Parse and compare package versions and ranges. From debian, npm, pypi, ruby and more. Process all the version range specs and expressions. This project is sponsored by an NLnet project https://nlnet.nl/project/vulnerabilitydatabase/ , the Google Summer of Code, nexB and others generous sponsors!
active 2025-03-08 → 2026-05-01 (UTC)
Activity over time
Daily event counts in the loaded window
Line chart, 420 days from 2025-03-08 to 2026-05-01. Pushes: 19 total, peak 5 in a day. Pull requests: 15 total, peak 5 in a day. Issues: 2 total, peak 1 in a day. Comments: 12 total, peak 2 in a day. Stars: 7 total, peak 1 in a day.
- Pushes
- Pull requests
- Issues
- Comments
- Stars
Stars, PRs, issues and forks are under-captured in the later part of this window. GH Archive progressively stopped capturing non-push events during 2026 — −95% or worse by the end of the window. Every series here except Pushes fades for that reason, so a decline above reflects the archive, not this repository. Pushes stay reliable throughout, so read them, and the contributor counts derived from them, as the real signal. Data health has the measurements.
Top contributors
Pushes, PRs, issues, reviews and comments — stars and forks excluded, so this is contribution rather than popularity
| Contributor | Contributions | Pushes | PRs | Comments |
|---|---|---|---|---|
| keshav-space | 19 | 13 | 5 | 0 |
| pombredanne | 11 | 2 | 2 | 3 |
| immqu | 5 | 0 | 1 | 3 |
| TG1999 | 5 | 2 | 3 | 0 |
| jaimergp | 3 | 0 | 2 | 1 |
| darakian | 3 | 0 | 0 | 1 |
| Samk1710 | 3 | 0 | 1 | 1 |
| mjherzog | 2 | 2 | 0 | 0 |
| barv-jfrog | 2 | 0 | 0 | 2 |
| ziadhany | 1 | 0 | 0 | 1 |
| xovishnukosuri | 1 | 0 | 1 | 0 |
Recent activity
Latest issues, pull requests and releases
- Pull request#187xovishnukosuri2026-03-14 11:07
- Issue comment#185Samk17102026-02-25 14:53Add alpine in RANGE_CLASS_BY_SCHEME
- Pull request#185Samk17102026-02-24 07:37
- Issue comment#181ziadhany2026-02-18 22:42Add support for Gentoo bump function
- Pull request#149immqu2026-02-02 19:26
- Issue#176keshav-space2025-11-13 13:20`packaging.version` fails to parse legit PyPI package version
- Issue#173pombredanne2025-10-07 08:58Ensure we support the vulnerable version range (VVR) rules from Github advisories
- Issue comment#149immqu2025-09-16 13:52Datetime versioning scheme
- Issue comment#160immqu2025-09-11 15:02Add lexicographic versioning scheme
- Releasekeshav-space2025-09-11 13:33v31.1.0
- Pull request#171keshav-space2025-09-11 13:28
- Pull request#170keshav-space2025-09-11 13:16
- Pull request#169TG19992025-09-11 11:57
- Pull request#169TG19992025-09-11 11:50
- ReleaseTG19992025-09-11 11:42Version v31.1.0
- Pull request#168TG19992025-09-11 11:40
- Pull request#148pombredanne2025-08-20 16:20
- Pull request#165keshav-space2025-08-12 17:46
- Pull request#165keshav-space2025-08-12 17:42
- Pull request#164keshav-space2025-08-12 16:00
- Issue comment#157jaimergp2025-07-03 15:57Add type hints to package
- Pull request#159pombredanne2025-06-25 17:27
- Issue comment#159pombredanne2025-06-25 17:27Add py.typed marker file
- Issue comment#157pombredanne2025-06-25 16:48Add type hints to package
- Pull request#159jaimergp2025-06-25 16:28
Totals cover only the window loaded into ClickHouse and count events, not GitHub's lifetime totals — 7 stars here means stars gained during the window, not the repo's star count.