Skip to main content
Version: v4.2.26 (Current)

Software Bill of Materials (SBOM)

Build Information

📋 Components Overview

Repository Components

Total Components: 1200

ComponentVersionTypeLicense
@algolia/abtesting1.1.0npmMIT
@algolia/autocomplete-core1.17.9npmMIT
@algolia/autocomplete-plugin-algolia-insights1.17.9npmMIT
@algolia/autocomplete-preset-algolia1.17.9npmMIT
@algolia/autocomplete-shared1.17.9npmMIT
@algolia/client-abtesting5.35.0npmMIT
@algolia/client-analytics5.35.0npmMIT
@algolia/client-common5.35.0npmMIT
@algolia/client-insights5.35.0npmMIT
@algolia/client-personalization5.35.0npmMIT
@algolia/client-query-suggestions5.35.0npmMIT
@algolia/client-search5.35.0npmMIT
@algolia/events4.0.1npmMIT
@algolia/ingestion1.35.0npmMIT
@algolia/monitoring1.35.0npmMIT
@algolia/recommend5.35.0npmMIT
@algolia/requester-browser-xhr5.35.0npmMIT
@algolia/requester-fetch5.35.0npmMIT
@algolia/requester-node-http5.35.0npmMIT
@ampproject/remapping2.3.0npmApache-2.0
No components found---
note

Showing first 20 components. Download the full SBOM JSON file below for complete details.

Python Dependencies

Python Packages: 59

PackageVersionLicenseScope
PyYAML6.0.2MITrequired
SecretStorage3.3.3License :: OSI Approved :: BSD Licenserequired
arrow1.3.0License :: OSI Approved :: Apache Software Licenserequired
attrs25.3.0MITrequired
boolean.py5.0BSD-2-Clauserequired
boto31.40.10License :: OSI Approved :: Apache Software Licenserequired
botocore1.40.10License :: OSI Approved :: Apache Software Licenserequired
certifi2025.8.3MPL-2.0required
cffi1.17.1MITrequired
chardet5.2.0License :: OSI Approved :: GNU Lesser General Public License v2 or later (LGPLv2+)required
charset-normalizer3.4.3MITrequired
colorama0.4.6License :: OSI Approved :: BSD Licenserequired
cryptography45.0.6Unknownrequired
cyclonedx-bom7.0.0Apache-2.0required
cyclonedx-python-lib10.5.0Apache-2.0required

Node.js Dependencies (Website)

Node.js Packages: 1050

PackageVersionLicenseType
core3.8.1MITrequired
module-type-aliases3.8.1MITrequired
preset-classic3.8.1MITrequired
types3.8.1MITrequired
docusaurus-search-local0.52.1MITrequired
react3.1.0MITrequired
clsx2.1.1MITrequired
prism-react-renderer2.4.1MITrequired
react-dom19.1.1MITrequired
react19.1.1MITrequired
babel3.8.1MITrequired
bundler3.8.1MITrequired
logger3.8.1MITrequired
mdx-loader3.8.1MITrequired
utils-common3.8.1MITrequired
No Node.js packages found---

🔍 Security Analysis

Known Vulnerabilities

SeverityCount
🔴 Critical0
🟠 High1
🟡 Medium2
🟢 Low0

Top Vulnerabilities

CVE IDSeverityPackageVersionDescription
GHSA-4v9v-hfq4-rm2vMediumwebpack-dev-server4.15.2webpack-dev-server users' source code may be stolen when they access a malicious web site
GHSA-9jgg-88mc-972hMediumwebpack-dev-server4.15.2webpack-dev-server users' source code may be stolen when they access a malicious web site with non-Chromium based browser
GHSA-cxww-7g56-2vh6Highactions/download-artifactv4@actions/download-artifact has an Arbitrary File Write via artifact extraction

📥 Download SBOM Files

Raw SBOM Files

FormatFileDescription
JSON (Syft)current-sbom.jsonComplete repository component analysis
CycloneDXcurrent-sbom-cyclonedx.jsonIndustry-standard SBOM format
SPDXcurrent-sbom-spdx.jsonSoftware Package Data Exchange format
Python (Environment)python-sbom.jsonPython dependencies from environment
Python (Exact Versions)python-freeze-sbom.jsonPython dependencies with exact versions
Node.js (CycloneDX)nodejs-website-sbom.jsonWebsite dependencies

Formatted Files (Human-Readable)

FormatFileDescription
JSON (Formatted)current-sbom-formatted.jsonPretty-printed JSON for manual review
Python (Formatted)python-sbom-formatted.jsonFormatted Python dependencies
Python Freeze (Formatted)python-freeze-sbom-formatted.jsonFormatted exact version dependencies
Node.js (Formatted)nodejs-website-sbom-formatted.jsonFormatted website dependencies
Vulnerabilitiesvulnerabilities-formatted.jsonSecurity vulnerability report

🔧 Usage & Integration

Integration Benefits

This SBOM is automatically generated and integrated into the documentation build process, providing:

  • Real-time dependency tracking - Updated with every build
  • Vulnerability monitoring - Automatic security scanning with Grype
  • Compliance documentation - Standard SBOM formats (CycloneDX, SPDX)
  • Version-specific tracking - Historical dependency changes
  • Supply chain transparency - Complete visibility into dependencies

Use Cases

Download and analyze the SBOM files to:

  • Security Teams: Identify vulnerabilities and plan remediation
  • Compliance Teams: Generate compliance reports and audits
  • Development Teams: Track dependency changes and licenses
  • DevOps Teams: Integrate into CI/CD pipelines for automated scanning
  • Legal Teams: Analyze licensing compliance and obligations

This SBOM summary is automatically updated with every documentation build.