Software Passport · public repository

vspy/capybara-console

Observed by SPR on 2026-09-16 at commit 7360ab1d0125717cafed469f1d8c5a311de250e6 (master). Source: github.com/vspy/capybara-console.

SBOM components36
Open findings38
Critical / high0 / 0
Evidence items40

What was observed

Syft generated the software bill of materials from the repository's manifests; each component was checked against the OSV vulnerability database; the tree was scanned for secrets, infrastructure-as-code issues and licence signals. Vendor-supplied attestations: none — this page contains only independent observation.

Open findings (top 25 of 38)

SeverityFindingComponentFixed in
MEDIUMLicense not observedxpath
MEDIUMLicense not observedtzinfo
MEDIUMLicense not observedtreetop
MEDIUMLicense not observedtilt
MEDIUMLicense not observedthread_safe
MEDIUMLicense not observedthor
MEDIUMLicense not observedsprockets-rails
MEDIUMLicense not observedsprockets
MEDIUMLicense not observedrake
MEDIUMLicense not observedrailties
MEDIUMLicense not observedrails
MEDIUMLicense not observedrack-test
MEDIUMLicense not observedrack
MEDIUMLicense not observedpolyglot
MEDIUMLicense not observednokogiri
MEDIUMLicense not observedmulti_json
MEDIUMLicense not observedminitest
MEDIUMLicense not observedmini_portile
MEDIUMLicense not observedmime-types
MEDIUMLicense not observedmail
MEDIUMLicense not observedjquery-rails
MEDIUMLicense not observedi18n
MEDIUMLicense not observedhike
MEDIUMLicense not observederubis
MEDIUMLicense not observedcapybara-console

Get the full passport

Continuous verification, evidence ledger, plain-English and auditor reports, and a shareable signed passport are available to SPR customers.

See plans   Review your own repository free

Software Passport Registry Ltd. Every number on this page was observed by SPR's own scan of the public repository at the commit shown; nothing is estimated or vendor-supplied. Absence of a finding is not proof of safety. Terms · Privacy