{
  "bomFormat": "CycloneDX",
  "specVersion": "1.7",
  "serialNumber": "urn:uuid:27ccb4ed-7679-483d-8193-2f9a583307cc",
  "version": 1,
  "metadata": {
    "timestamp": "2026-07-22T18:58:04Z",
    "tools": {
      "components": [
        {
          "group": "@cyclonedx",
          "name": "cdxgen",
          "version": "12.3.3",
          "purl": "pkg:npm/%40cyclonedx/cdxgen@12.3.3",
          "type": "application",
          "bom-ref": "pkg:npm/@cyclonedx/cdxgen@12.3.3",
          "publisher": "OWASP Foundation",
          "authors": [
            {
              "name": "OWASP Foundation"
            }
          ]
        }
      ]
    },
    "authors": [
      {
        "name": "OWASP Foundation"
      }
    ],
    "lifecycles": [
      {
        "phase": "pre-build"
      }
    ],
    "component": {
      "name": "charset",
      "group": "",
      "version": "1.0.1",
      "description": "Get the content charset from header and html content-type.",
      "purl": "pkg:npm/charset@1.0.1",
      "bom-ref": "pkg:npm/charset@1.0.1",
      "author": "fengmk2 <fengmk2@gmail.com> (https://fengmk2.com)",
      "properties": [
        {
          "name": "cdx:npm:scripts",
          "value": "test, ci, lint"
        }
      ],
      "type": "application",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/node-modules/charset"
        },
        {
          "type": "vcs",
          "url": "git://github.com/node-modules/charset.git"
        }
      ]
    },
    "properties": [
      {
        "name": "cdx:bom:componentTypes",
        "value": "npm"
      },
      {
        "name": "cdx:bom:componentNamespaces",
        "value": "@my-scope\\n@rtsao\\n@types"
      },
      {
        "name": "cdx:bom:componentSrcFiles",
        "value": "node_modules/@rtsao/scc/package.json\\nnode_modules/@types/json5/package.json\\nnode_modules/a-sync-waterfall/package.json\\nnode_modules/abbrev/package.json\\nnode_modules/acorn-es7-plugin/package.json\\nnode_modules/acorn-es7-plugin/test/package.json\\nnode_modules/acorn-jsx/node_modules/acorn/package.json\\nnode_modules/acorn-jsx/package.json\\nnode_modules/acorn/package.json\\nnode_modules/address/package.json\\nnode_modules/ajv-keywords/package.json\\nnode_modules/ajv/package.json\\nnode_modules/amdefine/package.json\\nnode_modules/ansi-escapes/package.json\\nnode_modules/ansi-regex/package.json\\nnode_modules/ansi-styles/package.json\\nnode_modules/argparse/package.json\\nnode_modules/aria-query/package.json\\nnode_modules/array-buffer-byte-length/package.json\\nnode_modules/array-filter/package.json\\nnode_modules/array-find/package.json\\nnode_modules/array-includes/package.json\\nnode_modules/array.prototype.findlast/package.json\\nnode_modules/array.prototype.findlastindex/package.json\\nnode_modules/array.prototype.flat/package.json\\nnode_modules/array.prototype.flatmap/package.json\\nnode_modules/array.prototype.tosorted/package.json\\nnode_modules/arraybuffer.prototype.slice/package.json\\nnode_modules/asap/package.json\\nnode_modules/ast-types-flow/package.json\\nnode_modules/async-function/package.json\\nnode_modules/async/package.json\\nnode_modules/available-typed-arrays/package.json\\nnode_modules/axe-core/package.json\\nnode_modules/axobject-query/package.json\\nnode_modules/babel-code-frame/package.json\\nnode_modules/babel-eslint/package.json\\nnode_modules/babel-messages/package.json\\nnode_modules/babel-runtime/package.json\\nnode_modules/babel-traverse/node_modules/globals/package.json\\nnode_modules/babel-traverse/package.json\\nnode_modules/babel-types/package.json\\nnode_modules/babylon/package.json\\nnode_modules/balanced-match/package.json\\nnode_modules/brace-expansion/package.json\\nnode_modules/browser-stdout/package.json\\nnode_modules/buffer-from/package.json\\nnode_modules/call-bind-apply-helpers/package.json\\nnode_modules/call-bind/package.json\\nnode_modules/call-bound/package.json\\nnode_modules/call-matcher/node_modules/estraverse/package.json\\nnode_modules/call-matcher/package.json\\nnode_modules/call-signature/package.json\\nnode_modules/caller-path/package.json\\nnode_modules/callsites/package.json\\nnode_modules/chalk/package.json\\nnode_modules/chardet/package.json\\nnode_modules/childprocess/package.json\\nnode_modules/circular-json/package.json\\nnode_modules/cli-cursor/package.json\\nnode_modules/cli-width/package.json\\nnode_modules/co/package.json\\nnode_modules/color-convert/package.json\\nnode_modules/color-name/package.json\\nnode_modules/commander/package.json\\nnode_modules/common-bin/package.json\\nnode_modules/concat-map/package.json\\nnode_modules/concat-stream/package.json\\nnode_modules/convert-source-map/package.json\\nnode_modules/copy-to/package.json\\nnode_modules/core-js/package.json\\nnode_modules/core-util-is/package.json\\nnode_modules/cross-spawn/package.json\\nnode_modules/d/package.json\\nnode_modules/damerau-levenshtein/package.json\\nnode_modules/data-view-buffer/package.json\\nnode_modules/data-view-byte-length/package.json\\nnode_modules/data-view-byte-offset/package.json\\nnode_modules/debug/package.json\\nnode_modules/deep-equal/package.json\\nnode_modules/deep-is/package.json\\nnode_modules/define-data-property/package.json\\nnode_modules/define-properties/package.json\\nnode_modules/detect-port/node_modules/debug/package.json\\nnode_modules/detect-port/node_modules/ms/package.json\\nnode_modules/detect-port/package.json\\nnode_modules/diff-match-patch/package.json\\nnode_modules/diff/package.json\\nnode_modules/doctrine/package.json\\nnode_modules/dunder-proto/package.json\\nnode_modules/eastasianwidth/package.json\\nnode_modules/egg-bin/package.json\\nnode_modules/egg-ci/package.json\\nnode_modules/egg-utils/package.json\\nnode_modules/emoji-regex/package.json\\nnode_modules/empower-assert/node_modules/estraverse/package.json\\nnode_modules/empower-assert/package.json\\nnode_modules/empower-core/package.json\\nnode_modules/empower/package.json\\nnode_modules/es-abstract/package.json\\nnode_modules/es-define-property/package.json\\nnode_modules/es-errors/package.json\\nnode_modules/es-iterator-helpers/package.json\\nnode_modules/es-object-atoms/package.json\\nnode_modules/es-set-tostringtag/package.json\\nnode_modules/es-shim-unscopables/package.json\\nnode_modules/es-to-primitive/package.json\\nnode_modules/es5-ext/package.json\\nnode_modules/es6-iterator/package.json\\nnode_modules/es6-map/package.json\\nnode_modules/es6-set/package.json\\nnode_modules/es6-symbol/package.json\\nnode_modules/es6-weak-map/package.json\\nnode_modules/escallmatch/node_modules/esprima/package.json\\nnode_modules/escallmatch/package.json\\nnode_modules/escape-html/package.json\\nnode_modules/escape-string-regexp/package.json\\nnode_modules/escodegen/node_modules/estraverse/package.json\\nnode_modules/escodegen/package.json\\nnode_modules/escope/node_modules/estraverse/package.json\\nnode_modules/escope/package.json\\nnode_modules/eslint-config-egg/package.json\\nnode_modules/eslint-import-resolver-node/node_modules/debug/package.json\\nnode_modules/eslint-import-resolver-node/node_modules/ms/package.json\\nnode_modules/eslint-import-resolver-node/package.json\\nnode_modules/eslint-module-utils/node_modules/debug/package.json\\nnode_modules/eslint-module-utils/node_modules/ms/package.json\\nnode_modules/eslint-module-utils/package.json\\nnode_modules/eslint-plugin-import/node_modules/debug/package.json\\nnode_modules/eslint-plugin-import/node_modules/ms/package.json\\nnode_modules/eslint-plugin-import/node_modules/semver/package.json\\nnode_modules/eslint-plugin-import/package.json\\nnode_modules/eslint-plugin-jsx-a11y/package.json\\nnode_modules/eslint-plugin-react/node_modules/semver/package.json\\nnode_modules/eslint-plugin-react/package.json\\nnode_modules/eslint-scope/node_modules/estraverse/package.json\\nnode_modules/eslint-scope/package.json\\nnode_modules/eslint-visitor-keys/package.json\\nnode_modules/eslint/node_modules/ansi-regex/package.json\\nnode_modules/eslint/node_modules/ansi-styles/package.json\\nnode_modules/eslint/node_modules/chalk/package.json\\nnode_modules/eslint/node_modules/debug/package.json\\nnode_modules/eslint/node_modules/ms/package.json\\nnode_modules/eslint/node_modules/strip-ansi/package.json\\nnode_modules/eslint/node_modules/supports-color/package.json\\nnode_modules/eslint/package.json\\nnode_modules/esniff/package.json\\nnode_modules/espower-loader/package.json\\nnode_modules/espower-location-detector/node_modules/source-map/package.json\\nnode_modules/espower-location-detector/package.json\\nnode_modules/espower-source/node_modules/estraverse/package.json\\nnode_modules/espower-source/package.json\\nnode_modules/espower/node_modules/estraverse/package.json\\nnode_modules/espower/node_modules/source-map/package.json\\nnode_modules/espower/package.json\\nnode_modules/espree/package.json\\nnode_modules/esprima/package.json\\nnode_modules/espurify/package.json\\nnode_modules/esquery/package.json\\nnode_modules/esrecurse/package.json\\nnode_modules/estraverse/package.json\\nnode_modules/esutils/package.json\\nnode_modules/event-emitter/package.json\\nnode_modules/ext/package.json\\nnode_modules/external-editor/package.json\\nnode_modules/fast-deep-equal/package.json\\nnode_modules/fast-json-stable-stringify/package.json\\nnode_modules/fast-levenshtein/package.json\\nnode_modules/figures/package.json\\nnode_modules/file-entry-cache/package.json\\nnode_modules/flat-cache/node_modules/rimraf/package.json\\nnode_modules/flat-cache/package.json\\nnode_modules/for-each/package.json\\nnode_modules/fs.realpath/package.json\\nnode_modules/function-bind/package.json\\nnode_modules/function.prototype.name/package.json\\nnode_modules/functional-red-black-tree/package.json\\nnode_modules/functions-have-names/package.json\\nnode_modules/generator-function/package.json\\nnode_modules/get-intrinsic/package.json\\nnode_modules/get-proto/package.json\\nnode_modules/get-symbol-description/package.json\\nnode_modules/glob/package.json\\nnode_modules/globals/package.json\\nnode_modules/globalthis/package.json\\nnode_modules/gopd/package.json\\nnode_modules/graceful-fs/package.json\\nnode_modules/graceful-readlink/package.json\\nnode_modules/growl/package.json\\nnode_modules/handlebars/package.json\\nnode_modules/has-ansi/package.json\\nnode_modules/has-bigints/package.json\\nnode_modules/has-flag/package.json\\nnode_modules/has-property-descriptors/package.json\\nnode_modules/has-proto/package.json\\nnode_modules/has-symbols/package.json\\nnode_modules/has-tostringtag/package.json\\nnode_modules/hasown/package.json\\nnode_modules/he/package.json\\nnode_modules/iconv-lite/package.json\\nnode_modules/ignore/package.json\\nnode_modules/imurmurhash/package.json\\nnode_modules/indexof/package.json\\nnode_modules/inflight/package.json\\nnode_modules/inherits/package.json\\nnode_modules/inquirer/node_modules/ansi-regex/package.json\\nnode_modules/inquirer/node_modules/ansi-styles/package.json\\nnode_modules/inquirer/node_modules/chalk/package.json\\nnode_modules/inquirer/node_modules/strip-ansi/package.json\\nnode_modules/inquirer/node_modules/supports-color/package.json\\nnode_modules/inquirer/package.json\\nnode_modules/intelli-espower-loader/package.json\\nnode_modules/internal-slot/package.json\\nnode_modules/invariant/package.json\\nnode_modules/is-arguments/package.json\\nnode_modules/is-array-buffer/package.json\\nnode_modules/is-async-function/package.json\\nnode_modules/is-bigint/package.json\\nnode_modules/is-boolean-object/package.json\\nnode_modules/is-callable/package.json\\nnode_modules/is-core-module/package.json\\nnode_modules/is-data-view/package.json\\nnode_modules/is-date-object/package.json\\nnode_modules/is-extglob/package.json\\nnode_modules/is-finalizationregistry/package.json\\nnode_modules/is-fullwidth-code-point/package.json\\nnode_modules/is-generator-function/package.json\\nnode_modules/is-glob/package.json\\nnode_modules/is-map/package.json\\nnode_modules/is-negative-zero/package.json\\nnode_modules/is-number-object/package.json\\nnode_modules/is-regex/package.json\\nnode_modules/is-resolvable/package.json\\nnode_modules/is-set/package.json\\nnode_modules/is-shared-array-buffer/package.json\\nnode_modules/is-string/package.json\\nnode_modules/is-symbol/package.json\\nnode_modules/is-typed-array/package.json\\nnode_modules/is-url/package.json\\nnode_modules/is-weakmap/package.json\\nnode_modules/is-weakref/package.json\\nnode_modules/is-weakset/package.json\\nnode_modules/isarray/package.json\\nnode_modules/isexe/package.json\\nnode_modules/istanbul/node_modules/escodegen/package.json\\nnode_modules/istanbul/node_modules/esprima/package.json\\nnode_modules/istanbul/node_modules/estraverse/package.json\\nnode_modules/istanbul/node_modules/glob/package.json\\nnode_modules/istanbul/node_modules/has-flag/package.json\\nnode_modules/istanbul/node_modules/resolve/package.json\\nnode_modules/istanbul/node_modules/resolve/test/pathfilter/deep_ref/node_modules/deep/package.json\\nnode_modules/istanbul/node_modules/source-map/package.json\\nnode_modules/istanbul/node_modules/supports-color/package.json\\nnode_modules/istanbul/package.json\\nnode_modules/iterator.prototype/package.json\\nnode_modules/js-tokens/package.json\\nnode_modules/js-yaml/package.json\\nnode_modules/json-schema-traverse/package.json\\nnode_modules/json-stable-stringify-without-jsonify/package.json\\nnode_modules/json3/package.json\\nnode_modules/json5/package.json\\nnode_modules/jsx-ast-utils/package.json\\nnode_modules/language-subtag-registry/package.json\\nnode_modules/language-tags/package.json\\nnode_modules/levn/package.json\\nnode_modules/lodash._baseassign/package.json\\nnode_modules/lodash._basecopy/package.json\\nnode_modules/lodash._basecreate/package.json\\nnode_modules/lodash._getnative/package.json\\nnode_modules/lodash._isiterateecall/package.json\\nnode_modules/lodash.create/package.json\\nnode_modules/lodash.isarguments/package.json\\nnode_modules/lodash.isarray/package.json\\nnode_modules/lodash.keys/package.json\\nnode_modules/lodash/package.json\\nnode_modules/loose-envify/package.json\\nnode_modules/lru-cache/package.json\\nnode_modules/math-intrinsics/package.json\\nnode_modules/merge-estraverse-visitors/node_modules/estraverse/package.json\\nnode_modules/merge-estraverse-visitors/package.json\\nnode_modules/mimic-fn/package.json\\nnode_modules/minimatch/package.json\\nnode_modules/minimist/package.json\\nnode_modules/mkdirp/package.json\\nnode_modules/mocha/node_modules/commander/package.json\\nnode_modules/mocha/node_modules/debug/package.json\\nnode_modules/mocha/node_modules/glob/package.json\\nnode_modules/mocha/node_modules/has-flag/package.json\\nnode_modules/mocha/node_modules/minimist/package.json\\nnode_modules/mocha/node_modules/mkdirp/package.json\\nnode_modules/mocha/node_modules/supports-color/package.json\\nnode_modules/mocha/package.json\\nnode_modules/ms/package.json\\nnode_modules/multi-stage-sourcemap/node_modules/source-map/package.json\\nnode_modules/multi-stage-sourcemap/package.json\\nnode_modules/mute-stream/package.json\\nnode_modules/natural-compare/package.json\\nnode_modules/neo-async/package.json\\nnode_modules/next-tick/package.json\\nnode_modules/node-exports-info/node_modules/semver/package.json\\nnode_modules/node-exports-info/package.json\\nnode_modules/nopt/package.json\\nnode_modules/nunjucks/node_modules/commander/package.json\\nnode_modules/nunjucks/package.json\\nnode_modules/object-assign/package.json\\nnode_modules/object-inspect/package.json\\nnode_modules/object-is/package.json\\nnode_modules/object-keys/package.json\\nnode_modules/object.assign/package.json\\nnode_modules/object.entries/package.json\\nnode_modules/object.fromentries/package.json\\nnode_modules/object.groupby/package.json\\nnode_modules/object.values/package.json\\nnode_modules/once/package.json\\nnode_modules/onetime/package.json\\nnode_modules/optionator/package.json\\nnode_modules/os-tmpdir/package.json\\nnode_modules/own-keys/package.json\\nnode_modules/path-is-absolute/package.json\\nnode_modules/path-is-inside/package.json\\nnode_modules/path-parse/package.json\\nnode_modules/pluralize/package.json\\nnode_modules/possible-typed-array-names/package.json\\nnode_modules/power-assert-context-formatter/package.json\\nnode_modules/power-assert-context-reducer-ast/node_modules/estraverse/package.json\\nnode_modules/power-assert-context-reducer-ast/package.json\\nnode_modules/power-assert-context-traversal/node_modules/estraverse/package.json\\nnode_modules/power-assert-context-traversal/package.json\\nnode_modules/power-assert-formatter/package.json\\nnode_modules/power-assert-renderer-assertion/package.json\\nnode_modules/power-assert-renderer-base/package.json\\nnode_modules/power-assert-renderer-comparison/package.json\\nnode_modules/power-assert-renderer-diagram/package.json\\nnode_modules/power-assert-renderer-file/package.json\\nnode_modules/power-assert-util-string-width/package.json\\nnode_modules/power-assert/package.json\\nnode_modules/prelude-ls/package.json\\nnode_modules/process-nextick-args/package.json\\nnode_modules/progress/package.json\\nnode_modules/prop-types/package.json\\nnode_modules/pseudomap/package.json\\nnode_modules/react-is/package.json\\nnode_modules/readable-stream/package.json\\nnode_modules/reflect.getprototypeof/package.json\\nnode_modules/regenerator-runtime/package.json\\nnode_modules/regexp.prototype.flags/package.json\\nnode_modules/regexpp/package.json\\nnode_modules/require-uncached/package.json\\nnode_modules/resolve-from/package.json\\nnode_modules/resolve/package.json\\nnode_modules/resolve/test/resolver/baz/package.json\\nnode_modules/resolve/test/resolver/browser_field/package.json\\nnode_modules/resolve/test/resolver/false_main/package.json\\nnode_modules/resolve/test/resolver/invalid_main/package.json\\nnode_modules/resolve/test/resolver/multirepo/package.json\\nnode_modules/resolve/test/resolver/multirepo/packages/package-a/package.json\\nnode_modules/resolve/test/resolver/multirepo/packages/package-b/package.json\\nnode_modules/resolve/test/resolver/nested_symlinks/mylib/package.json\\nnode_modules/restore-cursor/package.json\\nnode_modules/rimraf/package.json\\nnode_modules/run-async/package.json\\nnode_modules/rx-lite-aggregates/package.json\\nnode_modules/rx-lite/package.json\\nnode_modules/safe-array-concat/node_modules/isarray/package.json\\nnode_modules/safe-array-concat/package.json\\nnode_modules/safe-buffer/package.json\\nnode_modules/safe-push-apply/node_modules/isarray/package.json\\nnode_modules/safe-push-apply/package.json\\nnode_modules/safe-regex-test/package.json\\nnode_modules/safer-buffer/package.json\\nnode_modules/semver/package.json\\nnode_modules/set-function-length/package.json\\nnode_modules/set-function-name/package.json\\nnode_modules/set-proto/package.json\\nnode_modules/shebang-command/package.json\\nnode_modules/shebang-regex/package.json\\nnode_modules/side-channel-list/package.json\\nnode_modules/side-channel-map/package.json\\nnode_modules/side-channel-weakmap/package.json\\nnode_modules/side-channel/package.json\\nnode_modules/signal-exit/package.json\\nnode_modules/slice-ansi/package.json\\nnode_modules/source-map-support/node_modules/source-map/package.json\\nnode_modules/source-map-support/package.json\\nnode_modules/source-map/package.json\\nnode_modules/sprintf-js/package.json\\nnode_modules/stop-iteration-iterator/package.json\\nnode_modules/string-width/node_modules/ansi-regex/package.json\\nnode_modules/string-width/node_modules/strip-ansi/package.json\\nnode_modules/string-width/package.json\\nnode_modules/string.prototype.includes/package.json\\nnode_modules/string.prototype.matchall/package.json\\nnode_modules/string.prototype.repeat/package.json\\nnode_modules/string.prototype.trim/package.json\\nnode_modules/string.prototype.trimend/package.json\\nnode_modules/string.prototype.trimstart/package.json\\nnode_modules/string_decoder/package.json\\nnode_modules/stringifier/package.json\\nnode_modules/strip-ansi/package.json\\nnode_modules/strip-bom/package.json\\nnode_modules/strip-json-comments/package.json\\nnode_modules/supports-color/package.json\\nnode_modules/supports-preserve-symlinks-flag/package.json\\nnode_modules/table/node_modules/ansi-styles/package.json\\nnode_modules/table/node_modules/chalk/package.json\\nnode_modules/table/node_modules/supports-color/package.json\\nnode_modules/table/package.json\\nnode_modules/text-table/package.json\\nnode_modules/through/package.json\\nnode_modules/thunk-mocha/package.json\\nnode_modules/thunks/package.json\\nnode_modules/tmp/package.json\\nnode_modules/to-fast-properties/package.json\\nnode_modules/traverse/package.json\\nnode_modules/tsconfig-paths/package.json\\nnode_modules/type-check/package.json\\nnode_modules/type-name/package.json\\nnode_modules/type/package.json\\nnode_modules/typed-array-buffer/package.json\\nnode_modules/typed-array-byte-length/package.json\\nnode_modules/typed-array-byte-offset/package.json\\nnode_modules/typed-array-length/package.json\\nnode_modules/typedarray.prototype.slice/package.json\\nnode_modules/typedarray/package.json\\nnode_modules/uglify-js/package.json\\nnode_modules/unbox-primitive/package.json\\nnode_modules/universal-deep-strict-equal/package.json\\nnode_modules/util-deprecate/package.json\\nnode_modules/utility/package.json\\nnode_modules/which-boxed-primitive/package.json\\nnode_modules/which-builtin-type/node_modules/isarray/package.json\\nnode_modules/which-builtin-type/package.json\\nnode_modules/which-collection/package.json\\nnode_modules/which-typed-array/package.json\\nnode_modules/which/package.json\\nnode_modules/word-wrap/package.json\\nnode_modules/wordwrap/package.json\\nnode_modules/wrappy/package.json\\nnode_modules/write/package.json\\nnode_modules/xtend/package.json\\nnode_modules/yallist/package.json"
      }
    ]
  },
  "components": [
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "yallist",
      "version": "2.1.2",
      "description": "Yet Another Linked List",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/yallist@2.1.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git+https://github.com/isaacs/yallist.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/yallist@2.1.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/yallist/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/yallist/package.json"
              }
            ],
            "concludedValue": "node_modules/yallist/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Raynos <raynos2@gmail.com>"
        }
      ],
      "group": "",
      "name": "xtend",
      "version": "4.0.2",
      "description": "extend like a boss",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/xtend@4.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/Raynos/xtend"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/xtend@4.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/xtend/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/xtend/package.json"
              }
            ],
            "concludedValue": "node_modules/xtend/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "write",
      "version": "0.2.1",
      "description": "Write files to disk, creating intermediate directories if they don't exist.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/write@0.2.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/write"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/write@0.2.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/write/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/write/package.json"
              }
            ],
            "concludedValue": "node_modules/write/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "wrappy",
      "version": "1.0.2",
      "description": "Callback wrapping utility",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/wrappy@1.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/npm/wrappy"
        },
        {
          "type": "vcs",
          "url": "https://github.com/npm/wrappy"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/wrappy@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/wrappy/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/wrappy/package.json"
              }
            ],
            "concludedValue": "node_modules/wrappy/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "James Halliday <mail@substack.net> (http://substack.net)"
        }
      ],
      "group": "",
      "name": "wordwrap",
      "version": "1.0.0",
      "description": "Wrap those words. Show them at what columns to start and stop.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/wordwrap@1.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/substack/node-wordwrap.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/wordwrap@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/wordwrap/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/wordwrap/package.json"
              }
            ],
            "concludedValue": "node_modules/wordwrap/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "word-wrap",
      "version": "1.2.5",
      "description": "Wrap words to a specified length.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/word-wrap@1.2.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/word-wrap"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/word-wrap@1.2.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/word-wrap/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/word-wrap/package.json"
              }
            ],
            "concludedValue": "node_modules/word-wrap/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com> (http://ljharb.codes)"
        }
      ],
      "group": "",
      "name": "which-typed-array",
      "version": "1.1.20",
      "description": "Which kind of Typed Array is this JavaScript value? Works cross-realm, without `instanceof`, and despite Symbol.toStringTag.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/which-typed-array@1.1.20",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/inspect-js/which-typed-array.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/which-typed-array@1.1.20",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/which-typed-array/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/which-typed-array/package.json"
              }
            ],
            "concludedValue": "node_modules/which-typed-array/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "which-collection",
      "version": "1.0.2",
      "description": "Which kind of Collection (Map, Set, WeakMap, WeakSet) is this JavaScript value? Works cross-realm, without `instanceof`, and despite Symbol.toStringTag.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/which-collection@1.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/which-collection#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/which-collection.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/which-collection@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/which-collection/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/which-collection/package.json"
              }
            ],
            "concludedValue": "node_modules/which-collection/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "which-builtin-type",
      "version": "1.2.1",
      "description": "What is the type of this builtin JS value?",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/which-builtin-type@1.2.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/which-builtin-type#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/which-builtin-type.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/which-builtin-type@1.2.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/which-builtin-type/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/which-builtin-type/package.json"
              }
            ],
            "concludedValue": "node_modules/which-builtin-type/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Julian Gruber <mail@juliangruber.com> (http://juliangruber.com)"
        }
      ],
      "group": "",
      "name": "isarray",
      "version": "2.0.5",
      "description": "Array#isArray for older browsers",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/isarray@2.0.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/juliangruber/isarray"
        },
        {
          "type": "vcs",
          "url": "git://github.com/juliangruber/isarray.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/isarray@2.0.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/which-builtin-type/node_modules/isarray/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/safe-push-apply/node_modules/isarray/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/safe-array-concat/node_modules/isarray/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/safe-array-concat/node_modules/isarray/package.json"
              }
            ],
            "concludedValue": "node_modules/safe-array-concat/node_modules/isarray/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "which-boxed-primitive",
      "version": "1.1.1",
      "description": "Which kind of boxed JS primitive is this?",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/which-boxed-primitive@1.1.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/which-boxed-primitive#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/which-boxed-primitive.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/which-boxed-primitive@1.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/which-boxed-primitive/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/which-boxed-primitive/package.json"
              }
            ],
            "concludedValue": "node_modules/which-boxed-primitive/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me)"
        }
      ],
      "group": "",
      "name": "which",
      "version": "1.3.1",
      "description": "Like which(1) unix command. Find the first instance of an executable in the PATH.",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/which@1.3.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/isaacs/node-which.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/which@1.3.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/which/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/which/package.json"
              }
            ],
            "concludedValue": "node_modules/which/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "fengmk2 <fengmk2@gmail.com> (http://fengmk2.com)"
        }
      ],
      "group": "",
      "name": "utility",
      "version": "1.6.0",
      "description": "A collection of useful utilities.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/utility@1.6.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/node-modules/utility"
        },
        {
          "type": "vcs",
          "url": "git://github.com/node-modules/utility.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/utility@1.6.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/utility/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/utility/package.json"
              }
            ],
            "concludedValue": "node_modules/utility/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Nathan Rajlich <nathan@tootallnate.net> (http://n8.io/)"
        }
      ],
      "group": "",
      "name": "util-deprecate",
      "version": "1.0.2",
      "description": "The Node.js `util.deprecate()` function with browser support",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/util-deprecate@1.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/TooTallNate/util-deprecate"
        },
        {
          "type": "vcs",
          "url": "git://github.com/TooTallNate/util-deprecate.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/util-deprecate@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/util-deprecate/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/util-deprecate/package.json"
              }
            ],
            "concludedValue": "node_modules/util-deprecate/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Takuto Wada <takuto.wada@gmail.com> (https://github.com/twada)"
        }
      ],
      "group": "",
      "name": "universal-deep-strict-equal",
      "version": "1.2.2",
      "description": "A port of Node v6's internal _deepEqual function in a universal style",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/universal-deep-strict-equal@1.2.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/twada/universal-deep-strict-equal"
        },
        {
          "type": "vcs",
          "url": "git://github.com/twada/universal-deep-strict-equal.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/universal-deep-strict-equal@1.2.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/universal-deep-strict-equal/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/universal-deep-strict-equal/package.json"
              }
            ],
            "concludedValue": "node_modules/universal-deep-strict-equal/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "unbox-primitive",
      "version": "1.1.0",
      "description": "Unbox a boxed JS primitive value.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/unbox-primitive@1.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/unbox-primitive#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/unbox-primitive.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/unbox-primitive@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/unbox-primitive/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/unbox-primitive/package.json"
              }
            ],
            "concludedValue": "node_modules/unbox-primitive/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mihai Bazon <mihai.bazon@gmail.com> (http://lisperator.net/)"
        }
      ],
      "group": "",
      "name": "uglify-js",
      "version": "3.19.3",
      "description": "JavaScript parser, mangler/compressor and beautifier toolkit",
      "licenses": [
        {
          "license": {
            "id": "BSD-2-Clause",
            "url": "https://opensource.org/licenses/BSD-2-Clause"
          }
        }
      ],
      "purl": "pkg:npm/uglify-js@3.19.3",
      "type": "library",
      "bom-ref": "pkg:npm/uglify-js@3.19.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/uglify-js/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/uglify-js/package.json"
              }
            ],
            "concludedValue": "node_modules/uglify-js/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "typedarray.prototype.slice",
      "version": "1.0.5",
      "description": "ES spec-compliant shim for TypedArray.prototype.slice",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/typedarray.prototype.slice@1.0.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/es-shims/TypedArray.prototype.slice#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/es-shims/TypedArray.prototype.slice.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/typedarray.prototype.slice@1.0.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/typedarray.prototype.slice/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/typedarray.prototype.slice/package.json"
              }
            ],
            "concludedValue": "node_modules/typedarray.prototype.slice/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "James Halliday <mail@substack.net> (http://substack.net)"
        }
      ],
      "group": "",
      "name": "typedarray",
      "version": "0.0.6",
      "description": "TypedArray polyfill for old browsers",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/typedarray@0.0.6",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/substack/typedarray"
        },
        {
          "type": "vcs",
          "url": "git://github.com/substack/typedarray.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/typedarray@0.0.6",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/typedarray/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/typedarray/package.json"
              }
            ],
            "concludedValue": "node_modules/typedarray/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "typed-array-length",
      "version": "1.0.7",
      "description": "Robustly get the length of a Typed Array",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/typed-array-length@1.0.7",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/typed-array-length#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/typed-array-length.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/typed-array-length@1.0.7",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/typed-array-length/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/typed-array-length/package.json"
              }
            ],
            "concludedValue": "node_modules/typed-array-length/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "typed-array-byte-offset",
      "version": "1.0.4",
      "description": "Robustly get the byte offset of a Typed Array",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/typed-array-byte-offset@1.0.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/typed-array-byte-offset#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/typed-array-byte-offset.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/typed-array-byte-offset@1.0.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/typed-array-byte-offset/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/typed-array-byte-offset/package.json"
