{
  "bomFormat": "CycloneDX",
  "specVersion": "1.7",
  "serialNumber": "urn:uuid:db7cc947-16f3-445d-af10-c2f24117754e",
  "version": 1,
  "metadata": {
    "timestamp": "2026-07-31T01:54:13Z",
    "tools": {
      "components": [
        {
          "group": "@cyclonedx",
          "name": "cdxgen",
          "version": "12.3.3",
          "purl": "pkg:npm/%40cyclonedx/cdxgen@12.3.3",
          "type": "application",
          "bom-ref": "pkg:npm/@cyclonedx/cdxgen@12.3.3",
          "publisher": "OWASP Foundation",
          "authors": [
            {
              "name": "OWASP Foundation"
            }
          ]
        }
      ]
    },
    "authors": [
      {
        "name": "OWASP Foundation"
      }
    ],
    "lifecycles": [
      {
        "phase": "pre-build"
      }
    ],
    "component": {
      "name": "npm-path",
      "group": "",
      "version": "2.0.4",
      "description": "Get a PATH with all executables available to npm scripts.",
      "purl": "pkg:npm/npm-path@2.0.4",
      "bom-ref": "pkg:npm/npm-path@2.0.4",
      "author": "Tim Oxley",
      "properties": [
        {
          "name": "cdx:npm:bin",
          "value": "npm-path"
        },
        {
          "name": "cdx:npm:has_binary",
          "value": "true"
        },
        {
          "name": "cdx:npm:scripts",
          "value": "clean, prebuild, build, prepublish, tests-only, pretest, test"
        },
        {
          "name": "cdx:npm:hasInstallScript",
          "value": "true"
        },
        {
          "name": "cdx:npm:risky_scripts",
          "value": "prepublish"
        }
      ],
      "type": "application",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/timoxley/npm-path"
        },
        {
          "type": "vcs",
          "url": "https://github.com/timoxley/npm-path.git"
        }
      ]
    },
    "properties": [
      {
        "name": "cdx:bom:componentTypes",
        "value": "npm"
      },
      {
        "name": "cdx:bom:componentNamespaces",
        "value": "@ljharb\\n@my-scope"
      },
      {
        "name": "cdx:bom:componentSrcFiles",
        "value": "node_modules/@ljharb/resumer/package.json\\nnode_modules/@ljharb/through/package.json\\nnode_modules/acorn-jsx/package.json\\nnode_modules/acorn/package.json\\nnode_modules/airbnb-js-shims/package.json\\nnode_modules/ajv-keywords/package.json\\nnode_modules/ajv/package.json\\nnode_modules/ansi-escapes/package.json\\nnode_modules/ansi-regex/package.json\\nnode_modules/ansi-styles/package.json\\nnode_modules/anymatch/package.json\\nnode_modules/argparse/package.json\\nnode_modules/arr-diff/package.json\\nnode_modules/arr-flatten/package.json\\nnode_modules/arr-union/package.json\\nnode_modules/array-buffer-byte-length/package.json\\nnode_modules/array-includes/package.json\\nnode_modules/array-unique/package.json\\nnode_modules/array.prototype.flat/package.json\\nnode_modules/array.prototype.flatmap/package.json\\nnode_modules/array.prototype.flatten/package.json\\nnode_modules/array.prototype.reduce/package.json\\nnode_modules/arraybuffer.prototype.slice/package.json\\nnode_modules/assign-symbols/package.json\\nnode_modules/async-each/package.json\\nnode_modules/async-function/package.json\\nnode_modules/atob/package.json\\nnode_modules/available-typed-arrays/package.json\\nnode_modules/babel-cli/package.json\\nnode_modules/babel-code-frame/package.json\\nnode_modules/babel-core/package.json\\nnode_modules/babel-generator/package.json\\nnode_modules/babel-helper-builder-binary-assignment-operator-visitor/package.json\\nnode_modules/babel-helper-builder-react-jsx/package.json\\nnode_modules/babel-helper-call-delegate/package.json\\nnode_modules/babel-helper-define-map/package.json\\nnode_modules/babel-helper-explode-assignable-expression/package.json\\nnode_modules/babel-helper-function-name/package.json\\nnode_modules/babel-helper-get-function-arity/package.json\\nnode_modules/babel-helper-hoist-variables/package.json\\nnode_modules/babel-helper-optimise-call-expression/package.json\\nnode_modules/babel-helper-regex/package.json\\nnode_modules/babel-helper-remap-async-to-generator/package.json\\nnode_modules/babel-helper-replace-supers/package.json\\nnode_modules/babel-helpers/package.json\\nnode_modules/babel-messages/package.json\\nnode_modules/babel-plugin-check-es2015-constants/package.json\\nnode_modules/babel-plugin-syntax-async-functions/package.json\\nnode_modules/babel-plugin-syntax-exponentiation-operator/package.json\\nnode_modules/babel-plugin-syntax-flow/package.json\\nnode_modules/babel-plugin-syntax-jsx/package.json\\nnode_modules/babel-plugin-syntax-object-rest-spread/package.json\\nnode_modules/babel-plugin-syntax-trailing-function-commas/package.json\\nnode_modules/babel-plugin-transform-async-to-generator/package.json\\nnode_modules/babel-plugin-transform-es2015-arrow-functions/package.json\\nnode_modules/babel-plugin-transform-es2015-block-scoped-functions/package.json\\nnode_modules/babel-plugin-transform-es2015-block-scoping/package.json\\nnode_modules/babel-plugin-transform-es2015-classes/package.json\\nnode_modules/babel-plugin-transform-es2015-computed-properties/package.json\\nnode_modules/babel-plugin-transform-es2015-destructuring/package.json\\nnode_modules/babel-plugin-transform-es2015-duplicate-keys/package.json\\nnode_modules/babel-plugin-transform-es2015-for-of/package.json\\nnode_modules/babel-plugin-transform-es2015-function-name/package.json\\nnode_modules/babel-plugin-transform-es2015-literals/package.json\\nnode_modules/babel-plugin-transform-es2015-modules-amd/package.json\\nnode_modules/babel-plugin-transform-es2015-modules-commonjs/package.json\\nnode_modules/babel-plugin-transform-es2015-modules-systemjs/package.json\\nnode_modules/babel-plugin-transform-es2015-modules-umd/package.json\\nnode_modules/babel-plugin-transform-es2015-object-super/package.json\\nnode_modules/babel-plugin-transform-es2015-parameters/package.json\\nnode_modules/babel-plugin-transform-es2015-shorthand-properties/package.json\\nnode_modules/babel-plugin-transform-es2015-spread/package.json\\nnode_modules/babel-plugin-transform-es2015-sticky-regex/package.json\\nnode_modules/babel-plugin-transform-es2015-template-literals/package.json\\nnode_modules/babel-plugin-transform-es2015-typeof-symbol/package.json\\nnode_modules/babel-plugin-transform-es2015-unicode-regex/package.json\\nnode_modules/babel-plugin-transform-es3-member-expression-literals/package.json\\nnode_modules/babel-plugin-transform-es3-property-literals/package.json\\nnode_modules/babel-plugin-transform-es5-property-mutators/package.json\\nnode_modules/babel-plugin-transform-exponentiation-operator/package.json\\nnode_modules/babel-plugin-transform-flow-strip-types/package.json\\nnode_modules/babel-plugin-transform-jscript/package.json\\nnode_modules/babel-plugin-transform-object-rest-spread/package.json\\nnode_modules/babel-plugin-transform-react-display-name/package.json\\nnode_modules/babel-plugin-transform-react-jsx-self/package.json\\nnode_modules/babel-plugin-transform-react-jsx-source/package.json\\nnode_modules/babel-plugin-transform-react-jsx/package.json\\nnode_modules/babel-plugin-transform-react-remove-prop-types/package.json\\nnode_modules/babel-plugin-transform-regenerator/package.json\\nnode_modules/babel-plugin-transform-strict-mode/package.json\\nnode_modules/babel-polyfill/package.json\\nnode_modules/babel-preset-airbnb/package.json\\nnode_modules/babel-preset-env/package.json\\nnode_modules/babel-preset-flow/package.json\\nnode_modules/babel-preset-react/package.json\\nnode_modules/babel-register/package.json\\nnode_modules/babel-runtime/node_modules/regenerator-runtime/package.json\\nnode_modules/babel-runtime/package.json\\nnode_modules/babel-template/package.json\\nnode_modules/babel-traverse/package.json\\nnode_modules/babel-types/package.json\\nnode_modules/babylon/package.json\\nnode_modules/balanced-match/package.json\\nnode_modules/base/node_modules/define-property/package.json\\nnode_modules/base/node_modules/isobject/package.json\\nnode_modules/base/package.json\\nnode_modules/binary-extensions/package.json\\nnode_modules/brace-expansion/package.json\\nnode_modules/braces/package.json\\nnode_modules/browserslist/package.json\\nnode_modules/buffer-from/package.json\\nnode_modules/cache-base/node_modules/isobject/package.json\\nnode_modules/cache-base/package.json\\nnode_modules/call-bind-apply-helpers/package.json\\nnode_modules/call-bind/package.json\\nnode_modules/call-bound/package.json\\nnode_modules/caller-path/package.json\\nnode_modules/callsites/package.json\\nnode_modules/caniuse-lite/package.json\\nnode_modules/chalk/package.json\\nnode_modules/chokidar/package.json\\nnode_modules/circular-json/package.json\\nnode_modules/class-utils/node_modules/define-property/package.json\\nnode_modules/class-utils/node_modules/is-descriptor/package.json\\nnode_modules/class-utils/node_modules/isobject/package.json\\nnode_modules/class-utils/package.json\\nnode_modules/cli-cursor/package.json\\nnode_modules/cli-width/package.json\\nnode_modules/clone/package.json\\nnode_modules/co/package.json\\nnode_modules/code-point-at/package.json\\nnode_modules/collection-visit/package.json\\nnode_modules/commander/package.json\\nnode_modules/component-emitter/package.json\\nnode_modules/concat-map/package.json\\nnode_modules/concat-stream/package.json\\nnode_modules/convert-source-map/package.json\\nnode_modules/copy-descriptor/package.json\\nnode_modules/core-js/package.json\\nnode_modules/core-util-is/package.json\\nnode_modules/d/package.json\\nnode_modules/data-view-buffer/package.json\\nnode_modules/data-view-byte-length/package.json\\nnode_modules/data-view-byte-offset/package.json\\nnode_modules/debug-log/package.json\\nnode_modules/debug/package.json\\nnode_modules/decode-uri-component/package.json\\nnode_modules/deep-equal/package.json\\nnode_modules/deep-is/package.json\\nnode_modules/defaults/package.json\\nnode_modules/define-data-property/package.json\\nnode_modules/define-properties/package.json\\nnode_modules/define-property/node_modules/isobject/package.json\\nnode_modules/define-property/package.json\\nnode_modules/defined/package.json\\nnode_modules/deglob/package.json\\nnode_modules/detect-indent/package.json\\nnode_modules/doctrine/package.json\\nnode_modules/dotignore/package.json\\nnode_modules/dunder-proto/package.json\\nnode_modules/duplexer/package.json\\nnode_modules/electron-to-chromium/package.json\\nnode_modules/es-abstract/package.json\\nnode_modules/es-array-method-boxes-properly/package.json\\nnode_modules/es-define-property/package.json\\nnode_modules/es-errors/package.json\\nnode_modules/es-object-atoms/package.json\\nnode_modules/es-set-tostringtag/package.json\\nnode_modules/es-shim-unscopables/package.json\\nnode_modules/es-to-primitive/package.json\\nnode_modules/es5-ext/package.json\\nnode_modules/es5-shim/package.json\\nnode_modules/es6-iterator/package.json\\nnode_modules/es6-map/package.json\\nnode_modules/es6-set/package.json\\nnode_modules/es6-shim/package.json\\nnode_modules/es6-symbol/package.json\\nnode_modules/es6-weak-map/package.json\\nnode_modules/escape-string-regexp/package.json\\nnode_modules/escope/package.json\\nnode_modules/eslint-config-standard-jsx/package.json\\nnode_modules/eslint-config-standard/package.json\\nnode_modules/eslint-plugin-promise/package.json\\nnode_modules/eslint-plugin-react/package.json\\nnode_modules/eslint-plugin-standard/package.json\\nnode_modules/eslint/package.json\\nnode_modules/esniff/package.json\\nnode_modules/espree/package.json\\nnode_modules/esprima/package.json\\nnode_modules/esrecurse/node_modules/estraverse/package.json\\nnode_modules/esrecurse/package.json\\nnode_modules/estraverse/package.json\\nnode_modules/esutils/package.json\\nnode_modules/event-emitter/package.json\\nnode_modules/exit-hook/package.json\\nnode_modules/expand-brackets/package.json\\nnode_modules/expand-range/package.json\\nnode_modules/ext/package.json\\nnode_modules/extend-shallow/node_modules/is-extendable/package.json\\nnode_modules/extend-shallow/package.json\\nnode_modules/extglob/package.json\\nnode_modules/fast-levenshtein/package.json\\nnode_modules/faucet/node_modules/deep-equal/package.json\\nnode_modules/faucet/node_modules/tape/package.json\\nnode_modules/faucet/package.json\\nnode_modules/figures/package.json\\nnode_modules/file-entry-cache/package.json\\nnode_modules/filename-regex/package.json\\nnode_modules/fill-range/package.json\\nnode_modules/find-root/package.json\\nnode_modules/flat-cache/node_modules/rimraf/package.json\\nnode_modules/flat-cache/package.json\\nnode_modules/for-each/package.json\\nnode_modules/for-in/package.json\\nnode_modules/for-own/package.json\\nnode_modules/fragment-cache/package.json\\nnode_modules/fs-readdir-recursive/package.json\\nnode_modules/fs.realpath/package.json\\nnode_modules/function-bind/package.json\\nnode_modules/function.prototype.name/package.json\\nnode_modules/functions-have-names/package.json\\nnode_modules/generate-function/package.json\\nnode_modules/generate-object-property/package.json\\nnode_modules/generator-function/package.json\\nnode_modules/get-intrinsic/package.json\\nnode_modules/get-proto/package.json\\nnode_modules/get-stdin/package.json\\nnode_modules/get-symbol-description/package.json\\nnode_modules/get-value/package.json\\nnode_modules/glob-base/package.json\\nnode_modules/glob-parent/package.json\\nnode_modules/glob/package.json\\nnode_modules/globals/package.json\\nnode_modules/globalthis/package.json\\nnode_modules/gopd/package.json\\nnode_modules/graceful-fs/package.json\\nnode_modules/has-ansi/package.json\\nnode_modules/has-bigints/package.json\\nnode_modules/has-property-descriptors/package.json\\nnode_modules/has-proto/package.json\\nnode_modules/has-symbols/package.json\\nnode_modules/has-tostringtag/package.json\\nnode_modules/has-value/node_modules/isobject/package.json\\nnode_modules/has-value/package.json\\nnode_modules/has-values/node_modules/is-number/node_modules/kind-of/package.json\\nnode_modules/has-values/node_modules/is-number/package.json\\nnode_modules/has-values/node_modules/kind-of/package.json\\nnode_modules/has-values/package.json\\nnode_modules/has/package.json\\nnode_modules/hasown/package.json\\nnode_modules/home-or-tmp/package.json\\nnode_modules/ignore/package.json\\nnode_modules/imurmurhash/package.json\\nnode_modules/in-publish/package.json\\nnode_modules/in-publish/test/package.json\\nnode_modules/inflight/package.json\\nnode_modules/inherits/package.json\\nnode_modules/inquirer/package.json\\nnode_modules/internal-slot/package.json\\nnode_modules/invariant/package.json\\nnode_modules/is-accessor-descriptor/package.json\\nnode_modules/is-arguments/package.json\\nnode_modules/is-array-buffer/package.json\\nnode_modules/is-async-function/package.json\\nnode_modules/is-bigint/package.json\\nnode_modules/is-binary-path/package.json\\nnode_modules/is-boolean-object/package.json\\nnode_modules/is-buffer/package.json\\nnode_modules/is-callable/package.json\\nnode_modules/is-core-module/package.json\\nnode_modules/is-data-descriptor/package.json\\nnode_modules/is-data-view/package.json\\nnode_modules/is-date-object/package.json\\nnode_modules/is-descriptor/package.json\\nnode_modules/is-dotfile/package.json\\nnode_modules/is-equal-shallow/package.json\\nnode_modules/is-extendable/package.json\\nnode_modules/is-extglob/package.json\\nnode_modules/is-finalizationregistry/package.json\\nnode_modules/is-finite/package.json\\nnode_modules/is-fullwidth-code-point/package.json\\nnode_modules/is-generator-function/package.json\\nnode_modules/is-glob/package.json\\nnode_modules/is-map/package.json\\nnode_modules/is-my-ip-valid/package.json\\nnode_modules/is-my-json-valid/package.json\\nnode_modules/is-negative-zero/package.json\\nnode_modules/is-number-object/package.json\\nnode_modules/is-number/package.json\\nnode_modules/is-plain-object/node_modules/isobject/package.json\\nnode_modules/is-plain-object/package.json\\nnode_modules/is-posix-bracket/package.json\\nnode_modules/is-primitive/package.json\\nnode_modules/is-property/package.json\\nnode_modules/is-regex/package.json\\nnode_modules/is-resolvable/package.json\\nnode_modules/is-set/package.json\\nnode_modules/is-shared-array-buffer/package.json\\nnode_modules/is-string/package.json\\nnode_modules/is-symbol/package.json\\nnode_modules/is-typed-array/package.json\\nnode_modules/is-weakmap/package.json\\nnode_modules/is-weakref/package.json\\nnode_modules/is-weakset/package.json\\nnode_modules/is-windows/package.json\\nnode_modules/isarray/package.json\\nnode_modules/isexe/package.json\\nnode_modules/isobject/package.json\\nnode_modules/js-tokens/package.json\\nnode_modules/js-yaml/package.json\\nnode_modules/jsesc/package.json\\nnode_modules/json-stable-stringify/node_modules/isarray/package.json\\nnode_modules/json-stable-stringify/package.json\\nnode_modules/json5/package.json\\nnode_modules/jsonify/package.json\\nnode_modules/jsonpointer/package.json\\nnode_modules/jsx-ast-utils/package.json\\nnode_modules/kind-of/package.json\\nnode_modules/levn/package.json\\nnode_modules/lodash/package.json\\nnode_modules/loose-envify/package.json\\nnode_modules/map-cache/package.json\\nnode_modules/map-visit/package.json\\nnode_modules/math-intrinsics/package.json\\nnode_modules/math-random/package.json\\nnode_modules/micromatch/package.json\\nnode_modules/minimatch/package.json\\nnode_modules/minimist/package.json\\nnode_modules/mixin-deep/node_modules/is-extendable/package.json\\nnode_modules/mixin-deep/package.json\\nnode_modules/mkdirp/node_modules/minimist/package.json\\nnode_modules/mkdirp/package.json\\nnode_modules/mock-property/node_modules/isarray/package.json\\nnode_modules/mock-property/package.json\\nnode_modules/ms/package.json\\nnode_modules/multiline/package.json\\nnode_modules/mute-stream/package.json\\nnode_modules/nanomatch/node_modules/arr-diff/package.json\\nnode_modules/nanomatch/node_modules/array-unique/package.json\\nnode_modules/nanomatch/node_modules/kind-of/package.json\\nnode_modules/nanomatch/package.json\\nnode_modules/next-tick/package.json\\nnode_modules/normalize-path/package.json\\nnode_modules/npm/node_modules/abbrev/package.json\\nnode_modules/npm/node_modules/ansi-regex/package.json\\nnode_modules/npm/node_modules/ansicolors/package.json\\nnode_modules/npm/node_modules/ansistyles/package.json\\nnode_modules/npm/node_modules/aproba/package.json\\nnode_modules/npm/node_modules/archy/package.json\\nnode_modules/npm/node_modules/asap/package.json\\nnode_modules/npm/node_modules/chownr/package.json\\nnode_modules/npm/node_modules/cmd-shim/package.json\\nnode_modules/npm/node_modules/columnify/node_modules/wcwidth/node_modules/defaults/node_modules/clone/package.json\\nnode_modules/npm/node_modules/columnify/node_modules/wcwidth/node_modules/defaults/package.json\\nnode_modules/npm/node_modules/columnify/node_modules/wcwidth/package.json\\nnode_modules/npm/node_modules/columnify/package.json\\nnode_modules/npm/node_modules/config-chain/node_modules/proto-list/package.json\\nnode_modules/npm/node_modules/config-chain/package.json\\nnode_modules/npm/node_modules/debuglog/package.json\\nnode_modules/npm/node_modules/dezalgo/package.json\\nnode_modules/npm/node_modules/editor/package.json\\nnode_modules/npm/node_modules/fs-vacuum/package.json\\nnode_modules/npm/node_modules/fs-write-stream-atomic/package.json\\nnode_modules/npm/node_modules/fstream-npm/node_modules/fstream-ignore/node_modules/minimatch/node_modules/brace-expansion/node_modules/balanced-match/package.json\\nnode_modules/npm/node_modules/fstream-npm/node_modules/fstream-ignore/node_modules/minimatch/node_modules/brace-expansion/node_modules/concat-map/package.json\\nnode_modules/npm/node_modules/fstream-npm/node_modules/fstream-ignore/node_modules/minimatch/node_modules/brace-expansion/package.json\\nnode_modules/npm/node_modules/fstream-npm/node_modules/fstream-ignore/node_modules/minimatch/package.json\\nnode_modules/npm/node_modules/fstream-npm/node_modules/fstream-ignore/package.json\\nnode_modules/npm/node_modules/fstream-npm/package.json\\nnode_modules/npm/node_modules/fstream/package.json\\nnode_modules/npm/node_modules/glob/node_modules/fs.realpath/package.json\\nnode_modules/npm/node_modules/glob/node_modules/minimatch/node_modules/brace-expansion/node_modules/balanced-match/package.json\\nnode_modules/npm/node_modules/glob/node_modules/minimatch/node_modules/brace-expansion/node_modules/concat-map/package.json\\nnode_modules/npm/node_modules/glob/node_modules/minimatch/node_modules/brace-expansion/package.json\\nnode_modules/npm/node_modules/glob/node_modules/minimatch/package.json\\nnode_modules/npm/node_modules/glob/node_modules/path-is-absolute/package.json\\nnode_modules/npm/node_modules/glob/package.json\\nnode_modules/npm/node_modules/graceful-fs/package.json\\nnode_modules/npm/node_modules/has-unicode/package.json\\nnode_modules/npm/node_modules/hosted-git-info/package.json\\nnode_modules/npm/node_modules/iferr/package.json\\nnode_modules/npm/node_modules/imurmurhash/package.json\\nnode_modules/npm/node_modules/inflight/package.json\\nnode_modules/npm/node_modules/inherits/package.json\\nnode_modules/npm/node_modules/ini/package.json\\nnode_modules/npm/node_modules/init-package-json/node_modules/glob/node_modules/minimatch/node_modules/brace-expansion/node_modules/balanced-match/package.json\\nnode_modules/npm/node_modules/init-package-json/node_modules/glob/node_modules/minimatch/node_modules/brace-expansion/node_modules/concat-map/package.json\\nnode_modules/npm/node_modules/init-package-json/node_modules/glob/node_modules/minimatch/node_modules/brace-expansion/package.json\\nnode_modules/npm/node_modules/init-package-json/node_modules/glob/node_modules/minimatch/package.json\\nnode_modules/npm/node_modules/init-package-json/node_modules/glob/node_modules/path-is-absolute/package.json\\nnode_modules/npm/node_modules/init-package-json/node_modules/glob/package.json\\nnode_modules/npm/node_modules/init-package-json/node_modules/promzard/example/npm-init/package.json\\nnode_modules/npm/node_modules/init-package-json/node_modules/promzard/package.json\\nnode_modules/npm/node_modules/init-package-json/package.json\\nnode_modules/npm/node_modules/lockfile/package.json\\nnode_modules/npm/node_modules/lodash._baseindexof/package.json\\nnode_modules/npm/node_modules/lodash._baseuniq/node_modules/lodash._createset/package.json\\nnode_modules/npm/node_modules/lodash._baseuniq/node_modules/lodash._root/package.json\\nnode_modules/npm/node_modules/lodash._baseuniq/package.json\\nnode_modules/npm/node_modules/lodash._bindcallback/package.json\\nnode_modules/npm/node_modules/lodash._cacheindexof/package.json\\nnode_modules/npm/node_modules/lodash._createcache/package.json\\nnode_modules/npm/node_modules/lodash._getnative/package.json\\nnode_modules/npm/node_modules/lodash.clonedeep/package.json\\nnode_modules/npm/node_modules/lodash.restparam/package.json\\nnode_modules/npm/node_modules/lodash.union/package.json\\nnode_modules/npm/node_modules/lodash.uniq/package.json\\nnode_modules/npm/node_modules/lodash.without/package.json\\nnode_modules/npm/node_modules/mkdirp/node_modules/minimist/package.json\\nnode_modules/npm/node_modules/mkdirp/package.json\\nnode_modules/npm/node_modules/node-gyp/node_modules/minimatch/node_modules/brace-expansion/node_modules/balanced-match/package.json\\nnode_modules/npm/node_modules/node-gyp/node_modules/minimatch/node_modules/brace-expansion/node_modules/concat-map/package.json\\nnode_modules/npm/node_modules/node-gyp/node_modules/minimatch/node_modules/brace-expansion/package.json\\nnode_modules/npm/node_modules/node-gyp/node_modules/minimatch/package.json\\nnode_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/are-we-there-yet/node_modules/delegates/package.json\\nnode_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/are-we-there-yet/package.json\\nnode_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/console-control-strings/package.json\\nnode_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/gauge/node_modules/has-color/package.json\\nnode_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/gauge/node_modules/object-assign/package.json\\nnode_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/gauge/node_modules/signal-exit/package.json\\nnode_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/gauge/node_modules/string-width/node_modules/code-point-at/node_modules/number-is-nan/package.json\\nnode_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/gauge/node_modules/string-width/node_modules/code-point-at/package.json\\nnode_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/gauge/node_modules/string-width/node_modules/is-fullwidth-code-point/node_modules/number-is-nan/package.json\\nnode_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/gauge/node_modules/string-width/node_modules/is-fullwidth-code-point/package.json\\nnode_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/gauge/node_modules/string-width/package.json\\