Kospex

Latest version: v0.0.15

Safety actively analyzes 723217 Python packages for vulnerabilities to keep your Python projects secure.

Scan your dependencies

0.0.15

Added
- a static parse_ssh_git_url method
- MVP sca method to eventually replace kospex deps with kospex sca
- an Initial End Point for dependencies queries
- kreaper can now remove all rows with repo_id from a table
- initial [orphans feature(https://github.com/kospex/kospex/issues/20)
- tenure functions and pages to show how long developers have worked

Changed
- Improved tests for Git URLs
- Removed references to pygit2 (mostly commented out) as no longer used

Fixed
- Parsing of ssh urls like gitgithub.com:kospex/panopticas.git
- parsing of git URLs with trailing slash which failed e.g. https://github.com/kospex/kospex/
- kreaper can now delete a repo_id out of all tables
- Shell escaped filenames to handle spaces in Git commands
- Improved SCC testing so that only Git managed files are added to Metadata table

[Unreleased]

VERSION - DATE

Added
Changed
Fixed

0.0.14

Added
- a switch to orphans to allow a targe list of repos to assess
Changed
- KospexGit now has safer (handles "/" in org) repo_id generation when setting a repo_url

Fixed
- Bug fix when kospex metadata is run and not in a Git dir.

0.0.13

Added
- Initial End Point for OSI (Open Source Inventory) queries
- Architecture Decision Record are in /docs/adr/
- New kospex CLI metadata function using Panopticas
- [Use panopticas for base file detection](https://github.com/kospex/kospex/issues/11)

Changed
- KospexGit now uses Panopticas for the get_repo_files function

Fixed
- commented out the experimental graph-api which broke the workflow build, kweb kospex_query
- Link to GitHub from the developer page when we know their GitHub handle [16](https://github.com/kospex/kospex/issues/16)

0.0.12

Added
- added Treemap graph which can be a toggled graph from bubble charts

Changed
- None

Fixed
- graph APIs for bubble and treemap dont dislay repos when showing developers
- Fixed bug where landscape drilldown didn't work [Issue 15](https://github.com/kospex/kospex/issues/15)

0.0.11

Added
- Added an <id> param to the /repos/ endpoint for easier linking
Changed
Fixed
- Fixed commit slider so it works on bubble graph, removed reset button
- Fixed bubble graph redraw overlap issue when commit slider is reduced.
- Fixed npm parsing bug on absence of dependencies in a package.json
- Fixed bug where repos by tech page didn't display

0.0.10

Added
- a help section in the menu (available from /help/)
- Intial start on header macro in jinja templates to make drilldown headings more repeatable
- initial work on using panopticas for file type identification
- added some static methods for generating and parsing repo_id in kospex_git
- Implemented command on kospex CLI for feature request [kospex version command](https://github.com/kospex/kospex/issues/13)
- Implemented [Krunner trufflehog capability to report only verified secrets](https://github.com/kospex/kospex/issues/10)

Changed
- Fixed how percentages and circles were created in summary view
- added no_scc options to some commands



VERSION - DATE

Added
Changed
Fixed

Links

Releases

© 2025 Safety CLI Cybersecurity Inc. All Rights Reserved.