              }
            ],
            "concludedValue": "node_modules/typed-array-byte-offset/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "typed-array-byte-length",
      "version": "1.0.3",
      "description": "Robustly get the byte length of a Typed Array",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/typed-array-byte-length@1.0.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/typed-array-byte-length#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/typed-array-byte-length.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/typed-array-byte-length@1.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/typed-array-byte-length/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/typed-array-byte-length/package.json"
              }
            ],
            "concludedValue": "node_modules/typed-array-byte-length/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "typed-array-buffer",
      "version": "1.0.3",
      "description": "Get the ArrayBuffer out of a TypedArray, robustly.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/typed-array-buffer@1.0.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/typed-array-buffer#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/typed-array-buffer.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/typed-array-buffer@1.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/typed-array-buffer/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/typed-array-buffer/package.json"
              }
            ],
            "concludedValue": "node_modules/typed-array-buffer/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Takuto Wada <takuto.wada@gmail.com> (https://github.com/twada)"
        }
      ],
      "group": "",
      "name": "type-name",
      "version": "2.0.2",
      "description": "Just a reasonable typeof",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/type-name@2.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/twada/type-name"
        },
        {
          "type": "vcs",
          "url": "git://github.com/twada/type-name.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/type-name@2.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/type-name/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/type-name/package.json"
              }
            ],
            "concludedValue": "node_modules/type-name/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "George Zahariev <z@georgezahariev.com>"
        }
      ],
      "group": "",
      "name": "type-check",
      "version": "0.3.2",
      "description": "type-check allows you to check the types of JavaScript values at runtime with a Haskell like type syntax.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/type-check@0.3.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/gkz/type-check"
        },
        {
          "type": "vcs",
          "url": "git://github.com/gkz/type-check.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/type-check@0.3.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/type-check/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/type-check/package.json"
              }
            ],
            "concludedValue": "node_modules/type-check/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mariusz Nowak <medyk@medikoo.com> (https://www.medikoo.com/)"
        }
      ],
      "group": "",
      "name": "type",
      "version": "2.7.3",
      "description": "Runtime validation and processing of JavaScript types",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/type@2.7.3",
      "type": "library",
      "bom-ref": "pkg:npm/type@2.7.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/type/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/type/package.json"
              }
            ],
            "concludedValue": "node_modules/type/package.json"
          }
        ]
      },
      "tags": [
        "validation"
      ]
    },
    {
      "authors": [
        {
          "name": "Jonas Kello"
        }
      ],
      "group": "",
      "name": "tsconfig-paths",
      "version": "3.15.0",
      "description": "Load node modules according to tsconfig paths, in run-time or via API.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/tsconfig-paths@3.15.0",
      "type": "library",
      "bom-ref": "pkg:npm/tsconfig-paths@3.15.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/tsconfig-paths/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/tsconfig-paths/package.json"
              }
            ],
            "concludedValue": "node_modules/tsconfig-paths/package.json"
          }
        ]
      },
      "tags": [
        "api"
      ]
    },
    {
      "authors": [
        {
          "name": "James Halliday <mail@substack.net> (http://substack.net)"
        }
      ],
      "group": "",
      "name": "traverse",
      "version": "0.6.11",
      "description": "traverse and transform objects by visiting every node on a recursive walk",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/traverse@0.6.11",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/js-traverse"
        },
        {
          "type": "vcs",
          "url": "git://github.com/ljharb/js-traverse.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/traverse@0.6.11",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/traverse/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/traverse/package.json"
              }
            ],
            "concludedValue": "node_modules/traverse/package.json"
          }
        ]
      },
      "tags": [
        "transform"
      ]
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "to-fast-properties",
      "version": "1.0.3",
      "description": "Force V8 to use fast properties for an object",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/to-fast-properties@1.0.3",
      "type": "library",
      "bom-ref": "pkg:npm/to-fast-properties@1.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/to-fast-properties/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/to-fast-properties/package.json"
              }
            ],
            "concludedValue": "node_modules/to-fast-properties/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "KARASZI István <github@spam.raszi.hu> (http://raszi.hu/)"
        }
      ],
      "group": "",
      "name": "tmp",
      "version": "0.0.33",
      "description": "Temporary file and directory creator",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/tmp@0.0.33",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "http://github.com/raszi/node-tmp"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/tmp@0.0.33",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/tmp/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/tmp/package.json"
              }
            ],
            "concludedValue": "node_modules/tmp/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "thunks",
      "version": "4.9.6",
      "description": "A small and magical composer for all JavaScript asynchronous.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/thunks@4.9.6",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/thunks/thunks"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/thunks@4.9.6",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/thunks/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/thunks/package.json"
              }
            ],
            "concludedValue": "node_modules/thunks/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "thunk-mocha",
      "version": "1.0.8",
      "description": "Enable support for generators in Mocha with backward compatibility.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/thunk-mocha@1.0.8",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/thunks/thunk-mocha"
        },
        {
          "type": "vcs",
          "url": "git://github.com/thunks/thunk-mocha.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/thunk-mocha@1.0.8",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/thunk-mocha/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/thunk-mocha/package.json"
              }
            ],
            "concludedValue": "node_modules/thunk-mocha/package.json"
          }
        ]
      },
      "tags": [
        "test"
      ]
    },
    {
      "authors": [
        {
          "name": "Dominic Tarr <dominic.tarr@gmail.com> (dominictarr.com)"
        }
      ],
      "group": "",
      "name": "through",
      "version": "2.3.8",
      "description": "simplified stream construction",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/through@2.3.8",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/dominictarr/through"
        },
        {
          "type": "vcs",
          "url": "https://github.com/dominictarr/through.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/through@2.3.8",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/through/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/through/package.json"
              }
            ],
            "concludedValue": "node_modules/through/package.json"
          }
        ]
      },
      "tags": [
        "stream"
      ]
    },
    {
      "authors": [
        {
          "name": "James Halliday <mail@substack.net> (http://substack.net)"
        }
      ],
      "group": "",
      "name": "text-table",
      "version": "0.2.0",
      "description": "borderless text tables with alignment",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/text-table@0.2.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/substack/text-table"
        },
        {
          "type": "vcs",
          "url": "git://github.com/substack/text-table.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/text-table@0.2.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/text-table/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/text-table/package.json"
              }
            ],
            "concludedValue": "node_modules/text-table/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Gajus Kuizinas <gajus@gajus.com> (http://gajus.com)"
        }
      ],
      "group": "",
      "name": "table",
      "version": "4.0.2",
      "description": "Formats data into a string table.",
      "licenses": [
        {
          "license": {
            "id": "BSD-3-Clause",
            "url": "https://opensource.org/licenses/BSD-3-Clause"
          }
        }
      ],
      "purl": "pkg:npm/table@4.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/gajus/table"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/table@4.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/table/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/table/package.json"
              }
            ],
            "concludedValue": "node_modules/table/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "supports-color",
      "version": "5.5.0",
      "description": "Detect whether a terminal supports color",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/supports-color@5.5.0",
      "type": "library",
      "bom-ref": "pkg:npm/supports-color@5.5.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/table/node_modules/supports-color/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/inquirer/node_modules/supports-color/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/eslint/node_modules/supports-color/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/eslint/node_modules/supports-color/package.json"
              }
            ],
            "concludedValue": "node_modules/eslint/node_modules/supports-color/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "chalk",
      "version": "2.4.2",
      "description": "Terminal string styling done right",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/chalk@2.4.2",
      "type": "library",
      "bom-ref": "pkg:npm/chalk@2.4.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/table/node_modules/chalk/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/inquirer/node_modules/chalk/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/eslint/node_modules/chalk/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/eslint/node_modules/chalk/package.json"
              }
            ],
            "concludedValue": "node_modules/eslint/node_modules/chalk/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "ansi-styles",
      "version": "3.2.1",
      "description": "ANSI escape codes for styling strings in the terminal",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/ansi-styles@3.2.1",
      "type": "library",
      "bom-ref": "pkg:npm/ansi-styles@3.2.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/table/node_modules/ansi-styles/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/inquirer/node_modules/ansi-styles/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/eslint/node_modules/ansi-styles/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/eslint/node_modules/ansi-styles/package.json"
              }
            ],
            "concludedValue": "node_modules/eslint/node_modules/ansi-styles/package.json"
          }
        ]
      },
      "tags": [
        "escape"
      ]
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "supports-preserve-symlinks-flag",
      "version": "1.0.0",
      "description": "Determine if the current node version supports the `--preserve-symlinks` flag.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/supports-preserve-symlinks-flag@1.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/node-supports-preserve-symlinks-flag#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/node-supports-preserve-symlinks-flag.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/supports-preserve-symlinks-flag@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/supports-preserve-symlinks-flag/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/supports-preserve-symlinks-flag/package.json"
              }
            ],
            "concludedValue": "node_modules/supports-preserve-symlinks-flag/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "supports-color",
      "version": "2.0.0",
      "description": "Detect whether a terminal supports color",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/supports-color@2.0.0",
      "type": "library",
      "bom-ref": "pkg:npm/supports-color@2.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/supports-color/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/supports-color/package.json"
              }
            ],
            "concludedValue": "node_modules/supports-color/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "strip-json-comments",
      "version": "2.0.1",
      "description": "Strip comments from JSON. Lets you use comments in your JSON files!",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/strip-json-comments@2.0.1",
      "type": "library",
      "bom-ref": "pkg:npm/strip-json-comments@2.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/strip-json-comments/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/strip-json-comments/package.json"
              }
            ],
            "concludedValue": "node_modules/strip-json-comments/package.json"
          }
        ]
      },
      "tags": [
        "json"
      ]
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "strip-bom",
      "version": "3.0.0",
      "description": "Strip UTF-8 byte order mark (BOM) from a string",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/strip-bom@3.0.0",
      "type": "library",
      "bom-ref": "pkg:npm/strip-bom@3.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/strip-bom/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/strip-bom/package.json"
              }
            ],
            "concludedValue": "node_modules/strip-bom/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "strip-ansi",
      "version": "3.0.1",
      "description": "Strip ANSI escape codes",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/strip-ansi@3.0.1",
      "type": "library",
      "bom-ref": "pkg:npm/strip-ansi@3.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/strip-ansi/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/strip-ansi/package.json"
              }
            ],
            "concludedValue": "node_modules/strip-ansi/package.json"
          }
        ]
      },
      "tags": [
        "escape"
      ]
    },
    {
      "authors": [
        {
          "name": "Takuto Wada <takuto.wada@gmail.com> (https://github.com/twada)"
        }
      ],
      "group": "",
      "name": "stringifier",
      "version": "1.4.1",
      "description": "Yet another stringify function",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/stringifier@1.4.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/twada/stringifier"
        },
        {
          "type": "vcs",
          "url": "git://github.com/twada/stringifier.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/stringifier@1.4.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/stringifier/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/stringifier/package.json"
              }
            ],
            "concludedValue": "node_modules/stringifier/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "string_decoder",
      "version": "1.1.1",
      "description": "The string_decoder module from Node core",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/string_decoder@1.1.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/nodejs/string_decoder"
        },
        {
          "type": "vcs",
          "url": "git://github.com/nodejs/string_decoder.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/string_decoder@1.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/string_decoder/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/string_decoder/package.json"
              }
            ],
            "concludedValue": "node_modules/string_decoder/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "string.prototype.trimstart",
      "version": "1.0.8",
      "description": "ES2019 spec-compliant String.prototype.trimStart shim.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/string.prototype.trimstart@1.0.8",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/es-shims/String.prototype.trimStart.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/string.prototype.trimstart@1.0.8",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/string.prototype.trimstart/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/string.prototype.trimstart/package.json"
              }
            ],
            "concludedValue": "node_modules/string.prototype.trimstart/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "string.prototype.trimend",
      "version": "1.0.9",
      "description": "ES2019 spec-compliant String.prototype.trimEnd shim.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/string.prototype.trimend@1.0.9",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/es-shims/String.prototype.trimEnd.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/string.prototype.trimend@1.0.9",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/string.prototype.trimend/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/string.prototype.trimend/package.json"
              }
            ],
            "concludedValue": "node_modules/string.prototype.trimend/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com> (http://ljharb.codes)"
        }
      ],
      "group": "",
      "name": "string.prototype.trim",
      "version": "1.2.10",
      "description": "ES5 spec-compliant shim for String.prototype.trim",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/string.prototype.trim@1.2.10",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/es-shims/String.prototype.trim.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/string.prototype.trim@1.2.10",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/string.prototype.trim/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/string.prototype.trim/package.json"
              }
            ],
            "concludedValue": "node_modules/string.prototype.trim/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mathias Bynens (https://mathiasbynens.be/)"
        }
      ],
      "group": "",
      "name": "string.prototype.repeat",
      "version": "1.0.0",
      "description": "A robust & optimized `String.prototype.repeat` polyfill, based on the ECMAScript 6 specification.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/string.prototype.repeat@1.0.0",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://mths.be/repeat"
        },
        {
          "type": "vcs",
          "url": "https://github.com/mathiasbynens/String.prototype.repeat.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/string.prototype.repeat@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/string.prototype.repeat/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/string.prototype.repeat/package.json"
              }
            ],
            "concludedValue": "node_modules/string.prototype.repeat/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "string.prototype.matchall",
      "version": "4.0.12",
      "description": "Spec-compliant polyfill for String.prototype.matchAll",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/string.prototype.matchall@4.0.12",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/es-shims/String.prototype.matchAll#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/es-shims/String.prototype.matchAll.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/string.prototype.matchall@4.0.12",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/string.prototype.matchall/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/string.prototype.matchall/package.json"
              }
            ],
            "concludedValue": "node_modules/string.prototype.matchall/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mathias Bynens (https://mathiasbynens.be/)"
        }
      ],
      "group": "",
      "name": "string.prototype.includes",
      "version": "2.0.1",
      "description": "A robust & optimized `String.prototype.includes` polyfill, based on the ECMAScript 6 specification.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/string.prototype.includes@2.0.1",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://mths.be/includes"
        },
        {
          "type": "vcs",
          "url": "https://github.com/mathiasbynens/String.prototype.includes.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/string.prototype.includes@2.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/string.prototype.includes/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/string.prototype.includes/package.json"
              }
            ],
            "concludedValue": "node_modules/string.prototype.includes/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "string-width",
      "version": "2.1.1",
      "description": "Get the visual width of a string - the number of columns required to display it",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/string-width@2.1.1",
      "type": "library",
      "bom-ref": "pkg:npm/string-width@2.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/string-width/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/string-width/package.json"
              }
            ],
            "concludedValue": "node_modules/string-width/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "strip-ansi",
      "version": "4.0.0",
      "description": "Strip ANSI escape codes",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/strip-ansi@4.0.0",
      "type": "library",
      "bom-ref": "pkg:npm/strip-ansi@4.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/string-width/node_modules/strip-ansi/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/inquirer/node_modules/strip-ansi/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/eslint/node_modules/strip-ansi/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/eslint/node_modules/strip-ansi/package.json"
              }
            ],
            "concludedValue": "node_modules/eslint/node_modules/strip-ansi/package.json"
          }
        ]
      },
      "tags": [
        "escape"
      ]
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "ansi-regex",
      "version": "3.0.1",
      "description": "Regular expression for matching ANSI escape codes",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/ansi-regex@3.0.1",
      "type": "library",
      "bom-ref": "pkg:npm/ansi-regex@3.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/string-width/node_modules/ansi-regex/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/inquirer/node_modules/ansi-regex/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/eslint/node_modules/ansi-regex/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/eslint/node_modules/ansi-regex/package.json"
              }
            ],
            "concludedValue": "node_modules/eslint/node_modules/ansi-regex/package.json"
          }
        ]
      },
      "tags": [
        "escape"
      ]
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "stop-iteration-iterator",
      "version": "1.1.0",
      "description": "Firefox 17-26 iterators throw a StopIteration object to indicate \"done\". This normalizes it.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/stop-iteration-iterator@1.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/stop-iteration-iterator#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/stop-iteration-iterator.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/stop-iteration-iterator@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/stop-iteration-iterator/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/stop-iteration-iterator/package.json"
              }
            ],
            "concludedValue": "node_modules/stop-iteration-iterator/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Alexandru Marasteanu <hello@alexei.ro> (http://alexei.ro/)"
        }
      ],
      "group": "",
      "name": "sprintf-js",
      "version": "1.0.3",
      "description": "JavaScript sprintf implementation",
      "licenses": [
        {
          "license": {
            "id": "BSD-3-Clause",
            "url": "https://opensource.org/licenses/BSD-3-Clause"
          }
        }
      ],
      "purl": "pkg:npm/sprintf-js@1.0.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/alexei/sprintf.js.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/sprintf-js@1.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/sprintf-js/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/sprintf-js/package.json"
              }
            ],
            "concludedValue": "node_modules/sprintf-js/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "source-map-support",
      "version": "0.4.18",
      "description": "Fixes stack traces for files with source maps",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/source-map-support@0.4.18",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/evanw/node-source-map-support"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/source-map-support@0.4.18",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/source-map-support/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/source-map-support/package.json"
              }
            ],
            "concludedValue": "node_modules/source-map-support/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Nick Fitzgerald <nfitzgerald@mozilla.com>"
        }
      ],
      "group": "",
      "name": "source-map",
      "version": "0.5.7",
      "description": "Generates and consumes source maps",
      "licenses": [
        {
          "license": {
            "id": "BSD-3-Clause",
            "url": "https://opensource.org/licenses/BSD-3-Clause"
          }
        }
      ],
      "purl": "pkg:npm/source-map@0.5.7",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/mozilla/source-map"
        },
        {
          "type": "vcs",
          "url": "http://github.com/mozilla/source-map.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/source-map@0.5.7",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/source-map-support/node_modules/source-map/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/espower-location-detector/node_modules/source-map/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/espower/node_modules/source-map/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/espower/node_modules/source-map/package.json"
              }
            ],
            "concludedValue": "node_modules/espower/node_modules/source-map/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Nick Fitzgerald <nfitzgerald@mozilla.com>"
        }
      ],
      "group": "",
      "name": "source-map",
      "version": "0.6.1",
      "description": "Generates and consumes source maps",
      "licenses": [
        {
          "license": {
            "id": "BSD-3-Clause",
            "url": "https://opensource.org/licenses/BSD-3-Clause"
          }
        }
      ],
      "purl": "pkg:npm/source-map@0.6.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/mozilla/source-map"
        },
        {
          "type": "vcs",
          "url": "http://github.com/mozilla/source-map.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/source-map@0.6.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/source-map/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/source-map/package.json"
              }
            ],
            "concludedValue": "node_modules/source-map/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "David Caccavella <threedeecee@gmail.com>"
        }
      ],
      "group": "",
      "name": "slice-ansi",
      "version": "1.0.0",
      "description": "Slice a string with ANSI escape codes",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/slice-ansi@1.0.0",
      "type": "library",
      "bom-ref": "pkg:npm/slice-ansi@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/slice-ansi/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/slice-ansi/package.json"
              }
            ],
            "concludedValue": "node_modules/slice-ansi/package.json"
          }
        ]
      },
      "tags": [
        "escape"
      ]
    },
    {
      "authors": [
        {
          "name": "Ben Coe <ben@npmjs.com>"
        }
      ],
      "group": "",
      "name": "signal-exit",
      "version": "3.0.7",
      "description": "when you want to fire an event no matter how a process exits.",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/signal-exit@3.0.7",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/tapjs/signal-exit"
        },
        {
          "type": "vcs",
          "url": "https://github.com/tapjs/signal-exit.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/signal-exit@3.0.7",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/signal-exit/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/signal-exit/package.json"
              }
            ],
            "concludedValue": "node_modules/signal-exit/package.json"
          }
        ]
      },
      "tags": [
        "event"
      ]
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "side-channel-weakmap",
      "version": "1.0.2",
      "description": "Store information about any JS value in a side channel. Uses WeakMap if available.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/side-channel-weakmap@1.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/side-channel-weakmap#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/side-channel-weakmap.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/side-channel-weakmap@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/side-channel-weakmap/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/side-channel-weakmap/package.json"
              }
            ],
            "concludedValue": "node_modules/side-channel-weakmap/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "side-channel-map",
      "version": "1.0.1",
      "description": "Store information about any JS value in a side channel, using a Map",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/side-channel-map@1.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/side-channel-map#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/side-channel-map.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/side-channel-map@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/side-channel-map/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/side-channel-map/package.json"
              }
            ],
            "concludedValue": "node_modules/side-channel-map/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "side-channel-list",
      "version": "1.0.1",
      "description": "Store information about any JS value in a side channel, using a linked list",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/side-channel-list@1.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/side-channel-list#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/side-channel-list.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/side-channel-list@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/side-channel-list/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/side-channel-list/package.json"
              }
            ],
            "concludedValue": "node_modules/side-channel-list/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "side-channel",
      "version": "1.1.0",
      "description": "Store information about any JS value in a side channel. Uses WeakMap if available.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/side-channel@1.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/side-channel#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/side-channel.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/side-channel@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/side-channel/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/side-channel/package.json"
              }
            ],
            "concludedValue": "node_modules/side-channel/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "shebang-regex",
      "version": "1.0.0",
      "description": "Regular expression for matching a shebang",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/shebang-regex@1.0.0",
      "type": "library",
      "bom-ref": "pkg:npm/shebang-regex@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/shebang-regex/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/shebang-regex/package.json"
              }
            ],
            "concludedValue": "node_modules/shebang-regex/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Kevin Martensson <kevinmartensson@gmail.com> (github.com/kevva)"
        }
      ],
      "group": "",
      "name": "shebang-command",
      "version": "1.2.0",
      "description": "Get the command from a shebang",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/shebang-command@1.2.0",
      "type": "library",
      "bom-ref": "pkg:npm/shebang-command@1.2.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/shebang-command/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/shebang-command/package.json"
              }
            ],
            "concludedValue": "node_modules/shebang-command/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "set-proto",
      "version": "1.0.0",
      "description": "Robustly set the [[Prototype]] of an object",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/set-proto@1.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/set-proto#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/set-proto.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/set-proto@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/set-proto/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/set-proto/package.json"
              }
            ],
            "concludedValue": "node_modules/set-proto/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "set-function-name",
      "version": "2.0.2",
      "description": "Set a function's name property",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/set-function-name@2.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/set-function-name#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/set-function-name.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/set-function-name@2.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/set-function-name/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/set-function-name/package.json"
              }
            ],
            "concludedValue": "node_modules/set-function-name/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "set-function-length",
      "version": "1.2.2",
      "description": "Set a function's length property",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/set-function-length@1.2.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/set-function-length#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/set-function-length.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/set-function-length@1.2.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/set-function-length/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/set-function-length/package.json"
              }
            ],
            "concludedValue": "node_modules/set-function-length/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "GitHub Inc."