nnode_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/gauge/node_modules/wide-align/package.json\\nnode_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/gauge/package.json\\nnode_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/set-blocking/package.json\\nnode_modules/npm/node_modules/node-gyp/node_modules/npmlog/package.json\\nnode_modules/npm/node_modules/node-gyp/node_modules/path-array/node_modules/array-index/node_modules/debug/node_modules/ms/package.json\\nnode_modules/npm/node_modules/node-gyp/node_modules/path-array/node_modules/array-index/node_modules/debug/package.json\\nnode_modules/npm/node_modules/node-gyp/node_modules/path-array/node_modules/array-index/node_modules/es6-symbol/node_modules/d/package.json\\nnode_modules/npm/node_modules/node-gyp/node_modules/path-array/node_modules/array-index/node_modules/es6-symbol/node_modules/es5-ext/node_modules/es6-iterator/package.json\\nnode_modules/npm/node_modules/node-gyp/node_modules/path-array/node_modules/array-index/node_modules/es6-symbol/node_modules/es5-ext/package.json\\nnode_modules/npm/node_modules/node-gyp/node_modules/path-array/node_modules/array-index/node_modules/es6-symbol/package.json\\nnode_modules/npm/node_modules/node-gyp/node_modules/path-array/node_modules/array-index/package.json\\nnode_modules/npm/node_modules/node-gyp/node_modules/path-array/package.json\\nnode_modules/npm/node_modules/node-gyp/package.json\\nnode_modules/npm/node_modules/nopt/package.json\\nnode_modules/npm/node_modules/normalize-git-url/package.json\\nnode_modules/npm/node_modules/normalize-package-data/node_modules/is-builtin-module/node_modules/builtin-modules/package.json\\nnode_modules/npm/node_modules/normalize-package-data/node_modules/is-builtin-module/package.json\\nnode_modules/npm/node_modules/normalize-package-data/package.json\\nnode_modules/npm/node_modules/npm-cache-filename/package.json\\nnode_modules/npm/node_modules/npm-install-checks/package.json\\nnode_modules/npm/node_modules/npm-package-arg/package.json\\nnode_modules/npm/node_modules/npm-registry-client/node_modules/concat-stream/node_modules/readable-stream/node_modules/core-util-is/package.json\\nnode_modules/npm/node_modules/npm-registry-client/node_modules/concat-stream/node_modules/readable-stream/node_modules/isarray/package.json\\nnode_modules/npm/node_modules/npm-registry-client/node_modules/concat-stream/node_modules/readable-stream/node_modules/process-nextick-args/package.json\\nnode_modules/npm/node_modules/npm-registry-client/node_modules/concat-stream/node_modules/readable-stream/node_modules/string_decoder/package.json\\nnode_modules/npm/node_modules/npm-registry-client/node_modules/concat-stream/node_modules/readable-stream/node_modules/util-deprecate/package.json\\nnode_modules/npm/node_modules/npm-registry-client/node_modules/concat-stream/node_modules/readable-stream/package.json\\nnode_modules/npm/node_modules/npm-registry-client/node_modules/concat-stream/node_modules/typedarray/package.json\\nnode_modules/npm/node_modules/npm-registry-client/node_modules/concat-stream/package.json\\nnode_modules/npm/node_modules/npm-registry-client/node_modules/npmlog/node_modules/are-we-there-yet/node_modules/delegates/package.json\\nnode_modules/npm/node_modules/npm-registry-client/node_modules/npmlog/node_modules/are-we-there-yet/package.json\\nnode_modules/npm/node_modules/npm-registry-client/node_modules/npmlog/node_modules/console-control-strings/package.json\\nnode_modules/npm/node_modules/npm-registry-client/node_modules/npmlog/node_modules/gauge/node_modules/has-color/package.json\\nnode_modules/npm/node_modules/npm-registry-client/node_modules/npmlog/node_modules/gauge/node_modules/object-assign/package.json\\nnode_modules/npm/node_modules/npm-registry-client/node_modules/npmlog/node_modules/gauge/node_modules/signal-exit/package.json\\nnode_modules/npm/node_modules/npm-registry-client/node_modules/npmlog/node_modules/gauge/node_modules/string-width/node_modules/code-point-at/node_modules/number-is-nan/package.json\\nnode_modules/npm/node_modules/npm-registry-client/node_modules/npmlog/node_modules/gauge/node_modules/string-width/node_modules/code-point-at/package.json\\nnode_modules/npm/node_modules/npm-registry-client/node_modules/npmlog/node_modules/gauge/node_modules/string-width/node_modules/is-fullwidth-code-point/node_modules/number-is-nan/package.json\\nnode_modules/npm/node_modules/npm-registry-client/node_modules/npmlog/node_modules/gauge/node_modules/string-width/node_modules/is-fullwidth-code-point/package.json\\nnode_modules/npm/node_modules/npm-registry-client/node_modules/npmlog/node_modules/gauge/node_modules/string-width/package.json\\nnode_modules/npm/node_modules/npm-registry-client/node_modules/npmlog/node_modules/gauge/node_modules/wide-align/package.json\\nnode_modules/npm/node_modules/npm-registry-client/node_modules/npmlog/node_modules/gauge/package.json\\nnode_modules/npm/node_modules/npm-registry-client/node_modules/npmlog/node_modules/set-blocking/package.json\\nnode_modules/npm/node_modules/npm-registry-client/node_modules/npmlog/package.json\\nnode_modules/npm/node_modules/npm-registry-client/node_modules/retry/package.json\\nnode_modules/npm/node_modules/npm-registry-client/package.json\\nnode_modules/npm/node_modules/npm-user-validate/package.json\\nnode_modules/npm/node_modules/npmlog/node_modules/are-we-there-yet/node_modules/delegates/package.json\\nnode_modules/npm/node_modules/npmlog/node_modules/are-we-there-yet/package.json\\nnode_modules/npm/node_modules/npmlog/node_modules/console-control-strings/package.json\\nnode_modules/npm/node_modules/npmlog/node_modules/gauge/node_modules/has-color/package.json\\nnode_modules/npm/node_modules/npmlog/node_modules/gauge/node_modules/object-assign/package.json\\nnode_modules/npm/node_modules/npmlog/node_modules/gauge/node_modules/signal-exit/package.json\\nnode_modules/npm/node_modules/npmlog/node_modules/gauge/node_modules/string-width/node_modules/code-point-at/node_modules/number-is-nan/package.json\\nnode_modules/npm/node_modules/npmlog/node_modules/gauge/node_modules/string-width/node_modules/code-point-at/package.json\\nnode_modules/npm/node_modules/npmlog/node_modules/gauge/node_modules/string-width/node_modules/is-fullwidth-code-point/node_modules/number-is-nan/package.json\\nnode_modules/npm/node_modules/npmlog/node_modules/gauge/node_modules/string-width/node_modules/is-fullwidth-code-point/package.json\\nnode_modules/npm/node_modules/npmlog/node_modules/gauge/node_modules/string-width/package.json\\nnode_modules/npm/node_modules/npmlog/node_modules/gauge/node_modules/wide-align/package.json\\nnode_modules/npm/node_modules/npmlog/node_modules/gauge/package.json\\nnode_modules/npm/node_modules/npmlog/node_modules/set-blocking/package.json\\nnode_modules/npm/node_modules/npmlog/package.json\\nnode_modules/npm/node_modules/once/package.json\\nnode_modules/npm/node_modules/opener/package.json\\nnode_modules/npm/node_modules/osenv/node_modules/os-homedir/package.json\\nnode_modules/npm/node_modules/osenv/node_modules/os-tmpdir/package.json\\nnode_modules/npm/node_modules/osenv/package.json\\nnode_modules/npm/node_modules/path-is-inside/package.json\\nnode_modules/npm/node_modules/read-cmd-shim/package.json\\nnode_modules/npm/node_modules/read-installed/node_modules/util-extend/package.json\\nnode_modules/npm/node_modules/read-installed/package.json\\nnode_modules/npm/node_modules/read-installed/test/fixtures/extraneous-detected/package.json\\nnode_modules/npm/node_modules/read-installed/test/fixtures/extraneous-dev-dep/package.json\\nnode_modules/npm/node_modules/read-installed/test/fixtures/grandparent-peer-dev/package.json\\nnode_modules/npm/node_modules/read-installed/test/fixtures/grandparent-peer/package.json\\nnode_modules/npm/node_modules/read-installed/test/fixtures/package.json\\nnode_modules/npm/node_modules/read-package-json/node_modules/glob/node_modules/minimatch/node_modules/brace-expansion/node_modules/balanced-match/package.json\\nnode_modules/npm/node_modules/read-package-json/node_modules/glob/node_modules/minimatch/node_modules/brace-expansion/node_modules/concat-map/package.json\\nnode_modules/npm/node_modules/read-package-json/node_modules/glob/node_modules/minimatch/node_modules/brace-expansion/package.json\\nnode_modules/npm/node_modules/read-package-json/node_modules/glob/node_modules/minimatch/package.json\\nnode_modules/npm/node_modules/read-package-json/node_modules/glob/node_modules/path-is-absolute/package.json\\nnode_modules/npm/node_modules/read-package-json/node_modules/glob/package.json\\nnode_modules/npm/node_modules/read-package-json/node_modules/json-parse-helpfulerror/node_modules/jju/package.json\\nnode_modules/npm/node_modules/read-package-json/node_modules/json-parse-helpfulerror/package.json\\nnode_modules/npm/node_modules/read-package-json/package.json\\nnode_modules/npm/node_modules/read-package-json/test/fixtures/readmes/package.json\\nnode_modules/npm/node_modules/read-package-tree/package.json\\nnode_modules/npm/node_modules/read/node_modules/mute-stream/package.json\\nnode_modules/npm/node_modules/read/package.json\\nnode_modules/npm/node_modules/readable-stream/node_modules/buffer-shims/package.json\\nnode_modules/npm/node_modules/readable-stream/node_modules/core-util-is/package.json\\nnode_modules/npm/node_modules/readable-stream/node_modules/isarray/package.json\\nnode_modules/npm/node_modules/readable-stream/node_modules/process-nextick-args/package.json\\nnode_modules/npm/node_modules/readable-stream/node_modules/string_decoder/package.json\\nnode_modules/npm/node_modules/readable-stream/node_modules/util-deprecate/package.json\\nnode_modules/npm/node_modules/readable-stream/package.json\\nnode_modules/npm/node_modules/readdir-scoped-modules/package.json\\nnode_modules/npm/node_modules/realize-package-specifier/package.json\\nnode_modules/npm/node_modules/request/node_modules/aws-sign2/package.json\\nnode_modules/npm/node_modules/request/node_modules/aws4/package.json\\nnode_modules/npm/node_modules/request/node_modules/bl/node_modules/readable-stream/node_modules/core-util-is/package.json\\nnode_modules/npm/node_modules/request/node_modules/bl/node_modules/readable-stream/node_modules/isarray/package.json\\nnode_modules/npm/node_modules/request/node_modules/bl/node_modules/readable-stream/node_modules/process-nextick-args/package.json\\nnode_modules/npm/node_modules/request/node_modules/bl/node_modules/readable-stream/node_modules/string_decoder/package.json\\nnode_modules/npm/node_modules/request/node_modules/bl/node_modules/readable-stream/node_modules/util-deprecate/package.json\\nnode_modules/npm/node_modules/request/node_modules/bl/node_modules/readable-stream/package.json\\nnode_modules/npm/node_modules/request/node_modules/bl/package.json\\nnode_modules/npm/node_modules/request/node_modules/caseless/package.json\\nnode_modules/npm/node_modules/request/node_modules/combined-stream/node_modules/delayed-stream/package.json\\nnode_modules/npm/node_modules/request/node_modules/combined-stream/package.json\\nnode_modules/npm/node_modules/request/node_modules/extend/package.json\\nnode_modules/npm/node_modules/request/node_modules/forever-agent/package.json\\nnode_modules/npm/node_modules/request/node_modules/form-data/node_modules/asynckit/package.json\\nnode_modules/npm/node_modules/request/node_modules/form-data/package.json\\nnode_modules/npm/node_modules/request/node_modules/har-validator/node_modules/chalk/node_modules/ansi-styles/package.json\\nnode_modules/npm/node_modules/request/node_modules/har-validator/node_modules/chalk/node_modules/escape-string-regexp/package.json\\nnode_modules/npm/node_modules/request/node_modules/har-validator/node_modules/chalk/node_modules/has-ansi/package.json\\nnode_modules/npm/node_modules/request/node_modules/har-validator/node_modules/chalk/node_modules/supports-color/package.json\\nnode_modules/npm/node_modules/request/node_modules/har-validator/node_modules/chalk/package.json\\nnode_modules/npm/node_modules/request/node_modules/har-validator/node_modules/commander/node_modules/graceful-readlink/package.json\\nnode_modules/npm/node_modules/request/node_modules/har-validator/node_modules/commander/package.json\\nnode_modules/npm/node_modules/request/node_modules/har-validator/node_modules/is-my-json-valid/node_modules/generate-function/package.json\\nnode_modules/npm/node_modules/request/node_modules/har-validator/node_modules/is-my-json-valid/node_modules/generate-object-property/node_modules/is-property/package.json\\nnode_modules/npm/node_modules/request/node_modules/har-validator/node_modules/is-my-json-valid/node_modules/generate-object-property/package.json\\nnode_modules/npm/node_modules/request/node_modules/har-validator/node_modules/is-my-json-valid/node_modules/jsonpointer/package.json\\nnode_modules/npm/node_modules/request/node_modules/har-validator/node_modules/is-my-json-valid/node_modules/xtend/package.json\\nnode_modules/npm/node_modules/request/node_modules/har-validator/node_modules/is-my-json-valid/package.json\\nnode_modules/npm/node_modules/request/node_modules/har-validator/node_modules/pinkie-promise/node_modules/pinkie/package.json\\nnode_modules/npm/node_modules/request/node_modules/har-validator/node_modules/pinkie-promise/package.json\\nnode_modules/npm/node_modules/request/node_modules/har-validator/package.json\\nnode_modules/npm/node_modules/request/node_modules/hawk/node_modules/boom/package.json\\nnode_modules/npm/node_modules/request/node_modules/hawk/node_modules/cryptiles/package.json\\nnode_modules/npm/node_modules/request/node_modules/hawk/node_modules/hoek/package.json\\nnode_modules/npm/node_modules/request/node_modules/hawk/node_modules/sntp/package.json\\nnode_modules/npm/node_modules/request/node_modules/hawk/package.json\\nnode_modules/npm/node_modules/request/node_modules/http-signature/node_modules/assert-plus/package.json\\nnode_modules/npm/node_modules/request/node_modules/http-signature/node_modules/jsprim/node_modules/extsprintf/package.json\\nnode_modules/npm/node_modules/request/node_modules/http-signature/node_modules/jsprim/node_modules/json-schema/package.json\\nnode_modules/npm/node_modules/request/node_modules/http-signature/node_modules/jsprim/node_modules/verror/package.json\\nnode_modules/npm/node_modules/request/node_modules/http-signature/node_modules/jsprim/package.json\\nnode_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/asn1/package.json\\nnode_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/assert-plus/package.json\\nnode_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/bcrypt-pbkdf/package.json\\nnode_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/dashdash/package.json\\nnode_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/ecc-jsbn/package.json\\nnode_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/getpass/package.json\\nnode_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/jodid25519/package.json\\nnode_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/jsbn/package.json\\nnode_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/tweetnacl/package.json\\nnode_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/package.json\\nnode_modules/npm/node_modules/request/node_modules/http-signature/package.json\\nnode_modules/npm/node_modules/request/node_modules/is-typedarray/package.json\\nnode_modules/npm/node_modules/request/node_modules/isstream/package.json\\nnode_modules/npm/node_modules/request/node_modules/json-stringify-safe/package.json\\nnode_modules/npm/node_modules/request/node_modules/mime-types/node_modules/mime-db/package.json\\nnode_modules/npm/node_modules/request/node_modules/mime-types/package.json\\nnode_modules/npm/node_modules/request/node_modules/node-uuid/package.json\\nnode_modules/npm/node_modules/request/node_modules/oauth-sign/package.json\\nnode_modules/npm/node_modules/request/node_modules/qs/package.json\\nnode_modules/npm/node_modules/request/node_modules/stringstream/package.json\\nnode_modules/npm/node_modules/request/node_modules/tough-cookie/package.json\\nnode_modules/npm/node_modules/request/node_modules/tunnel-agent/package.json\\nnode_modules/npm/node_modules/request/package.json\\nnode_modules/npm/node_modules/retry/package.json\\nnode_modules/npm/node_modules/rimraf/package.json\\nnode_modules/npm/node_modules/semver/package.json\\nnode_modules/npm/node_modules/sha/package.json\\nnode_modules/npm/node_modules/slide/package.json\\nnode_modules/npm/node_modules/sorted-object/package.json\\nnode_modules/npm/node_modules/strip-ansi/package.json\\nnode_modules/npm/node_modules/tar/node_modules/block-stream/package.json\\nnode_modules/npm/node_modules/tar/package.json\\nnode_modules/npm/node_modules/text-table/package.json\\nnode_modules/npm/node_modules/uid-number/package.json\\nnode_modules/npm/node_modules/umask/package.json\\nnode_modules/npm/node_modules/unique-filename/node_modules/unique-slug/package.json\\nnode_modules/npm/node_modules/unique-filename/package.json\\nnode_modules/npm/node_modules/unpipe/package.json\\nnode_modules/npm/node_modules/validate-npm-package-license/node_modules/spdx-correct/node_modules/spdx-license-ids/package.json\\nnode_modules/npm/node_modules/validate-npm-package-license/node_modules/spdx-correct/package.json\\nnode_modules/npm/node_modules/validate-npm-package-license/node_modules/spdx-expression-parse/node_modules/spdx-exceptions/package.json\\nnode_modules/npm/node_modules/validate-npm-package-license/node_modules/spdx-expression-parse/node_modules/spdx-license-ids/package.json\\nnode_modules/npm/node_modules/validate-npm-package-license/node_modules/spdx-expression-parse/package.json\\nnode_modules/npm/node_modules/validate-npm-package-license/package.json\\nnode_modules/npm/node_modules/validate-npm-package-name/node_modules/builtins/package.json\\nnode_modules/npm/node_modules/validate-npm-package-name/package.json\\nnode_modules/npm/node_modules/which/node_modules/isexe/package.json\\nnode_modules/npm/node_modules/which/package.json\\nnode_modules/npm/node_modules/wrappy/package.json\\nnode_modules/npm/node_modules/write-file-atomic/package.json\\nnode_modules/npm/package.json\\nnode_modules/number-is-nan/package.json\\nnode_modules/object-assign/package.json\\nnode_modules/object-copy/node_modules/define-property/package.json\\nnode_modules/object-copy/node_modules/is-descriptor/package.json\\nnode_modules/object-copy/package.json\\nnode_modules/object-inspect/package.json\\nnode_modules/object-is/package.json\\nnode_modules/object-keys/package.json\\nnode_modules/object-visit/node_modules/isobject/package.json\\nnode_modules/object-visit/package.json\\nnode_modules/object.assign/package.json\\nnode_modules/object.entries/package.json\\nnode_modules/object.fromentries/package.json\\nnode_modules/object.getownpropertydescriptors/package.json\\nnode_modules/object.omit/package.json\\nnode_modules/object.pick/node_modules/isobject/package.json\\nnode_modules/object.pick/package.json\\nnode_modules/object.values/package.json\\nnode_modules/once/package.json\\nnode_modules/onetime/package.json\\nnode_modules/optionator/package.json\\nnode_modules/os-homedir/package.json\\nnode_modules/os-tmpdir/package.json\\nnode_modules/output-file-sync/package.json\\nnode_modules/own-keys/package.json\\nnode_modules/parse-glob/package.json\\nnode_modules/pascalcase/package.json\\nnode_modules/path-is-absolute/package.json\\nnode_modules/path-is-inside/package.json\\nnode_modules/path-parse/package.json\\nnode_modules/pkg-config/package.json\\nnode_modules/pluralize/package.json\\nnode_modules/posix-character-classes/package.json\\nnode_modules/possible-typed-array-names/package.json\\nnode_modules/prelude-ls/package.json\\nnode_modules/preserve/package.json\\nnode_modules/private/package.json\\nnode_modules/process-nextick-args/package.json\\nnode_modules/progress/package.json\\nnode_modules/promise.prototype.finally/package.json\\nnode_modules/queue-microtask/package.json\\nnode_modules/randomatic/node_modules/is-number/package.json\\nnode_modules/randomatic/node_modules/kind-of/package.json\\nnode_modules/randomatic/package.json\\nnode_modules/readable-stream/package.json\\nnode_modules/readdirp/node_modules/arr-diff/package.json\\nnode_modules/readdirp/node_modules/array-unique/package.json\\nnode_modules/readdirp/node_modules/braces/node_modules/extend-shallow/package.json\\nnode_modules/readdirp/node_modules/braces/package.json\\nnode_modules/readdirp/node_modules/expand-brackets/node_modules/define-property/package.json\\nnode_modules/readdirp/node_modules/expand-brackets/node_modules/extend-shallow/package.json\\nnode_modules/readdirp/node_modules/expand-brackets/node_modules/is-descriptor/package.json\\nnode_modules/readdirp/node_modules/expand-brackets/package.json\\nnode_modules/readdirp/node_modules/extglob/node_modules/define-property/package.json\\nnode_modules/readdirp/node_modules/extglob/node_modules/extend-shallow/package.json\\nnode_modules/readdirp/node_modules/extglob/package.json\\nnode_modules/readdirp/node_modules/fill-range/node_modules/extend-shallow/package.json\\nnode_modules/readdirp/node_modules/fill-range/package.json\\nnode_modules/readdirp/node_modules/is-number/node_modules/kind-of/package.json\\nnode_modules/readdirp/node_modules/is-number/package.json\\nnode_modules/readdirp/node_modules/isobject/package.json\\nnode_modules/readdirp/node_modules/kind-of/package.json\\nnode_modules/readdirp/node_modules/micromatch/package.json\\nnode_modules/readdirp/package.json\\nnode_modules/readline2/package.json\\nnode_modules/reflect.getprototypeof/package.json\\nnode_modules/regenerate/package.json\\nnode_modules/regenerator-runtime/package.json\\nnode_modules/regenerator-transform/package.json\\nnode_modules/regex-cache/package.json\\nnode_modules/regex-not/package.json\\nnode_modules/regexp.prototype.flags/package.json\\nnode_modules/regexpu-core/package.json\\nnode_modules/regjsgen/package.json\\nnode_modules/regjsparser/node_modules/jsesc/package.json\\nnode_modules/regjsparser/package.json\\nnode_modules/remove-trailing-separator/package.json\\nnode_modules/repeat-element/package.json\\nnode_modules/repeat-string/package.json\\nnode_modules/repeating/package.json\\nnode_modules/require-uncached/package.json\\nnode_modules/resolve-from/package.json\\nnode_modules/resolve-url/package.json\\nnode_modules/resolve/package.json\\nnode_modules/resolve/test/resolver/baz/package.json\\nnode_modules/resolve/test/resolver/browser_field/package.json\\nnode_modules/resolve/test/resolver/false_main/package.json\\nnode_modules/resolve/test/resolver/invalid_main/package.json\\nnode_modules/resolve/test/resolver/multirepo/package.json\\nnode_modules/resolve/test/resolver/multirepo/packages/package-a/package.json\\nnode_modules/resolve/test/resolver/multirepo/packages/package-b/package.json\\nnode_modules/resolve/test/resolver/nested_symlinks/mylib/package.json\\nnode_modules/restore-cursor/package.json\\nnode_modules/resumer/package.json\\nnode_modules/ret/package.json\\nnode_modules/rimraf/package.json\\nnode_modules/run-async/package.json\\nnode_modules/run-parallel/package.json\\nnode_modules/rx-lite/package.json\\nnode_modules/safe-array-concat/node_modules/isarray/package.json\\nnode_modules/safe-array-concat/package.json\\nnode_modules/safe-buffer/package.json\\nnode_modules/safe-push-apply/node_modules/isarray/package.json\\nnode_modules/safe-push-apply/package.json\\nnode_modules/safe-regex-test/package.json\\nnode_modules/safe-regex/package.json\\nnode_modules/semver/package.json\\nnode_modules/set-function-length/package.json\\nnode_modules/set-function-name/package.json\\nnode_modules/set-proto/package.json\\nnode_modules/set-value/node_modules/extend-shallow/package.json\\nnode_modules/set-value/package.json\\nnode_modules/shelljs/package.json\\nnode_modules/side-channel-list/package.json\\nnode_modules/side-channel-map/package.json\\nnode_modules/side-channel-weakmap/package.json\\nnode_modules/side-channel/package.json\\nnode_modules/slash/package.json\\nnode_modules/slice-ansi/package.json\\nnode_modules/snapdragon-node/node_modules/define-property/package.json\\nnode_modules/snapdragon-node/node_modules/isobject/package.json\\nnode_modules/snapdragon-node/package.json\\nnode_modules/snapdragon-util/package.json\\nnode_modules/snapdragon/node_modules/define-property/package.json\\nnode_modules/snapdragon/node_modules/extend-shallow/package.json\\nnode_modules/snapdragon/node_modules/is-descriptor/package.json\\nnode_modules/snapdragon/package.json\\nnode_modules/source-map-resolve/package.json\\nnode_modules/source-map-support/package.json\\nnode_modules/source-map-url/package.json\\nnode_modules/source-map/package.json\\nnode_modules/split-string/package.json\\nnode_modules/sprintf-js/package.json\\nnode_modules/sprintf/package.json\\nnode_modules/standard-engine/node_modules/minimist/package.json\\nnode_modules/standard-engine/package.json\\nnode_modules/standard/package.json\\nnode_modules/static-extend/node_modules/define-property/package