datasette
pypiv0.65.2An open source multi-tool for exploring and publishing data
License Apache License, Version 2.0167 versions1 maintainers35 deps
55
/ 100
Health
safe to use
[email protected] is safe to use (health: 55/100)
Update to >= 01e0558825b8f7ec17d3b691aa072daf122fcc74 to fix known vulnerabilities
Health breakdown0 – 100
15/25
maintenance
0/20
popularity
23/25
security
15/15
maturity
2/15
community
Vulnerabilities
1
1 medium
Advisories (1)
| Severity | ID | Summary | Fixed in |
|---|---|---|---|
| medium | CVE-2023-40570 | Datasette is an open source multi-tool for exploring and publishing data. This bug affects Datasette instances running a Datasette 1.0 alpha - 1.0a0, 1.0a1, 1.0a2 or 1.0a3 - in an online accessible location but with authentication enabled using a plugin such as datasette-auth-passwords. The `/-/api` API explorer endpoint could reveal the names of both databases and tables - but not their contents - to an unauthenticated user. Datasette 1.0a4 has a fix for this issue. This will block access to th | 01e0558825b8f7ec17d3b691aa072daf122fcc74 |
⚠ Possible typosquat
Name is close to a popular package. Targets:
datasets (close_name dist 2)
Health History
Dependency Tree
License Audit
Dependencies (35)
asgirefclickclick-default-groupJinja2hupperhttpxpluggyuvicornaiofilesjanusasgi-csrfPyYAMLmergedeepitsdangeroussetuptoolspipplatformdirstyping_extensionsflexcacheflexparserfurosphinx-autobuild;codespell;blacken-docs;sphinx-copybutton;pytestpytest-xdistpytest-asynciobeautifulsoup4blackblacken-docspytest-timeouttrustmecogapprich;
API access
Get this data programmatically — free, no authentication.
curl https://depscope.dev/api/check/pypi/datasetteMore from pypi
Last updated · 2025-11-05T18:23:23.916182Z