        }
      ],
      "group": "",
      "name": "semver",
      "version": "5.7.2",
      "description": "The semantic version parser used by npm.",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/semver@5.7.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/npm/node-semver.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/semver@5.7.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/semver/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/semver/package.json"
              }
            ],
            "concludedValue": "node_modules/semver/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Nikita Skovoroda <chalkerx@gmail.com> (https://github.com/ChALkeR)"
        }
      ],
      "group": "",
      "name": "safer-buffer",
      "version": "2.1.2",
      "description": "Modern Buffer API polyfill without footguns",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/safer-buffer@2.1.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git+https://github.com/ChALkeR/safer-buffer.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/safer-buffer@2.1.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/safer-buffer/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/safer-buffer/package.json"
              }
            ],
            "concludedValue": "node_modules/safer-buffer/package.json"
          }
        ]
      },
      "tags": [
        "api"
      ]
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "safe-regex-test",
      "version": "1.1.0",
      "description": "Give a regex, get a robust predicate function that tests it against a string.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/safe-regex-test@1.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/safe-regex-test#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/safe-regex-test.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/safe-regex-test@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/safe-regex-test/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/safe-regex-test/package.json"
              }
            ],
            "concludedValue": "node_modules/safe-regex-test/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "safe-push-apply",
      "version": "1.0.0",
      "description": "Push an array of items into an array, while being robust against prototype modification",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/safe-push-apply@1.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/safe-push-apply#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/safe-push-apply.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/safe-push-apply@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/safe-push-apply/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/safe-push-apply/package.json"
              }
            ],
            "concludedValue": "node_modules/safe-push-apply/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Feross Aboukhadijeh <feross@feross.org> (http://feross.org)"
        }
      ],
      "group": "",
      "name": "safe-buffer",
      "version": "5.1.2",
      "description": "Safer Node.js Buffer API",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/safe-buffer@5.1.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/feross/safe-buffer"
        },
        {
          "type": "vcs",
          "url": "git://github.com/feross/safe-buffer.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/safe-buffer@5.1.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/safe-buffer/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/safe-buffer/package.json"
              }
            ],
            "concludedValue": "node_modules/safe-buffer/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "safe-array-concat",
      "version": "1.1.4",
      "description": "`Array.prototype.concat`, but made safe by ignoring Symbol.isConcatSpreadable",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/safe-array-concat@1.1.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/safe-array-concat#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/safe-array-concat.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/safe-array-concat@1.1.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/safe-array-concat/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/safe-array-concat/package.json"
              }
            ],
            "concludedValue": "node_modules/safe-array-concat/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Cloud Programmability Team (https://github.com/Reactive-Extensions/RxJS/blob/master/authors.txt)"
        }
      ],
      "group": "",
      "name": "rx-lite-aggregates",
      "version": "4.0.8",
      "description": "Lightweight library with aggregate functions for composing asynchronous and event-based operations in JavaScript",
      "purl": "pkg:npm/rx-lite-aggregates@4.0.8",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/Reactive-Extensions/RxJS"
        },
        {
          "type": "vcs",
          "url": "https://github.com/Reactive-Extensions/RxJS.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/rx-lite-aggregates@4.0.8",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/rx-lite-aggregates/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/rx-lite-aggregates/package.json"
              }
            ],
            "concludedValue": "node_modules/rx-lite-aggregates/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Cloud Programmability Team (https://github.com/Reactive-Extensions/RxJS/blob/master/authors.txt)"
        }
      ],
      "group": "",
      "name": "rx-lite",
      "version": "4.0.8",
      "description": "Lightweight library for composing asynchronous and event-based operations in JavaScript",
      "purl": "pkg:npm/rx-lite@4.0.8",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/Reactive-Extensions/RxJS"
        },
        {
          "type": "vcs",
          "url": "https://github.com/Reactive-Extensions/RxJS.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/rx-lite@4.0.8",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/rx-lite/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/rx-lite/package.json"
              }
            ],
            "concludedValue": "node_modules/rx-lite/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Simon Boudrias <admin@simonboudrias.com>"
        }
      ],
      "group": "",
      "name": "run-async",
      "version": "2.4.1",
      "description": "Utility method to run function either synchronously or asynchronously using the common `this.async()` style.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/run-async@2.4.1",
      "type": "library",
      "bom-ref": "pkg:npm/run-async@2.4.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/run-async/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/run-async/package.json"
              }
            ],
            "concludedValue": "node_modules/run-async/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "rimraf",
      "version": "2.7.1",
      "description": "A deep deletion module for node (like `rm -rf`)",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/rimraf@2.7.1",
      "type": "library",
      "bom-ref": "pkg:npm/rimraf@2.7.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/rimraf/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/rimraf/package.json"
              }
            ],
            "concludedValue": "node_modules/rimraf/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "restore-cursor",
      "version": "2.0.0",
      "description": "Gracefully restore the CLI cursor on exit",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/restore-cursor@2.0.0",
      "type": "library",
      "bom-ref": "pkg:npm/restore-cursor@2.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/restore-cursor/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/restore-cursor/package.json"
              }
            ],
            "concludedValue": "node_modules/restore-cursor/package.json"
          }
        ]
      },
      "tags": [
        "cli"
      ]
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "resolve-from",
      "version": "1.0.1",
      "description": "Resolve the path of a module like require.resolve() but from a given path",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/resolve-from@1.0.1",
      "type": "library",
      "bom-ref": "pkg:npm/resolve-from@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/resolve-from/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/resolve-from/package.json"
              }
            ],
            "concludedValue": "node_modules/resolve-from/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "James Halliday <mail@substack.net> (http://substack.net)"
        }
      ],
      "group": "",
      "name": "resolve",
      "version": "2.0.0-next.6",
      "description": "resolve like require.resolve() on behalf of files asynchronously and synchronously",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/resolve@2.0.0-next.6",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "ssh://github.com/browserify/resolve.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/resolve@2.0.0-next.6",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/resolve/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/resolve/package.json"
              }
            ],
            "concludedValue": "node_modules/resolve/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "mylib",
      "version": "0.0.0",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/mylib@0.0.0",
      "type": "library",
      "bom-ref": "pkg:npm/mylib@0.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/resolve/test/resolver/nested_symlinks/mylib/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/resolve/test/resolver/nested_symlinks/mylib/package.json"
              }
            ],
            "concludedValue": "node_modules/resolve/test/resolver/nested_symlinks/mylib/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "ljharb-monorepo-symlink-test",
      "version": "0.0.0",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/ljharb-monorepo-symlink-test@0.0.0",
      "type": "library",
      "bom-ref": "pkg:npm/ljharb-monorepo-symlink-test@0.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/resolve/test/resolver/multirepo/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/resolve/test/resolver/multirepo/package.json"
              }
            ],
            "concludedValue": "node_modules/resolve/test/resolver/multirepo/package.json"
          }
        ]
      }
    },
    {
      "group": "@my-scope",
      "name": "package-b",
      "version": "0.0.0",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/%40my-scope/package-b@0.0.0",
      "type": "library",
      "bom-ref": "pkg:npm/@my-scope/package-b@0.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/resolve/test/resolver/multirepo/packages/package-b/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/resolve/test/resolver/multirepo/packages/package-b/package.json"
              }
            ],
            "concludedValue": "node_modules/resolve/test/resolver/multirepo/packages/package-b/package.json"
          }
        ]
      }
    },
    {
      "group": "@my-scope",
      "name": "package-a",
      "version": "0.0.0",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/%40my-scope/package-a@0.0.0",
      "type": "library",
      "bom-ref": "pkg:npm/@my-scope/package-a@0.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/resolve/test/resolver/multirepo/packages/package-a/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/resolve/test/resolver/multirepo/packages/package-a/package.json"
              }
            ],
            "concludedValue": "node_modules/resolve/test/resolver/multirepo/packages/package-a/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "invalid_main",
      "version": "",
      "purl": "pkg:npm/invalid_main",
      "type": "library",
      "bom-ref": "pkg:npm/invalid_main",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/resolve/test/resolver/invalid_main/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/resolve/test/resolver/invalid_main/package.json"
              }
            ],
            "concludedValue": "node_modules/resolve/test/resolver/invalid_main/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "false_main",
      "version": "",
      "purl": "pkg:npm/false_main",
      "type": "library",
      "bom-ref": "pkg:npm/false_main",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/resolve/test/resolver/false_main/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/resolve/test/resolver/false_main/package.json"
              }
            ],
            "concludedValue": "node_modules/resolve/test/resolver/false_main/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "browser_field",
      "version": "",
      "purl": "pkg:npm/browser_field",
      "type": "library",
      "bom-ref": "pkg:npm/browser_field",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/resolve/test/resolver/browser_field/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/resolve/test/resolver/browser_field/package.json"
              }
            ],
            "concludedValue": "node_modules/resolve/test/resolver/browser_field/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "baz",
      "version": "",
      "purl": "pkg:npm/baz",
      "type": "library",
      "bom-ref": "pkg:npm/baz",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/resolve/test/resolver/baz/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/resolve/test/resolver/baz/package.json"
              }
            ],
            "concludedValue": "node_modules/resolve/test/resolver/baz/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "require-uncached",
      "version": "1.0.3",
      "description": "Require a module bypassing the cache",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/require-uncached@1.0.3",
      "type": "library",
      "bom-ref": "pkg:npm/require-uncached@1.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/require-uncached/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/require-uncached/package.json"
              }
            ],
            "concludedValue": "node_modules/require-uncached/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Toru Nagashima (https://github.com/mysticatea)"
        }
      ],
      "group": "",
      "name": "regexpp",
      "version": "1.1.0",
      "description": "Regular expression parser for ECMAScript 2018.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/regexpp@1.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/mysticatea/regexpp#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/mysticatea/regexpp.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/regexpp@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/regexpp/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/regexpp/package.json"
              }
            ],
            "concludedValue": "node_modules/regexpp/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "regexp.prototype.flags",
      "version": "1.5.4",
      "description": "ES6 spec-compliant RegExp.prototype.flags shim.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/regexp.prototype.flags@1.5.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/es-shims/RegExp.prototype.flags.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/regexp.prototype.flags@1.5.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/regexp.prototype.flags/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/regexp.prototype.flags/package.json"
              }
            ],
            "concludedValue": "node_modules/regexp.prototype.flags/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Ben Newman <bn@cs.stanford.edu>"
        }
      ],
      "group": "",
      "name": "regenerator-runtime",
      "version": "0.11.1",
      "description": "Runtime for Regenerator-compiled generator and async functions.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/regenerator-runtime@0.11.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/facebook/regenerator/tree/master/packages/regenerator-runtime"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/regenerator-runtime@0.11.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/regenerator-runtime/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/regenerator-runtime/package.json"
              }
            ],
            "concludedValue": "node_modules/regenerator-runtime/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "reflect.getprototypeof",
      "version": "1.0.10",
      "description": "An ES2015 mostly-spec-compliant `Reflect.getPrototypeOf` sham/polyfill/replacement that works in as many engines as possible",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/reflect.getprototypeof@1.0.10",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/es-shims/Reflect.getPrototypeOf"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/es-shims/Reflect.getPrototypeOf.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/reflect.getprototypeof@1.0.10",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/reflect.getprototypeof/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/reflect.getprototypeof/package.json"
              }
            ],
            "concludedValue": "node_modules/reflect.getprototypeof/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "readable-stream",
      "version": "2.3.8",
      "description": "Streams3, a user-land copy of the stream library from Node.js",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/readable-stream@2.3.8",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/nodejs/readable-stream"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/readable-stream@2.3.8",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/readable-stream/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/readable-stream/package.json"
              }
            ],
            "concludedValue": "node_modules/readable-stream/package.json"
          }
        ]
      },
      "tags": [
        "stream"
      ]
    },
    {
      "group": "",
      "name": "react-is",
      "version": "16.13.1",
      "description": "Brand checking of React Elements.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/react-is@16.13.1",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://reactjs.org/"
        },
        {
          "type": "vcs",
          "url": "https://github.com/facebook/react.git"
        }
      ],
      "type": "framework",
      "bom-ref": "pkg:npm/react-is@16.13.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/react-is/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/react-is/package.json"
              }
            ],
            "concludedValue": "node_modules/react-is/package.json"
          }
        ]
      },
      "tags": [
        "framework"
      ]
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "pseudomap",
      "version": "1.0.2",
      "description": "A thing that is a lot like ES6 `Map`, but without iterators, for use in environments where `for..of` syntax and `Map` are not available.",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/pseudomap@1.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/isaacs/pseudomap#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/isaacs/pseudomap.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/pseudomap@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/pseudomap/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/pseudomap/package.json"
              }
            ],
            "concludedValue": "node_modules/pseudomap/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "prop-types",
      "version": "15.8.1",
      "description": "Runtime type checking for React props and similar objects.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/prop-types@15.8.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://facebook.github.io/react/"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/prop-types@15.8.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/prop-types/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/prop-types/package.json"
              }
            ],
            "concludedValue": "node_modules/prop-types/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "TJ Holowaychuk <tj@vision-media.ca>"
        }
      ],
      "group": "",
      "name": "progress",
      "version": "2.0.3",
      "description": "Flexible ascii progress bar",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/progress@2.0.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/visionmedia/node-progress"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/progress@2.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/progress/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/progress/package.json"
              }
            ],
            "concludedValue": "node_modules/progress/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "process-nextick-args",
      "version": "2.0.1",
      "description": "process.nextTick but always with args",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/process-nextick-args@2.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/calvinmetcalf/process-nextick-args"
        },
        {
          "type": "vcs",
          "url": "https://github.com/calvinmetcalf/process-nextick-args.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/process-nextick-args@2.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/process-nextick-args/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/process-nextick-args/package.json"
              }
            ],
            "concludedValue": "node_modules/process-nextick-args/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "George Zahariev <z@georgezahariev.com>"
        }
      ],
      "group": "",
      "name": "prelude-ls",
      "version": "1.1.2",
      "description": "prelude.ls is a functionally oriented utility library. It is powerful and flexible. Almost all of its functions are curried. It is written in, and is the recommended base library for, LiveScript.",
      "purl": "pkg:npm/prelude-ls@1.1.2",
      "externalReferences": [
        {
          "type": "website",
          "url": "http://preludels.com"
        },
        {
          "type": "vcs",
          "url": "git://github.com/gkz/prelude-ls.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/prelude-ls@1.1.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/prelude-ls/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/prelude-ls/package.json"
              }
            ],
            "concludedValue": "node_modules/prelude-ls/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Takuto Wada <takuto.wada@gmail.com> (https://github.com/twada)"
        }
      ],
      "group": "",
      "name": "power-assert-util-string-width",
      "version": "1.2.0",
      "description": "calculates width of given string",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/power-assert-util-string-width@1.2.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/twada/power-assert-runtime"
        },
        {
          "type": "vcs",
          "url": "https://github.com/twada/power-assert-runtime.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/power-assert-util-string-width@1.2.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/power-assert-util-string-width/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/power-assert-util-string-width/package.json"
              }
            ],
            "concludedValue": "node_modules/power-assert-util-string-width/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Takuto Wada <takuto.wada@gmail.com> (https://github.com/twada)"
        }
      ],
      "group": "",
      "name": "power-assert-renderer-file",
      "version": "1.2.0",
      "description": "filepath renderer for power-assert context",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/power-assert-renderer-file@1.2.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/twada/power-assert-runtime"
        },
        {
          "type": "vcs",
          "url": "https://github.com/twada/power-assert-runtime.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/power-assert-renderer-file@1.2.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/power-assert-renderer-file/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/power-assert-renderer-file/package.json"
              }
            ],
            "concludedValue": "node_modules/power-assert-renderer-file/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Takuto Wada <takuto.wada@gmail.com> (https://github.com/twada)"
        }
      ],
      "group": "",
      "name": "power-assert-renderer-diagram",
      "version": "1.2.0",
      "description": "diagram renderer for power-assert context",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/power-assert-renderer-diagram@1.2.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/twada/power-assert-runtime"
        },
        {
          "type": "vcs",
          "url": "https://github.com/twada/power-assert-runtime.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/power-assert-renderer-diagram@1.2.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/power-assert-renderer-diagram/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/power-assert-renderer-diagram/package.json"
              }
            ],
            "concludedValue": "node_modules/power-assert-renderer-diagram/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Takuto Wada <takuto.wada@gmail.com> (https://github.com/twada)"
        }
      ],
      "group": "",
      "name": "power-assert-renderer-comparison",
      "version": "1.2.0",
      "description": "comparison renderer for power-assert context",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/power-assert-renderer-comparison@1.2.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/twada/power-assert-runtime"
        },
        {
          "type": "vcs",
          "url": "https://github.com/twada/power-assert-runtime.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/power-assert-renderer-comparison@1.2.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/power-assert-renderer-comparison/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/power-assert-renderer-comparison/package.json"
              }
            ],
            "concludedValue": "node_modules/power-assert-renderer-comparison/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Takuto Wada <takuto.wada@gmail.com> (https://github.com/twada)"
        }
      ],
      "group": "",
      "name": "power-assert-renderer-base",
      "version": "1.1.1",
      "description": "base renderer for power-assert context",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/power-assert-renderer-base@1.1.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/twada/power-assert-runtime"
        },
        {
          "type": "vcs",
          "url": "https://github.com/twada/power-assert-runtime.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/power-assert-renderer-base@1.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/power-assert-renderer-base/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/power-assert-renderer-base/package.json"
              }
            ],
            "concludedValue": "node_modules/power-assert-renderer-base/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Takuto Wada <takuto.wada@gmail.com> (https://github.com/twada)"
        }
      ],
      "group": "",
      "name": "power-assert-renderer-assertion",
      "version": "1.2.0",
      "description": "assertion renderer for power-assert context",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/power-assert-renderer-assertion@1.2.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/twada/power-assert-runtime"
        },
        {
          "type": "vcs",
          "url": "https://github.com/twada/power-assert-runtime.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/power-assert-renderer-assertion@1.2.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/power-assert-renderer-assertion/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/power-assert-renderer-assertion/package.json"
              }
            ],
            "concludedValue": "node_modules/power-assert-renderer-assertion/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Takuto Wada <takuto.wada@gmail.com> (https://github.com/twada)"
        }
      ],
      "group": "",
      "name": "power-assert-formatter",
      "version": "1.4.1",
      "description": "Power Assert output formatter",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/power-assert-formatter@1.4.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/power-assert-js/power-assert-formatter"
        },
        {
          "type": "vcs",
          "url": "https://github.com/power-assert-js/power-assert-formatter.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/power-assert-formatter@1.4.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/power-assert-formatter/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/power-assert-formatter/package.json"
              }
            ],
            "concludedValue": "node_modules/power-assert-formatter/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Takuto Wada <takuto.wada@gmail.com> (https://github.com/twada)"
        }
      ],
      "group": "",
      "name": "power-assert-context-traversal",
      "version": "1.2.0",
      "description": "traverse power-assert context",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/power-assert-context-traversal@1.2.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/twada/power-assert-runtime"
        },
        {
          "type": "vcs",
          "url": "https://github.com/twada/power-assert-runtime.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/power-assert-context-traversal@1.2.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/power-assert-context-traversal/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/power-assert-context-traversal/package.json"
              }
            ],
            "concludedValue": "node_modules/power-assert-context-traversal/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "estraverse",
      "version": "4.3.0",
      "description": "ECMAScript JS AST traversal functions",
      "licenses": [
        {
          "license": {
            "id": "BSD-2-Clause",
            "url": "https://opensource.org/licenses/BSD-2-Clause"
          }
        }
      ],
      "purl": "pkg:npm/estraverse@4.3.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/estools/estraverse"
        },
        {
          "type": "vcs",
          "url": "http://github.com/estools/estraverse.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/estraverse@4.3.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/power-assert-context-traversal/node_modules/estraverse/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/power-assert-context-reducer-ast/node_modules/estraverse/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/merge-estraverse-visitors/node_modules/estraverse/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/espower-source/node_modules/estraverse/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/espower/node_modules/estraverse/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/eslint-scope/node_modules/estraverse/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/escope/node_modules/estraverse/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/escodegen/node_modules/estraverse/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/empower-assert/node_modules/estraverse/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/call-matcher/node_modules/estraverse/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/call-matcher/node_modules/estraverse/package.json"
              }
            ],
            "concludedValue": "node_modules/call-matcher/node_modules/estraverse/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Takuto Wada <takuto.wada@gmail.com> (https://github.com/twada)"
        }
      ],
      "group": "",
      "name": "power-assert-context-reducer-ast",
      "version": "1.2.0",
      "description": "append AST into power-assert context",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/power-assert-context-reducer-ast@1.2.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/twada/power-assert-runtime"
        },
        {
          "type": "vcs",
          "url": "https://github.com/twada/power-assert-runtime.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/power-assert-context-reducer-ast@1.2.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/power-assert-context-reducer-ast/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/power-assert-context-reducer-ast/package.json"
              }
            ],
            "concludedValue": "node_modules/power-assert-context-reducer-ast/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Takuto Wada <takuto.wada@gmail.com> (https://github.com/twada)"
        }
      ],
      "group": "",
      "name": "power-assert-context-formatter",
      "version": "1.2.0",
      "description": "format power-assert context",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/power-assert-context-formatter@1.2.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/twada/power-assert-runtime"
        },
        {
          "type": "vcs",
          "url": "https://github.com/twada/power-assert-runtime.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/power-assert-context-formatter@1.2.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/power-assert-context-formatter/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/power-assert-context-formatter/package.json"
              }
            ],
            "concludedValue": "node_modules/power-assert-context-formatter/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Takuto Wada <takuto.wada@gmail.com> (https://github.com/twada)"
        }
      ],
      "group": "",
      "name": "power-assert",
      "version": "1.6.1",
      "description": "Power Assert in JavaScript",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/power-assert@1.6.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/power-assert-js/power-assert"
        },
        {
          "type": "vcs",
          "url": "https://github.com/power-assert-js/power-assert.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/power-assert@1.6.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/power-assert/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/power-assert/package.json"
              }
            ],
            "concludedValue": "node_modules/power-assert/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "possible-typed-array-names",
      "version": "1.1.0",
      "description": "A simple list of possible Typed Array names.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/possible-typed-array-names@1.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/possible-typed-array-names#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/possible-typed-array-names.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/possible-typed-array-names@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/possible-typed-array-names/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/possible-typed-array-names/package.json"
              }
            ],
            "concludedValue": "node_modules/possible-typed-array-names/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Blake Embrey <hello@blakeembrey.com> (http://blakeembrey.me)"
        }
      ],
      "group": "",
      "name": "pluralize",
      "version": "7.0.0",
      "description": "Pluralize and singularize any word",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/pluralize@7.0.0",
      "type": "library",
      "bom-ref": "pkg:npm/pluralize@7.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/pluralize/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/pluralize/package.json"
              }
            ],
            "concludedValue": "node_modules/pluralize/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Javier Blanco <http://jbgutierrez.info>"
        }
      ],
      "group": "",
      "name": "path-parse",
      "version": "1.0.7",
      "description": "Node.js path.parse() ponyfill",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/path-parse@1.0.7",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jbgutierrez/path-parse#readme"
        },
        {
          "type": "vcs",
          "url": "https://github.com/jbgutierrez/path-parse.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/path-parse@1.0.7",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/path-parse/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/path-parse/package.json"
              }
            ],
            "concludedValue": "node_modules/path-parse/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Domenic Denicola <d@domenic.me> (https://domenic.me)"
        }
      ],
      "group": "",
      "name": "path-is-inside",
      "version": "1.0.2",
      "description": "Tests whether one path is inside another path",
      "licenses": [
        {
          "expression": "(WTFPL OR MIT)"
        }
      ],
      "purl": "pkg:npm/path-is-inside@1.0.2",
      "type": "library",
      "bom-ref": "pkg:npm/path-is-inside@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/path-is-inside/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/path-is-inside/package.json"
              }
            ],
            "concludedValue": "node_modules/path-is-inside/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "path-is-absolute",
      "version": "1.0.1",
      "description": "Node.js 0.12 path.isAbsolute() ponyfill",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/path-is-absolute@1.0.1",
      "type": "library",
      "bom-ref": "pkg:npm/path-is-absolute@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/path-is-absolute/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/path-is-absolute/package.json"
              }
            ],
            "concludedValue": "node_modules/path-is-absolute/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "own-keys",
      "version": "1.0.1",
      "description": "Robustly get an object's own property keys (strings and symbols), including non-enumerables when possible",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/own-keys@1.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/own-keys#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/own-keys.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/own-keys@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/own-keys/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/own-keys/package.json"
              }
            ],
            "concludedValue": "node_modules/own-keys/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "os-tmpdir",
      "version": "1.0.2",
      "description": "Node.js os.tmpdir() ponyfill",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/os-tmpdir@1.0.2",
      "type": "library",
      "bom-ref": "pkg:npm/os-tmpdir@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/os-tmpdir/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/os-tmpdir/package.json"
              }
            ],
            "concludedValue": "node_modules/os-tmpdir/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "George Zahariev <z@georgezahariev.com>"
        }
      ],
      "group": "",
      "name": "optionator",
      "version": "0.8.3",
      "description": "option parsing and help generation",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/optionator@0.8.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/gkz/optionator"
        },
        {
          "type": "vcs",
          "url": "git://github.com/gkz/optionator.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/optionator@0.8.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/optionator/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/optionator/package.json"
              }
            ],
            "concludedValue": "node_modules/optionator/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "onetime",
      "version": "2.0.1",
      "description": "Ensure a function is only called once",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/onetime@2.0.1",
      "type": "library",
      "bom-ref": "pkg:npm/onetime@2.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/onetime/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/onetime/package.json"
              }
            ],
            "concludedValue": "node_modules/onetime/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "once",
      "version": "1.4.0",
      "description": "Run a function exactly one time",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/once@1.4.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/isaacs/once"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/once@1.4.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/once/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/once/package.json"
              }
            ],
            "concludedValue": "node_modules/once/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "object.values",
      "version": "1.2.1",
      "description": "ES2017 spec-compliant Object.values shim.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/object.values@1.2.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/es-shims/Object.values.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/object.values@1.2.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/object.values/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/object.values/package.json"
              }