.json\\nnode_modules/static-extend/node_modules/is-descriptor/package.json\\nnode_modules/static-extend/package.json\\nnode_modules/stop-iteration-iterator/package.json\\nnode_modules/string-width/package.json\\nnode_modules/string.prototype.matchall/package.json\\nnode_modules/string.prototype.padend/package.json\\nnode_modules/string.prototype.padstart/package.json\\nnode_modules/string.prototype.trim/package.json\\nnode_modules/string.prototype.trimend/package.json\\nnode_modules/string.prototype.trimstart/package.json\\nnode_modules/string_decoder/package.json\\nnode_modules/strip-ansi/package.json\\nnode_modules/strip-indent/node_modules/get-stdin/package.json\\nnode_modules/strip-indent/package.json\\nnode_modules/strip-json-comments/package.json\\nnode_modules/supports-color/package.json\\nnode_modules/supports-preserve-symlinks-flag/package.json\\nnode_modules/symbol.prototype.description/package.json\\nnode_modules/table/node_modules/ansi-regex/package.json\\nnode_modules/table/node_modules/is-fullwidth-code-point/package.json\\nnode_modules/table/node_modules/string-width/package.json\\nnode_modules/table/node_modules/strip-ansi/package.json\\nnode_modules/table/package.json\\nnode_modules/tap-parser/node_modules/isarray/package.json\\nnode_modules/tap-parser/node_modules/readable-stream/package.json\\nnode_modules/tap-parser/node_modules/string_decoder/package.json\\nnode_modules/tap-parser/package.json\\nnode_modules/tape/node_modules/defined/package.json\\nnode_modules/tape/node_modules/is-regex/package.json\\nnode_modules/tape/node_modules/minimist/package.json\\nnode_modules/tape/node_modules/object-inspect/package.json\\nnode_modules/tape/package.json\\nnode_modules/text-table/package.json\\nnode_modules/through/package.json\\nnode_modules/through2/node_modules/isarray/package.json\\nnode_modules/through2/node_modules/object-keys/package.json\\nnode_modules/through2/node_modules/readable-stream/package.json\\nnode_modules/through2/node_modules/string_decoder/package.json\\nnode_modules/through2/node_modules/xtend/package.json\\nnode_modules/through2/package.json\\nnode_modules/to-fast-properties/package.json\\nnode_modules/to-object-path/package.json\\nnode_modules/to-regex-range/node_modules/is-number/package.json\\nnode_modules/to-regex-range/package.json\\nnode_modules/to-regex/package.json\\nnode_modules/trim-right/package.json\\nnode_modules/type-check/package.json\\nnode_modules/type/package.json\\nnode_modules/typed-array-buffer/package.json\\nnode_modules/typed-array-byte-length/package.json\\nnode_modules/typed-array-byte-offset/package.json\\nnode_modules/typed-array-length/package.json\\nnode_modules/typedarray/package.json\\nnode_modules/unbox-primitive/package.json\\nnode_modules/union-value/package.json\\nnode_modules/uniq/package.json\\nnode_modules/unset-value/node_modules/has-value/node_modules/isobject/package.json\\nnode_modules/unset-value/node_modules/has-value/package.json\\nnode_modules/unset-value/node_modules/has-values/package.json\\nnode_modules/unset-value/node_modules/isobject/package.json\\nnode_modules/unset-value/package.json\\nnode_modules/urix/package.json\\nnode_modules/use/package.json\\nnode_modules/user-home/package.json\\nnode_modules/util-deprecate/package.json\\nnode_modules/v8flags/node_modules/user-home/package.json\\nnode_modules/v8flags/package.json\\nnode_modules/which-boxed-primitive/package.json\\nnode_modules/which-builtin-type/node_modules/isarray/package.json\\nnode_modules/which-builtin-type/package.json\\nnode_modules/which-collection/package.json\\nnode_modules/which-typed-array/package.json\\nnode_modules/which/package.json\\nnode_modules/word-wrap/package.json\\nnode_modules/wrappy/package.json\\nnode_modules/write/package.json\\nnode_modules/xtend/package.json"
      }
    ]
  },
  "components": [
    {
      "authors": [
        {
          "name": "Raynos <raynos2@gmail.com>"
        }
      ],
      "group": "",
      "name": "xtend",
      "version": "4.0.2",
      "description": "extend like a boss",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/xtend@4.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/Raynos/xtend"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/xtend@4.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/xtend/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/xtend/package.json"
              }
            ],
            "concludedValue": "node_modules/xtend/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "write",
      "version": "0.2.1",
      "description": "Write files to disk, creating intermediate directories if they don't exist.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/write@0.2.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/write"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/write@0.2.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/write/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/write/package.json"
              }
            ],
            "concludedValue": "node_modules/write/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "wrappy",
      "version": "1.0.2",
      "description": "Callback wrapping utility",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/wrappy@1.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/npm/wrappy"
        },
        {
          "type": "vcs",
          "url": "https://github.com/npm/wrappy"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/wrappy@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/wrappy/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/wrappy/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/wrappy/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/wrappy/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "word-wrap",
      "version": "1.2.5",
      "description": "Wrap words to a specified length.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/word-wrap@1.2.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/word-wrap"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/word-wrap@1.2.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/word-wrap/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/word-wrap/package.json"
              }
            ],
            "concludedValue": "node_modules/word-wrap/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com> (http://ljharb.codes)"
        }
      ],
      "group": "",
      "name": "which-typed-array",
      "version": "1.1.20",
      "description": "Which kind of Typed Array is this JavaScript value? Works cross-realm, without `instanceof`, and despite Symbol.toStringTag.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/which-typed-array@1.1.20",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/inspect-js/which-typed-array.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/which-typed-array@1.1.20",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/which-typed-array/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/which-typed-array/package.json"
              }
            ],
            "concludedValue": "node_modules/which-typed-array/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "which-collection",
      "version": "1.0.2",
      "description": "Which kind of Collection (Map, Set, WeakMap, WeakSet) is this JavaScript value? Works cross-realm, without `instanceof`, and despite Symbol.toStringTag.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/which-collection@1.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/which-collection#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/which-collection.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/which-collection@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/which-collection/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/which-collection/package.json"
              }
            ],
            "concludedValue": "node_modules/which-collection/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "which-builtin-type",
      "version": "1.2.1",
      "description": "What is the type of this builtin JS value?",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/which-builtin-type@1.2.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/which-builtin-type#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/which-builtin-type.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/which-builtin-type@1.2.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/which-builtin-type/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/which-builtin-type/package.json"
              }
            ],
            "concludedValue": "node_modules/which-builtin-type/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Julian Gruber <mail@juliangruber.com> (http://juliangruber.com)"
        }
      ],
      "group": "",
      "name": "isarray",
      "version": "2.0.5",
      "description": "Array#isArray for older browsers",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/isarray@2.0.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/juliangruber/isarray"
        },
        {
          "type": "vcs",
          "url": "git://github.com/juliangruber/isarray.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/isarray@2.0.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/which-builtin-type/node_modules/isarray/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/safe-push-apply/node_modules/isarray/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/safe-array-concat/node_modules/isarray/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/mock-property/node_modules/isarray/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/json-stable-stringify/node_modules/isarray/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/json-stable-stringify/node_modules/isarray/package.json"
              }
            ],
            "concludedValue": "node_modules/json-stable-stringify/node_modules/isarray/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "which-boxed-primitive",
      "version": "1.1.1",
      "description": "Which kind of boxed JS primitive is this?",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/which-boxed-primitive@1.1.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/which-boxed-primitive#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/which-boxed-primitive.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/which-boxed-primitive@1.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/which-boxed-primitive/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/which-boxed-primitive/package.json"
              }
            ],
            "concludedValue": "node_modules/which-boxed-primitive/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me)"
        }
      ],
      "group": "",
      "name": "which",
      "version": "1.3.1",
      "description": "Like which(1) unix command. Find the first instance of an executable in the PATH.",
      "scope": "required",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/which@1.3.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/isaacs/node-which.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/which@1.3.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/which/package.json"
        },
        {
          "name": "ImportedModules",
          "value": "which"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/which/package.json"
              }
            ],
            "concludedValue": "node_modules/which/package.json"
          }
        ],
        "occurrences": [
          {
            "location": "build-test/index.js#9"
          },
          {
            "location": "index.js#7"
          },
          {
            "location": "src/index.js#5"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Tyler Kellen (http://goingslowly.com/)"
        }
      ],
      "group": "",
      "name": "v8flags",
      "version": "2.1.1",
      "description": "Get available v8 flags.",
      "scope": "optional",
      "purl": "pkg:npm/v8flags@2.1.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/tkellen/node-v8flags"
        },
        {
          "type": "vcs",
          "url": "git://github.com/tkellen/node-v8flags.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/v8flags@2.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/v8flags/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/v8flags/package.json"
              }
            ],
            "concludedValue": "node_modules/v8flags/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (http://sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "user-home",
      "version": "1.1.1",
      "description": "Get the path to the user home directory",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/user-home@1.1.1",
      "type": "library",
      "bom-ref": "pkg:npm/user-home@1.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/v8flags/node_modules/user-home/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/v8flags/node_modules/user-home/package.json"
              }
            ],
            "concludedValue": "node_modules/v8flags/node_modules/user-home/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Nathan Rajlich <nathan@tootallnate.net> (http://n8.io/)"
        }
      ],
      "group": "",
      "name": "util-deprecate",
      "version": "1.0.2",
      "description": "The Node.js `util.deprecate()` function with browser support",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/util-deprecate@1.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/TooTallNate/util-deprecate"
        },
        {
          "type": "vcs",
          "url": "git://github.com/TooTallNate/util-deprecate.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/util-deprecate@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/util-deprecate/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/bl/node_modules/readable-stream/node_modules/util-deprecate/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/readable-stream/node_modules/util-deprecate/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npm-registry-client/node_modules/concat-stream/node_modules/readable-stream/node_modules/util-deprecate/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/npm-registry-client/node_modules/concat-stream/node_modules/readable-stream/node_modules/util-deprecate/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/npm-registry-client/node_modules/concat-stream/node_modules/readable-stream/node_modules/util-deprecate/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "user-home",
      "version": "2.0.0",
      "description": "Get the path to the user home directory",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/user-home@2.0.0",
      "type": "library",
      "bom-ref": "pkg:npm/user-home@2.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/user-home/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/user-home/package.json"
              }
            ],
            "concludedValue": "node_modules/user-home/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "use",
      "version": "3.1.1",
      "description": "Easily add plugin support to your node.js application.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/use@3.1.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/use"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/use@3.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/use/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/use/package.json"
              }
            ],
            "concludedValue": "node_modules/use/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Simon Lydell"
        }
      ],
      "group": "",
      "name": "urix",
      "version": "0.1.0",
      "description": "Makes Windows-style paths more unix and URI friendly.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/urix@0.1.0",
      "type": "library",
      "bom-ref": "pkg:npm/urix@0.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/urix/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/urix/package.json"
              }
            ],
            "concludedValue": "node_modules/urix/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "unset-value",
      "version": "1.0.0",
      "description": "Delete nested properties from an object using dot notation.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/unset-value@1.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/unset-value"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/unset-value@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/unset-value/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/unset-value/package.json"
              }
            ],
            "concludedValue": "node_modules/unset-value/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "isobject",
      "version": "3.0.1",
      "description": "Returns true if the value is an object and not an array or null.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/isobject@3.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/isobject"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/isobject@3.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/unset-value/node_modules/isobject/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/snapdragon-node/node_modules/isobject/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/readdirp/node_modules/isobject/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/object.pick/node_modules/isobject/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/object-visit/node_modules/isobject/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/is-plain-object/node_modules/isobject/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/has-value/node_modules/isobject/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/define-property/node_modules/isobject/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/class-utils/node_modules/isobject/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/cache-base/node_modules/isobject/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/base/node_modules/isobject/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/base/node_modules/isobject/package.json"
              }
            ],
            "concludedValue": "node_modules/base/node_modules/isobject/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "has-values",
      "version": "0.1.4",
      "description": "Returns true if any values exist, false if empty. Works for booleans, functions, numbers, strings, nulls, objects and arrays. ",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/has-values@0.1.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/has-values"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/has-values@0.1.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/unset-value/node_modules/has-values/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/unset-value/node_modules/has-values/package.json"
              }
            ],
            "concludedValue": "node_modules/unset-value/node_modules/has-values/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "has-value",
      "version": "0.3.1",
      "description": "Returns true if a value exists, false if empty. Works with deeply nested values using object paths.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/has-value@0.3.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/has-value"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/has-value@0.3.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/unset-value/node_modules/has-value/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/unset-value/node_modules/has-value/package.json"
              }
            ],
            "concludedValue": "node_modules/unset-value/node_modules/has-value/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "isobject",
      "version": "2.1.0",
      "description": "Returns true if the value is an object and not an array or null.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/isobject@2.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/isobject"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/isobject@2.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/unset-value/node_modules/has-value/node_modules/isobject/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/isobject/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/isobject/package.json"
              }
            ],
            "concludedValue": "node_modules/isobject/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mikola Lysenko"
        }
      ],
      "group": "",
      "name": "uniq",
      "version": "1.0.1",
      "description": "Removes duplicates from a sorted array in place",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/uniq@1.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/mikolalysenko/uniq.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/uniq@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/uniq/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/uniq/package.json"
              }
            ],
            "concludedValue": "node_modules/uniq/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "union-value",
      "version": "1.0.1",
      "description": "Set an array of unique values as the property of an object. Supports setting deeply nested properties using using object-paths/dot notation.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/union-value@1.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/union-value"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/union-value@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/union-value/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/union-value/package.json"
              }
            ],
            "concludedValue": "node_modules/union-value/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "unbox-primitive",
      "version": "1.1.0",
      "description": "Unbox a boxed JS primitive value.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/unbox-primitive@1.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/unbox-primitive#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/unbox-primitive.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/unbox-primitive@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/unbox-primitive/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/unbox-primitive/package.json"
              }
            ],
            "concludedValue": "node_modules/unbox-primitive/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "James Halliday <mail@substack.net> (http://substack.net)"
        }
      ],
      "group": "",
      "name": "typedarray",
      "version": "0.0.6",
      "description": "TypedArray polyfill for old browsers",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/typedarray@0.0.6",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/substack/typedarray"
        },
        {
          "type": "vcs",
          "url": "git://github.com/substack/typedarray.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/typedarray@0.0.6",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/typedarray/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npm-registry-client/node_modules/concat-stream/node_modules/typedarray/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/npm-registry-client/node_modules/concat-stream/node_modules/typedarray/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/npm-registry-client/node_modules/concat-stream/node_modules/typedarray/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "typed-array-length",
      "version": "1.0.7",
      "description": "Robustly get the length of a Typed Array",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/typed-array-length@1.0.7",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/typed-array-length#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/typed-array-length.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/typed-array-length@1.0.7",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/typed-array-length/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/typed-array-length/package.json"
              }
            ],
            "concludedValue": "node_modules/typed-array-length/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "typed-array-byte-offset",
      "version": "1.0.4",
      "description": "Robustly get the byte offset of a Typed Array",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/typed-array-byte-offset@1.0.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/typed-array-byte-offset#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/typed-array-byte-offset.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/typed-array-byte-offset@1.0.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/typed-array-byte-offset/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/typed-array-byte-offset/package.json"
              }
            ],
            "concludedValue": "node_modules/typed-array-byte-offset/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "typed-array-byte-length",
      "version": "1.0.3",
