Package Dependencies & Security Scraper (deps.dev) avatar

Package Dependencies & Security Scraper (deps.dev)

Pricing

$0.60 / 1,000 records

Go to Apify Store
Package Dependencies & Security Scraper (deps.dev)

Package Dependencies & Security Scraper (deps.dev)

Package Dependencies & Security Scraper (deps.dev). No API key required. Pay only per result; empty or failed runs cost nothing.

Pricing

$0.60 / 1,000 records

Rating

0.0

(0)

Developer

Christian Pichichero

Christian Pichichero

Maintained by Community

Actor stats

0

Bookmarked

2

Total users

1

Monthly active users

12 hours ago

Last modified

Categories

Share

Package Dependencies & Security Scraper (deps.dev) — a fast, reliable package deps scraper that needs no API key. You pay only for the results you get: failed or empty runs are always free.

This package deps scraper runs on the Apify platform, so you can call it from the API, run it on a schedule, or export results to JSON, CSV, Excel, or Google Sheets.

What this scraper does

  • Extracts structured package deps data with no browser or API key required
  • Returns clean JSON, one record per result — ready for sheets, databases, or apps
  • Pay-per-result pricing: you are never charged for a run that returns nothing
  • Runs on demand or on a schedule, and integrates with 5,000+ apps via the Apify API and webhooks

What data you get

Each result record includes fields such as:

  • System (system) — e.g. "npm"
  • Name (name) — e.g. "express"
  • Version (version) — e.g. "4.18.2"
  • Published At (publishedAt) — e.g. "2022-10-08T20:14:32Z"
  • Is Default (isDefault) — e.g. false
  • Is Deprecated (isDeprecated) — e.g. false
  • Deprecated Reason (deprecatedReason) — e.g. null
  • Licenses (licenses) — e.g. ["MIT"]
  • Advisory Keys (advisoryKeys) — e.g. ["GHSA-qw6h-vgh9-j6wx", "GHSA-rv95-896h-c2vc"]
  • Advisory Count (advisoryCount) — e.g. 2
  • Links (links) — e.g. {"HOMEPAGE": "http://expressjs.com/", "ISSUE_TRACKER": "h...
  • Registries (registries) — e.g. ["https://registry.npmjs.org/"]
  • Related Projects (relatedProjects) — e.g. [{"projectId": "github.com/expressjs/express", "relationT...
  • Version Count (versionCount) — e.g. 288
  • Url (url) — e.g. "http://expressjs.com/"

Input

FieldTypeDescription
packagesarrayPackage names to look up, one per line. Use the exact registry name. For npm scopes use '@scope/name' (e.g....
systemstringThe package ecosystem / registry the names belong to. All packages in one run share this system.
versionstringPin a specific version to fetch for every package (e.g. '4.18.2'). Leave blank to use each package's defaul...
onlyWithAdvisoriesbooleanIf enabled, only output package-versions that have one or more known security advisories (advisoryKeys).
maxResultsintegerMaximum number of package-version records to return across all packages.

Example output

{
"type": "package-version",
"system": "npm",
"name": "express",
"version": "4.18.2",
"publishedAt": "2022-10-08T20:14:32Z",
"isDefault": false,
"isDeprecated": false,
"deprecatedReason": null,
"licenses": [
"MIT"
],
"advisoryKeys": [
"GHSA-qw6h-vgh9-j6wx",
"GHSA-rv95-896h-c2vc"
],
"advisoryCount": 2,
"links": {
"HOMEPAGE": "http://expressjs.com/",
"ISSUE_TRACKER": "https://github.com/expressjs/express/issues",
"ORIGIN": "https://registry.npmjs.org/express/4.18.2",
"SOURCE_REPO": "git+https://github.com/expressjs/express.git"
},
"registries": [
"https://registry.npmjs.org/"
],
"relatedProjects": [
{
"projectId": "github.com/expressjs/express",
"relationType": "ISSUE_TRACKER",
"relationProvenance": "UNVERIFIED_METADATA"
},
{
"projectId": "github.com/expressjs/express",
"relationType": "SOURCE_REPO",
"relationProvenance": "UNVERIFIED_METADATA"
}
],
"versionCount": 288,
"url": "http://expressjs.com/",
"query": "express",
"scrapedAt": "2026-07-11T00:00:00Z"
}

Use cases

  • Monitor packages, repos, and dependencies
  • Automate security and license audits
  • Build developer dashboards and alerts
  • Enrich internal tools and integrations

Pricing

This actor uses pay-per-result pricing at $0.0006 per record. There is no monthly fee and no start fee — and empty or failed runs cost $0, so you only ever pay for data you actually receive.

Frequently asked questions

Do I need an API key or account for the source? No. This package deps scraper works out of the box with no API key required.

What happens if a run returns no results? You are not charged. Billing is per result, so empty or failed runs are free.

Can I run the package deps scraper on a schedule? Yes. Use the Apify Scheduler to run it hourly, daily, or on any cron schedule, and get results by webhook or API.

What export formats are supported? Results can be exported as JSON, CSV, Excel, HTML, or pushed to Google Sheets, a database, or your own app via the Apify API.

Is the data structured? Yes. Every package deps result is a clean, flat JSON record you can use immediately.