            ],
            "concludedValue": "node_modules/object.values/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "object.groupby",
      "version": "1.0.3",
      "description": "An ESnext spec-compliant `Object.groupBy` shim/polyfill/replacement that works as far down as ES3.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/object.groupby@1.0.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/es-shims/Object.groupBy#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/es-shims/Object.groupBy.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/object.groupby@1.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/object.groupby/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/object.groupby/package.json"
              }
            ],
            "concludedValue": "node_modules/object.groupby/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "object.fromentries",
      "version": "2.0.8",
      "description": "ES proposal-spec-compliant Object.fromEntries shim.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/object.fromentries@2.0.8",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/es-shims/Object.fromEntries.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/object.fromentries@2.0.8",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/object.fromentries/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/object.fromentries/package.json"
              }
            ],
            "concludedValue": "node_modules/object.fromentries/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband"
        }
      ],
      "group": "",
      "name": "object.entries",
      "version": "1.1.9",
      "description": "ES2017 spec-compliant Object.entries shim.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/object.entries@1.1.9",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/es-shims/Object.entries.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/object.entries@1.1.9",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/object.entries/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/object.entries/package.json"
              }
            ],
            "concludedValue": "node_modules/object.entries/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband"
        }
      ],
      "group": "",
      "name": "object.assign",
      "version": "4.1.7",
      "description": "ES6 spec-compliant Object.assign shim. From https://github.com/es-shims/es6-shim",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/object.assign@4.1.7",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/ljharb/object.assign.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/object.assign@4.1.7",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/object.assign/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/object.assign/package.json"
              }
            ],
            "concludedValue": "node_modules/object.assign/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com> (http://ljharb.codes)"
        }
      ],
      "group": "",
      "name": "object-keys",
      "version": "1.1.1",
      "description": "An Object.keys replacement, in case Object.keys is not available. From https://github.com/es-shims/es5-shim",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/object-keys@1.1.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/ljharb/object-keys.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/object-keys@1.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/object-keys/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/object-keys/package.json"
              }
            ],
            "concludedValue": "node_modules/object-keys/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband"
        }
      ],
      "group": "",
      "name": "object-is",
      "version": "1.1.6",
      "description": "ES2015-compliant shim for Object.is - differentiates between -0 and +0",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/object-is@1.1.6",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/es-shims/object-is"
        },
        {
          "type": "vcs",
          "url": "git://github.com/es-shims/object-is.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/object-is@1.1.6",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/object-is/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/object-is/package.json"
              }
            ],
            "concludedValue": "node_modules/object-is/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "James Halliday <mail@substack.net> (http://substack.net)"
        }
      ],
      "group": "",
      "name": "object-inspect",
      "version": "1.13.4",
      "description": "string representations of objects in node and the browser",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/object-inspect@1.13.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/object-inspect"
        },
        {
          "type": "vcs",
          "url": "git://github.com/inspect-js/object-inspect.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/object-inspect@1.13.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/object-inspect/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/object-inspect/package.json"
              }
            ],
            "concludedValue": "node_modules/object-inspect/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "object-assign",
      "version": "4.1.1",
      "description": "ES2015 `Object.assign()` ponyfill",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/object-assign@4.1.1",
      "type": "library",
      "bom-ref": "pkg:npm/object-assign@4.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/object-assign/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/object-assign/package.json"
              }
            ],
            "concludedValue": "node_modules/object-assign/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "James Long <longster@gmail.com>"
        }
      ],
      "group": "",
      "name": "nunjucks",
      "version": "3.2.4",
      "description": "A powerful templating engine with inheritance, asynchronous control, and more (jinja2 inspired)",
      "licenses": [
        {
          "license": {
            "id": "BSD-2-Clause",
            "url": "https://opensource.org/licenses/BSD-2-Clause"
          }
        }
      ],
      "purl": "pkg:npm/nunjucks@3.2.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/mozilla/nunjucks.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/nunjucks@3.2.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/nunjucks/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/nunjucks/package.json"
              }
            ],
            "concludedValue": "node_modules/nunjucks/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "TJ Holowaychuk <tj@vision-media.ca>"
        }
      ],
      "group": "",
      "name": "commander",
      "version": "5.1.0",
      "description": "the complete solution for node.js command-line programs",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/commander@5.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/tj/commander.js.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/commander@5.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/nunjucks/node_modules/commander/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/nunjucks/node_modules/commander/package.json"
              }
            ],
            "concludedValue": "node_modules/nunjucks/node_modules/commander/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "nopt",
      "version": "3.0.6",
      "description": "Option parsing for Node, supporting types, shorthands, etc. Used by npm.",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/nopt@3.0.6",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/npm/nopt.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/nopt@3.0.6",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/nopt/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/nopt/package.json"
              }
            ],
            "concludedValue": "node_modules/nopt/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "node-exports-info",
      "version": "1.6.0",
      "description": "Info about node `exports` field support: version ranges, categories, etc.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/node-exports-info@1.6.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/node-exports-info#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/node-exports-info.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/node-exports-info@1.6.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/node-exports-info/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/node-exports-info/package.json"
              }
            ],
            "concludedValue": "node_modules/node-exports-info/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "GitHub Inc."
        }
      ],
      "group": "",
      "name": "semver",
      "version": "6.3.1",
      "description": "The semantic version parser used by npm.",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/semver@6.3.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/npm/node-semver.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/semver@6.3.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/node-exports-info/node_modules/semver/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/eslint-plugin-react/node_modules/semver/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/eslint-plugin-import/node_modules/semver/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/eslint-plugin-import/node_modules/semver/package.json"
              }
            ],
            "concludedValue": "node_modules/eslint-plugin-import/node_modules/semver/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mariusz Nowak <medyk@medikoo.com> (http://www.medikoo.com/)"
        }
      ],
      "group": "",
      "name": "next-tick",
      "version": "1.1.0",
      "description": "Environment agnostic nextTick polyfill",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/next-tick@1.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/medikoo/next-tick.git"
        }
      ],
      "type": "framework",
      "bom-ref": "pkg:npm/next-tick@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/next-tick/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/next-tick/package.json"
              }
            ],
            "concludedValue": "node_modules/next-tick/package.json"
          }
        ]
      },
      "tags": [
        "framework"
      ]
    },
    {
      "group": "",
      "name": "neo-async",
      "version": "2.6.2",
      "description": "Neo-Async is a drop-in replacement for Async, it almost fully covers its functionality and runs faster ",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/neo-async@2.6.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/suguru03/neo-async"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/neo-async@2.6.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/neo-async/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/neo-async/package.json"
              }
            ],
            "concludedValue": "node_modules/neo-async/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Lauri Rooden (https://github.com/litejs/natural-compare-lite)"
        }
      ],
      "group": "",
      "name": "natural-compare",
      "version": "1.4.0",
      "description": "Compare strings containing a mix of letters and numbers in the way a human being would in sort order.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/natural-compare@1.4.0",
      "type": "library",
      "bom-ref": "pkg:npm/natural-compare@1.4.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/natural-compare/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/natural-compare/package.json"
              }
            ],
            "concludedValue": "node_modules/natural-compare/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "mute-stream",
      "version": "0.0.7",
      "description": "Bytes go in, but they don't come out (when muted).",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/mute-stream@0.0.7",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/isaacs/mute-stream"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/mute-stream@0.0.7",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/mute-stream/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/mute-stream/package.json"
              }
            ],
            "concludedValue": "node_modules/mute-stream/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "azu"
        }
      ],
      "group": "",
      "name": "multi-stage-sourcemap",
      "version": "0.2.1",
      "description": "multi-level sourcemap",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/multi-stage-sourcemap@0.2.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/azu/multi-stage-sourcemap/"
        },
        {
          "type": "vcs",
          "url": "https://github.com/azu/multi-stage-sourcemap.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/multi-stage-sourcemap@0.2.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/multi-stage-sourcemap/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/multi-stage-sourcemap/package.json"
              }
            ],
            "concludedValue": "node_modules/multi-stage-sourcemap/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Nick Fitzgerald <nfitzgerald@mozilla.com>"
        }
      ],
      "group": "",
      "name": "source-map",
      "version": "0.1.43",
      "description": "Generates and consumes source maps",
      "purl": "pkg:npm/source-map@0.1.43",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/mozilla/source-map"
        },
        {
          "type": "vcs",
          "url": "http://github.com/mozilla/source-map.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/source-map@0.1.43",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/multi-stage-sourcemap/node_modules/source-map/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/multi-stage-sourcemap/node_modules/source-map/package.json"
              }
            ],
            "concludedValue": "node_modules/multi-stage-sourcemap/node_modules/source-map/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "ms",
      "version": "2.0.0",
      "description": "Tiny milisecond conversion utility",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/ms@2.0.0",
      "type": "library",
      "bom-ref": "pkg:npm/ms@2.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/ms/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/ms/package.json"
              }
            ],
            "concludedValue": "node_modules/ms/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "TJ Holowaychuk <tj@vision-media.ca>"
        }
      ],
      "group": "",
      "name": "mocha",
      "version": "3.5.3",
      "description": "simple, flexible, fun test framework",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/mocha@3.5.3",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://mochajs.org"
        },
        {
          "type": "vcs",
          "url": "https://github.com/mochajs/mocha.git"
        }
      ],
      "type": "framework",
      "bom-ref": "pkg:npm/mocha@3.5.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/mocha/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/mocha/package.json"
              }
            ],
            "concludedValue": "node_modules/mocha/package.json"
          }
        ]
      },
      "tags": [
        "framework",
        "test"
      ]
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "supports-color",
      "version": "3.1.2",
      "description": "Detect whether a terminal supports color",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/supports-color@3.1.2",
      "type": "library",
      "bom-ref": "pkg:npm/supports-color@3.1.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/mocha/node_modules/supports-color/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/mocha/node_modules/supports-color/package.json"
              }
            ],
            "concludedValue": "node_modules/mocha/node_modules/supports-color/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "James Halliday <mail@substack.net> (http://substack.net)"
        }
      ],
      "group": "",
      "name": "mkdirp",
      "version": "0.5.1",
      "description": "Recursively mkdir, like `mkdir -p`",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/mkdirp@0.5.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/substack/node-mkdirp.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/mkdirp@0.5.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/mocha/node_modules/mkdirp/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/mocha/node_modules/mkdirp/package.json"
              }
            ],
            "concludedValue": "node_modules/mocha/node_modules/mkdirp/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "James Halliday <mail@substack.net> (http://substack.net)"
        }
      ],
      "group": "",
      "name": "minimist",
      "version": "0.0.8",
      "description": "parse argument options",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/minimist@0.0.8",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/substack/minimist"
        },
        {
          "type": "vcs",
          "url": "git://github.com/substack/minimist.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/minimist@0.0.8",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/mocha/node_modules/minimist/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/mocha/node_modules/minimist/package.json"
              }
            ],
            "concludedValue": "node_modules/mocha/node_modules/minimist/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "has-flag",
      "version": "1.0.0",
      "description": "Check if argv has a specific flag",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/has-flag@1.0.0",
      "type": "library",
      "bom-ref": "pkg:npm/has-flag@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/mocha/node_modules/has-flag/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/istanbul/node_modules/has-flag/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/istanbul/node_modules/has-flag/package.json"
              }
            ],
            "concludedValue": "node_modules/istanbul/node_modules/has-flag/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "glob",
      "version": "7.1.1",
      "description": "a little globber",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/glob@7.1.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/isaacs/node-glob.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/glob@7.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/mocha/node_modules/glob/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/mocha/node_modules/glob/package.json"
              }
            ],
            "concludedValue": "node_modules/mocha/node_modules/glob/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "TJ Holowaychuk <tj@vision-media.ca>"
        }
      ],
      "group": "",
      "name": "debug",
      "version": "2.6.8",
      "description": "small debugging utility",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/debug@2.6.8",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/visionmedia/debug.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/debug@2.6.8",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/mocha/node_modules/debug/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/mocha/node_modules/debug/package.json"
              }
            ],
            "concludedValue": "node_modules/mocha/node_modules/debug/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "TJ Holowaychuk <tj@vision-media.ca>"
        }
      ],
      "group": "",
      "name": "commander",
      "version": "2.9.0",
      "description": "the complete solution for node.js command-line programs",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/commander@2.9.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/tj/commander.js.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/commander@2.9.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/mocha/node_modules/commander/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/mocha/node_modules/commander/package.json"
              }
            ],
            "concludedValue": "node_modules/mocha/node_modules/commander/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "James Halliday <mail@substack.net> (http://substack.net)"
        }
      ],
      "group": "",
      "name": "mkdirp",
      "version": "0.5.6",
      "description": "Recursively mkdir, like `mkdir -p`",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/mkdirp@0.5.6",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/substack/node-mkdirp.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/mkdirp@0.5.6",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/mkdirp/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/mkdirp/package.json"
              }
            ],
            "concludedValue": "node_modules/mkdirp/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "James Halliday <mail@substack.net> (http://substack.net)"
        }
      ],
      "group": "",
      "name": "minimist",
      "version": "1.2.8",
      "description": "parse argument options",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/minimist@1.2.8",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/minimistjs/minimist"
        },
        {
          "type": "vcs",
          "url": "git://github.com/minimistjs/minimist.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/minimist@1.2.8",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/minimist/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/minimist/package.json"
              }
            ],
            "concludedValue": "node_modules/minimist/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me)"
        }
      ],
      "group": "",
      "name": "minimatch",
      "version": "3.1.5",
      "description": "a glob matcher in javascript",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/minimatch@3.1.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/isaacs/minimatch.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/minimatch@3.1.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/minimatch/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/minimatch/package.json"
              }
            ],
            "concludedValue": "node_modules/minimatch/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "mimic-fn",
      "version": "1.2.0",
      "description": "Make a function mimic another one",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/mimic-fn@1.2.0",
      "type": "library",
      "bom-ref": "pkg:npm/mimic-fn@1.2.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/mimic-fn/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/mimic-fn/package.json"
              }
            ],
            "concludedValue": "node_modules/mimic-fn/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Takuto Wada <takuto.wada@gmail.com> (https://github.com/twada)"
        }
      ],
      "group": "",
      "name": "merge-estraverse-visitors",
      "version": "1.0.0",
      "description": "merge multiple estraverse visitors into one",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/merge-estraverse-visitors@1.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/twada/merge-estraverse-visitors"
        },
        {
          "type": "vcs",
          "url": "git://github.com/twada/merge-estraverse-visitors.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/merge-estraverse-visitors@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/merge-estraverse-visitors/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/merge-estraverse-visitors/package.json"
              }
            ],
            "concludedValue": "node_modules/merge-estraverse-visitors/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "math-intrinsics",
      "version": "1.1.0",
      "description": "ES Math-related intrinsics and helpers, robustly cached.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/math-intrinsics@1.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/es-shims/math-intrinsics#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/es-shims/math-intrinsics.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/math-intrinsics@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/math-intrinsics/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/math-intrinsics/package.json"
              }
            ],
            "concludedValue": "node_modules/math-intrinsics/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me>"
        }
      ],
      "group": "",
      "name": "lru-cache",
      "version": "4.1.5",
      "description": "A cache object that deletes the least-recently-used items.",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/lru-cache@4.1.5",
      "type": "library",
      "bom-ref": "pkg:npm/lru-cache@4.1.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/lru-cache/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/lru-cache/package.json"
              }
            ],
            "concludedValue": "node_modules/lru-cache/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Andres Suarez <zertosh@gmail.com>"
        }
      ],
      "group": "",
      "name": "loose-envify",
      "version": "1.4.0",
      "description": "Fast (and loose) selective `process.env` replacer using js-tokens instead of an AST",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/loose-envify@1.4.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/zertosh/loose-envify"
        },
        {
          "type": "vcs",
          "url": "git://github.com/zertosh/loose-envify.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/loose-envify@1.4.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/loose-envify/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/loose-envify/package.json"
              }
            ],
            "concludedValue": "node_modules/loose-envify/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "John-David Dalton <john.david.dalton@gmail.com> (http://allyoucanleet.com/)"
        }
      ],
      "group": "",
      "name": "lodash.keys",
      "version": "3.1.2",
      "description": "The modern build of lodash’s `_.keys` as a module.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/lodash.keys@3.1.2",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://lodash.com/"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/lodash.keys@3.1.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/lodash.keys/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/lodash.keys/package.json"
              }
            ],
            "concludedValue": "node_modules/lodash.keys/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "John-David Dalton <john.david.dalton@gmail.com> (http://allyoucanleet.com/)"
        }
      ],
      "group": "",
      "name": "lodash.isarray",
      "version": "3.0.4",
      "description": "The modern build of lodash’s `_.isArray` as a module.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/lodash.isarray@3.0.4",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://lodash.com/"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/lodash.isarray@3.0.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/lodash.isarray/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/lodash.isarray/package.json"
              }
            ],
            "concludedValue": "node_modules/lodash.isarray/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "John-David Dalton <john.david.dalton@gmail.com> (http://allyoucanleet.com/)"
        }
      ],
      "group": "",
      "name": "lodash.isarguments",
      "version": "3.1.0",
      "description": "The lodash method `_.isArguments` exported as a module.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/lodash.isarguments@3.1.0",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://lodash.com/"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/lodash.isarguments@3.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/lodash.isarguments/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/lodash.isarguments/package.json"
              }
            ],
            "concludedValue": "node_modules/lodash.isarguments/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "John-David Dalton <john.david.dalton@gmail.com> (http://allyoucanleet.com/)"
        }
      ],
      "group": "",
      "name": "lodash.create",
      "version": "3.1.1",
      "description": "The modern build of lodash’s `_.create` as a module.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/lodash.create@3.1.1",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://lodash.com/"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/lodash.create@3.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/lodash.create/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/lodash.create/package.json"
              }
            ],
            "concludedValue": "node_modules/lodash.create/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "John-David Dalton <john.david.dalton@gmail.com> (http://allyoucanleet.com/)"
        }
      ],
      "group": "",
      "name": "lodash._isiterateecall",
      "version": "3.0.9",
      "description": "The modern build of lodash’s internal `isIterateeCall` as a module.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/lodash._isiterateecall@3.0.9",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://lodash.com/"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/lodash._isiterateecall@3.0.9",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/lodash._isiterateecall/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/lodash._isiterateecall/package.json"
              }
            ],
            "concludedValue": "node_modules/lodash._isiterateecall/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "John-David Dalton <john.david.dalton@gmail.com> (http://allyoucanleet.com/)"
        }
      ],
      "group": "",
      "name": "lodash._getnative",
      "version": "3.9.1",
      "description": "The modern build of lodash’s internal `getNative` as a module.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/lodash._getnative@3.9.1",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://lodash.com/"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/lodash._getnative@3.9.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/lodash._getnative/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/lodash._getnative/package.json"
              }
            ],
            "concludedValue": "node_modules/lodash._getnative/package.json"
          }
        ]
      },
      "tags": [
        "native"
      ]
    },
    {
      "authors": [
        {
          "name": "John-David Dalton <john.david.dalton@gmail.com> (http://allyoucanleet.com/)"
        }
      ],
      "group": "",
      "name": "lodash._basecreate",
      "version": "3.0.3",
      "description": "The modern build of lodash’s internal `baseCreate` as a module.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/lodash._basecreate@3.0.3",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://lodash.com/"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/lodash._basecreate@3.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/lodash._basecreate/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/lodash._basecreate/package.json"
              }
            ],
            "concludedValue": "node_modules/lodash._basecreate/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "John-David Dalton <john.david.dalton@gmail.com> (http://allyoucanleet.com/)"
        }
      ],
      "group": "",
      "name": "lodash._basecopy",
      "version": "3.0.1",
      "description": "The modern build of lodash’s internal `baseCopy` as a module.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/lodash._basecopy@3.0.1",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://lodash.com/"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/lodash._basecopy@3.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/lodash._basecopy/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/lodash._basecopy/package.json"
              }
            ],
            "concludedValue": "node_modules/lodash._basecopy/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "John-David Dalton <john.david.dalton@gmail.com> (http://allyoucanleet.com/)"
        }
      ],
      "group": "",
      "name": "lodash._baseassign",
      "version": "3.2.0",
      "description": "The modern build of lodash’s internal `baseAssign` as a module.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/lodash._baseassign@3.2.0",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://lodash.com/"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/lodash._baseassign@3.2.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/lodash._baseassign/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/lodash._baseassign/package.json"
              }
            ],
            "concludedValue": "node_modules/lodash._baseassign/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "John-David Dalton <john.david.dalton@gmail.com>"
        }
      ],
      "group": "",
      "name": "lodash",
      "version": "4.18.1",
      "description": "Lodash modular utilities.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/lodash@4.18.1",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://lodash.com/"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/lodash@4.18.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/lodash/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/lodash/package.json"
              }
            ],
            "concludedValue": "node_modules/lodash/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "George Zahariev <z@georgezahariev.com>"
        }
      ],
      "group": "",
      "name": "levn",
      "version": "0.3.0",
      "description": "Light ECMAScript (JavaScript) Value Notation - human written, concise, typed, flexible",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/levn@0.3.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/gkz/levn"
        },
        {
          "type": "vcs",
          "url": "git://github.com/gkz/levn.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/levn@0.3.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/levn/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/levn/package.json"
              }
            ],
            "concludedValue": "node_modules/levn/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Matthew Caruana Galizia <mattcg@gmail.com>"
        }
      ],
      "group": "",
      "name": "language-tags",
      "version": "1.0.9",
      "description": "Work with IANA language tags.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/language-tags@1.0.9",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/mattcg/language-tags"
        },
        {
          "type": "vcs",
          "url": "git://github.com/mattcg/language-tags.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/language-tags@1.0.9",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/language-tags/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/language-tags/package.json"
              }
            ],
            "concludedValue": "node_modules/language-tags/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "language-subtag-registry",
      "version": "0.3.23",
      "description": "Full BCP 47 language subtag data from the official IANA repository, in JSON format with multiple indices.",
      "licenses": [
        {
          "license": {
            "id": "CC0-1.0",
            "url": "https://opensource.org/licenses/CC0-1.0"
          }
        }
      ],
      "purl": "pkg:npm/language-subtag-registry@0.3.23",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/mattcg/language-subtag-registry"
        },
        {
          "type": "vcs",
          "url": "https://github.com/mattcg/language-subtag-registry"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/language-subtag-registry@0.3.23",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/language-subtag-registry/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/language-subtag-registry/package.json"
              }
            ],
            "concludedValue": "node_modules/language-subtag-registry/package.json"
          }
        ]
      },
      "tags": [
        "json"
      ]
    },
    {
      "authors": [
        {
          "name": "Ethan Cohen"
        }
      ],
      "group": "",
      "name": "jsx-ast-utils",
      "version": "3.3.5",
      "description": "AST utility module for statically analyzing JSX",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/jsx-ast-utils@3.3.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jsx-eslint/jsx-ast-utils"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/jsx-ast-utils@3.3.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/jsx-ast-utils/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/jsx-ast-utils/package.json"
              }
            ],
            "concludedValue": "node_modules/jsx-ast-utils/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Aseem Kishore <aseem.kishore@gmail.com>"
        }
      ],
      "group": "",
      "name": "json5",
      "version": "1.0.2",
      "description": "JSON for humans.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/json5@1.0.2",
      "externalReferences": [
        {
          "type": "website",
          "url": "http://json5.org/"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/json5/json5.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/json5@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/json5/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/json5/package.json"
              }
            ],
            "concludedValue": "node_modules/json5/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Kit Cambridge <github@kitcambridge.be>"
        }
      ],
      "group": "",
      "name": "json3",
      "version": "3.3.2",
      "description": "A modern JSON implementation compatible with nearly all JavaScript platforms.",
      "purl": "pkg:npm/json3@3.3.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "http://bestiejs.github.io/json3"
        },
        {
          "type": "vcs",
          "url": "git://github.com/bestiejs/json3.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/json3@3.3.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/json3/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/json3/package.json"
              }
            ],
            "concludedValue": "node_modules/json3/package.json"
          }
        ]
      },
      "tags": [
        "json"
      ]
    },
    {
      "authors": [
        {
          "name": "James Halliday <mail@substack.net> (http://substack.net)"
        }
      ],
      "group": "",
      "name": "json-stable-stringify-without-jsonify",
      "version": "1.0.1",
      "description": "deterministic JSON.stringify() with custom sorting to get deterministic hashes from stringified results, with no public domain dependencies",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/json-stable-stringify-without-jsonify@1.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/samn/json-stable-stringify"
        },
        {
          "type": "vcs",
          "url": "git://github.com/samn/json-stable-stringify.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/json-stable-stringify-without-jsonify@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/json-stable-stringify-without-jsonify/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/json-stable-stringify-without-jsonify/package.json"
              }
            ],
            "concludedValue": "node_modules/json-stable-stringify-without-jsonify/package.json"
          }
        ]
      },
      "tags": [
        "json"
      ]
    },
    {
      "authors": [
        {
          "name": "Evgeny Poberezkin"
        }
      ],
      "group": "",
      "name": "json-schema-traverse",
      "version": "0.3.1",
      "description": "Traverse JSON Schema passing each schema object to callback",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/json-schema-traverse@0.3.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/epoberezkin/json-schema-traverse#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/epoberezkin/json-schema-traverse.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/json-schema-traverse@0.3.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/json-schema-traverse/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/json-schema-traverse/package.json"
              }
            ],
            "concludedValue": "node_modules/json-schema-traverse/package.json"
          }
        ]
      },
      "tags": [
        "json"
      ]
    },
    {
      "authors": [
        {
          "name": "Vladimir Zapparov <dervus.grim@gmail.com>"
        }
      ],
      "group": "",
      "name": "js-yaml",
      "version": "3.14.2",
      "description": "YAML 1.2 parser and serializer",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/js-yaml@3.14.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/nodeca/js-yaml"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/js-yaml@3.14.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/js-yaml/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/js-yaml/package.json"
              }
            ],
            "concludedValue": "node_modules/js-yaml/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Simon Lydell"
        }
      ],
      "group": "",