      "description": "Robustly get the byte length of a Typed Array",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/typed-array-byte-length@1.0.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/typed-array-byte-length#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/typed-array-byte-length.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/typed-array-byte-length@1.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/typed-array-byte-length/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/typed-array-byte-length/package.json"
              }
            ],
            "concludedValue": "node_modules/typed-array-byte-length/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "typed-array-buffer",
      "version": "1.0.3",
      "description": "Get the ArrayBuffer out of a TypedArray, robustly.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/typed-array-buffer@1.0.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/typed-array-buffer#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/typed-array-buffer.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/typed-array-buffer@1.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/typed-array-buffer/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/typed-array-buffer/package.json"
              }
            ],
            "concludedValue": "node_modules/typed-array-buffer/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "George Zahariev <z@georgezahariev.com>"
        }
      ],
      "group": "",
      "name": "type-check",
      "version": "0.3.2",
      "description": "type-check allows you to check the types of JavaScript values at runtime with a Haskell like type syntax.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/type-check@0.3.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/gkz/type-check"
        },
        {
          "type": "vcs",
          "url": "git://github.com/gkz/type-check.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/type-check@0.3.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/type-check/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/type-check/package.json"
              }
            ],
            "concludedValue": "node_modules/type-check/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mariusz Nowak <medyk@medikoo.com> (https://www.medikoo.com/)"
        }
      ],
      "group": "",
      "name": "type",
      "version": "2.7.3",
      "description": "Runtime validation and processing of JavaScript types",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/type@2.7.3",
      "type": "library",
      "bom-ref": "pkg:npm/type@2.7.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/type/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/type/package.json"
              }
            ],
            "concludedValue": "node_modules/type/package.json"
          }
        ]
      },
      "tags": [
        "validation"
      ]
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "trim-right",
      "version": "1.0.1",
      "description": "Similar to String#trim() but removes only whitespace on the right",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/trim-right@1.0.1",
      "type": "library",
      "bom-ref": "pkg:npm/trim-right@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/trim-right/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/trim-right/package.json"
              }
            ],
            "concludedValue": "node_modules/trim-right/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "to-regex-range",
      "version": "2.1.1",
      "description": "Pass two numbers, get a regex-compatible source string for matching ranges. Validated against more than 2.78 million test assertions.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/to-regex-range@2.1.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/micromatch/to-regex-range"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/to-regex-range@2.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/to-regex-range/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/to-regex-range/package.json"
              }
            ],
            "concludedValue": "node_modules/to-regex-range/package.json"
          }
        ]
      },
      "tags": [
        "test"
      ]
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "is-number",
      "version": "3.0.0",
      "description": "Returns true if the value is a number. comprehensive tests.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-number@3.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/is-number"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-number@3.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/to-regex-range/node_modules/is-number/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/readdirp/node_modules/is-number/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/has-values/node_modules/is-number/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/has-values/node_modules/is-number/package.json"
              }
            ],
            "concludedValue": "node_modules/has-values/node_modules/is-number/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "to-regex",
      "version": "3.0.2",
      "description": "Generate a regex from a string or array of strings.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/to-regex@3.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/to-regex"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/to-regex@3.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/to-regex/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/to-regex/package.json"
              }
            ],
            "concludedValue": "node_modules/to-regex/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "to-object-path",
      "version": "0.3.0",
      "description": "Create an object path from a list or array of strings.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/to-object-path@0.3.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/to-object-path"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/to-object-path@0.3.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/to-object-path/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/to-object-path/package.json"
              }
            ],
            "concludedValue": "node_modules/to-object-path/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "to-fast-properties",
      "version": "1.0.3",
      "description": "Force V8 to use fast properties for an object",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/to-fast-properties@1.0.3",
      "type": "library",
      "bom-ref": "pkg:npm/to-fast-properties@1.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/to-fast-properties/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/to-fast-properties/package.json"
              }
            ],
            "concludedValue": "node_modules/to-fast-properties/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Rod Vagg <r@va.gg> (https://github.com/rvagg)"
        }
      ],
      "group": "",
      "name": "through2",
      "version": "0.2.3",
      "description": "A tiny wrapper around Node streams2 Transform to avoid explicit subclassing noise",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/through2@0.2.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/rvagg/through2.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/through2@0.2.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/through2/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/through2/package.json"
              }
            ],
            "concludedValue": "node_modules/through2/package.json"
          }
        ]
      },
      "tags": [
        "transform"
      ]
    },
    {
      "authors": [
        {
          "name": "Raynos <raynos2@gmail.com>"
        }
      ],
      "group": "",
      "name": "xtend",
      "version": "2.1.2",
      "description": "extend like a boss",
      "scope": "optional",
      "purl": "pkg:npm/xtend@2.1.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/Raynos/xtend"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/xtend@2.1.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/through2/node_modules/xtend/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/through2/node_modules/xtend/package.json"
              }
            ],
            "concludedValue": "node_modules/through2/node_modules/xtend/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "string_decoder",
      "version": "0.10.31",
      "description": "The string_decoder module from Node core",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/string_decoder@0.10.31",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/rvagg/string_decoder"
        },
        {
          "type": "vcs",
          "url": "git://github.com/rvagg/string_decoder.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/string_decoder@0.10.31",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/through2/node_modules/string_decoder/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/tap-parser/node_modules/string_decoder/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/bl/node_modules/readable-stream/node_modules/string_decoder/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/readable-stream/node_modules/string_decoder/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npm-registry-client/node_modules/concat-stream/node_modules/readable-stream/node_modules/string_decoder/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/npm-registry-client/node_modules/concat-stream/node_modules/readable-stream/node_modules/string_decoder/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/npm-registry-client/node_modules/concat-stream/node_modules/readable-stream/node_modules/string_decoder/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "readable-stream",
      "version": "1.1.14",
      "description": "Streams3, a user-land copy of the stream library from Node.js v0.11.x",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/readable-stream@1.1.14",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/isaacs/readable-stream"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/readable-stream@1.1.14",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/through2/node_modules/readable-stream/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/tap-parser/node_modules/readable-stream/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/tap-parser/node_modules/readable-stream/package.json"
              }
            ],
            "concludedValue": "node_modules/tap-parser/node_modules/readable-stream/package.json"
          }
        ]
      },
      "tags": [
        "stream"
      ]
    },
    {
      "authors": [
        {
          "name": "Jordan Harband"
        }
      ],
      "group": "",
      "name": "object-keys",
      "version": "0.4.0",
      "description": "An Object.keys replacement, in case Object.keys is not available. From https://github.com/kriskowal/es5-shim",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/object-keys@0.4.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/ljharb/object-keys.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/object-keys@0.4.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/through2/node_modules/object-keys/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/through2/node_modules/object-keys/package.json"
              }
            ],
            "concludedValue": "node_modules/through2/node_modules/object-keys/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Julian Gruber <mail@juliangruber.com> (http://juliangruber.com)"
        }
      ],
      "group": "",
      "name": "isarray",
      "version": "0.0.1",
      "description": "Array#isArray for older browsers",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/isarray@0.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/juliangruber/isarray"
        },
        {
          "type": "vcs",
          "url": "git://github.com/juliangruber/isarray.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/isarray@0.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/through2/node_modules/isarray/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/tap-parser/node_modules/isarray/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/tap-parser/node_modules/isarray/package.json"
              }
            ],
            "concludedValue": "node_modules/tap-parser/node_modules/isarray/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Dominic Tarr <dominic.tarr@gmail.com> (dominictarr.com)"
        }
      ],
      "group": "",
      "name": "through",
      "version": "2.3.8",
      "description": "simplified stream construction",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/through@2.3.8",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/dominictarr/through"
        },
        {
          "type": "vcs",
          "url": "https://github.com/dominictarr/through.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/through@2.3.8",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/through/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/through/package.json"
              }
            ],
            "concludedValue": "node_modules/through/package.json"
          }
        ]
      },
      "tags": [
        "stream"
      ]
    },
    {
      "authors": [
        {
          "name": "James Halliday <mail@substack.net> (http://substack.net)"
        }
      ],
      "group": "",
      "name": "text-table",
      "version": "0.2.0",
      "description": "borderless text tables with alignment",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/text-table@0.2.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/substack/text-table"
        },
        {
          "type": "vcs",
          "url": "git://github.com/substack/text-table.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/text-table@0.2.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/text-table/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/text-table/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/text-table/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/text-table/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "tape",
      "version": "4.17.0",
      "description": "tap-producing test harness for node and browsers",
      "scope": "required",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/tape@4.17.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/tape"
        },
        {
          "type": "vcs",
          "url": "git://github.com/ljharb/tape.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/tape@4.17.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/tape/package.json"
        },
        {
          "name": "ImportedModules",
          "value": "tape"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/tape/package.json"
              }
            ],
            "concludedValue": "node_modules/tape/package.json"
          }
        ],
        "occurrences": [
          {
            "location": "build-test/index.js#3"
          }
        ]
      },
      "tags": [
        "test"
      ]
    },
    {
      "authors": [
        {
          "name": "James Halliday <mail@substack.net> (http://substack.net)"
        }
      ],
      "group": "",
      "name": "object-inspect",
      "version": "1.12.3",
      "description": "string representations of objects in node and the browser",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/object-inspect@1.12.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/object-inspect"
        },
        {
          "type": "vcs",
          "url": "git://github.com/inspect-js/object-inspect.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/object-inspect@1.12.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/tape/node_modules/object-inspect/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/tape/node_modules/object-inspect/package.json"
              }
            ],
            "concludedValue": "node_modules/tape/node_modules/object-inspect/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "James Halliday <mail@substack.net> (http://substack.net)"
        }
      ],
      "group": "",
      "name": "minimist",
      "version": "1.2.8",
      "description": "parse argument options",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/minimist@1.2.8",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/minimistjs/minimist"
        },
        {
          "type": "vcs",
          "url": "git://github.com/minimistjs/minimist.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/minimist@1.2.8",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/tape/node_modules/minimist/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/standard-engine/node_modules/minimist/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/mkdirp/node_modules/minimist/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/mkdirp/node_modules/minimist/package.json"
              }
            ],
            "concludedValue": "node_modules/mkdirp/node_modules/minimist/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "is-regex",
      "version": "1.1.4",
      "description": "Is this value a JS regex? Works cross-realm/iframe, and despite ES6 @@toStringTag",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-regex@1.1.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/is-regex"
        },
        {
          "type": "vcs",
          "url": "git://github.com/inspect-js/is-regex.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-regex@1.1.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/tape/node_modules/is-regex/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/tape/node_modules/is-regex/package.json"
              }
            ],
            "concludedValue": "node_modules/tape/node_modules/is-regex/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "James Halliday <mail@substack.net> (http://substack.net)"
        }
      ],
      "group": "",
      "name": "defined",
      "version": "1.0.1",
      "description": "return the first argument that is `!== undefined`",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/defined@1.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/defined"
        },
        {
          "type": "vcs",
          "url": "git://github.com/inspect-js/defined.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/defined@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/tape/node_modules/defined/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/tape/node_modules/defined/package.json"
              }
            ],
            "concludedValue": "node_modules/tape/node_modules/defined/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "James Halliday <mail@substack.net> (http://substack.net)"
        }
      ],
      "group": "",
      "name": "tap-parser",
      "version": "0.4.3",
      "description": "parse the test anything protocol",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/tap-parser@0.4.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/substack/tap-parser"
        },
        {
          "type": "vcs",
          "url": "git://github.com/substack/tap-parser.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/tap-parser@0.4.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/tap-parser/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/tap-parser/package.json"
              }
            ],
            "concludedValue": "node_modules/tap-parser/package.json"
          }
        ]
      },
      "tags": [
        "parse",
        "test"
      ]
    },
    {
      "authors": [
        {
          "name": "Gajus Kuizinas <gajus@gajus.com> (http://gajus.com)"
        }
      ],
      "group": "",
      "name": "table",
      "version": "3.8.3",
      "description": "Formats data into a string table.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "BSD-3-Clause",
            "url": "https://opensource.org/licenses/BSD-3-Clause"
          }
        }
      ],
      "purl": "pkg:npm/table@3.8.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/gajus/table"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/table@3.8.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/table/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/table/package.json"
              }
            ],
            "concludedValue": "node_modules/table/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "strip-ansi",
      "version": "4.0.0",
      "description": "Strip ANSI escape codes",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/strip-ansi@4.0.0",
      "type": "library",
      "bom-ref": "pkg:npm/strip-ansi@4.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/table/node_modules/strip-ansi/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/table/node_modules/strip-ansi/package.json"
              }
            ],
            "concludedValue": "node_modules/table/node_modules/strip-ansi/package.json"
          }
        ]
      },
      "tags": [
        "escape"
      ]
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "string-width",
      "version": "2.1.1",
      "description": "Get the visual width of a string - the number of columns required to display it",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/string-width@2.1.1",
      "type": "library",
      "bom-ref": "pkg:npm/string-width@2.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/table/node_modules/string-width/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/table/node_modules/string-width/package.json"
              }
            ],
            "concludedValue": "node_modules/table/node_modules/string-width/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "is-fullwidth-code-point",
      "version": "2.0.0",
      "description": "Check if the character represented by a given Unicode code point is fullwidth",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-fullwidth-code-point@2.0.0",
      "type": "library",
      "bom-ref": "pkg:npm/is-fullwidth-code-point@2.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/table/node_modules/is-fullwidth-code-point/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/table/node_modules/is-fullwidth-code-point/package.json"
              }
            ],
            "concludedValue": "node_modules/table/node_modules/is-fullwidth-code-point/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "ansi-regex",
      "version": "3.0.1",
      "description": "Regular expression for matching ANSI escape codes",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/ansi-regex@3.0.1",
      "type": "library",
      "bom-ref": "pkg:npm/ansi-regex@3.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/table/node_modules/ansi-regex/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/table/node_modules/ansi-regex/package.json"
              }
            ],
            "concludedValue": "node_modules/table/node_modules/ansi-regex/package.json"
          }
        ]
      },
      "tags": [
        "escape"
      ]
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "symbol.prototype.description",
      "version": "1.0.7",
      "description": "Spec-compliant shim for Symbol.prototype.description proposal.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/symbol.prototype.description@1.0.7",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/es-shims/Symbol.prototype.description#readme"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/symbol.prototype.description@1.0.7",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/symbol.prototype.description/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/symbol.prototype.description/package.json"
              }
            ],
            "concludedValue": "node_modules/symbol.prototype.description/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "supports-preserve-symlinks-flag",
      "version": "1.0.0",
      "description": "Determine if the current node version supports the `--preserve-symlinks` flag.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/supports-preserve-symlinks-flag@1.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/node-supports-preserve-symlinks-flag#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/node-supports-preserve-symlinks-flag.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/supports-preserve-symlinks-flag@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/supports-preserve-symlinks-flag/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/supports-preserve-symlinks-flag/package.json"
              }
            ],
            "concludedValue": "node_modules/supports-preserve-symlinks-flag/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "supports-color",
      "version": "2.0.0",
      "description": "Detect whether a terminal supports color",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/supports-color@2.0.0",
      "type": "library",
      "bom-ref": "pkg:npm/supports-color@2.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/supports-color/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/chalk/node_modules/supports-color/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/chalk/node_modules/supports-color/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/chalk/node_modules/supports-color/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "strip-json-comments",
