987pygments@2.19.2
UNKNOWNPYSEC-2026-2132click@8.3.2
UNKNOWNPYSEC-2026-2132click@8.2.1

Get the full passport

Continuous verification, evidence ledger, plain-English and auditor reports, and a shareable signed passport are available to SPR customers.

See plans   Review your own repository free

Software Passport Registry Ltd. Every number on this page was observed by SPR's own scan of the public repository at the commit shown; nothing is estimated or vendor-supplied. Absence of a finding is not proof of safety. Terms · Privacy