      "name": "js-tokens",
      "version": "3.0.2",
      "description": "A regex that tokenizes JavaScript.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/js-tokens@3.0.2",
      "type": "library",
      "bom-ref": "pkg:npm/js-tokens@3.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/js-tokens/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/js-tokens/package.json"
              }
            ],
            "concludedValue": "node_modules/js-tokens/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "iterator.prototype",
      "version": "1.1.5",
      "description": "`Iterator.prototype`, or a shared object to use.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/iterator.prototype@1.1.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/Iterator.prototype#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/Iterator.prototype.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/iterator.prototype@1.1.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/iterator.prototype/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/iterator.prototype/package.json"
              }
            ],
            "concludedValue": "node_modules/iterator.prototype/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Krishnan Anantheswaran <kananthmail-github@yahoo.com>"
        }
      ],
      "group": "",
      "name": "istanbul",
      "version": "0.4.5",
      "description": "Yet another JS code coverage tool that computes statement, line, function and branch coverage with module loader hooks to transparently add coverage when running tests. Supports all JS coverage use cases including unit tests, server side functional tests and browser tests. Built for scale",
      "licenses": [
        {
          "license": {
            "id": "BSD-3-Clause",
            "url": "https://opensource.org/licenses/BSD-3-Clause"
          }
        }
      ],
      "purl": "pkg:npm/istanbul@0.4.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/gotwarlost/istanbul.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/istanbul@0.4.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/istanbul/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/istanbul/package.json"
              }
            ],
            "concludedValue": "node_modules/istanbul/package.json"
          }
        ]
      },
      "tags": [
        "test"
      ]
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "supports-color",
      "version": "3.2.3",
      "description": "Detect whether a terminal supports color",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/supports-color@3.2.3",
      "type": "library",
      "bom-ref": "pkg:npm/supports-color@3.2.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/istanbul/node_modules/supports-color/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/istanbul/node_modules/supports-color/package.json"
              }
            ],
            "concludedValue": "node_modules/istanbul/node_modules/supports-color/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Nick Fitzgerald <nfitzgerald@mozilla.com>"
        }
      ],
      "group": "",
      "name": "source-map",
      "version": "0.2.0",
      "description": "Generates and consumes source maps",
      "purl": "pkg:npm/source-map@0.2.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/mozilla/source-map"
        },
        {
          "type": "vcs",
          "url": "http://github.com/mozilla/source-map.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/source-map@0.2.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/istanbul/node_modules/source-map/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/istanbul/node_modules/source-map/package.json"
              }
            ],
            "concludedValue": "node_modules/istanbul/node_modules/source-map/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "James Halliday <mail@substack.net> (http://substack.net)"
        }
      ],
      "group": "",
      "name": "resolve",
      "version": "1.1.7",
      "description": "resolve like require.resolve() on behalf of files asynchronously and synchronously",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/resolve@1.1.7",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/substack/node-resolve.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/resolve@1.1.7",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/istanbul/node_modules/resolve/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/istanbul/node_modules/resolve/package.json"
              }
            ],
            "concludedValue": "node_modules/istanbul/node_modules/resolve/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "deep",
      "version": "1.2.3",
      "purl": "pkg:npm/deep@1.2.3",
      "type": "library",
      "bom-ref": "pkg:npm/deep@1.2.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/istanbul/node_modules/resolve/test/pathfilter/deep_ref/node_modules/deep/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/istanbul/node_modules/resolve/test/pathfilter/deep_ref/node_modules/deep/package.json"
              }
            ],
            "concludedValue": "node_modules/istanbul/node_modules/resolve/test/pathfilter/deep_ref/node_modules/deep/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "glob",
      "version": "5.0.15",
      "description": "a little globber",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/glob@5.0.15",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/isaacs/node-glob.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/glob@5.0.15",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/istanbul/node_modules/glob/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/istanbul/node_modules/glob/package.json"
              }
            ],
            "concludedValue": "node_modules/istanbul/node_modules/glob/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "estraverse",
      "version": "1.9.3",
      "description": "ECMAScript JS AST traversal functions",
      "purl": "pkg:npm/estraverse@1.9.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/estools/estraverse"
        },
        {
          "type": "vcs",
          "url": "http://github.com/estools/estraverse.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/estraverse@1.9.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/istanbul/node_modules/estraverse/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/istanbul/node_modules/estraverse/package.json"
              }
            ],
            "concludedValue": "node_modules/istanbul/node_modules/estraverse/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Ariya Hidayat <ariya.hidayat@gmail.com>"
        }
      ],
      "group": "",
      "name": "esprima",
      "version": "2.7.3",
      "description": "ECMAScript parsing infrastructure for multipurpose analysis",
      "licenses": [
        {
          "license": {
            "id": "BSD-2-Clause",
            "url": "https://opensource.org/licenses/BSD-2-Clause"
          }
        }
      ],
      "purl": "pkg:npm/esprima@2.7.3",
      "externalReferences": [
        {
          "type": "website",
          "url": "http://esprima.org"
        },
        {
          "type": "vcs",
          "url": "https://github.com/jquery/esprima.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/esprima@2.7.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/istanbul/node_modules/esprima/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/escallmatch/node_modules/esprima/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/escallmatch/node_modules/esprima/package.json"
              }
            ],
            "concludedValue": "node_modules/escallmatch/node_modules/esprima/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "escodegen",
      "version": "1.8.1",
      "description": "ECMAScript code generator",
      "licenses": [
        {
          "license": {
            "id": "BSD-2-Clause",
            "url": "https://opensource.org/licenses/BSD-2-Clause"
          }
        }
      ],
      "purl": "pkg:npm/escodegen@1.8.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "http://github.com/estools/escodegen"
        },
        {
          "type": "vcs",
          "url": "http://github.com/estools/escodegen.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/escodegen@1.8.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/istanbul/node_modules/escodegen/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/istanbul/node_modules/escodegen/package.json"
              }
            ],
            "concludedValue": "node_modules/istanbul/node_modules/escodegen/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "isexe",
      "version": "2.0.0",
      "description": "Minimal module to check if a file is executable.",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/isexe@2.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/isaacs/isexe#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/isaacs/isexe.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/isexe@2.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/isexe/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/isexe/package.json"
              }
            ],
            "concludedValue": "node_modules/isexe/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Julian Gruber <mail@juliangruber.com> (http://juliangruber.com)"
        }
      ],
      "group": "",
      "name": "isarray",
      "version": "1.0.0",
      "description": "Array#isArray for older browsers",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/isarray@1.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/juliangruber/isarray"
        },
        {
          "type": "vcs",
          "url": "git://github.com/juliangruber/isarray.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/isarray@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/isarray/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/isarray/package.json"
              }
            ],
            "concludedValue": "node_modules/isarray/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "is-weakset",
      "version": "2.0.4",
      "description": "Is this value a JS WeakSet? This module works cross-realm/iframe, and despite ES6 @@toStringTag.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-weakset@2.0.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/is-weakset#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/is-weakset.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-weakset@2.0.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-weakset/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-weakset/package.json"
              }
            ],
            "concludedValue": "node_modules/is-weakset/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "is-weakref",
      "version": "1.1.1",
      "description": "Is this value a JS WeakRef? This module works cross-realm/iframe, and despite ES6 @@toStringTag.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-weakref@1.1.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/is-weakref#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/is-weakref.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-weakref@1.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-weakref/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-weakref/package.json"
              }
            ],
            "concludedValue": "node_modules/is-weakref/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "is-weakmap",
      "version": "2.0.2",
      "description": "Is this value a JS WeakMap? This module works cross-realm/iframe, and despite ES6 @@toStringTag.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-weakmap@2.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/is-weakmap#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/is-weakmap.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-weakmap@2.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-weakmap/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-weakmap/package.json"
              }
            ],
            "concludedValue": "node_modules/is-weakmap/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "is-url",
      "version": "1.2.4",
      "description": "Check whether a string is a URL.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-url@1.2.4",
      "type": "library",
      "bom-ref": "pkg:npm/is-url@1.2.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-url/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-url/package.json"
              }
            ],
            "concludedValue": "node_modules/is-url/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com> (http://ljharb.codes)"
        }
      ],
      "group": "",
      "name": "is-typed-array",
      "version": "1.1.15",
      "description": "Is this value a JS Typed Array? This module works cross-realm/iframe, does not depend on `instanceof` or mutable properties, and despite ES6 Symbol.toStringTag.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-typed-array@1.1.15",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/inspect-js/is-typed-array.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-typed-array@1.1.15",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-typed-array/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-typed-array/package.json"
              }
            ],
            "concludedValue": "node_modules/is-typed-array/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "is-symbol",
      "version": "1.1.1",
      "description": "Determine if a value is an ES6 Symbol or not.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-symbol@1.1.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/inspect-js/is-symbol.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-symbol@1.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-symbol/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-symbol/package.json"
              }
            ],
            "concludedValue": "node_modules/is-symbol/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "is-string",
      "version": "1.1.1",
      "description": "Is this value a JS String object or primitive? This module works cross-realm/iframe, and despite ES6 @@toStringTag.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-string@1.1.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/inspect-js/is-string.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-string@1.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-string/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-string/package.json"
              }
            ],
            "concludedValue": "node_modules/is-string/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com> (http://ljharb.codes)"
        }
      ],
      "group": "",
      "name": "is-shared-array-buffer",
      "version": "1.0.4",
      "description": "Is this value a JS SharedArrayBuffer?",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-shared-array-buffer@1.0.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/is-shared-array-buffer#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/is-shared-array-buffer.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-shared-array-buffer@1.0.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-shared-array-buffer/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-shared-array-buffer/package.json"
              }
            ],
            "concludedValue": "node_modules/is-shared-array-buffer/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "is-set",
      "version": "2.0.3",
      "description": "Is this value a JS Set? This module works cross-realm/iframe, and despite ES6 @@toStringTag.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-set@2.0.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/is-set#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/is-set.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-set@2.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-set/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-set/package.json"
              }
            ],
            "concludedValue": "node_modules/is-set/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Shinnosuke Watanabe (https://github.com/shinnn)"
        }
      ],
      "group": "",
      "name": "is-resolvable",
      "version": "1.1.0",
      "description": "Check if a module ID is resolvable with require()",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/is-resolvable@1.1.0",
      "type": "library",
      "bom-ref": "pkg:npm/is-resolvable@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-resolvable/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-resolvable/package.json"
              }
            ],
            "concludedValue": "node_modules/is-resolvable/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "is-regex",
      "version": "1.2.1",
      "description": "Is this value a JS regex? Works cross-realm/iframe, and despite ES6 @@toStringTag",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-regex@1.2.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/is-regex"
        },
        {
          "type": "vcs",
          "url": "git://github.com/inspect-js/is-regex.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-regex@1.2.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-regex/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-regex/package.json"
              }
            ],
            "concludedValue": "node_modules/is-regex/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "is-number-object",
      "version": "1.1.1",
      "description": "Is this value a JS Number object? This module works cross-realm/iframe, and despite ES6 @@toStringTag.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-number-object@1.1.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/is-number-object#readme"
        },
        {
          "type": "vcs",
          "url": "git://github.com/inspect-js/is-number-object.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-number-object@1.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-number-object/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-number-object/package.json"
              }
            ],
            "concludedValue": "node_modules/is-number-object/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "is-negative-zero",
      "version": "2.0.3",
      "description": "Is this value negative zero? === will lie to you",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-negative-zero@2.0.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/is-negative-zero"
        },
        {
          "type": "vcs",
          "url": "git://github.com/inspect-js/is-negative-zero.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-negative-zero@2.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-negative-zero/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-negative-zero/package.json"
              }
            ],
            "concludedValue": "node_modules/is-negative-zero/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "is-map",
      "version": "2.0.3",
      "description": "Is this value a JS Map? This module works cross-realm/iframe, and despite ES6 @@toStringTag.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-map@2.0.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/is-map#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/is-map.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-map@2.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-map/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-map/package.json"
              }
            ],
            "concludedValue": "node_modules/is-map/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "is-glob",
      "version": "4.0.3",
      "description": "Returns `true` if the given string looks like a glob pattern or an extglob pattern. This makes it easy to create code that only uses external modules like node-glob when necessary, resulting in much faster code execution and initialization time, and a better user experience.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-glob@4.0.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/micromatch/is-glob"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-glob@4.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-glob/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-glob/package.json"
              }
            ],
            "concludedValue": "node_modules/is-glob/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "is-generator-function",
      "version": "1.1.2",
      "description": "Determine if a function is a native generator function.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-generator-function@1.1.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/inspect-js/is-generator-function.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-generator-function@1.1.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-generator-function/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-generator-function/package.json"
              }
            ],
            "concludedValue": "node_modules/is-generator-function/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "is-fullwidth-code-point",
      "version": "2.0.0",
      "description": "Check if the character represented by a given Unicode code point is fullwidth",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-fullwidth-code-point@2.0.0",
      "type": "library",
      "bom-ref": "pkg:npm/is-fullwidth-code-point@2.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-fullwidth-code-point/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-fullwidth-code-point/package.json"
              }
            ],
            "concludedValue": "node_modules/is-fullwidth-code-point/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "is-finalizationregistry",
      "version": "1.1.1",
      "description": "Is this value a JS FinalizationRegistry? This module works cross-realm/iframe, and despite ES6 @@toStringTag.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-finalizationregistry@1.1.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/is-finalizationregistry#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/is-finalizationregistry.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-finalizationregistry@1.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-finalizationregistry/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-finalizationregistry/package.json"
              }
            ],
            "concludedValue": "node_modules/is-finalizationregistry/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "is-extglob",
      "version": "2.1.1",
      "description": "Returns true if a string has an extglob.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-extglob@2.1.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/is-extglob"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-extglob@2.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-extglob/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-extglob/package.json"
              }
            ],
            "concludedValue": "node_modules/is-extglob/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband"
        }
      ],
      "group": "",
      "name": "is-date-object",
      "version": "1.1.0",
      "description": "Is this value a JS Date object? This module works cross-realm/iframe, and despite ES6 @@toStringTag.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-date-object@1.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/inspect-js/is-date-object.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-date-object@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-date-object/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-date-object/package.json"
              }
            ],
            "concludedValue": "node_modules/is-date-object/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "is-data-view",
      "version": "1.0.2",
      "description": "Is this value a JS DataView? This module works cross-realm/iframe, does not depend on `instanceof` or mutable properties, and despite ES6 Symbol.toStringTag.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-data-view@1.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/is-data-view#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/is-data-view.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-data-view@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-data-view/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-data-view/package.json"
              }
            ],
            "concludedValue": "node_modules/is-data-view/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "is-core-module",
      "version": "2.16.2",
      "description": "Is this specifier a node.js core module?",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-core-module@2.16.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/is-core-module"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/is-core-module.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-core-module@2.16.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-core-module/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-core-module/package.json"
              }
            ],
            "concludedValue": "node_modules/is-core-module/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com> (http://ljharb.codes)"
        }
      ],
      "group": "",
      "name": "is-callable",
      "version": "1.2.7",
      "description": "Is this JS value callable? Works with Functions and GeneratorFunctions, despite ES6 @@toStringTag.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-callable@1.2.7",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/inspect-js/is-callable.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-callable@1.2.7",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-callable/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-callable/package.json"
              }
            ],
            "concludedValue": "node_modules/is-callable/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "is-boolean-object",
      "version": "1.2.2",
      "description": "Is this value a JS Boolean? This module works cross-realm/iframe, and despite ES6 @@toStringTag.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-boolean-object@1.2.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/inspect-js/is-boolean-object.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-boolean-object@1.2.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-boolean-object/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-boolean-object/package.json"
              }
            ],
            "concludedValue": "node_modules/is-boolean-object/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "is-bigint",
      "version": "1.1.0",
      "description": "Is this value an ES BigInt?",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-bigint@1.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/is-bigint#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/is-bigint.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-bigint@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-bigint/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-bigint/package.json"
              }
            ],
            "concludedValue": "node_modules/is-bigint/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "is-async-function",
      "version": "2.1.1",
      "description": "Determine if a function is a native async function.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-async-function@2.1.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/inspect-js/is-async-function.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-async-function@2.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-async-function/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-async-function/package.json"
              }
            ],
            "concludedValue": "node_modules/is-async-function/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "is-array-buffer",
      "version": "3.0.5",
      "description": "Is this value a JS ArrayBuffer?",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-array-buffer@3.0.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/is-array-buffer#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/is-array-buffer.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-array-buffer@3.0.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-array-buffer/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-array-buffer/package.json"
              }
            ],
            "concludedValue": "node_modules/is-array-buffer/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com> (http://ljharb.codes)"
        }
      ],
      "group": "",
      "name": "is-arguments",
      "version": "1.2.0",
      "description": "Is this an arguments object? It's a harder question than you think.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-arguments@1.2.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/is-arguments"
        },
        {
          "type": "vcs",
          "url": "git://github.com/inspect-js/is-arguments.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-arguments@1.2.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-arguments/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-arguments/package.json"
              }
            ],
            "concludedValue": "node_modules/is-arguments/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Andres Suarez <zertosh@gmail.com>"
        }
      ],
      "group": "",
      "name": "invariant",
      "version": "2.2.4",
      "description": "invariant",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/invariant@2.2.4",
      "type": "library",
      "bom-ref": "pkg:npm/invariant@2.2.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/invariant/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/invariant/package.json"
              }
            ],
            "concludedValue": "node_modules/invariant/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "internal-slot",
      "version": "1.1.0",
      "description": "ES spec-like internal slots",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/internal-slot@1.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/internal-slot#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/internal-slot.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/internal-slot@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/internal-slot/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/internal-slot/package.json"
              }
            ],
            "concludedValue": "node_modules/internal-slot/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "azu"
        }
      ],
      "group": "",
      "name": "intelli-espower-loader",
      "version": "1.1.0",
      "description": "Make espower-lodaer config file unnecessary.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/intelli-espower-loader@1.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/power-assert-js/intelli-espower-loader.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/intelli-espower-loader@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/intelli-espower-loader/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/intelli-espower-loader/package.json"
              }
            ],
            "concludedValue": "node_modules/intelli-espower-loader/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Simon Boudrias <admin@simonboudrias.com>"
        }
      ],
      "group": "",
      "name": "inquirer",
      "version": "3.3.0",
      "description": "A collection of common interactive command line user interfaces.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/inquirer@3.3.0",
      "type": "library",
      "bom-ref": "pkg:npm/inquirer@3.3.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/inquirer/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/inquirer/package.json"
              }
            ],
            "concludedValue": "node_modules/inquirer/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "inherits",
      "version": "2.0.4",
      "description": "Browser-friendly inheritance fully compatible with standard node.js inherits()",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/inherits@2.0.4",
      "type": "library",
      "bom-ref": "pkg:npm/inherits@2.0.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/inherits/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/inherits/package.json"
              }
            ],
            "concludedValue": "node_modules/inherits/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "inflight",
      "version": "1.0.6",
      "description": "Add callbacks to requests in flight to avoid async duplication",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/inflight@1.0.6",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/isaacs/inflight"
        },
        {
          "type": "vcs",
          "url": "https://github.com/npm/inflight.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/inflight@1.0.6",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/inflight/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/inflight/package.json"
              }
            ],
            "concludedValue": "node_modules/inflight/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "indexof",
      "version": "0.0.1",
      "description": "Microsoft sucks",
      "purl": "pkg:npm/indexof@0.0.1",
      "type": "library",
      "bom-ref": "pkg:npm/indexof@0.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/indexof/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/indexof/package.json"
              }
            ],
            "concludedValue": "node_modules/indexof/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jens Taylor <jensyt@gmail.com> (https://github.com/homebrewing)"
        }
      ],
      "group": "",
      "name": "imurmurhash",
      "version": "0.1.4",
      "description": "An incremental implementation of MurmurHash3",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/imurmurhash@0.1.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jensyt/imurmurhash-js"
        },
        {
          "type": "vcs",
          "url": "https://github.com/jensyt/imurmurhash-js"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/imurmurhash@0.1.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/imurmurhash/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/imurmurhash/package.json"
              }
            ],
            "concludedValue": "node_modules/imurmurhash/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "kael"
        }
      ],
      "group": "",
      "name": "ignore",
      "version": "3.3.10",
      "description": "Ignore is a manager and filter for .gitignore rules.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/ignore@3.3.10",
      "type": "library",
      "bom-ref": "pkg:npm/ignore@3.3.10",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/ignore/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/ignore/package.json"
              }
            ],
            "concludedValue": "node_modules/ignore/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Alexander Shtuchkin <ashtuchkin@gmail.com>"
        }
      ],
      "group": "",
      "name": "iconv-lite",
      "version": "0.4.24",
      "description": "Convert character encodings in pure javascript.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/iconv-lite@0.4.24",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ashtuchkin/iconv-lite"
        },
        {
          "type": "vcs",
          "url": "git://github.com/ashtuchkin/iconv-lite.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/iconv-lite@0.4.24",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/iconv-lite/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/iconv-lite/package.json"
              }
            ],
            "concludedValue": "node_modules/iconv-lite/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mathias Bynens (https://mathiasbynens.be/)"
        }
      ],
      "group": "",
      "name": "he",
      "version": "1.1.1",
      "description": "A robust HTML entities encoder/decoder with full Unicode support.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/he@1.1.1",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://mths.be/he"
        },
        {
          "type": "vcs",
          "url": "https://github.com/mathiasbynens/he.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/he@1.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/he/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/he/package.json"
              }
            ],
            "concludedValue": "node_modules/he/package.json"
          }
        ]
      },
      "tags": [
        "html"
      ]
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "hasown",
      "version": "2.0.3",
      "description": "A robust, ES3 compatible, \"has own property\" predicate.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/hasown@2.0.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/hasOwn#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/hasOwn.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/hasown@2.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/hasown/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/hasown/package.json"
              }
            ],
            "concludedValue": "node_modules/hasown/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com> (http://ljharb.codes)"
        }
      ],
      "group": "",
      "name": "has-tostringtag",
      "version": "1.0.2",
      "description": "Determine if the JS environment has `Symbol.toStringTag` support. Supports spec, or shams.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/has-tostringtag@1.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/has-tostringtag#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/has-tostringtag.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/has-tostringtag@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/has-tostringtag/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/has-tostringtag/package.json"
              }
            ],
            "concludedValue": "node_modules/has-tostringtag/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com> (http://ljharb.codes)"
        }
      ],
      "group": "",
      "name": "has-symbols",
      "version": "1.1.0",
      "description": "Determine if the JS environment has Symbol support. Supports spec, or shams.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/has-symbols@1.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/has-symbols#readme"
        },
        {
          "type": "vcs",
          "url": "git://github.com/inspect-js/has-symbols.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/has-symbols@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/has-symbols/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/has-symbols/package.json"
              }
            ],
            "concludedValue": "node_modules/has-symbols/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "has-proto",
      "version": "1.2.0",
      "description": "Does this environment have the ability to get the [[Prototype]] of an object on creation with `__proto__`?",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/has-proto@1.2.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/has-proto#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/has-proto.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/has-proto@1.2.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/has-proto/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/has-proto/package.json"
              }
            ],
            "concludedValue": "node_modules/has-proto/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "has-property-descriptors",
      "version": "1.0.2",
      "description": "Does the environment have full property descriptor support? Handles IE 8's broken defineProperty/gOPD.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/has-property-descriptors@1.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/has-property-descriptors#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/has-property-descriptors.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/has-property-descriptors@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/has-property-descriptors/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/has-property-descriptors/package.json"
              }
            ],
            "concludedValue": "node_modules/has-property-descriptors/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "has-flag",
      "version": "3.0.0",
      "description": "Check if argv has a specific flag",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/has-flag@3.0.0",
      "type": "library",
      "bom-ref": "pkg:npm/has-flag@3.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/has-flag/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/has-flag/package.json"
              }
            ],
            "concludedValue": "node_modules/has-flag/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "has-bigints",
      "version": "1.1.0",
      "description": "Determine if the JS environment has BigInt support.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/has-bigints@1.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/has-bigints#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/has-bigints.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/has-bigints@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/has-bigints/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/has-bigints/package.json"
              }
            ],