      "version": "1.0.4",
      "description": "Strip comments from JSON. Lets you use comments in your JSON files!",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/strip-json-comments@1.0.4",
      "type": "library",
      "bom-ref": "pkg:npm/strip-json-comments@1.0.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/strip-json-comments/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/strip-json-comments/package.json"
              }
            ],
            "concludedValue": "node_modules/strip-json-comments/package.json"
          }
        ]
      },
      "tags": [
        "json"
      ]
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (http://sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "strip-indent",
      "version": "1.0.1",
      "description": "Strip leading whitespace from every line in a string",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/strip-indent@1.0.1",
      "type": "library",
      "bom-ref": "pkg:npm/strip-indent@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/strip-indent/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/strip-indent/package.json"
              }
            ],
            "concludedValue": "node_modules/strip-indent/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (http://sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "get-stdin",
      "version": "4.0.1",
      "description": "Easier stdin",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/get-stdin@4.0.1",
      "type": "library",
      "bom-ref": "pkg:npm/get-stdin@4.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/strip-indent/node_modules/get-stdin/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/strip-indent/node_modules/get-stdin/package.json"
              }
            ],
            "concludedValue": "node_modules/strip-indent/node_modules/get-stdin/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "strip-ansi",
      "version": "3.0.1",
      "description": "Strip ANSI escape codes",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/strip-ansi@3.0.1",
      "type": "library",
      "bom-ref": "pkg:npm/strip-ansi@3.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/strip-ansi/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/strip-ansi/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/strip-ansi/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/strip-ansi/package.json"
          }
        ]
      },
      "tags": [
        "escape"
      ]
    },
    {
      "group": "",
      "name": "string_decoder",
      "version": "1.1.1",
      "description": "The string_decoder module from Node core",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/string_decoder@1.1.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/nodejs/string_decoder"
        },
        {
          "type": "vcs",
          "url": "git://github.com/nodejs/string_decoder.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/string_decoder@1.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/string_decoder/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/string_decoder/package.json"
              }
            ],
            "concludedValue": "node_modules/string_decoder/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "string.prototype.trimstart",
      "version": "1.0.8",
      "description": "ES2019 spec-compliant String.prototype.trimStart shim.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/string.prototype.trimstart@1.0.8",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/es-shims/String.prototype.trimStart.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/string.prototype.trimstart@1.0.8",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/string.prototype.trimstart/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/string.prototype.trimstart/package.json"
              }
            ],
            "concludedValue": "node_modules/string.prototype.trimstart/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "string.prototype.trimend",
      "version": "1.0.9",
      "description": "ES2019 spec-compliant String.prototype.trimEnd shim.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/string.prototype.trimend@1.0.9",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/es-shims/String.prototype.trimEnd.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/string.prototype.trimend@1.0.9",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/string.prototype.trimend/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/string.prototype.trimend/package.json"
              }
            ],
            "concludedValue": "node_modules/string.prototype.trimend/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com> (http://ljharb.codes)"
        }
      ],
      "group": "",
      "name": "string.prototype.trim",
      "version": "1.2.10",
      "description": "ES5 spec-compliant shim for String.prototype.trim",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/string.prototype.trim@1.2.10",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/es-shims/String.prototype.trim.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/string.prototype.trim@1.2.10",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/string.prototype.trim/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/string.prototype.trim/package.json"
              }
            ],
            "concludedValue": "node_modules/string.prototype.trim/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "string.prototype.padstart",
      "version": "3.1.7",
      "description": "ES2017 spec-compliant String.prototype.padStart shim.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/string.prototype.padstart@3.1.7",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/es-shims/String.prototype.padStart.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/string.prototype.padstart@3.1.7",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/string.prototype.padstart/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/string.prototype.padstart/package.json"
              }
            ],
            "concludedValue": "node_modules/string.prototype.padstart/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "string.prototype.padend",
      "version": "3.1.6",
      "description": "ES2017 spec-compliant String.prototype.padEnd shim.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/string.prototype.padend@3.1.6",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/es-shims/String.prototype.padEnd.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/string.prototype.padend@3.1.6",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/string.prototype.padend/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/string.prototype.padend/package.json"
              }
            ],
            "concludedValue": "node_modules/string.prototype.padend/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "string.prototype.matchall",
      "version": "3.0.2",
      "description": "Spec-compliant polyfill for String.prototype.matchAll ESnext proposal.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/string.prototype.matchall@3.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/String.prototype.matchAll#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/String.prototype.matchAll.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/string.prototype.matchall@3.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/string.prototype.matchall/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/string.prototype.matchall/package.json"
              }
            ],
            "concludedValue": "node_modules/string.prototype.matchall/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "string-width",
      "version": "1.0.2",
      "description": "Get the visual width of a string - the number of columns required to display it",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/string-width@1.0.2",
      "type": "library",
      "bom-ref": "pkg:npm/string-width@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/string-width/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npmlog/node_modules/gauge/node_modules/string-width/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npm-registry-client/node_modules/npmlog/node_modules/gauge/node_modules/string-width/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/gauge/node_modules/string-width/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/gauge/node_modules/string-width/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/gauge/node_modules/string-width/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "stop-iteration-iterator",
      "version": "1.1.0",
      "description": "Firefox 17-26 iterators throw a StopIteration object to indicate \"done\". This normalizes it.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/stop-iteration-iterator@1.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/stop-iteration-iterator#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/stop-iteration-iterator.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/stop-iteration-iterator@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/stop-iteration-iterator/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/stop-iteration-iterator/package.json"
              }
            ],
            "concludedValue": "node_modules/stop-iteration-iterator/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "static-extend",
      "version": "0.1.2",
      "description": "Adds a static `extend` method to a class, to simplify inheritance. Extends the static properties, prototype properties, and descriptors from a `Parent` constructor onto `Child` constructors.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/static-extend@0.1.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/static-extend"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/static-extend@0.1.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/static-extend/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/static-extend/package.json"
              }
            ],
            "concludedValue": "node_modules/static-extend/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "is-descriptor",
      "version": "0.1.7",
      "description": "Returns true if a value has the characteristics of a valid JavaScript descriptor. Works for data descriptors and accessor descriptors.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-descriptor@0.1.7",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/is-descriptor"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/is-descriptor.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-descriptor@0.1.7",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/static-extend/node_modules/is-descriptor/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/snapdragon/node_modules/is-descriptor/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/readdirp/node_modules/expand-brackets/node_modules/is-descriptor/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/object-copy/node_modules/is-descriptor/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/class-utils/node_modules/is-descriptor/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/class-utils/node_modules/is-descriptor/package.json"
              }
            ],
            "concludedValue": "node_modules/class-utils/node_modules/is-descriptor/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "define-property",
      "version": "0.2.5",
      "description": "Define a non-enumerable property on an object.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/define-property@0.2.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/define-property"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/define-property@0.2.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/static-extend/node_modules/define-property/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/snapdragon/node_modules/define-property/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/readdirp/node_modules/expand-brackets/node_modules/define-property/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/object-copy/node_modules/define-property/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/class-utils/node_modules/define-property/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/class-utils/node_modules/define-property/package.json"
              }
            ],
            "concludedValue": "node_modules/class-utils/node_modules/define-property/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Dan Flettre <flettre@gmail.com> (http://twitter.com/flettre/)"
        }
      ],
      "group": "",
      "name": "standard-engine",
      "version": "4.1.3",
      "description": "Wrap your standards in a tortilla and cover it in special sauce.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/standard-engine@4.1.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/flet/standard-engine"
        },
        {
          "type": "vcs",
          "url": "git://github.com/flet/standard-engine.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/standard-engine@4.1.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/standard-engine/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/standard-engine/package.json"
              }
            ],
            "concludedValue": "node_modules/standard-engine/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Feross Aboukhadijeh <feross@feross.org> (http://feross.org/)"
        }
      ],
      "group": "",
      "name": "standard",
      "version": "7.1.2",
      "description": "JavaScript Standard Style",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/standard@7.1.2",
      "externalReferences": [
        {
          "type": "website",
          "url": "http://standardjs.com"
        },
        {
          "type": "vcs",
          "url": "git://github.com/feross/standard.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/standard@7.1.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/standard/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/standard/package.json"
              }
            ],
            "concludedValue": "node_modules/standard/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Alexandru Marasteanu <hello@alexei.ro> (http://alexei.ro/)"
        }
      ],
      "group": "",
      "name": "sprintf-js",
      "version": "1.0.3",
      "description": "JavaScript sprintf implementation",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "BSD-3-Clause",
            "url": "https://opensource.org/licenses/BSD-3-Clause"
          }
        }
      ],
      "purl": "pkg:npm/sprintf-js@1.0.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/alexei/sprintf.js.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/sprintf-js@1.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/sprintf-js/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/sprintf-js/package.json"
              }
            ],
            "concludedValue": "node_modules/sprintf-js/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Moritz Peters"
        }
      ],
      "group": "",
      "name": "sprintf",
      "version": "0.1.5",
      "description": "Sprintf() for node.js",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "BSD-3-Clause",
            "url": "https://opensource.org/licenses/BSD-3-Clause"
          }
        }
      ],
      "purl": "pkg:npm/sprintf@0.1.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/maritz/node-sprintf"
        },
        {
          "type": "vcs",
          "url": "https://github.com/maritz/node-sprintf.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/sprintf@0.1.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/sprintf/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/sprintf/package.json"
              }
            ],
            "concludedValue": "node_modules/sprintf/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "split-string",
      "version": "3.1.0",
      "description": "Split a string on a character except when the character is escaped.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/split-string@3.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/split-string"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/split-string@3.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/split-string/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/split-string/package.json"
              }
            ],
            "concludedValue": "node_modules/split-string/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Simon Lydell"
        }
      ],
      "group": "",
      "name": "source-map-url",
      "version": "0.4.1",
      "description": "Tools for working with sourceMappingURL comments.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/source-map-url@0.4.1",
      "type": "library",
      "bom-ref": "pkg:npm/source-map-url@0.4.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/source-map-url/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/source-map-url/package.json"
              }
            ],
            "concludedValue": "node_modules/source-map-url/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "source-map-support",
      "version": "0.4.18",
      "description": "Fixes stack traces for files with source maps",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/source-map-support@0.4.18",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/evanw/node-source-map-support"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/source-map-support@0.4.18",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/source-map-support/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/source-map-support/package.json"
              }
            ],
            "concludedValue": "node_modules/source-map-support/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Simon Lydell"
        }
      ],
      "group": "",
      "name": "source-map-resolve",
      "version": "0.5.3",
      "description": "Resolve the source map and/or sources for a generated file.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/source-map-resolve@0.5.3",
      "type": "library",
      "bom-ref": "pkg:npm/source-map-resolve@0.5.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/source-map-resolve/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/source-map-resolve/package.json"
              }
            ],
            "concludedValue": "node_modules/source-map-resolve/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Nick Fitzgerald <nfitzgerald@mozilla.com>"
        }
      ],
      "group": "",
      "name": "source-map",
      "version": "0.5.7",
      "description": "Generates and consumes source maps",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "BSD-3-Clause",
            "url": "https://opensource.org/licenses/BSD-3-Clause"
          }
        }
      ],
      "purl": "pkg:npm/source-map@0.5.7",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/mozilla/source-map"
        },
        {
          "type": "vcs",
          "url": "http://github.com/mozilla/source-map.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/source-map@0.5.7",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/source-map/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/source-map/package.json"
              }
            ],
            "concludedValue": "node_modules/source-map/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "snapdragon-util",
      "version": "3.0.1",
      "description": "Utilities for the snapdragon parser/compiler.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/snapdragon-util@3.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/snapdragon-util"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/snapdragon-util@3.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/snapdragon-util/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/snapdragon-util/package.json"
              }
            ],
            "concludedValue": "node_modules/snapdragon-util/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "snapdragon-node",
      "version": "2.1.1",
      "description": "Snapdragon utility for creating a new AST node in custom code, such as plugins.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/snapdragon-node@2.1.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/snapdragon-node"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/snapdragon-node@2.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/snapdragon-node/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/snapdragon-node/package.json"
              }
            ],
            "concludedValue": "node_modules/snapdragon-node/package.json"
          }
        ]
      },
      "tags": [
        "plugins"
      ]
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "define-property",
      "version": "1.0.0",
      "description": "Define a non-enumerable property on an object.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/define-property@1.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/define-property"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/define-property@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/snapdragon-node/node_modules/define-property/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/readdirp/node_modules/extglob/node_modules/define-property/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/base/node_modules/define-property/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/base/node_modules/define-property/package.json"
              }
            ],
            "concludedValue": "node_modules/base/node_modules/define-property/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "snapdragon",
      "version": "0.8.2",
      "description": "Fast, pluggable and easy-to-use parser-renderer factory.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/snapdragon@0.8.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/snapdragon"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/snapdragon@0.8.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/snapdragon/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/snapdragon/package.json"
              }
            ],
            "concludedValue": "node_modules/snapdragon/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "extend-shallow",
      "version": "2.0.1",
      "description": "Extend an object with the properties of additional objects. node.js/javascript util.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/extend-shallow@2.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/extend-shallow"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/extend-shallow@2.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/snapdragon/node_modules/extend-shallow/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/set-value/node_modules/extend-shallow/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/readdirp/node_modules/fill-range/node_modules/extend-shallow/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/readdirp/node_modules/extglob/node_modules/extend-shallow/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/readdirp/node_modules/expand-brackets/node_modules/extend-shallow/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/readdirp/node_modules/braces/node_modules/extend-shallow/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/readdirp/node_modules/braces/node_modules/extend-shallow/package.json"
              }
            ],
            "concludedValue": "node_modules/readdirp/node_modules/braces/node_modules/extend-shallow/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "David Caccavella <threedeecee@gmail.com>"
        }
      ],
      "group": "",
      "name": "slice-ansi",
      "version": "0.0.4",
      "description": "Slice a string with ANSI escape codes",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/slice-ansi@0.0.4",
      "type": "library",
      "bom-ref": "pkg:npm/slice-ansi@0.0.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/slice-ansi/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/slice-ansi/package.json"
              }
            ],
            "concludedValue": "node_modules/slice-ansi/package.json"
          }
        ]
      },
      "tags": [
        "escape"
      ]
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (http://sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "slash",
      "version": "1.0.0",
      "description": "Convert Windows backslash paths to slash paths",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/slash@1.0.0",
      "type": "library",
      "bom-ref": "pkg:npm/slash@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/slash/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/slash/package.json"
              }
            ],
            "concludedValue": "node_modules/slash/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "side-channel-weakmap",
      "version": "1.0.2",
