Skip to main content
FOSSA Logo

PyPI packages

License and vulnerability reference for 2 PyPI packages. Each page shows the top-level declared license, CVE-linked advisories, published versions, and the licenses carried by the package's transitive dependencies.

Most in-demand PyPI packages

Licenses shown are each package's top-level declared license.

  • langchain-openaiThe agent engineering platform.
    MITNo known CVE-linked advisories
  • dbt-coredbt enables data analysts and engineers to transform their data using the same practices that software engineers use to build applications.
    Apache-2.0No known CVE-linked advisories

Recently updated

Licenses shown are each package's top-level declared license.

  • dbt-coredbt enables data analysts and engineers to transform their data using the same practices that software engineers use to build applications.
    v1.12.3 Aug 2026Apache-2.0No known CVE-linked advisories
  • langchain-openaiThe agent engineering platform.
    v1.6.0 Aug 2026MITNo known CVE-linked advisories

Browse all 2 PyPI packages

Fewer than 25 published PyPI packages, so the full list is on this page.

Licenses shown are each package's top-level declared license.

  • langchain-openaiThe agent engineering platform.
    MITNo known CVE-linked advisories
  • dbt-coredbt enables data analysts and engineers to transform their data using the same practices that software engineers use to build applications.
    Apache-2.0No known CVE-linked advisories

These pages read declared metadata. Run the same license and vulnerability view across your PyPI dependencies, where a full scan resolves what metadata leaves out.

Scan free

Dependency graph and package metadata from deps.dev (Google Open Source Insights), used under CC BY 4.0.

Vulnerability data from the Open Source Vulnerability (OSV) database, including the GitHub Advisory Database and the PyPI Advisory Database, used under CC BY 4.0. Only CVE-linked advisories are shown.

License and vulnerability information on this page is derived from public package metadata and public advisory databases. It is not legal advice, and it reflects the top-level declared license only. Verify the license and terms of any software for your own needs.