            "concludedValue": "node_modules/has-bigints/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "has-ansi",
      "version": "2.0.0",
      "description": "Check if a string has ANSI escape codes",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/has-ansi@2.0.0",
      "type": "library",
      "bom-ref": "pkg:npm/has-ansi@2.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/has-ansi/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/has-ansi/package.json"
              }
            ],
            "concludedValue": "node_modules/has-ansi/package.json"
          }
        ]
      },
      "tags": [
        "escape"
      ]
    },
    {
      "authors": [
        {
          "name": "Yehuda Katz"
        }
      ],
      "group": "",
      "name": "handlebars",
      "version": "4.7.9",
      "description": "Handlebars provides the power necessary to let you build semantic templates effectively with no frustration",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/handlebars@4.7.9",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://handlebarsjs.com/"
        },
        {
          "type": "vcs",
          "url": "https://github.com/handlebars-lang/handlebars.js.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/handlebars@4.7.9",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/handlebars/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/handlebars/package.json"
              }
            ],
            "concludedValue": "node_modules/handlebars/package.json"
          }
        ]
      },
      "tags": [
        "templates"
      ]
    },
    {
      "authors": [
        {
          "name": "TJ Holowaychuk <tj@vision-media.ca>"
        }
      ],
      "group": "",
      "name": "growl",
      "version": "1.9.2",
      "description": "Growl unobtrusive notifications",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/growl@1.9.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/tj/node-growl.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/growl@1.9.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/growl/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/growl/package.json"
              }
            ],
            "concludedValue": "node_modules/growl/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "zhiyelee"
        }
      ],
      "group": "",
      "name": "graceful-readlink",
      "version": "1.0.1",
      "description": "graceful fs.readlink",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/graceful-readlink@1.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/zhiyelee/graceful-readlink"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/graceful-readlink@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/graceful-readlink/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/graceful-readlink/package.json"
              }
            ],
            "concludedValue": "node_modules/graceful-readlink/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "graceful-fs",
      "version": "4.2.11",
      "description": "A drop-in replacement for fs, making various improvements.",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/graceful-fs@4.2.11",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/isaacs/node-graceful-fs"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/graceful-fs@4.2.11",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/graceful-fs/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/graceful-fs/package.json"
              }
            ],
            "concludedValue": "node_modules/graceful-fs/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "gopd",
      "version": "1.2.0",
      "description": "`Object.getOwnPropertyDescriptor`, but accounts for IE's broken implementation.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/gopd@1.2.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/gopd#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/gopd.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/gopd@1.2.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/gopd/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/gopd/package.json"
              }
            ],
            "concludedValue": "node_modules/gopd/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "globalthis",
      "version": "1.0.4",
      "description": "ECMAScript spec-compliant polyfill/shim for `globalThis`",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/globalthis@1.0.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/ljharb/System.global.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/globalthis@1.0.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/globalthis/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/globalthis/package.json"
              }
            ],
            "concludedValue": "node_modules/globalthis/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "globals",
      "version": "11.12.0",
      "description": "Global identifiers from different JavaScript environments",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/globals@11.12.0",
      "type": "library",
      "bom-ref": "pkg:npm/globals@11.12.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/globals/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/globals/package.json"
              }
            ],
            "concludedValue": "node_modules/globals/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "glob",
      "version": "7.2.3",
      "description": "a little globber",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/glob@7.2.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/isaacs/node-glob.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/glob@7.2.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/glob/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/glob/package.json"
              }
            ],
            "concludedValue": "node_modules/glob/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "get-symbol-description",
      "version": "1.1.0",
      "description": "Gets the description of a Symbol. Handles `Symbol()` vs `Symbol('')` properly when possible.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/get-symbol-description@1.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/get-symbol-description#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/get-symbol-description.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/get-symbol-description@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/get-symbol-description/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/get-symbol-description/package.json"
              }
            ],
            "concludedValue": "node_modules/get-symbol-description/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "get-proto",
      "version": "1.0.1",
      "description": "Robustly get the [[Prototype]] of an object",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/get-proto@1.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/get-proto#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/get-proto.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/get-proto@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/get-proto/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/get-proto/package.json"
              }
            ],
            "concludedValue": "node_modules/get-proto/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "get-intrinsic",
      "version": "1.3.0",
      "description": "Get and robustly cache all JS language-level intrinsics at first require time",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/get-intrinsic@1.3.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/get-intrinsic#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/get-intrinsic.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/get-intrinsic@1.3.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/get-intrinsic/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/get-intrinsic/package.json"
              }
            ],
            "concludedValue": "node_modules/get-intrinsic/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harbamd <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "generator-function",
      "version": "2.0.1",
      "description": "A function that returns the normally hidden `GeneratorFunction` constructor",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/generator-function@2.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/TimothyGu/generator-function#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/TimothyGu/generator-function.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/generator-function@2.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/generator-function/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/generator-function/package.json"
              }
            ],
            "concludedValue": "node_modules/generator-function/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "functions-have-names",
      "version": "1.2.3",
      "description": "Does this JS environment support the `name` property on functions?",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/functions-have-names@1.2.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/functions-have-names#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/functions-have-names.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/functions-have-names@1.2.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/functions-have-names/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/functions-have-names/package.json"
              }
            ],
            "concludedValue": "node_modules/functions-have-names/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mikola Lysenko"
        }
      ],
      "group": "",
      "name": "functional-red-black-tree",
      "version": "1.0.1",
      "description": "A fully persistent balanced binary search tree",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/functional-red-black-tree@1.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/mikolalysenko/functional-red-black-tree.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/functional-red-black-tree@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/functional-red-black-tree/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/functional-red-black-tree/package.json"
              }
            ],
            "concludedValue": "node_modules/functional-red-black-tree/package.json"
          }
        ]
      },
      "tags": [
        "binary"
      ]
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "function.prototype.name",
      "version": "1.1.8",
      "description": "An ES2015 spec-compliant `Function.prototype.name` shim",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/function.prototype.name@1.1.8",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/es-shims/Function.prototype.name.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/function.prototype.name@1.1.8",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/function.prototype.name/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/function.prototype.name/package.json"
              }
            ],
            "concludedValue": "node_modules/function.prototype.name/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Raynos <raynos2@gmail.com>"
        }
      ],
      "group": "",
      "name": "function-bind",
      "version": "1.1.2",
      "description": "Implementation of Function.prototype.bind",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/function-bind@1.1.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/Raynos/function-bind"
        },
        {
          "type": "vcs",
          "url": "https://github.com/Raynos/function-bind.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/function-bind@1.1.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/function-bind/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/function-bind/package.json"
              }
            ],
            "concludedValue": "node_modules/function-bind/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "fs.realpath",
      "version": "1.0.0",
      "description": "Use node's fs.realpath, but fall back to the JS implementation if the native one fails",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/fs.realpath@1.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git+https://github.com/isaacs/fs.realpath.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/fs.realpath@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/fs.realpath/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/fs.realpath/package.json"
              }
            ],
            "concludedValue": "node_modules/fs.realpath/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Raynos <raynos2@gmail.com>"
        }
      ],
      "group": "",
      "name": "for-each",
      "version": "0.3.5",
      "description": "A better forEach",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/for-each@0.3.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/Raynos/for-each"
        },
        {
          "type": "vcs",
          "url": "https://github.com/Raynos/for-each.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/for-each@0.3.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/for-each/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/for-each/package.json"
              }
            ],
            "concludedValue": "node_modules/for-each/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Roy Riojas (http://royriojas.com)"
        }
      ],
      "group": "",
      "name": "flat-cache",
      "version": "1.3.4",
      "description": "A stupidly simple key/value storage using files to persist some data",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/flat-cache@1.3.4",
      "type": "library",
      "bom-ref": "pkg:npm/flat-cache@1.3.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/flat-cache/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/flat-cache/package.json"
              }
            ],
            "concludedValue": "node_modules/flat-cache/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "rimraf",
      "version": "2.6.3",
      "description": "A deep deletion module for node (like `rm -rf`)",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/rimraf@2.6.3",
      "type": "library",
      "bom-ref": "pkg:npm/rimraf@2.6.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/flat-cache/node_modules/rimraf/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/flat-cache/node_modules/rimraf/package.json"
              }
            ],
            "concludedValue": "node_modules/flat-cache/node_modules/rimraf/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Roy Riojas (http://royriojas.com)"
        }
      ],
      "group": "",
      "name": "file-entry-cache",
      "version": "2.0.0",
      "description": "Super simple cache for file metadata, useful for process that work o a given series of files and that only need to repeat the job on the changed ones since the previous run of the process",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/file-entry-cache@2.0.0",
      "type": "library",
      "bom-ref": "pkg:npm/file-entry-cache@2.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/file-entry-cache/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/file-entry-cache/package.json"
              }
            ],
            "concludedValue": "node_modules/file-entry-cache/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "figures",
      "version": "2.0.0",
      "description": "Unicode symbols with Windows CMD fallbacks",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/figures@2.0.0",
      "type": "library",
      "bom-ref": "pkg:npm/figures@2.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/figures/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/figures/package.json"
              }
            ],
            "concludedValue": "node_modules/figures/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Ramesh Nair <ram@hiddentao.com> (http://www.hiddentao.com/)"
        }
      ],
      "group": "",
      "name": "fast-levenshtein",
      "version": "2.0.6",
      "description": "Efficient implementation of Levenshtein algorithm  with locale-specific collator support.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/fast-levenshtein@2.0.6",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/hiddentao/fast-levenshtein.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/fast-levenshtein@2.0.6",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/fast-levenshtein/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/fast-levenshtein/package.json"
              }
            ],
            "concludedValue": "node_modules/fast-levenshtein/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "James Halliday <mail@substack.net> (http://substack.net)"
        }
      ],
      "group": "",
      "name": "fast-json-stable-stringify",
      "version": "2.1.0",
      "description": "deterministic `JSON.stringify()` - a faster version of substack's json-stable-strigify without jsonify",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/fast-json-stable-stringify@2.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/epoberezkin/fast-json-stable-stringify"
        },
        {
          "type": "vcs",
          "url": "git://github.com/epoberezkin/fast-json-stable-stringify.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/fast-json-stable-stringify@2.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/fast-json-stable-stringify/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/fast-json-stable-stringify/package.json"
              }
            ],
            "concludedValue": "node_modules/fast-json-stable-stringify/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Evgeny Poberezkin"
        }
      ],
      "group": "",
      "name": "fast-deep-equal",
      "version": "1.1.0",
      "description": "Fast deep equal",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/fast-deep-equal@1.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/epoberezkin/fast-deep-equal#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/epoberezkin/fast-deep-equal.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/fast-deep-equal@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/fast-deep-equal/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/fast-deep-equal/package.json"
              }
            ],
            "concludedValue": "node_modules/fast-deep-equal/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Kevin Gravier <kevin@mrkmg.com> (https://mrkmg.com)"
        }
      ],
      "group": "",
      "name": "external-editor",
      "version": "2.2.0",
      "description": "Edit a string with the users preferred text editor using $VISUAL or $ENVIRONMENT",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/external-editor@2.2.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/mrkmg/node-external-editor#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/mrkmg/node-external-editor.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/external-editor@2.2.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/external-editor/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/external-editor/package.json"
              }
            ],
            "concludedValue": "node_modules/external-editor/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mariusz Nowak <medyk@medikoo.com> (http://www.medikoo.com/)"
        }
      ],
      "group": "",
      "name": "ext",
      "version": "1.7.0",
      "description": "JavaScript utilities with respect to emerging standard",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/ext@1.7.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/medikoo/es5-ext#ext"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/ext@1.7.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/ext/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/ext/package.json"
              }
            ],
            "concludedValue": "node_modules/ext/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mariusz Nowak <medyk@medikoo.com> (http://www.medikoo.com/)"
        }
      ],
      "group": "",
      "name": "event-emitter",
      "version": "0.3.5",
      "description": "Environment agnostic event emitter",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/event-emitter@0.3.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/medikoo/event-emitter.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/event-emitter@0.3.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/event-emitter/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/event-emitter/package.json"
              }
            ],
            "concludedValue": "node_modules/event-emitter/package.json"
          }
        ]
      },
      "tags": [
        "event"
      ]
    },
    {
      "group": "",
      "name": "esutils",
      "version": "2.0.3",
      "description": "utility box for ECMAScript language tools",
      "licenses": [
        {
          "license": {
            "id": "BSD-2-Clause",
            "url": "https://opensource.org/licenses/BSD-2-Clause"
          }
        }
      ],
      "purl": "pkg:npm/esutils@2.0.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/estools/esutils"
        },
        {
          "type": "vcs",
          "url": "http://github.com/estools/esutils.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/esutils@2.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/esutils/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/esutils/package.json"
              }
            ],
            "concludedValue": "node_modules/esutils/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "estraverse",
      "version": "5.3.0",
      "description": "ECMAScript JS AST traversal functions",
      "licenses": [
        {
          "license": {
            "id": "BSD-2-Clause",
            "url": "https://opensource.org/licenses/BSD-2-Clause"
          }
        }
      ],
      "purl": "pkg:npm/estraverse@5.3.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/estools/estraverse"
        },
        {
          "type": "vcs",
          "url": "http://github.com/estools/estraverse.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/estraverse@5.3.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/estraverse/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/estraverse/package.json"
              }
            ],
            "concludedValue": "node_modules/estraverse/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "esrecurse",
      "version": "4.3.0",
      "description": "ECMAScript AST recursive visitor",
      "licenses": [
        {
          "license": {
            "id": "BSD-2-Clause",
            "url": "https://opensource.org/licenses/BSD-2-Clause"
          }
        }
      ],
      "purl": "pkg:npm/esrecurse@4.3.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/estools/esrecurse"
        },
        {
          "type": "vcs",
          "url": "https://github.com/estools/esrecurse.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/esrecurse@4.3.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/esrecurse/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/esrecurse/package.json"
              }
            ],
            "concludedValue": "node_modules/esrecurse/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Joel Feenstra <jrfeenst+esquery@gmail.com>"
        }
      ],
      "group": "",
      "name": "esquery",
      "version": "1.7.0",
      "description": "A query library for ECMAScript AST using a CSS selector like query language.",
      "licenses": [
        {
          "license": {
            "id": "BSD-3-Clause",
            "url": "https://opensource.org/licenses/BSD-3-Clause"
          }
        }
      ],
      "purl": "pkg:npm/esquery@1.7.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/estools/esquery/"
        },
        {
          "type": "vcs",
          "url": "https://github.com/estools/esquery.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/esquery@1.7.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/esquery/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/esquery/package.json"
              }
            ],
            "concludedValue": "node_modules/esquery/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Takuto Wada <takuto.wada@gmail.com> (https://github.com/twada)"
        }
      ],
      "group": "",
      "name": "espurify",
      "version": "1.8.1",
      "description": "Clone new AST without extra properties",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/espurify@1.8.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/estools/espurify"
        },
        {
          "type": "vcs",
          "url": "git://github.com/estools/espurify.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/espurify@1.8.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/espurify/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/espurify/package.json"
              }
            ],
            "concludedValue": "node_modules/espurify/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Ariya Hidayat <ariya.hidayat@gmail.com>"
        }
      ],
      "group": "",
      "name": "esprima",
      "version": "4.0.1",
      "description": "ECMAScript parsing infrastructure for multipurpose analysis",
      "licenses": [
        {
          "license": {
            "id": "BSD-2-Clause",
            "url": "https://opensource.org/licenses/BSD-2-Clause"
          }
        }
      ],
      "purl": "pkg:npm/esprima@4.0.1",
      "externalReferences": [
        {
          "type": "website",
          "url": "http://esprima.org"
        },
        {
          "type": "vcs",
          "url": "https://github.com/jquery/esprima.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/esprima@4.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/esprima/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/esprima/package.json"
              }
            ],
            "concludedValue": "node_modules/esprima/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Nicholas C. Zakas <nicholas+npm@nczconsulting.com>"
        }
      ],
      "group": "",
      "name": "espree",
      "version": "3.5.4",
      "description": "An Esprima-compatible JavaScript parser built on Acorn",
      "licenses": [
        {
          "license": {
            "id": "BSD-2-Clause",
            "url": "https://opensource.org/licenses/BSD-2-Clause"
          }
        }
      ],
      "purl": "pkg:npm/espree@3.5.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/eslint/espree"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/espree@3.5.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/espree/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/espree/package.json"
              }
            ],
            "concludedValue": "node_modules/espree/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Takuto Wada <takuto.wada@gmail.com> (https://github.com/twada)"
        }
      ],
      "group": "",
      "name": "espower-source",
      "version": "2.3.0",
      "description": "Power Assert instrumentor from source to source, with source-map",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/espower-source@2.3.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/power-assert-js/espower-source"
        },
        {
          "type": "vcs",
          "url": "git://github.com/power-assert-js/espower-source.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/espower-source@2.3.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/espower-source/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/espower-source/package.json"
              }
            ],
            "concludedValue": "node_modules/espower-source/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Takuto Wada <takuto.wada@gmail.com> (https://github.com/twada)"
        }
      ],
      "group": "",
      "name": "espower-location-detector",
      "version": "1.0.0",
      "description": "AST source location detection helper for power-assert",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/espower-location-detector@1.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/twada/espower-location-detector"
        },
        {
          "type": "vcs",
          "url": "git://github.com/twada/espower-location-detector.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/espower-location-detector@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/espower-location-detector/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/espower-location-detector/package.json"
              }
            ],
            "concludedValue": "node_modules/espower-location-detector/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Takuto Wada <takuto.wada@gmail.com> (https://github.com/twada)"
        }
      ],
      "group": "",
      "name": "espower-loader",
      "version": "1.2.2",
      "description": "Power Assert feature instrumentor on the fly",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/espower-loader@1.2.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/power-assert-js/espower-loader"
        },
        {
          "type": "vcs",
          "url": "https://github.com/power-assert-js/espower-loader.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/espower-loader@1.2.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/espower-loader/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/espower-loader/package.json"
              }
            ],
            "concludedValue": "node_modules/espower-loader/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Takuto Wada <takuto.wada@gmail.com> (https://github.com/twada)"
        }
      ],
      "group": "",
      "name": "espower",
      "version": "2.1.2",
      "description": "Power Assert feature instrumentor based on the ECMAScript AST",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/espower@2.1.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/power-assert-js/espower"
        },
        {
          "type": "vcs",
          "url": "https://github.com/power-assert-js/espower.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/espower@2.1.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/espower/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/espower/package.json"
              }
            ],
            "concludedValue": "node_modules/espower/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mariusz Nowak <medyk@medikoo.com> (http://www.medikoo.com/)"
        }
      ],
      "group": "",
      "name": "esniff",
      "version": "2.0.1",
      "description": "Low footprint ECMAScript source code parser",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/esniff@2.0.1",
      "type": "library",
      "bom-ref": "pkg:npm/esniff@2.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/esniff/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/esniff/package.json"
              }
            ],
            "concludedValue": "node_modules/esniff/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Toru Nagashima (https://github.com/mysticatea)"
        }
      ],
      "group": "",
      "name": "eslint-visitor-keys",
      "version": "1.3.0",
      "description": "Constants and utilities about visitor keys to traverse AST.",
      "licenses": [
        {
          "license": {
            "id": "Apache-2.0",
            "url": "https://opensource.org/licenses/Apache-2.0"
          }
        }
      ],
      "purl": "pkg:npm/eslint-visitor-keys@1.3.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/eslint/eslint-visitor-keys#readme"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/eslint-visitor-keys@1.3.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/eslint-visitor-keys/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/eslint-visitor-keys/package.json"
              }
            ],
            "concludedValue": "node_modules/eslint-visitor-keys/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "eslint-scope",
      "version": "3.7.3",
      "description": "ECMAScript scope analyzer for ESLint",
      "licenses": [
        {
          "license": {
            "id": "BSD-2-Clause",
            "url": "https://opensource.org/licenses/BSD-2-Clause"
          }
        }
      ],
      "purl": "pkg:npm/eslint-scope@3.7.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "http://github.com/eslint/eslint-scope"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/eslint-scope@3.7.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/eslint-scope/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/eslint-scope/package.json"
              }
            ],
            "concludedValue": "node_modules/eslint-scope/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Yannick Croissant <yannick.croissant+npm@gmail.com>"
        }
      ],
      "group": "",
      "name": "eslint-plugin-react",
      "version": "7.37.5",
      "description": "React specific linting rules for ESLint",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/eslint-plugin-react@7.37.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jsx-eslint/eslint-plugin-react"
        },
        {
          "type": "vcs",
          "url": "https://github.com/jsx-eslint/eslint-plugin-react"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/eslint-plugin-react@7.37.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/eslint-plugin-react/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/eslint-plugin-react/package.json"
              }
            ],
            "concludedValue": "node_modules/eslint-plugin-react/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Ethan Cohen"
        }
      ],
      "group": "",
      "name": "eslint-plugin-jsx-a11y",
      "version": "6.10.2",
      "description": "Static AST checker for accessibility rules on JSX elements.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/eslint-plugin-jsx-a11y@6.10.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jsx-eslint/eslint-plugin-jsx-a11y"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/eslint-plugin-jsx-a11y@6.10.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/eslint-plugin-jsx-a11y/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/eslint-plugin-jsx-a11y/package.json"
              }
            ],
            "concludedValue": "node_modules/eslint-plugin-jsx-a11y/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Ben Mosher <me@benmosher.com>"
        }
      ],
      "group": "",
      "name": "eslint-plugin-import",
      "version": "2.32.0",
      "description": "Import with sanity.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/eslint-plugin-import@2.32.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/import-js/eslint-plugin-import"
        },
        {
          "type": "vcs",
          "url": "https://github.com/import-js/eslint-plugin-import"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/eslint-plugin-import@2.32.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/eslint-plugin-import/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/eslint-plugin-import/package.json"
              }
            ],
            "concludedValue": "node_modules/eslint-plugin-import/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "ms",
      "version": "2.1.3",
      "description": "Tiny millisecond conversion utility",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/ms@2.1.3",
      "type": "library",
      "bom-ref": "pkg:npm/ms@2.1.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/eslint-plugin-import/node_modules/ms/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/eslint-module-utils/node_modules/ms/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/eslint-import-resolver-node/node_modules/ms/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/eslint/node_modules/ms/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/detect-port/node_modules/ms/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/detect-port/node_modules/ms/package.json"
              }
            ],
            "concludedValue": "node_modules/detect-port/node_modules/ms/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "TJ Holowaychuk <tj@vision-media.ca>"
        }
      ],
      "group": "",
      "name": "debug",
      "version": "3.2.7",
      "description": "small debugging utility",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/debug@3.2.7",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/visionmedia/debug.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/debug@3.2.7",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/eslint-plugin-import/node_modules/debug/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/eslint-module-utils/node_modules/debug/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/eslint-import-resolver-node/node_modules/debug/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/eslint/node_modules/debug/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/eslint/node_modules/debug/package.json"
              }
            ],
            "concludedValue": "node_modules/eslint/node_modules/debug/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Ben Mosher <me@benmosher.com>"
        }
      ],
      "group": "",
      "name": "eslint-module-utils",
      "version": "2.12.1",
      "description": "Core utilities to support eslint-plugin-import and other module-related plugins.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/eslint-module-utils@2.12.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/import-js/eslint-plugin-import#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/import-js/eslint-plugin-import.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/eslint-module-utils@2.12.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/eslint-module-utils/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/eslint-module-utils/package.json"
              }
            ],
            "concludedValue": "node_modules/eslint-module-utils/package.json"
          }
        ]
      },
      "tags": [
        "plugins"
      ]
    },
    {
      "authors": [
        {
          "name": "Ben Mosher (me@benmosher.com)"
        }
      ],
      "group": "",
      "name": "eslint-import-resolver-node",
      "version": "0.3.10",
      "description": "Node default behavior import resolution plugin for eslint-plugin-import.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/eslint-import-resolver-node@0.3.10",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/import-js/eslint-plugin-import"
        },
        {
          "type": "vcs",
          "url": "https://github.com/import-js/eslint-plugin-import"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/eslint-import-resolver-node@0.3.10",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/eslint-import-resolver-node/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/eslint-import-resolver-node/package.json"
              }
            ],
            "concludedValue": "node_modules/eslint-import-resolver-node/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "popomore <sakura9515@gmail.com>"
        }
      ],
      "group": "",
      "name": "eslint-config-egg",
      "version": "5.1.1",
      "description": "Node Style Guide for Egg.",
      "purl": "pkg:npm/eslint-config-egg@5.1.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/eggjs/eslint-config-egg"
        },
        {
          "type": "vcs",
          "url": "https://github.com/eggjs/eslint-config-egg"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/eslint-config-egg@5.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/eslint-config-egg/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/eslint-config-egg/package.json"
              }
            ],
            "concludedValue": "node_modules/eslint-config-egg/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Nicholas C. Zakas <nicholas+npm@nczconsulting.com>"
        }
      ],
      "group": "",
      "name": "eslint",
      "version": "4.19.1",
      "description": "An AST-based pattern checker for JavaScript.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/eslint@4.19.1",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://eslint.org"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/eslint@4.19.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/eslint/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/eslint/package.json"
              }
            ],
            "concludedValue": "node_modules/eslint/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "escope",
      "version": "3.6.0",
      "description": "ECMAScript scope analyzer",
      "licenses": [
        {
          "license": {
            "id": "BSD-2-Clause",
            "url": "https://opensource.org/licenses/BSD-2-Clause"
          }
        }
      ],
      "purl": "pkg:npm/escope@3.6.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "http://github.com/estools/escope"
        },
        {
          "type": "vcs",
          "url": "https://github.com/estools/escope.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/escope@3.6.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/escope/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/escope/package.json"
              }
            ],
            "concludedValue": "node_modules/escope/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "escodegen",
      "version": "1.14.3",
      "description": "ECMAScript code generator",
      "licenses": [
        {
          "license": {
            "id": "BSD-2-Clause",
            "url": "https://opensource.org/licenses/BSD-2-Clause"
          }
        }
      ],
      "purl": "pkg:npm/escodegen@1.14.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "http://github.com/estools/escodegen"