      "description": "Store information about any JS value in a side channel. Uses WeakMap if available.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/side-channel-weakmap@1.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/side-channel-weakmap#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/side-channel-weakmap.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/side-channel-weakmap@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/side-channel-weakmap/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/side-channel-weakmap/package.json"
              }
            ],
            "concludedValue": "node_modules/side-channel-weakmap/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "side-channel-map",
      "version": "1.0.1",
      "description": "Store information about any JS value in a side channel, using a Map",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/side-channel-map@1.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/side-channel-map#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/side-channel-map.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/side-channel-map@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/side-channel-map/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/side-channel-map/package.json"
              }
            ],
            "concludedValue": "node_modules/side-channel-map/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "side-channel-list",
      "version": "1.0.1",
      "description": "Store information about any JS value in a side channel, using a linked list",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/side-channel-list@1.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/side-channel-list#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/side-channel-list.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/side-channel-list@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/side-channel-list/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/side-channel-list/package.json"
              }
            ],
            "concludedValue": "node_modules/side-channel-list/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "side-channel",
      "version": "1.1.0",
      "description": "Store information about any JS value in a side channel. Uses WeakMap if available.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/side-channel@1.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/side-channel#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/side-channel.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/side-channel@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/side-channel/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/side-channel/package.json"
              }
            ],
            "concludedValue": "node_modules/side-channel/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Artur Adib <arturadib@gmail.com>"
        }
      ],
      "group": "",
      "name": "shelljs",
      "version": "0.6.1",
      "description": "Portable Unix shell commands for Node.js",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "BSD-3-Clause",
            "url": "https://opensource.org/licenses/BSD-3-Clause"
          }
        }
      ],
      "purl": "pkg:npm/shelljs@0.6.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "http://github.com/shelljs/shelljs"
        },
        {
          "type": "vcs",
          "url": "git://github.com/shelljs/shelljs.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/shelljs@0.6.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/shelljs/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/shelljs/package.json"
              }
            ],
            "concludedValue": "node_modules/shelljs/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "set-value",
      "version": "2.0.1",
      "description": "Create nested values and any intermediaries using dot notation (`'a.b.c'`) paths.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/set-value@2.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/set-value"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/set-value@2.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/set-value/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/set-value/package.json"
              }
            ],
            "concludedValue": "node_modules/set-value/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "set-proto",
      "version": "1.0.0",
      "description": "Robustly set the [[Prototype]] of an object",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/set-proto@1.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/set-proto#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/set-proto.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/set-proto@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/set-proto/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/set-proto/package.json"
              }
            ],
            "concludedValue": "node_modules/set-proto/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "set-function-name",
      "version": "2.0.2",
      "description": "Set a function's name property",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/set-function-name@2.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/set-function-name#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/set-function-name.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/set-function-name@2.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/set-function-name/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/set-function-name/package.json"
              }
            ],
            "concludedValue": "node_modules/set-function-name/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "set-function-length",
      "version": "1.2.2",
      "description": "Set a function's length property",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/set-function-length@1.2.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/set-function-length#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/set-function-length.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/set-function-length@1.2.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/set-function-length/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/set-function-length/package.json"
              }
            ],
            "concludedValue": "node_modules/set-function-length/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "GitHub Inc."
        }
      ],
      "group": "",
      "name": "semver",
      "version": "5.7.2",
      "description": "The semantic version parser used by npm.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/semver@5.7.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/npm/node-semver.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/semver@5.7.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/semver/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/semver/package.json"
              }
            ],
            "concludedValue": "node_modules/semver/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "safe-regex-test",
      "version": "1.1.0",
      "description": "Give a regex, get a robust predicate function that tests it against a string.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/safe-regex-test@1.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/safe-regex-test#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/safe-regex-test.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/safe-regex-test@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/safe-regex-test/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/safe-regex-test/package.json"
              }
            ],
            "concludedValue": "node_modules/safe-regex-test/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "James Halliday <mail@substack.net> (http://substack.net)"
        }
      ],
      "group": "",
      "name": "safe-regex",
      "version": "1.1.0",
      "description": "detect possibly catastrophic, exponential-time regular expressions",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/safe-regex@1.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/substack/safe-regex"
        },
        {
          "type": "vcs",
          "url": "git://github.com/substack/safe-regex.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/safe-regex@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/safe-regex/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/safe-regex/package.json"
              }
            ],
            "concludedValue": "node_modules/safe-regex/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "safe-push-apply",
      "version": "1.0.0",
      "description": "Push an array of items into an array, while being robust against prototype modification",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/safe-push-apply@1.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/safe-push-apply#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/safe-push-apply.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/safe-push-apply@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/safe-push-apply/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/safe-push-apply/package.json"
              }
            ],
            "concludedValue": "node_modules/safe-push-apply/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Feross Aboukhadijeh <feross@feross.org> (http://feross.org)"
        }
      ],
      "group": "",
      "name": "safe-buffer",
      "version": "5.1.2",
      "description": "Safer Node.js Buffer API",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/safe-buffer@5.1.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/feross/safe-buffer"
        },
        {
          "type": "vcs",
          "url": "git://github.com/feross/safe-buffer.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/safe-buffer@5.1.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/safe-buffer/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/safe-buffer/package.json"
              }
            ],
            "concludedValue": "node_modules/safe-buffer/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "safe-array-concat",
      "version": "1.1.4",
      "description": "`Array.prototype.concat`, but made safe by ignoring Symbol.isConcatSpreadable",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/safe-array-concat@1.1.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/safe-array-concat#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/safe-array-concat.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/safe-array-concat@1.1.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/safe-array-concat/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/safe-array-concat/package.json"
              }
            ],
            "concludedValue": "node_modules/safe-array-concat/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Cloud Programmability Team (https://github.com/Reactive-Extensions/RxJS/blob/master/authors.txt)"
        }
      ],
      "group": "",
      "name": "rx-lite",
      "version": "3.1.2",
      "description": "Lightweight library for composing asynchronous and event-based operations in JavaScript",
      "scope": "optional",
      "purl": "pkg:npm/rx-lite@3.1.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/Reactive-Extensions/RxJS"
        },
        {
          "type": "vcs",
          "url": "https://github.com/Reactive-Extensions/RxJS.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/rx-lite@3.1.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/rx-lite/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/rx-lite/package.json"
              }
            ],
            "concludedValue": "node_modules/rx-lite/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Feross Aboukhadijeh <feross@feross.org> (https://feross.org)"
        }
      ],
      "group": "",
      "name": "run-parallel",
      "version": "1.2.0",
      "description": "Run an array of functions in parallel",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/run-parallel@1.2.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/feross/run-parallel"
        },
        {
          "type": "vcs",
          "url": "git://github.com/feross/run-parallel.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/run-parallel@1.2.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/run-parallel/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/run-parallel/package.json"
              }
            ],
            "concludedValue": "node_modules/run-parallel/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Simon Boudrias <admin@simonboudrias.com>"
        }
      ],
      "group": "",
      "name": "run-async",
      "version": "0.1.0",
      "description": "Utility method to run function either synchronously or asynchronously using the common `this.async()` style.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/run-async@0.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/SBoudrias/run-async"
        },
        {
          "type": "vcs",
          "url": "git://github.com/SBoudrias/run-async"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/run-async@0.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/run-async/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/run-async/package.json"
              }
            ],
            "concludedValue": "node_modules/run-async/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "rimraf",
      "version": "2.7.1",
      "description": "A deep deletion module for node (like `rm -rf`)",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/rimraf@2.7.1",
      "type": "library",
      "bom-ref": "pkg:npm/rimraf@2.7.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/rimraf/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/rimraf/package.json"
              }
            ],
            "concludedValue": "node_modules/rimraf/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Roly Fentanes (https://github.com/fent)"
        }
      ],
      "group": "",
      "name": "ret",
      "version": "0.1.15",
      "description": "Tokenizes a string that represents a regular expression.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/ret@0.1.15",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/fent/ret.js.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/ret@0.1.15",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/ret/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/ret/package.json"
              }
            ],
            "concludedValue": "node_modules/ret/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "James Halliday <mail@substack.net> (http://substack.net)"
        }
      ],
      "group": "",
      "name": "resumer",
      "version": "0.0.0",
      "description": "a through stream that starts paused and resumes on the next tick",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/resumer@0.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/substack/resumer"
        },
        {
          "type": "vcs",
          "url": "git://github.com/substack/resumer.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/resumer@0.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/resumer/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/resumer/package.json"
              }
            ],
            "concludedValue": "node_modules/resumer/package.json"
          }
        ]
      },
      "tags": [
        "stream"
      ]
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (http://sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "restore-cursor",
      "version": "1.0.1",
      "description": "Gracefully restore the CLI cursor on exit",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/restore-cursor@1.0.1",
      "type": "library",
      "bom-ref": "pkg:npm/restore-cursor@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/restore-cursor/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/restore-cursor/package.json"
              }
            ],
            "concludedValue": "node_modules/restore-cursor/package.json"
          }
        ]
      },
      "tags": [
        "cli"
      ]
    },
    {
      "authors": [
        {
          "name": "Simon Lydell"
        }
      ],
      "group": "",
      "name": "resolve-url",
      "version": "0.2.1",
      "description": "Like Node.js’ `path.resolve`/`url.resolve` for the browser.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/resolve-url@0.2.1",
      "type": "library",
      "bom-ref": "pkg:npm/resolve-url@0.2.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/resolve-url/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/resolve-url/package.json"
              }
            ],
            "concludedValue": "node_modules/resolve-url/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "resolve-from",
      "version": "1.0.1",
      "description": "Resolve the path of a module like require.resolve() but from a given path",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/resolve-from@1.0.1",
      "type": "library",
      "bom-ref": "pkg:npm/resolve-from@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/resolve-from/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/resolve-from/package.json"
              }
            ],
            "concludedValue": "node_modules/resolve-from/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "James Halliday <mail@substack.net> (http://substack.net)"
        }
      ],
      "group": "",
      "name": "resolve",
      "version": "1.22.12",
      "description": "resolve like require.resolve() on behalf of files asynchronously and synchronously",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/resolve@1.22.12",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "ssh://github.com/browserify/resolve.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/resolve@1.22.12",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/resolve/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/resolve/package.json"
              }
            ],
            "concludedValue": "node_modules/resolve/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "mylib",
      "version": "0.0.0",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/mylib@0.0.0",
      "type": "library",
      "bom-ref": "pkg:npm/mylib@0.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/resolve/test/resolver/nested_symlinks/mylib/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/resolve/test/resolver/nested_symlinks/mylib/package.json"
              }
            ],
            "concludedValue": "node_modules/resolve/test/resolver/nested_symlinks/mylib/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "ljharb-monorepo-symlink-test",
      "version": "0.0.0",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/ljharb-monorepo-symlink-test@0.0.0",
      "type": "library",
      "bom-ref": "pkg:npm/ljharb-monorepo-symlink-test@0.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/resolve/test/resolver/multirepo/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/resolve/test/resolver/multirepo/package.json"
              }
            ],
            "concludedValue": "node_modules/resolve/test/resolver/multirepo/package.json"
          }
        ]
      }
    },
    {
      "group": "@my-scope",
      "name": "package-b",
      "version": "0.0.0",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/%40my-scope/package-b@0.0.0",
      "type": "library",
      "bom-ref": "pkg:npm/@my-scope/package-b@0.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/resolve/test/resolver/multirepo/packages/package-b/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/resolve/test/resolver/multirepo/packages/package-b/package.json"
              }
            ],
            "concludedValue": "node_modules/resolve/test/resolver/multirepo/packages/package-b/package.json"
          }
        ]
      }
    },
    {
      "group": "@my-scope",
      "name": "package-a",
      "version": "0.0.0",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/%40my-scope/package-a@0.0.0",
      "type": "library",
      "bom-ref": "pkg:npm/@my-scope/package-a@0.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/resolve/test/resolver/multirepo/packages/package-a/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/resolve/test/resolver/multirepo/packages/package-a/package.json"
              }
            ],
            "concludedValue": "node_modules/resolve/test/resolver/multirepo/packages/package-a/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "invalid_main",
      "version": "",
      "scope": "optional",
      "purl": "pkg:npm/invalid_main",
      "type": "library",
      "bom-ref": "pkg:npm/invalid_main",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/resolve/test/resolver/invalid_main/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/resolve/test/resolver/invalid_main/package.json"
              }
            ],
            "concludedValue": "node_modules/resolve/test/resolver/invalid_main/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "false_main",
      "version": "",
      "scope": "optional",
      "purl": "pkg:npm/false_main",
      "type": "library",
      "bom-ref": "pkg:npm/false_main",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/resolve/test/resolver/false_main/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/resolve/test/resolver/false_main/package.json"
              }
            ],
            "concludedValue": "node_modules/resolve/test/resolver/false_main/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "browser_field",
      "version": "",
      "scope": "optional",
      "purl": "pkg:npm/browser_field",
      "type": "library",
      "bom-ref": "pkg:npm/browser_field",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/resolve/test/resolver/browser_field/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/resolve/test/resolver/browser_field/package.json"
              }
            ],
            "concludedValue": "node_modules/resolve/test/resolver/browser_field/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "baz",
      "version": "",
      "scope": "optional",
      "purl": "pkg:npm/baz",
      "type": "library",
      "bom-ref": "pkg:npm/baz",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/resolve/test/resolver/baz/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/resolve/test/resolver/baz/package.json"
              }
            ],
            "concludedValue": "node_modules/resolve/test/resolver/baz/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "require-uncached",
      "version": "1.0.3",
      "description": "Require a module bypassing the cache",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/require-uncached@1.0.3",
      "type": "library",
      "bom-ref": "pkg:npm/require-uncached@1.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/require-uncached/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/require-uncached/package.json"
              }
            ],
            "concludedValue": "node_modules/require-uncached/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "repeating",
      "version": "2.0.1",
      "description": "Repeat a string - fast",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/repeating@2.0.1",
      "type": "library",
      "bom-ref": "pkg:npm/repeating@2.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/repeating/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/repeating/package.json"
              }
            ],
            "concludedValue": "node_modules/repeating/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (http://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "repeat-string",
      "version": "1.6.1",
      "description": "Repeat the given string n times. Fastest implementation for repeating a string.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/repeat-string@1.6.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/repeat-string"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/repeat-string@1.6.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/repeat-string/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/repeat-string/package.json"
              }
            ],
            "concludedValue": "node_modules/repeat-string/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "repeat-element",
      "version": "1.1.4",
      "description": "Create an array by repeating the given value n times.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/repeat-element@1.1.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/repeat-element"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/repeat-element@1.1.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/repeat-element/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/repeat-element/package.json"
              }
            ],
            "concludedValue": "node_modules/repeat-element/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "darsain"
        }
      ],
      "group": "",
      "name": "remove-trailing-separator",
      "version": "1.1.0",
