{"enrichment":{"capability":"pip-audit scans Python environments and requirements files for packages with known vulnerabilities using the Python Packaging Advisory Database, supporting multiple vulnerability services and output formats including SBOMs.","verdict":"pip-audit is a well-maintained, actively developed security tool from the PyPA ecosystem with no known vulnerabilities, low installation friction, and permissive licensing. It is suitable for integration into CI/CD pipelines and local development workflows to detect vulnerable dependencies."},"id":"pip-audit","links":{"html":"https://skillfed.io/packages/pip-audit","md":"https://skillfed.io/packages/pip-audit.md","pypi":"https://pypi.org/project/pip-audit/"},"maintenance":{"status":"active"},"meta":{"latest_release":"2026-06-10","license_spdx":null,"license_treatment":"permissive","name":"pip-audit","python_support":"supports_current","summary":"A tool for scanning Python environments for known vulnerabilities"},"popularity":{"tier":"top_1000"},"security":{"n_vulnerabilities":0},"version":"2.10.1"}