        },
        {
          "type": "vcs",
          "url": "http://github.com/estools/escodegen.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/escodegen@1.14.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/escodegen/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/escodegen/package.json"
              }
            ],
            "concludedValue": "node_modules/escodegen/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "escape-string-regexp",
      "version": "1.0.5",
      "description": "Escape RegExp special characters",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/escape-string-regexp@1.0.5",
      "type": "library",
      "bom-ref": "pkg:npm/escape-string-regexp@1.0.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/escape-string-regexp/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/escape-string-regexp/package.json"
              }
            ],
            "concludedValue": "node_modules/escape-string-regexp/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "escape-html",
      "version": "1.0.3",
      "description": "Escape string for use in HTML",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/escape-html@1.0.3",
      "type": "library",
      "bom-ref": "pkg:npm/escape-html@1.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/escape-html/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/escape-html/package.json"
              }
            ],
            "concludedValue": "node_modules/escape-html/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Takuto Wada <takuto.wada@gmail.com> (https://github.com/twada)"
        }
      ],
      "group": "",
      "name": "escallmatch",
      "version": "1.5.0",
      "description": "ECMAScript CallExpression matcher made from function/method signature",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/escallmatch@1.5.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/twada/escallmatch"
        },
        {
          "type": "vcs",
          "url": "git://github.com/twada/escallmatch.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/escallmatch@1.5.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/escallmatch/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/escallmatch/package.json"
              }
            ],
            "concludedValue": "node_modules/escallmatch/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mariusz Nowak <medyk@medikoo.com> (http://www.medikoo.com/)"
        }
      ],
      "group": "",
      "name": "es6-weak-map",
      "version": "2.0.3",
      "description": "ECMAScript6 WeakMap polyfill",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/es6-weak-map@2.0.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/medikoo/es6-weak-map.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/es6-weak-map@2.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/es6-weak-map/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/es6-weak-map/package.json"
              }
            ],
            "concludedValue": "node_modules/es6-weak-map/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mariusz Nowak <medyk@medikoo.com> (http://www.medikoo.com/)"
        }
      ],
      "group": "",
      "name": "es6-symbol",
      "version": "3.1.4",
      "description": "ECMAScript 6 Symbol polyfill",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/es6-symbol@3.1.4",
      "type": "library",
      "bom-ref": "pkg:npm/es6-symbol@3.1.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/es6-symbol/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/es6-symbol/package.json"
              }
            ],
            "concludedValue": "node_modules/es6-symbol/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mariusz Nowak <medyk@medikoo.com> (http://www.medikoo.com/)"
        }
      ],
      "group": "",
      "name": "es6-set",
      "version": "0.1.6",
      "description": "ECMAScript6 Set polyfill",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/es6-set@0.1.6",
      "type": "library",
      "bom-ref": "pkg:npm/es6-set@0.1.6",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/es6-set/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/es6-set/package.json"
              }
            ],
            "concludedValue": "node_modules/es6-set/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mariusz Nowak <medyk@medikoo.com> (http://www.medikoo.com/)"
        }
      ],
      "group": "",
      "name": "es6-map",
      "version": "0.1.5",
      "description": "ECMAScript6 Map polyfill",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/es6-map@0.1.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/medikoo/es6-map.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/es6-map@0.1.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/es6-map/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/es6-map/package.json"
              }
            ],
            "concludedValue": "node_modules/es6-map/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mariusz Nowak <medyk@medikoo.com> (http://www.medikoo.com/)"
        }
      ],
      "group": "",
      "name": "es6-iterator",
      "version": "2.0.3",
      "description": "Iterator abstraction based on ES6 specification",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/es6-iterator@2.0.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/medikoo/es6-iterator.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/es6-iterator@2.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/es6-iterator/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/es6-iterator/package.json"
              }
            ],
            "concludedValue": "node_modules/es6-iterator/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mariusz Nowak <medyk@medikoo.com> (http://www.medikoo.com/)"
        }
      ],
      "group": "",
      "name": "es5-ext",
      "version": "0.10.64",
      "description": "ECMAScript extensions and shims",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/es5-ext@0.10.64",
      "type": "library",
      "bom-ref": "pkg:npm/es5-ext@0.10.64",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/es5-ext/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/es5-ext/package.json"
              }
            ],
            "concludedValue": "node_modules/es5-ext/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "es-to-primitive",
      "version": "1.3.0",
      "description": "ECMAScript “ToPrimitive” algorithm. Provides ES5 and ES2015 versions.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/es-to-primitive@1.3.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/ljharb/es-to-primitive.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/es-to-primitive@1.3.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/es-to-primitive/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/es-to-primitive/package.json"
              }
            ],
            "concludedValue": "node_modules/es-to-primitive/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "es-shim-unscopables",
      "version": "1.1.0",
      "description": "Helper package to shim a method into `Array.prototype[Symbol.unscopables]`",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/es-shim-unscopables@1.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/es-shim-unscopables#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/es-shim-unscopables.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/es-shim-unscopables@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/es-shim-unscopables/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/es-shim-unscopables/package.json"
              }
            ],
            "concludedValue": "node_modules/es-shim-unscopables/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "es-set-tostringtag",
      "version": "2.1.0",
      "description": "A helper to optimistically set Symbol.toStringTag, when possible.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/es-set-tostringtag@2.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/es-shims/es-set-tostringtag#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/es-shims/es-set-tostringtag.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/es-set-tostringtag@2.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/es-set-tostringtag/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/es-set-tostringtag/package.json"
              }
            ],
            "concludedValue": "node_modules/es-set-tostringtag/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "es-object-atoms",
      "version": "1.1.1",
      "description": "ES Object-related atoms: Object, ToObject, RequireObjectCoercible",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/es-object-atoms@1.1.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/es-object-atoms#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/es-object-atoms.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/es-object-atoms@1.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/es-object-atoms/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/es-object-atoms/package.json"
              }
            ],
            "concludedValue": "node_modules/es-object-atoms/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "es-iterator-helpers",
      "version": "1.3.2",
      "description": "An ESnext spec-compliant iterator helpers shim/polyfill/replacement that works as far down as ES3.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/es-iterator-helpers@1.3.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/es-shims/iterator-helpers#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/es-shims/iterator-helpers.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/es-iterator-helpers@1.3.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/es-iterator-helpers/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/es-iterator-helpers/package.json"
              }
            ],
            "concludedValue": "node_modules/es-iterator-helpers/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "es-errors",
      "version": "1.3.0",
      "description": "A simple cache for a few of the JS Error constructors.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/es-errors@1.3.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/es-errors#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/es-errors.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/es-errors@1.3.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/es-errors/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/es-errors/package.json"
              }
            ],
            "concludedValue": "node_modules/es-errors/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "es-define-property",
      "version": "1.0.1",
      "description": "`Object.defineProperty`, but not IE 8's broken one.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/es-define-property@1.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/es-define-property#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/es-define-property.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/es-define-property@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/es-define-property/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/es-define-property/package.json"
              }
            ],
            "concludedValue": "node_modules/es-define-property/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com> (http://ljharb.codes)"
        }
      ],
      "group": "",
      "name": "es-abstract",
      "version": "1.24.2",
      "description": "ECMAScript spec abstract operations.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/es-abstract@1.24.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/ljharb/es-abstract.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/es-abstract@1.24.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/es-abstract/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/es-abstract/package.json"
              }
            ],
            "concludedValue": "node_modules/es-abstract/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Takuto Wada <takuto.wada@gmail.com> (https://github.com/twada)"
        }
      ],
      "group": "",
      "name": "empower-core",
      "version": "1.2.0",
      "description": "Power Assert feature enhancer for assert function/object",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/empower-core@1.2.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/twada/power-assert-runtime"
        },
        {
          "type": "vcs",
          "url": "https://github.com/twada/power-assert-runtime.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/empower-core@1.2.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/empower-core/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/empower-core/package.json"
              }
            ],
            "concludedValue": "node_modules/empower-core/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Teppei Sato <teppeis@gmail.com>"
        }
      ],
      "group": "",
      "name": "empower-assert",
      "version": "1.1.0",
      "description": "Convert assert to power-assert on ESTree AST",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/empower-assert@1.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/teppeis/empower-assert"
        },
        {
          "type": "vcs",
          "url": "https://github.com/teppeis/empower-assert.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/empower-assert@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/empower-assert/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/empower-assert/package.json"
              }
            ],
            "concludedValue": "node_modules/empower-assert/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Takuto Wada <takuto.wada@gmail.com> (https://github.com/twada)"
        }
      ],
      "group": "",
      "name": "empower",
      "version": "1.3.1",
      "description": "Power Assert feature enhancer for assert function/object",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/empower@1.3.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/power-assert-js/empower"
        },
        {
          "type": "vcs",
          "url": "https://github.com/power-assert-js/empower.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/empower@1.3.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/empower/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/empower/package.json"
              }
            ],
            "concludedValue": "node_modules/empower/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mathias Bynens (https://mathiasbynens.be/)"
        }
      ],
      "group": "",
      "name": "emoji-regex",
      "version": "9.2.2",
      "description": "A regular expression to match all Emoji-only symbols as per the Unicode Standard.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/emoji-regex@9.2.2",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://mths.be/emoji-regex"
        },
        {
          "type": "vcs",
          "url": "https://github.com/mathiasbynens/emoji-regex.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/emoji-regex@9.2.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/emoji-regex/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/emoji-regex/package.json"
              }
            ],
            "concludedValue": "node_modules/emoji-regex/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "fengmk2 <fengmk2@gmail.com> (https://fengmk2.com)"
        }
      ],
      "group": "",
      "name": "egg-utils",
      "version": "1.1.0",
      "description": "Utils for all egg projects",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/egg-utils@1.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/eggjs/egg-utils.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/egg-utils@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/egg-utils/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/egg-utils/package.json"
              }
            ],
            "concludedValue": "node_modules/egg-utils/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "fengmk2 <fengmk2@gmail.com> (https://fengmk2.com)"
        }
      ],
      "group": "",
      "name": "egg-ci",
      "version": "1.19.1",
      "description": "Auto gen ci config file",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/egg-ci@1.19.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/eggjs/egg-ci.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/egg-ci@1.19.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/egg-ci/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/egg-ci/package.json"
              }
            ],
            "concludedValue": "node_modules/egg-ci/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "fengmk2 <fengmk2@gmail.com> (https://fengmk2.com)"
        }
      ],
      "group": "",
      "name": "egg-bin",
      "version": "1.11.1",
      "description": "egg developer tool",
      "purl": "pkg:npm/egg-bin@1.11.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/eggjs/egg-bin"
        },
        {
          "type": "vcs",
          "url": "https://github.com/eggjs/egg-bin.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/egg-bin@1.11.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/egg-bin/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/egg-bin/package.json"
              }
            ],
            "concludedValue": "node_modules/egg-bin/package.json"
          }
        ]
      },
      "tags": [
        "developer"
      ]
    },
    {
      "authors": [
        {
          "name": "Masaki Komagata"
        }
      ],
      "group": "",
      "name": "eastasianwidth",
      "version": "0.2.0",
      "description": "Get East Asian Width from a character.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/eastasianwidth@0.2.0",
      "type": "library",
      "bom-ref": "pkg:npm/eastasianwidth@0.2.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/eastasianwidth/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/eastasianwidth/package.json"
              }
            ],
            "concludedValue": "node_modules/eastasianwidth/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "dunder-proto",
      "version": "1.0.1",
      "description": "If available, the `Object.prototype.__proto__` accessor and mutator, call-bound",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/dunder-proto@1.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/es-shims/dunder-proto#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/es-shims/dunder-proto.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/dunder-proto@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/dunder-proto/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/dunder-proto/package.json"
              }
            ],
            "concludedValue": "node_modules/dunder-proto/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "doctrine",
      "version": "2.1.0",
      "description": "JSDoc parser",
      "licenses": [
        {
          "license": {
            "id": "Apache-2.0",
            "url": "https://opensource.org/licenses/Apache-2.0"
          }
        }
      ],
      "purl": "pkg:npm/doctrine@2.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/eslint/doctrine"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/doctrine@2.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/doctrine/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/doctrine/package.json"
              }
            ],
            "concludedValue": "node_modules/doctrine/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "diff-match-patch",
      "version": "1.0.5",
      "description": "npm package for https://github.com/google/diff-match-patch",
      "licenses": [
        {
          "license": {
            "id": "Apache-2.0",
            "url": "https://opensource.org/licenses/Apache-2.0"
          }
        }
      ],
      "purl": "pkg:npm/diff-match-patch@1.0.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/JackuB/diff-match-patch.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/diff-match-patch@1.0.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/diff-match-patch/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/diff-match-patch/package.json"
              }
            ],
            "concludedValue": "node_modules/diff-match-patch/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "diff",
      "version": "3.2.0",
      "description": "A javascript text diff implementation.",
      "licenses": [
        {
          "license": {
            "id": "BSD-3-Clause",
            "url": "https://opensource.org/licenses/BSD-3-Clause"
          }
        }
      ],
      "purl": "pkg:npm/diff@3.2.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/kpdecker/jsdiff.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/diff@3.2.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/diff/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/diff/package.json"
              }
            ],
            "concludedValue": "node_modules/diff/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "detect-port",
      "version": "1.6.1",
      "description": "Node.js implementation of port detector",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/detect-port@1.6.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/node-modules/detect-port"
        },
        {
          "type": "vcs",
          "url": "git://github.com/node-modules/detect-port.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/detect-port@1.6.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/detect-port/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/detect-port/package.json"
              }
            ],
            "concludedValue": "node_modules/detect-port/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Josh Junon (https://github.com/qix-)"
        }
      ],
      "group": "",
      "name": "debug",
      "version": "4.4.3",
      "description": "Lightweight debugging utility for Node.js and the browser",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/debug@4.4.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/debug-js/debug.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/debug@4.4.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/detect-port/node_modules/debug/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/detect-port/node_modules/debug/package.json"
              }
            ],
            "concludedValue": "node_modules/detect-port/node_modules/debug/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "define-properties",
      "version": "1.2.1",
      "description": "Define multiple non-enumerable properties at once. Uses `Object.defineProperty` when available; falls back to standard assignment in older engines.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/define-properties@1.2.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/ljharb/define-properties.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/define-properties@1.2.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/define-properties/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/define-properties/package.json"
              }
            ],
            "concludedValue": "node_modules/define-properties/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "define-data-property",
      "version": "1.1.4",
      "description": "Define a data property on an object. Will fall back to assignment in an engine without descriptors.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/define-data-property@1.1.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/define-data-property#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/define-data-property.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/define-data-property@1.1.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/define-data-property/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/define-data-property/package.json"
              }
            ],
            "concludedValue": "node_modules/define-data-property/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Thorsten Lorenz <thlorenz@gmx.de> (http://thlorenz.com)"
        }
      ],
      "group": "",
      "name": "deep-is",
      "version": "0.1.4",
      "description": "node's assert.deepEqual algorithm except for NaN being equal to NaN",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/deep-is@0.1.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "http://github.com/thlorenz/deep-is.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/deep-is@0.1.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/deep-is/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/deep-is/package.json"
              }
            ],
            "concludedValue": "node_modules/deep-is/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "James Halliday <mail@substack.net> (http://substack.net)"
        }
      ],
      "group": "",
      "name": "deep-equal",
      "version": "1.1.2",
      "description": "node's assert.deepEqual algorithm",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/deep-equal@1.1.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "http://github.com/inspect-js/node-deep-equal.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/deep-equal@1.1.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/deep-equal/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/deep-equal/package.json"
              }
            ],
            "concludedValue": "node_modules/deep-equal/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "TJ Holowaychuk <tj@vision-media.ca>"
        }
      ],
      "group": "",
      "name": "debug",
      "version": "2.6.9",
      "description": "small debugging utility",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/debug@2.6.9",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/visionmedia/debug.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/debug@2.6.9",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/debug/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/debug/package.json"
              }
            ],
            "concludedValue": "node_modules/debug/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "data-view-byte-offset",
      "version": "1.0.1",
      "description": "Get the byteOffset out of a DataView, robustly.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/data-view-byte-offset@1.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/data-view-byte-offset#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/data-view-byte-offset.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/data-view-byte-offset@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/data-view-byte-offset/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/data-view-byte-offset/package.json"
              }
            ],
            "concludedValue": "node_modules/data-view-byte-offset/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "data-view-byte-length",
      "version": "1.0.2",
      "description": "Get the byteLength out of a DataView, robustly.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/data-view-byte-length@1.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/data-view-byte-length#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/data-view-byte-length.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/data-view-byte-length@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/data-view-byte-length/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/data-view-byte-length/package.json"
              }
            ],
            "concludedValue": "node_modules/data-view-byte-length/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "data-view-buffer",
      "version": "1.0.2",
      "description": "Get the ArrayBuffer out of a DataView, robustly.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/data-view-buffer@1.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/data-view-buffer#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/data-view-buffer.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/data-view-buffer@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/data-view-buffer/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/data-view-buffer/package.json"
              }
            ],
            "concludedValue": "node_modules/data-view-buffer/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "The Spanish Inquisition"
        }
      ],
      "group": "",
      "name": "damerau-levenshtein",
      "version": "1.0.8",
      "description": "Damerau - Levenshtein distance by The Spanish Inquisition + relative distance",
      "licenses": [
        {
          "license": {
            "id": "BSD-2-Clause",
            "url": "https://opensource.org/licenses/BSD-2-Clause"
          }
        }
      ],
      "purl": "pkg:npm/damerau-levenshtein@1.0.8",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/tad-lispy/node-damerau-levenshtein.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/damerau-levenshtein@1.0.8",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/damerau-levenshtein/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/damerau-levenshtein/package.json"
              }
            ],
            "concludedValue": "node_modules/damerau-levenshtein/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mariusz Nowak <medyk@medikoo.com> (http://www.medikoo.com/)"
        }
      ],
      "group": "",
      "name": "d",
      "version": "1.0.2",
      "description": "Property descriptor factory",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/d@1.0.2",
      "type": "library",
      "bom-ref": "pkg:npm/d@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/d/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/d/package.json"
              }
            ],
            "concludedValue": "node_modules/d/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "IndigoUnited <hello@indigounited.com> (http://indigounited.com)"
        }
      ],
      "group": "",
      "name": "cross-spawn",
      "version": "5.1.0",
      "description": "Cross platform child_process#spawn and child_process#spawnSync",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/cross-spawn@5.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/IndigoUnited/node-cross-spawn.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/cross-spawn@5.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/cross-spawn/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/cross-spawn/package.json"
              }
            ],
            "concludedValue": "node_modules/cross-spawn/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "core-util-is",
      "version": "1.0.3",
      "description": "The `util.is*` functions introduced in Node v0.12.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/core-util-is@1.0.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/isaacs/core-util-is"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/core-util-is@1.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/core-util-is/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/core-util-is/package.json"
              }
            ],
            "concludedValue": "node_modules/core-util-is/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "core-js",
      "version": "2.6.12",
      "description": "Standard library",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/core-js@2.6.12",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/zloirock/core-js.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/core-js@2.6.12",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/core-js/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/core-js/package.json"
              }
            ],
            "concludedValue": "node_modules/core-js/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "dead_horse <dead_horse@qq.com>"
        }
      ],
      "group": "",
      "name": "copy-to",
      "version": "2.0.1",
      "description": "copy an object's properties to another object",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/copy-to@2.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/node-modules/copy-to"
        },
        {
          "type": "vcs",
          "url": "git://github.com/node-modules/copy-to.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/copy-to@2.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/copy-to/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/copy-to/package.json"
              }
            ],
            "concludedValue": "node_modules/copy-to/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Thorsten Lorenz <thlorenz@gmx.de> (http://thlorenz.com)"
        }
      ],
      "group": "",
      "name": "convert-source-map",
      "version": "1.9.0",
      "description": "Converts a source-map from/to  different formats and allows adding/changing properties.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/convert-source-map@1.9.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/thlorenz/convert-source-map"
        },
        {
          "type": "vcs",
          "url": "git://github.com/thlorenz/convert-source-map.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/convert-source-map@1.9.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/convert-source-map/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/convert-source-map/package.json"
              }
            ],
            "concludedValue": "node_modules/convert-source-map/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Max Ogden <max@maxogden.com>"
        }
      ],
      "group": "",
      "name": "concat-stream",
      "version": "1.6.2",
      "description": "writable stream that concatenates strings or binary data and calls a callback with the result",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/concat-stream@1.6.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "http://github.com/maxogden/concat-stream.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/concat-stream@1.6.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/concat-stream/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/concat-stream/package.json"
              }
            ],
            "concludedValue": "node_modules/concat-stream/package.json"
          }
        ]
      },
      "tags": [
        "binary",
        "stream"
      ]
    },
    {
      "authors": [
        {
          "name": "James Halliday <mail@substack.net> (http://substack.net)"
        }
      ],
      "group": "",
      "name": "concat-map",
      "version": "0.0.1",
      "description": "concatenative mapdashery",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/concat-map@0.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/substack/node-concat-map.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/concat-map@0.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/concat-map/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/concat-map/package.json"
              }
            ],
            "concludedValue": "node_modules/concat-map/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "fengmk2 <fengmk2@gmail.com> (https://fengmk2.com)"
        }
      ],
      "group": "",
      "name": "common-bin",
      "version": "1.0.1",
      "description": "Abstraction bin tool",
      "purl": "pkg:npm/common-bin@1.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/node-modules/common-bin"
        },
        {
          "type": "vcs",
          "url": "https://github.com/node-modules/common-bin.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/common-bin@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/common-bin/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/common-bin/package.json"
              }
            ],
            "concludedValue": "node_modules/common-bin/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "TJ Holowaychuk <tj@vision-media.ca>"
        }
      ],
      "group": "",
      "name": "commander",
      "version": "2.20.3",
      "description": "the complete solution for node.js command-line programs",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/commander@2.20.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/tj/commander.js.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/commander@2.20.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/commander/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/commander/package.json"
              }
            ],
            "concludedValue": "node_modules/commander/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "DY <dfcreative@gmail.com>"
        }
      ],
      "group": "",
      "name": "color-name",
      "version": "1.1.3",
      "description": "A list of color names and its values",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/color-name@1.1.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/dfcreative/color-name"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/color-name@1.1.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/color-name/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/color-name/package.json"
              }
            ],
            "concludedValue": "node_modules/color-name/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Heather Arthur <fayearthur@gmail.com>"
        }
      ],
      "group": "",
      "name": "color-convert",
      "version": "1.9.3",
      "description": "Plain color conversion functions",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/color-convert@1.9.3",
      "type": "library",
      "bom-ref": "pkg:npm/color-convert@1.9.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/color-convert/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/color-convert/package.json"
              }
            ],
            "concludedValue": "node_modules/color-convert/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "co",
      "version": "4.6.0",
      "description": "generator async control flow goodness",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/co@4.6.0",
      "type": "library",
      "bom-ref": "pkg:npm/co@4.6.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/co/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/co/package.json"
              }
            ],
            "concludedValue": "node_modules/co/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Ilya Radchenko <knownasilya@gmail.com>"
        }
      ],
      "group": "",
      "name": "cli-width",
      "version": "2.2.1",
      "description": "Get stdout window width, with two fallbacks, tty and then a default.",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/cli-width@2.2.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/knownasilya/cli-width"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/cli-width@2.2.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/cli-width/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/cli-width/package.json"
              }
            ],
            "concludedValue": "node_modules/cli-width/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "cli-cursor",
      "version": "2.1.0",
      "description": "Toggle the CLI cursor",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/cli-cursor@2.1.0",
      "type": "library",
      "bom-ref": "pkg:npm/cli-cursor@2.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/cli-cursor/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/cli-cursor/package.json"
              }
            ],
            "concludedValue": "node_modules/cli-cursor/package.json"
          }
        ]
      },
      "tags": [
        "cli"
      ]
    },
    {
      "authors": [
        {
          "name": "Andrea Giammarchi"
        }
      ],
      "group": "",
      "name": "circular-json",
      "version": "0.3.3",
      "description": "JSON does not handle circular references. This version does",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/circular-json@0.3.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/WebReflection/circular-json"
        },
        {
          "type": "vcs",
          "url": "git://github.com/WebReflection/circular-json.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/circular-json@0.3.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/circular-json/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/circular-json/package.json"
              }
            ],
            "concludedValue": "node_modules/circular-json/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "fengmk2 <m@fengmk2.com> (http://fengmk2.com)"
        }
      ],
      "group": "",
      "name": "childprocess",
      "version": "2.0.2",
      "description": "Wrap `child_process` module to support Multiple Process Code Coverage with istanbul.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/childprocess@2.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/node-modules/childprocess"
        },
        {
          "type": "vcs",
          "url": "git://github.com/node-modules/childprocess.git"
        }
      ],
      "type": "framework",
      "bom-ref": "pkg:npm/childprocess@2.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/childprocess/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/childprocess/package.json"
              }
            ],
            "concludedValue": "node_modules/childprocess/package.json"
          }
        ]
      },
      "tags": [
        "framework"
      ]
    },
    {
      "authors": [
        {
          "name": "Dmitry Shirokov <deadrunk@gmail.com>"
        }
      ],
      "group": "",
      "name": "chardet",
      "version": "0.4.2",