      "description": "Removes separators from the end of the string.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/remove-trailing-separator@1.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/darsain/remove-trailing-separator#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/darsain/remove-trailing-separator.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/remove-trailing-separator@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/remove-trailing-separator/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/remove-trailing-separator/package.json"
              }
            ],
            "concludedValue": "node_modules/remove-trailing-separator/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "'Julian Viereck' <julian.viereck@gmail.com>"
        }
      ],
      "group": "",
      "name": "regjsparser",
      "version": "0.1.5",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "name": "BSD"
          }
        }
      ],
      "purl": "pkg:npm/regjsparser@0.1.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jviereck/regjsparser"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/regjsparser@0.1.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/regjsparser/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/regjsparser/package.json"
              }
            ],
            "concludedValue": "node_modules/regjsparser/package.json"
          }
        ]
      },
      "tags": [
        "parse"
      ]
    },
    {
      "authors": [
        {
          "name": "Mathias Bynens (http://mathiasbynens.be/)"
        }
      ],
      "group": "",
      "name": "jsesc",
      "version": "0.5.0",
      "description": "A JavaScript library for escaping JavaScript strings while generating the shortest possible valid output.",
      "scope": "optional",
      "purl": "pkg:npm/jsesc@0.5.0",
      "externalReferences": [
        {
          "type": "website",
          "url": "http://mths.be/jsesc"
        },
        {
          "type": "vcs",
          "url": "https://github.com/mathiasbynens/jsesc.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/jsesc@0.5.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/regjsparser/node_modules/jsesc/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/regjsparser/node_modules/jsesc/package.json"
              }
            ],
            "concludedValue": "node_modules/regjsparser/node_modules/jsesc/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Benjamin Tan <demoneaux@gmail.com> (https://d10.github.io/)"
        }
      ],
      "group": "",
      "name": "regjsgen",
      "version": "0.2.0",
      "description": "Generate `RegExp`s from RegJSParser’s AST",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/regjsgen@0.2.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/d10/regjsgen"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/regjsgen@0.2.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/regjsgen/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/regjsgen/package.json"
              }
            ],
            "concludedValue": "node_modules/regjsgen/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mathias Bynens (https://mathiasbynens.be/)"
        }
      ],
      "group": "",
      "name": "regexpu-core",
      "version": "2.0.0",
      "description": "regexpu’s core functionality (i.e. `rewritePattern(pattern, flag)`), capable of translating ES6 Unicode regular expressions to ES5.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/regexpu-core@2.0.0",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://mths.be/regexpu"
        },
        {
          "type": "vcs",
          "url": "https://github.com/mathiasbynens/regexpu-core.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/regexpu-core@2.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/regexpu-core/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/regexpu-core/package.json"
              }
            ],
            "concludedValue": "node_modules/regexpu-core/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "regexp.prototype.flags",
      "version": "1.5.4",
      "description": "ES6 spec-compliant RegExp.prototype.flags shim.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/regexp.prototype.flags@1.5.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/es-shims/RegExp.prototype.flags.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/regexp.prototype.flags@1.5.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/regexp.prototype.flags/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/regexp.prototype.flags/package.json"
              }
            ],
            "concludedValue": "node_modules/regexp.prototype.flags/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "regex-not",
      "version": "1.0.2",
      "description": "Create a javascript regular expression for matching everything except for the given string.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/regex-not@1.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/regex-not"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/regex-not@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/regex-not/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/regex-not/package.json"
              }
            ],
            "concludedValue": "node_modules/regex-not/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "regex-cache",
      "version": "0.4.4",
      "description": "Memoize the results of a call to the RegExp constructor, avoiding repetitious runtime compilation of the same string and options, resulting in surprising performance improvements.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/regex-cache@0.4.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/regex-cache"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/regex-cache@0.4.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/regex-cache/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/regex-cache/package.json"
              }
            ],
            "concludedValue": "node_modules/regex-cache/package.json"
          }
        ]
      },
      "tags": [
        "performance"
      ]
    },
    {
      "authors": [
        {
          "name": "Ben Newman <bn@cs.stanford.edu>"
        }
      ],
      "group": "",
      "name": "regenerator-transform",
      "version": "0.10.1",
      "description": "Explode async and generator functions into a state machine.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "name": "BSD"
          }
        }
      ],
      "purl": "pkg:npm/regenerator-transform@0.10.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/facebook/regenerator/tree/master/packages/regenerator-transform"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/regenerator-transform@0.10.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/regenerator-transform/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/regenerator-transform/package.json"
              }
            ],
            "concludedValue": "node_modules/regenerator-transform/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Ben Newman <bn@cs.stanford.edu>"
        }
      ],
      "group": "",
      "name": "regenerator-runtime",
      "version": "0.10.5",
      "description": "Runtime for Regenerator-compiled generator and async functions.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/regenerator-runtime@0.10.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/facebook/regenerator/tree/master/packages/regenerator-runtime"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/regenerator-runtime@0.10.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/regenerator-runtime/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/regenerator-runtime/package.json"
              }
            ],
            "concludedValue": "node_modules/regenerator-runtime/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mathias Bynens (https://mathiasbynens.be/)"
        }
      ],
      "group": "",
      "name": "regenerate",
      "version": "1.4.2",
      "description": "Generate JavaScript-compatible regular expressions based on a given set of Unicode symbols or code points.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/regenerate@1.4.2",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://mths.be/regenerate"
        },
        {
          "type": "vcs",
          "url": "https://github.com/mathiasbynens/regenerate.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/regenerate@1.4.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/regenerate/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/regenerate/package.json"
              }
            ],
            "concludedValue": "node_modules/regenerate/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "reflect.getprototypeof",
      "version": "1.0.10",
      "description": "An ES2015 mostly-spec-compliant `Reflect.getPrototypeOf` sham/polyfill/replacement that works in as many engines as possible",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/reflect.getprototypeof@1.0.10",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/es-shims/Reflect.getPrototypeOf"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/es-shims/Reflect.getPrototypeOf.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/reflect.getprototypeof@1.0.10",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/reflect.getprototypeof/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/reflect.getprototypeof/package.json"
              }
            ],
            "concludedValue": "node_modules/reflect.getprototypeof/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Simon Boudrias <admin@simonboudrias.com>"
        }
      ],
      "group": "",
      "name": "readline2",
      "version": "1.0.1",
      "description": "Readline Façade fixing bugs and issues found in releases 0.8 and 0.10",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/readline2@1.0.1",
      "type": "library",
      "bom-ref": "pkg:npm/readline2@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/readline2/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/readline2/package.json"
              }
            ],
            "concludedValue": "node_modules/readline2/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Thorsten Lorenz <thlorenz@gmx.de> (thlorenz.com)"
        }
      ],
      "group": "",
      "name": "readdirp",
      "version": "2.2.1",
      "description": "Recursive version of fs.readdir with streaming api.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/readdirp@2.2.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/paulmillr/readdirp"
        },
        {
          "type": "vcs",
          "url": "git://github.com/paulmillr/readdirp.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/readdirp@2.2.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/readdirp/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/readdirp/package.json"
              }
            ],
            "concludedValue": "node_modules/readdirp/package.json"
          }
        ]
      },
      "tags": [
        "api"
      ]
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "micromatch",
      "version": "3.1.10",
      "description": "Glob matching for javascript/node.js. A drop-in replacement and faster alternative to minimatch and multimatch.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/micromatch@3.1.10",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/micromatch/micromatch"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/micromatch@3.1.10",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/readdirp/node_modules/micromatch/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/readdirp/node_modules/micromatch/package.json"
              }
            ],
            "concludedValue": "node_modules/readdirp/node_modules/micromatch/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "kind-of",
      "version": "6.0.3",
      "description": "Get the native type of a value.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/kind-of@6.0.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/kind-of"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/kind-of@6.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/readdirp/node_modules/kind-of/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/randomatic/node_modules/kind-of/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/nanomatch/node_modules/kind-of/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/nanomatch/node_modules/kind-of/package.json"
              }
            ],
            "concludedValue": "node_modules/nanomatch/node_modules/kind-of/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "kind-of",
      "version": "3.2.2",
      "description": "Get the native type of a value.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/kind-of@3.2.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/kind-of"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/kind-of@3.2.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/readdirp/node_modules/is-number/node_modules/kind-of/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/kind-of/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/has-values/node_modules/is-number/node_modules/kind-of/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/has-values/node_modules/is-number/node_modules/kind-of/package.json"
              }
            ],
            "concludedValue": "node_modules/has-values/node_modules/is-number/node_modules/kind-of/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "fill-range",
      "version": "4.0.0",
      "description": "Fill in a range of numbers or letters, optionally passing an increment or `step` to use, or create a regex-compatible range with `options.toRegex`",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/fill-range@4.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/fill-range"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/fill-range@4.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/readdirp/node_modules/fill-range/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/readdirp/node_modules/fill-range/package.json"
              }
            ],
            "concludedValue": "node_modules/readdirp/node_modules/fill-range/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "extglob",
      "version": "2.0.4",
      "description": "Extended glob support for JavaScript. Adds (almost) the expressive power of regular expressions to glob patterns.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/extglob@2.0.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/micromatch/extglob"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/extglob@2.0.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/readdirp/node_modules/extglob/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/readdirp/node_modules/extglob/package.json"
              }
            ],
            "concludedValue": "node_modules/readdirp/node_modules/extglob/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "expand-brackets",
      "version": "2.1.4",
      "description": "Expand POSIX bracket expressions (character classes) in glob patterns.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/expand-brackets@2.1.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/expand-brackets"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/expand-brackets@2.1.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/readdirp/node_modules/expand-brackets/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/readdirp/node_modules/expand-brackets/package.json"
              }
            ],
            "concludedValue": "node_modules/readdirp/node_modules/expand-brackets/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "braces",
      "version": "2.3.2",
      "description": "Bash-like brace expansion, implemented in JavaScript. Safer than other brace expansion libs, with complete support for the Bash 4.3 braces specification, without sacrificing speed.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/braces@2.3.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/micromatch/braces"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/braces@2.3.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/readdirp/node_modules/braces/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/readdirp/node_modules/braces/package.json"
              }
            ],
            "concludedValue": "node_modules/readdirp/node_modules/braces/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "array-unique",
      "version": "0.3.2",
      "description": "Remove duplicate values from an array. Fastest ES5 implementation.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/array-unique@0.3.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/array-unique"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/array-unique@0.3.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/readdirp/node_modules/array-unique/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/nanomatch/node_modules/array-unique/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/nanomatch/node_modules/array-unique/package.json"
              }
            ],
            "concludedValue": "node_modules/nanomatch/node_modules/array-unique/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "arr-diff",
      "version": "4.0.0",
      "description": "Returns an array with only the unique values from the first array, by excluding all values from additional arrays using strict equality for comparisons.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/arr-diff@4.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/arr-diff"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/arr-diff@4.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/readdirp/node_modules/arr-diff/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/nanomatch/node_modules/arr-diff/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/nanomatch/node_modules/arr-diff/package.json"
              }
            ],
            "concludedValue": "node_modules/nanomatch/node_modules/arr-diff/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "readable-stream",
      "version": "2.3.8",
      "description": "Streams3, a user-land copy of the stream library from Node.js",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/readable-stream@2.3.8",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/nodejs/readable-stream"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/readable-stream@2.3.8",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/readable-stream/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/readable-stream/package.json"
              }
            ],
            "concludedValue": "node_modules/readable-stream/package.json"
          }
        ]
      },
      "tags": [
        "stream"
      ]
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "randomatic",
      "version": "3.1.1",
      "description": "Generate randomized strings of a specified length using simple character sequences. The original generate-password.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/randomatic@3.1.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/randomatic"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/randomatic@3.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/randomatic/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/randomatic/package.json"
              }
            ],
            "concludedValue": "node_modules/randomatic/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "is-number",
      "version": "4.0.0",
      "description": "Returns true if the value is a number. comprehensive tests.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-number@4.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/is-number"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-number@4.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/randomatic/node_modules/is-number/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/randomatic/node_modules/is-number/package.json"
              }
            ],
            "concludedValue": "node_modules/randomatic/node_modules/is-number/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Feross Aboukhadijeh <feross@feross.org> (https://feross.org)"
        }
      ],
      "group": "",
      "name": "queue-microtask",
      "version": "1.2.3",
      "description": "fast, tiny `queueMicrotask` shim for modern engines",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/queue-microtask@1.2.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/feross/queue-microtask"
        },
        {
          "type": "vcs",
          "url": "git://github.com/feross/queue-microtask.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/queue-microtask@1.2.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/queue-microtask/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/queue-microtask/package.json"
              }
            ],
            "concludedValue": "node_modules/queue-microtask/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "promise.prototype.finally",
      "version": "3.1.8",
      "description": "ES Proposal spec-compliant shim for Promise.prototype.finally",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/promise.prototype.finally@3.1.8",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/es-shims/Promise.prototype.finally.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/promise.prototype.finally@3.1.8",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/promise.prototype.finally/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/promise.prototype.finally/package.json"
              }
            ],
            "concludedValue": "node_modules/promise.prototype.finally/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "TJ Holowaychuk <tj@vision-media.ca>"
        }
      ],
      "group": "",
      "name": "progress",
      "version": "1.1.8",
      "description": "Flexible ascii progress bar",
      "scope": "optional",
      "purl": "pkg:npm/progress@1.1.8",
      "type": "library",
      "bom-ref": "pkg:npm/progress@1.1.8",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/progress/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/progress/package.json"
              }
            ],
            "concludedValue": "node_modules/progress/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "process-nextick-args",
      "version": "2.0.1",
      "description": "process.nextTick but always with args",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/process-nextick-args@2.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/calvinmetcalf/process-nextick-args"
        },
        {
          "type": "vcs",
          "url": "https://github.com/calvinmetcalf/process-nextick-args.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/process-nextick-args@2.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/process-nextick-args/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/process-nextick-args/package.json"
              }
            ],
            "concludedValue": "node_modules/process-nextick-args/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Ben Newman <bn@cs.stanford.edu>"
        }
      ],
      "group": "",
      "name": "private",
      "version": "0.1.8",
      "description": "Utility for associating truly private state with any JavaScript object",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/private@0.1.8",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "http://github.com/benjamn/private"
        },
        {
          "type": "vcs",
          "url": "git://github.com/benjamn/private.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/private@0.1.8",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/private/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/private/package.json"
              }
            ],
            "concludedValue": "node_modules/private/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "preserve",
      "version": "0.2.0",
      "description": "Temporarily substitute tokens in the given `string` with placeholders, then put them back after transforming the string.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/preserve@0.2.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/preserve"
        },
        {
          "type": "vcs",
          "url": "git://github.com/jonschlinkert/preserve.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/preserve@0.2.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/preserve/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/preserve/package.json"
              }
            ],
            "concludedValue": "node_modules/preserve/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "George Zahariev <z@georgezahariev.com>"
        }
      ],
      "group": "",
      "name": "prelude-ls",
      "version": "1.1.2",
      "description": "prelude.ls is a functionally oriented utility library. It is powerful and flexible. Almost all of its functions are curried. It is written in, and is the recommended base library for, LiveScript.",
      "scope": "optional",
      "purl": "pkg:npm/prelude-ls@1.1.2",
      "externalReferences": [
        {
          "type": "website",