      "description": "Character detector",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/chardet@0.4.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/runk/node-chardet"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/chardet@0.4.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/chardet/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/chardet/package.json"
              }
            ],
            "concludedValue": "node_modules/chardet/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "chalk",
      "version": "1.1.3",
      "description": "Terminal string styling done right. Much color.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/chalk@1.1.3",
      "type": "library",
      "bom-ref": "pkg:npm/chalk@1.1.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/chalk/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/chalk/package.json"
              }
            ],
            "concludedValue": "node_modules/chalk/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (http://sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "callsites",
      "version": "0.2.0",
      "description": "Get callsites from the V8 stack trace API",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/callsites@0.2.0",
      "type": "library",
      "bom-ref": "pkg:npm/callsites@0.2.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/callsites/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/callsites/package.json"
              }
            ],
            "concludedValue": "node_modules/callsites/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (http://sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "caller-path",
      "version": "0.1.0",
      "description": "Get the path of the caller module",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/caller-path@0.1.0",
      "type": "library",
      "bom-ref": "pkg:npm/caller-path@0.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/caller-path/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/caller-path/package.json"
              }
            ],
            "concludedValue": "node_modules/caller-path/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "James Talmage <james@talmage.io> (github.com/jamestalmage)"
        }
      ],
      "group": "",
      "name": "call-signature",
      "version": "0.0.2",
      "description": "Parse / Generate Method Signatures",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/call-signature@0.0.2",
      "type": "library",
      "bom-ref": "pkg:npm/call-signature@0.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/call-signature/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/call-signature/package.json"
              }
            ],
            "concludedValue": "node_modules/call-signature/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Takuto Wada <takuto.wada@gmail.com> (https://github.com/twada)"
        }
      ],
      "group": "",
      "name": "call-matcher",
      "version": "1.1.0",
      "description": "ECMAScript CallExpression matcher made from function/method signature",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/call-matcher@1.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/twada/call-matcher"
        },
        {
          "type": "vcs",
          "url": "git://github.com/twada/call-matcher.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/call-matcher@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/call-matcher/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/call-matcher/package.json"
              }
            ],
            "concludedValue": "node_modules/call-matcher/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "call-bound",
      "version": "1.0.4",
      "description": "Robust call-bound JavaScript intrinsics, using `call-bind` and `get-intrinsic`.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/call-bound@1.0.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/call-bound#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/call-bound.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/call-bound@1.0.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/call-bound/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/call-bound/package.json"
              }
            ],
            "concludedValue": "node_modules/call-bound/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "call-bind-apply-helpers",
      "version": "1.0.2",
      "description": "Helper functions around Function call/apply/bind, for use in `call-bind`",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/call-bind-apply-helpers@1.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/call-bind-apply-helpers#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/call-bind-apply-helpers.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/call-bind-apply-helpers@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/call-bind-apply-helpers/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/call-bind-apply-helpers/package.json"
              }
            ],
            "concludedValue": "node_modules/call-bind-apply-helpers/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "call-bind",
      "version": "1.0.9",
      "description": "Robustly `.call.bind()` a function",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/call-bind@1.0.9",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/call-bind#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/call-bind.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/call-bind@1.0.9",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/call-bind/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/call-bind/package.json"
              }
            ],
            "concludedValue": "node_modules/call-bind/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "buffer-from",
      "version": "1.1.2",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/buffer-from@1.1.2",
      "type": "library",
      "bom-ref": "pkg:npm/buffer-from@1.1.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/buffer-from/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/buffer-from/package.json"
              }
            ],
            "concludedValue": "node_modules/buffer-from/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "kumavis"
        }
      ],
      "group": "",
      "name": "browser-stdout",
      "version": "1.3.0",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/browser-stdout@1.3.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "http://github.com/kumavis/browser-stdout.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/browser-stdout@1.3.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/browser-stdout/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/browser-stdout/package.json"
              }
            ],
            "concludedValue": "node_modules/browser-stdout/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Julian Gruber <mail@juliangruber.com> (http://juliangruber.com)"
        }
      ],
      "group": "",
      "name": "brace-expansion",
      "version": "1.1.14",
      "description": "Brace expansion as known from sh/bash",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/brace-expansion@1.1.14",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/juliangruber/brace-expansion"
        },
        {
          "type": "vcs",
          "url": "git://github.com/juliangruber/brace-expansion.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/brace-expansion@1.1.14",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/brace-expansion/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/brace-expansion/package.json"
              }
            ],
            "concludedValue": "node_modules/brace-expansion/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Julian Gruber <mail@juliangruber.com> (http://juliangruber.com)"
        }
      ],
      "group": "",
      "name": "balanced-match",
      "version": "1.0.2",
      "description": "Match balanced character pairs, like \"{\" and \"}\"",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/balanced-match@1.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/juliangruber/balanced-match"
        },
        {
          "type": "vcs",
          "url": "git://github.com/juliangruber/balanced-match.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/balanced-match@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/balanced-match/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/balanced-match/package.json"
              }
            ],
            "concludedValue": "node_modules/balanced-match/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sebastian McKenzie <sebmck@gmail.com>"
        }
      ],
      "group": "",
      "name": "babylon",
      "version": "6.18.0",
      "description": "A JavaScript parser",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babylon@6.18.0",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://babeljs.io/"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/babylon@6.18.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babylon/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babylon/package.json"
              }
            ],
            "concludedValue": "node_modules/babylon/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sebastian McKenzie <sebmck@gmail.com>"
        }
      ],
      "group": "",
      "name": "babel-types",
      "version": "6.26.0",
      "description": "Babel Types is a Lodash-esque utility library for AST nodes",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-types@6.26.0",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://babeljs.io/"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/babel-types@6.26.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-types/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-types/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-types/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sebastian McKenzie <sebmck@gmail.com>"
        }
      ],
      "group": "",
      "name": "babel-traverse",
      "version": "6.26.0",
      "description": "The Babel Traverse module maintains the overall tree state, and is responsible for replacing, removing, and adding nodes",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-traverse@6.26.0",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://babeljs.io/"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/babel-traverse@6.26.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-traverse/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-traverse/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-traverse/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (http://sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "globals",
      "version": "9.18.0",
      "description": "Global identifiers from different JavaScript environments",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/globals@9.18.0",
      "type": "library",
      "bom-ref": "pkg:npm/globals@9.18.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-traverse/node_modules/globals/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-traverse/node_modules/globals/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-traverse/node_modules/globals/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sebastian McKenzie <sebmck@gmail.com>"
        }
      ],
      "group": "",
      "name": "babel-runtime",
      "version": "6.26.0",
      "description": "babel selfContained runtime",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-runtime@6.26.0",
      "type": "library",
      "bom-ref": "pkg:npm/babel-runtime@6.26.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-runtime/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-runtime/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-runtime/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sebastian McKenzie <sebmck@gmail.com>"
        }
      ],
      "group": "",
      "name": "babel-messages",
      "version": "6.23.0",
      "description": "Collection of debug messages used by Babel.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-messages@6.23.0",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://babeljs.io/"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/babel-messages@6.23.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-messages/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-messages/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-messages/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sebastian McKenzie <sebmck@gmail.com>"
        }
      ],
      "group": "",
      "name": "babel-eslint",
      "version": "7.2.3",
      "description": "Custom parser for ESLint",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-eslint@7.2.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/babel/babel-eslint"
        },
        {
          "type": "vcs",
          "url": "https://github.com/babel/babel-eslint.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/babel-eslint@7.2.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-eslint/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-eslint/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-eslint/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sebastian McKenzie <sebmck@gmail.com>"
        }
      ],
      "group": "",
      "name": "babel-code-frame",
      "version": "6.26.0",
      "description": "Generate errors that contain a code frame that point to source locations.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-code-frame@6.26.0",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://babeljs.io/"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/babel-code-frame@6.26.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-code-frame/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-code-frame/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-code-frame/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jesse Beach <splendidnoise@gmail.com>"
        }
      ],
      "group": "",
      "name": "axobject-query",
      "version": "4.1.0",
      "description": "Programmatic access to information about the AXObject Model",
      "licenses": [
        {
          "license": {
            "id": "Apache-2.0",
            "url": "https://opensource.org/licenses/Apache-2.0"
          }
        }
      ],
      "purl": "pkg:npm/axobject-query@4.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/A11yance/axobject-query#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/A11yance/axobject-query.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/axobject-query@4.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/axobject-query/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/axobject-query/package.json"
              }
            ],
            "concludedValue": "node_modules/axobject-query/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "axe-core",
      "version": "4.11.4",
      "description": "Accessibility engine for automated Web UI testing",
      "licenses": [
        {
          "license": {
            "id": "MPL-2.0",
            "url": "https://opensource.org/licenses/MPL-2.0"
          }
        }
      ],
      "purl": "pkg:npm/axe-core@4.11.4",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://www.deque.com/axe/"
        },
        {
          "type": "vcs",
          "url": "https://github.com/dequelabs/axe-core.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/axe-core@4.11.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/axe-core/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/axe-core/package.json"
              }
            ],
            "concludedValue": "node_modules/axe-core/package.json"
          }
        ]
      },
      "tags": [
        "web"
      ]
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "available-typed-arrays",
      "version": "1.0.7",
      "description": "Returns an array of Typed Array names that are available in the current environment",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/available-typed-arrays@1.0.7",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/available-typed-arrays#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/available-typed-arrays.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/available-typed-arrays@1.0.7",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/available-typed-arrays/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/available-typed-arrays/package.json"
              }
            ],
            "concludedValue": "node_modules/available-typed-arrays/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harbamd <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "async-function",
      "version": "1.0.0",
      "description": "A function that returns the normally hidden `AsyncFunction` constructor",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/async-function@1.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/async-function#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/async-function.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/async-function@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/async-function/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/async-function/package.json"
              }
            ],
            "concludedValue": "node_modules/async-function/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Caolan McMahon"
        }
      ],
      "group": "",
      "name": "async",
      "version": "1.5.2",
      "description": "Higher-order functions and common patterns for asynchronous code",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/async@1.5.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/caolan/async.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/async@1.5.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/async/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/async/package.json"
              }
            ],
            "concludedValue": "node_modules/async/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "kyldvs"
        }
      ],
      "group": "",
      "name": "ast-types-flow",
      "version": "0.0.8",
      "description": "Flow types for the Javascript AST",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/ast-types-flow@0.0.8",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/kyldvs/ast-types-flow#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/kyldvs/ast-types-flow.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/ast-types-flow@0.0.8",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/ast-types-flow/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/ast-types-flow/package.json"
              }
            ],
            "concludedValue": "node_modules/ast-types-flow/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "asap",
      "version": "2.0.6",
      "description": "High-priority task queue for Node.js and browsers",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/asap@2.0.6",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/kriskowal/asap.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/asap@2.0.6",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/asap/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/asap/package.json"
              }
            ],
            "concludedValue": "node_modules/asap/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "arraybuffer.prototype.slice",
      "version": "1.0.4",
      "description": "ES spec-compliant shim for ArrayBuffer.prototype.slice",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/arraybuffer.prototype.slice@1.0.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/es-shims/ArrayBuffer.prototype.slice#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/es-shims/ArrayBuffer.prototype.slice.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/arraybuffer.prototype.slice@1.0.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/arraybuffer.prototype.slice/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/arraybuffer.prototype.slice/package.json"
              }
            ],
            "concludedValue": "node_modules/arraybuffer.prototype.slice/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "array.prototype.tosorted",
      "version": "1.1.4",
      "description": "An ESnext spec-compliant `Array.prototype.toSorted` shim/polyfill/replacement that works as far down as ES3.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/array.prototype.tosorted@1.1.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/es-shims/Array.prototype.toSorted#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/es-shims/Array.prototype.toSorted.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/array.prototype.tosorted@1.1.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/array.prototype.tosorted/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/array.prototype.tosorted/package.json"
              }
            ],
            "concludedValue": "node_modules/array.prototype.tosorted/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com> (http://ljharb.codes)"
        }
      ],
      "group": "",
      "name": "array.prototype.flatmap",
      "version": "1.3.3",
      "description": "An ES2019 spec-compliant `Array.prototype.flatMap` shim/polyfill/replacement that works as far down as ES3.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/array.prototype.flatmap@1.3.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/es-shims/Array.prototype.flatMap.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/array.prototype.flatmap@1.3.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/array.prototype.flatmap/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/array.prototype.flatmap/package.json"
              }
            ],
            "concludedValue": "node_modules/array.prototype.flatmap/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com> (http://ljharb.codes)"
        }
      ],
      "group": "",
      "name": "array.prototype.flat",
      "version": "1.3.3",
      "description": "An ES2019 spec-compliant `Array.prototype.flat` shim/polyfill/replacement that works as far down as ES3.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/array.prototype.flat@1.3.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/es-shims/Array.prototype.flat.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/array.prototype.flat@1.3.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/array.prototype.flat/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/array.prototype.flat/package.json"
              }
            ],
            "concludedValue": "node_modules/array.prototype.flat/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com> (http://ljharb.codes)"
        }
      ],
      "group": "",
      "name": "array.prototype.findlastindex",
      "version": "1.2.6",
      "description": "An ESnext spec-compliant `Array.prototype.findLastIndex` shim/polyfill/replacement that works as far down as ES3.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/array.prototype.findlastindex@1.2.6",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/es-shims/Array.prototype.findLastIndex#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/es-shims/Array.prototype.findLastIndex.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/array.prototype.findlastindex@1.2.6",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/array.prototype.findlastindex/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/array.prototype.findlastindex/package.json"
              }
            ],
            "concludedValue": "node_modules/array.prototype.findlastindex/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com> (http://ljharb.codes)"
        }
      ],
      "group": "",
      "name": "array.prototype.findlast",
      "version": "1.2.5",
      "description": "An ESnext spec-compliant `Array.prototype.findLast` shim/polyfill/replacement that works as far down as ES3.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/array.prototype.findlast@1.2.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/es-shims/Array.prototype.findLast#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/es-shims/Array.prototype.findLast.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/array.prototype.findlast@1.2.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/array.prototype.findlast/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/array.prototype.findlast/package.json"
              }
            ],
            "concludedValue": "node_modules/array.prototype.findlast/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com> (http://ljharb.codes)"
        }
      ],
      "group": "",
      "name": "array-includes",
      "version": "3.1.9",
      "description": "An ES7/ES2016 spec-compliant `Array.prototype.includes` shim/polyfill/replacement that works as far down as ES3.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/array-includes@3.1.9",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/es-shims/array-includes.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/array-includes@3.1.9",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/array-includes/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/array-includes/package.json"
              }
            ],
            "concludedValue": "node_modules/array-includes/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Stefan Duberg <stefanduberg@gmail.com>"
        }
      ],
      "group": "",
      "name": "array-find",
      "version": "1.0.0",
      "description": "ES6 Array.find ponyfill. Return the first array element which satisfies a testing function.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/array-find@1.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/stefanduberg/array-find"
        },
        {
          "type": "vcs",
          "url": "https://github.com/stefanduberg/array-find.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/array-find@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/array-find/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/array-find/package.json"
              }
            ],
            "concludedValue": "node_modules/array-find/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Julian Gruber <mail@juliangruber.com> (http://juliangruber.com)"
        }
      ],
      "group": "",
      "name": "array-filter",
      "version": "1.0.0",
      "description": "Array#filter for older browsers.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/array-filter@1.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/juliangruber/array-filter"
        },
        {
          "type": "vcs",
          "url": "git://github.com/juliangruber/array-filter.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/array-filter@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/array-filter/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/array-filter/package.json"
              }
            ],
            "concludedValue": "node_modules/array-filter/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "array-buffer-byte-length",
      "version": "1.0.2",
      "description": "Get the byte length of an ArrayBuffer, even in engines without a `.byteLength` method.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/array-buffer-byte-length@1.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/array-buffer-byte-length#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/array-buffer-byte-length.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/array-buffer-byte-length@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/array-buffer-byte-length/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/array-buffer-byte-length/package.json"
              }
            ],
            "concludedValue": "node_modules/array-buffer-byte-length/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jesse Beach <splendidnoise@gmail.com>"
        }
      ],
      "group": "",
      "name": "aria-query",
      "version": "5.3.2",
      "description": "Programmatic access to the ARIA specification",
      "licenses": [
        {
          "license": {
            "id": "Apache-2.0",
            "url": "https://opensource.org/licenses/Apache-2.0"
          }
        }
      ],
      "purl": "pkg:npm/aria-query@5.3.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/A11yance/aria-query#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/A11yance/aria-query.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/aria-query@5.3.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/aria-query/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/aria-query/package.json"
              }
            ],
            "concludedValue": "node_modules/aria-query/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "argparse",
      "version": "1.0.10",
      "description": "Very powerful CLI arguments parser. Native port of argparse - python's options parsing library",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/argparse@1.0.10",
      "type": "library",
      "bom-ref": "pkg:npm/argparse@1.0.10",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/argparse/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/argparse/package.json"
              }
            ],
            "concludedValue": "node_modules/argparse/package.json"
          }
        ]
      },
      "tags": [
        "cli"
      ]
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "ansi-styles",
      "version": "2.2.1",
      "description": "ANSI escape codes for styling strings in the terminal",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/ansi-styles@2.2.1",
      "type": "library",
      "bom-ref": "pkg:npm/ansi-styles@2.2.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/ansi-styles/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/ansi-styles/package.json"
              }
            ],
            "concludedValue": "node_modules/ansi-styles/package.json"
          }
        ]
      },
      "tags": [
        "escape"
      ]
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "ansi-regex",
      "version": "2.1.1",
      "description": "Regular expression for matching ANSI escape codes",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/ansi-regex@2.1.1",
      "type": "library",
      "bom-ref": "pkg:npm/ansi-regex@2.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/ansi-regex/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/ansi-regex/package.json"
              }
            ],
            "concludedValue": "node_modules/ansi-regex/package.json"
          }
        ]
      },
      "tags": [
        "escape"
      ]
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "ansi-escapes",
      "version": "3.2.0",
      "description": "ANSI escape codes for manipulating the terminal",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/ansi-escapes@3.2.0",
      "type": "library",
      "bom-ref": "pkg:npm/ansi-escapes@3.2.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/ansi-escapes/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/ansi-escapes/package.json"
              }
            ],
            "concludedValue": "node_modules/ansi-escapes/package.json"
          }
        ]
      },
      "tags": [
        "escape"
      ]
    },
    {
      "authors": [
        {
          "name": "James Burke <jrburke@gmail.com> (http://github.com/jrburke)"
        }
      ],
      "group": "",
      "name": "amdefine",
      "version": "1.0.1",
      "description": "Provide AMD's define() API for declaring modules in the AMD format",
      "licenses": [
        {
          "expression": "BSD-3-Clause OR MIT"
        }
      ],
      "purl": "pkg:npm/amdefine@1.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "http://github.com/jrburke/amdefine"
        },
        {
          "type": "vcs",
          "url": "https://github.com/jrburke/amdefine.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/amdefine@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/amdefine/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/amdefine/package.json"
              }
            ],
            "concludedValue": "node_modules/amdefine/package.json"
          }
        ]
      },
      "tags": [
        "api"
      ]
    },
    {
      "authors": [
        {
          "name": "Evgeny Poberezkin"
        }
      ],
      "group": "",
      "name": "ajv-keywords",
      "version": "2.1.1",
      "description": "Custom JSON-Schema keywords for Ajv validator",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/ajv-keywords@2.1.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/epoberezkin/ajv-keywords#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/epoberezkin/ajv-keywords.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/ajv-keywords@2.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/ajv-keywords/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/ajv-keywords/package.json"
              }
            ],
            "concludedValue": "node_modules/ajv-keywords/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Evgeny Poberezkin"
        }
      ],
      "group": "",
      "name": "ajv",
      "version": "5.5.2",
      "description": "Another JSON Schema Validator",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/ajv@5.5.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/epoberezkin/ajv"
        },
        {
          "type": "vcs",
          "url": "https://github.com/epoberezkin/ajv.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/ajv@5.5.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/ajv/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/ajv/package.json"
              }
            ],
            "concludedValue": "node_modules/ajv/package.json"
          }
        ]
      },
      "tags": [
        "json"
      ]
    },
    {
      "authors": [
        {
          "name": "fengmk2 <fengmk2@gmail.com>"
        }
      ],
      "group": "",
      "name": "address",
      "version": "1.2.2",
      "description": "Get current machine IP, MAC and DNS servers.",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/address@1.2.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/node-modules/address.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/address@1.2.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/address/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/address/package.json"
              }
            ],
            "concludedValue": "node_modules/address/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "acorn-jsx",
      "version": "3.0.1",
      "description": "Alternative, faster React.js JSX parser",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/acorn-jsx@3.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/RReverser/acorn-jsx"
        },
        {
          "type": "vcs",
          "url": "https://github.com/RReverser/acorn-jsx"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/acorn-jsx@3.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/acorn-jsx/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/acorn-jsx/package.json"
              }
            ],
            "concludedValue": "node_modules/acorn-jsx/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "acorn",
      "version": "3.3.0",
      "description": "ECMAScript parser",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/acorn@3.3.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ternjs/acorn"
        },
        {
          "type": "vcs",
          "url": "https://github.com/ternjs/acorn.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/acorn@3.3.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/acorn-jsx/node_modules/acorn/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/acorn-jsx/node_modules/acorn/package.json"
              }
            ],
            "concludedValue": "node_modules/acorn-jsx/node_modules/acorn/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "matatbread"
        }
      ],
      "group": "",
      "name": "acorn-es7-plugin",
      "version": "1.1.7",
      "description": "A plugin for the Acorn parser that understands the ES7 keywords async and await",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/acorn-es7-plugin@1.1.7",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/MatAtBread/acorn-es7-plugin#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/MatAtBread/acorn-es7-plugin.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/acorn-es7-plugin@1.1.7",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/acorn-es7-plugin/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/acorn-es7-plugin/package.json"
              }
            ],
            "concludedValue": "node_modules/acorn-es7-plugin/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "matatbread"
        }
      ],
      "group": "",
      "name": "acorn-es7-plugin-test",
      "version": "0.0.5",
      "description": "Tests for acorn-es7-plugin",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/acorn-es7-plugin-test@0.0.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/MatAtBread/acorn-es7-plugin#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/MatAtBread/acorn-es7-plugin.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/acorn-es7-plugin-test@0.0.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/acorn-es7-plugin/test/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/acorn-es7-plugin/test/package.json"
              }
            ],
            "concludedValue": "node_modules/acorn-es7-plugin/test/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "acorn",
      "version": "5.7.4",
      "description": "ECMAScript parser",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/acorn@5.7.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/acornjs/acorn"
        },
        {
          "type": "vcs",
          "url": "https://github.com/acornjs/acorn.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/acorn@5.7.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/acorn/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/acorn/package.json"
              }
            ],
            "concludedValue": "node_modules/acorn/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me>"
        }
      ],
      "group": "",
      "name": "abbrev",
      "version": "1.0.9",
      "description": "Like ruby's abbrev module, but in js",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/abbrev@1.0.9",
      "type": "library",
      "bom-ref": "pkg:npm/abbrev@1.0.9",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/abbrev/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/abbrev/package.json"
              }
            ],
            "concludedValue": "node_modules/abbrev/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Gleb Khudyakov (https://github.com/hydiak/a-sync-waterfall)"
        }
      ],
      "group": "",
      "name": "a-sync-waterfall",
      "version": "1.0.1",
      "description": "Runs a list of async tasks, passing the results of each into the next one",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/a-sync-waterfall@1.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/hydiak/a-sync-waterfall"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/a-sync-waterfall@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/a-sync-waterfall/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/a-sync-waterfall/package.json"
              }
            ],
            "concludedValue": "node_modules/a-sync-waterfall/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jason Swearingen <https://jasonswearingen.github.io>"
        }
      ],
      "group": "@types",
      "name": "json5",
      "version": "0.0.29",
      "description": "TypeScript definitions for JSON5",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/%40types/json5@0.0.29",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://www.github.com/DefinitelyTyped/DefinitelyTyped.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/@types/json5@0.0.29",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/@types/json5/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/@types/json5/package.json"
              }
            ],
            "concludedValue": "node_modules/@types/json5/package.json"
          }
        ]
      }
    },
    {
      "group": "@rtsao",
      "name": "scc",
      "version": "1.1.0",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/%40rtsao/scc@1.1.0",
      "type": "library",
      "bom-ref": "pkg:npm/@rtsao/scc@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/@rtsao/scc/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/@rtsao/scc/package.json"
              }
            ],
            "concludedValue": "node_modules/@rtsao/scc/package.json"
          }
        ]
      }
    }
  ],
  "dependencies": [],
  "annotations": [
    {
      "bom-ref": "metadata-annotations",
      "subjects": [
        "pkg:npm/charset@1.0.1"
      ],
      "annotator": {
        "component": {
          "group": "@cyclonedx",
          "name": "cdxgen",
          "version": "12.3.3",
          "purl": "pkg:npm/%40cyclonedx/cdxgen@12.3.3",
          "type": "application",
          "bom-ref": "pkg:npm/@cyclonedx/cdxgen@12.3.3",
          "publisher": "OWASP Foundation",
          "authors": [
            {
              "name": "OWASP Foundation"
            }
          ]
        }
      },
      "timestamp": "2026-07-22T18:58:04Z",
      "text": "This Software Bill-of-Materials (SBOM) document was created on Wednesday, July 22, 2026 with cdxgen. The data was captured during the pre-build lifecycle phase without building the application. The document describes an application named 'charset' with version '1.0.1'. The package type in this SBOM is npm with 3 purl namespaces described under components. The components were identified from 441 source files."
    }
  ]
}