          "url": "http://preludels.com"
        },
        {
          "type": "vcs",
          "url": "git://github.com/gkz/prelude-ls.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/prelude-ls@1.1.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/prelude-ls/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/prelude-ls/package.json"
              }
            ],
            "concludedValue": "node_modules/prelude-ls/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "possible-typed-array-names",
      "version": "1.1.0",
      "description": "A simple list of possible Typed Array names.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/possible-typed-array-names@1.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/possible-typed-array-names#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/possible-typed-array-names.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/possible-typed-array-names@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/possible-typed-array-names/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/possible-typed-array-names/package.json"
              }
            ],
            "concludedValue": "node_modules/possible-typed-array-names/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "posix-character-classes",
      "version": "0.1.1",
      "description": "POSIX character classes for creating regular expressions.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/posix-character-classes@0.1.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/posix-character-classes"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/posix-character-classes@0.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/posix-character-classes/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/posix-character-classes/package.json"
              }
            ],
            "concludedValue": "node_modules/posix-character-classes/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Blake Embrey <hello@blakeembrey.com> (http://blakeembrey.me)"
        }
      ],
      "group": "",
      "name": "pluralize",
      "version": "1.2.1",
      "description": "Pluralize and singularize any word",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/pluralize@1.2.1",
      "type": "library",
      "bom-ref": "pkg:npm/pluralize@1.2.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/pluralize/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/pluralize/package.json"
              }
            ],
            "concludedValue": "node_modules/pluralize/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Ahmad Nassri <ahmad@ahmadnassri.com> (https://www.ahmadnassri.com/)"
        }
      ],
      "group": "",
      "name": "pkg-config",
      "version": "1.1.1",
      "description": "parse the closest `package.json` and get package specific configurations",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/pkg-config@1.1.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ahmadnassri/pkg-config"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/pkg-config@1.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/pkg-config/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/pkg-config/package.json"
              }
            ],
            "concludedValue": "node_modules/pkg-config/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Javier Blanco <http://jbgutierrez.info>"
        }
      ],
      "group": "",
      "name": "path-parse",
      "version": "1.0.7",
      "description": "Node.js path.parse() ponyfill",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/path-parse@1.0.7",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jbgutierrez/path-parse#readme"
        },
        {
          "type": "vcs",
          "url": "https://github.com/jbgutierrez/path-parse.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/path-parse@1.0.7",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/path-parse/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/path-parse/package.json"
              }
            ],
            "concludedValue": "node_modules/path-parse/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Domenic Denicola <d@domenic.me> (https://domenic.me)"
        }
      ],
      "group": "",
      "name": "path-is-inside",
      "version": "1.0.2",
      "description": "Tests whether one path is inside another path",
      "scope": "optional",
      "licenses": [
        {
          "expression": "(WTFPL OR MIT)"
        }
      ],
      "purl": "pkg:npm/path-is-inside@1.0.2",
      "type": "library",
      "bom-ref": "pkg:npm/path-is-inside@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/path-is-inside/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/path-is-inside/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/path-is-inside/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/path-is-inside/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "path-is-absolute",
      "version": "1.0.1",
      "description": "Node.js 0.12 path.isAbsolute() ponyfill",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/path-is-absolute@1.0.1",
      "type": "library",
      "bom-ref": "pkg:npm/path-is-absolute@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/path-is-absolute/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/glob/node_modules/path-is-absolute/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/glob/node_modules/path-is-absolute/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/glob/node_modules/path-is-absolute/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "pascalcase",
      "version": "0.1.1",
      "description": "Convert a string to pascal-case.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/pascalcase@0.1.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/pascalcase"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/pascalcase@0.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/pascalcase/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/pascalcase/package.json"
              }
            ],
            "concludedValue": "node_modules/pascalcase/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "parse-glob",
      "version": "3.0.4",
      "description": "Parse a glob pattern into an object of tokens.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/parse-glob@3.0.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/parse-glob"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/parse-glob@3.0.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/parse-glob/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/parse-glob/package.json"
              }
            ],
            "concludedValue": "node_modules/parse-glob/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "own-keys",
      "version": "1.0.1",
      "description": "Robustly get an object's own property keys (strings and symbols), including non-enumerables when possible",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/own-keys@1.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/own-keys#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/own-keys.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/own-keys@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/own-keys/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/own-keys/package.json"
              }
            ],
            "concludedValue": "node_modules/own-keys/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Shinnosuke Watanabe (https://github.com/shinnn)"
        }
      ],
      "group": "",
      "name": "output-file-sync",
      "version": "1.1.2",
      "description": "Synchronously write a file and create its ancestor directories if needed",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/output-file-sync@1.1.2",
      "type": "library",
      "bom-ref": "pkg:npm/output-file-sync@1.1.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/output-file-sync/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/output-file-sync/package.json"
              }
            ],
            "concludedValue": "node_modules/output-file-sync/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "os-tmpdir",
      "version": "1.0.2",
      "description": "Node.js os.tmpdir() ponyfill",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/os-tmpdir@1.0.2",
      "type": "library",
      "bom-ref": "pkg:npm/os-tmpdir@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/os-tmpdir/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/os-tmpdir/package.json"
              }
            ],
            "concludedValue": "node_modules/os-tmpdir/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "os-homedir",
      "version": "1.0.2",
      "description": "Node.js 4 `os.homedir()` ponyfill",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/os-homedir@1.0.2",
      "type": "library",
      "bom-ref": "pkg:npm/os-homedir@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/os-homedir/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/os-homedir/package.json"
              }
            ],
            "concludedValue": "node_modules/os-homedir/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "George Zahariev <z@georgezahariev.com>"
        }
      ],
      "group": "",
      "name": "optionator",
      "version": "0.8.3",
      "description": "option parsing and help generation",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/optionator@0.8.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/gkz/optionator"
        },
        {
          "type": "vcs",
          "url": "git://github.com/gkz/optionator.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/optionator@0.8.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/optionator/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/optionator/package.json"
              }
            ],
            "concludedValue": "node_modules/optionator/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "onetime",
      "version": "1.1.0",
      "description": "Only call a function once",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/onetime@1.1.0",
      "type": "library",
      "bom-ref": "pkg:npm/onetime@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/onetime/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/onetime/package.json"
              }
            ],
            "concludedValue": "node_modules/onetime/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "once",
      "version": "1.4.0",
      "description": "Run a function exactly one time",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/once@1.4.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/isaacs/once"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/once@1.4.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/once/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/once/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/once/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/once/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "object.values",
      "version": "1.2.1",
      "description": "ES2017 spec-compliant Object.values shim.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/object.values@1.2.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/es-shims/Object.values.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/object.values@1.2.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/object.values/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/object.values/package.json"
              }
            ],
            "concludedValue": "node_modules/object.values/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "object.pick",
      "version": "1.3.0",
      "description": "Returns a filtered copy of an object with only the specified keys, similar to `_.pick` from lodash / underscore.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/object.pick@1.3.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/object.pick"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/object.pick@1.3.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/object.pick/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/object.pick/package.json"
              }
            ],
            "concludedValue": "node_modules/object.pick/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "object.omit",
      "version": "2.0.1",
      "description": "Return a copy of an object excluding the given key, or array of keys. Also accepts an optional filter function as the last argument.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/object.omit@2.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/object.omit"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/object.omit@2.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/object.omit/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/object.omit/package.json"
              }
            ],
            "concludedValue": "node_modules/object.omit/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "object.getownpropertydescriptors",
      "version": "2.1.9",
      "description": "ES2017 spec-compliant shim for `Object.getOwnPropertyDescriptors` that works in ES5.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/object.getownpropertydescriptors@2.1.9",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/es-shims/object.getownpropertydescriptors.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/object.getownpropertydescriptors@2.1.9",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/object.getownpropertydescriptors/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/object.getownpropertydescriptors/package.json"
              }
            ],
            "concludedValue": "node_modules/object.getownpropertydescriptors/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband"
        }
      ],
      "group": "",
      "name": "object.fromentries",
      "version": "1.0.0",
      "description": "ES proposal-spec-compliant Object.fromEntries shim.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/object.fromentries@1.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/es-shims/Object.fromEntries.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/object.fromentries@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/object.fromentries/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/object.fromentries/package.json"
              }
            ],
            "concludedValue": "node_modules/object.fromentries/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband"
        }
      ],
      "group": "",
      "name": "object.entries",
      "version": "1.1.9",
      "description": "ES2017 spec-compliant Object.entries shim.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/object.entries@1.1.9",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/es-shims/Object.entries.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/object.entries@1.1.9",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/object.entries/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/object.entries/package.json"
              }
            ],
            "concludedValue": "node_modules/object.entries/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband"
        }
      ],
      "group": "",
      "name": "object.assign",
      "version": "4.1.7",
      "description": "ES6 spec-compliant Object.assign shim. From https://github.com/es-shims/es6-shim",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/object.assign@4.1.7",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/ljharb/object.assign.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/object.assign@4.1.7",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/object.assign/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/object.assign/package.json"
              }
            ],
            "concludedValue": "node_modules/object.assign/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "object-visit",
      "version": "1.0.1",
      "description": "Call a specified method on each value in the given object.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/object-visit@1.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/object-visit"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/object-visit@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/object-visit/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/object-visit/package.json"
              }
            ],
            "concludedValue": "node_modules/object-visit/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com> (http://ljharb.codes)"
        }
      ],
      "group": "",
      "name": "object-keys",
      "version": "1.1.1",
      "description": "An Object.keys replacement, in case Object.keys is not available. From https://github.com/es-shims/es5-shim",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/object-keys@1.1.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/ljharb/object-keys.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/object-keys@1.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/object-keys/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/object-keys/package.json"
              }
            ],
            "concludedValue": "node_modules/object-keys/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband"
        }
      ],
      "group": "",
      "name": "object-is",
      "version": "1.1.6",
      "description": "ES2015-compliant shim for Object.is - differentiates between -0 and +0",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/object-is@1.1.6",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/es-shims/object-is"
        },
        {
          "type": "vcs",
          "url": "git://github.com/es-shims/object-is.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/object-is@1.1.6",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/object-is/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/object-is/package.json"
              }
            ],
            "concludedValue": "node_modules/object-is/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "James Halliday <mail@substack.net> (http://substack.net)"
        }
      ],
      "group": "",
      "name": "object-inspect",
      "version": "1.13.4",
      "description": "string representations of objects in node and the browser",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/object-inspect@1.13.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/object-inspect"
        },
        {
          "type": "vcs",
          "url": "git://github.com/inspect-js/object-inspect.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/object-inspect@1.13.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/object-inspect/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/object-inspect/package.json"
              }
            ],
            "concludedValue": "node_modules/object-inspect/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "object-copy",
      "version": "0.1.0",
      "description": "Copy static properties, prototype properties, and descriptors from one object to another.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/object-copy@0.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/object-copy"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/object-copy@0.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/object-copy/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/object-copy/package.json"
              }
            ],
            "concludedValue": "node_modules/object-copy/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "object-assign",
      "version": "4.1.1",
      "description": "ES2015 `Object.assign()` ponyfill",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/object-assign@4.1.1",
      "type": "library",
      "bom-ref": "pkg:npm/object-assign@4.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/object-assign/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/object-assign/package.json"
              }
            ],
            "concludedValue": "node_modules/object-assign/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "number-is-nan",
      "version": "1.0.1",
      "description": "ES2015 Number.isNaN() ponyfill",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/number-is-nan@1.0.1",
      "type": "library",
      "bom-ref": "pkg:npm/number-is-nan@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/number-is-nan/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/number-is-nan/package.json"
              }
            ],
            "concludedValue": "node_modules/number-is-nan/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me)"
        }
      ],
      "group": "",
      "name": "npm",
      "version": "3.10.10",
      "description": "a package manager for JavaScript",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "Artistic-2.0",
            "url": "https://opensource.org/licenses/Artistic-2.0"
          }
        }
      ],
      "purl": "pkg:npm/npm@3.10.10",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://docs.npmjs.com/"
        },
        {
          "type": "vcs",
          "url": "https://github.com/npm/npm"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/npm@3.10.10",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Rebecca Turner <me@re-becca.org> (http://re-becca.org)"
        }
      ],
      "group": "",
      "name": "write-file-atomic",
      "version": "1.2.0",
      "description": "Write files in an atomic fashion w/configurable ownership",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/write-file-atomic@1.2.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/iarna/write-file-atomic"
        },
        {
          "type": "vcs",
          "url": "git+ssh://git@github.com/iarna/write-file-atomic.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/write-file-atomic@1.2.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/write-file-atomic/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/write-file-atomic/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/write-file-atomic/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me)"
        }
      ],
      "group": "",
      "name": "which",
      "version": "1.2.11",
      "description": "Like which(1) unix command. Find the first instance of an executable in the PATH.",
      "scope": "required",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/which@1.2.11",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/isaacs/node-which#readme"
        },
        {
          "type": "vcs",
          "url": "git://github.com/isaacs/node-which.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/which@1.2.11",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/which/package.json"
        },
        {
          "name": "ImportedModules",
          "value": "which"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/which/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/which/package.json"
          }
        ],
        "occurrences": [
          {
            "location": "build-test/index.js#9"
          },
          {
            "location": "index.js#7"
          },
          {
            "location": "src/index.js#5"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "isexe",
      "version": "1.1.2",
      "description": "Minimal module to check if a file is executable.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/isexe@1.1.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/isaacs/isexe#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/isaacs/isexe.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/isexe@1.1.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/which/node_modules/isexe/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/which/node_modules/isexe/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/which/node_modules/isexe/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "zeke"
        }
      ],
      "group": "",
      "name": "validate-npm-package-name",
      "version": "2.2.2",
      "description": "Give me a string and I'll tell you if it's a valid npm package name",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/validate-npm-package-name@2.2.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/npm/validate-npm-package-name"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/npm/validate-npm-package-name.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/validate-npm-package-name@2.2.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/validate-npm-package-name/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/validate-npm-package-name/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/validate-npm-package-name/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "builtins",
      "version": "0.0.7",
      "description": "List of node.js builtin modules",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/builtins@0.0.7",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/juliangruber/builtins"
        },
        {
          "type": "vcs",
          "url": "git://github.com/juliangruber/builtins.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/builtins@0.0.7",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/validate-npm-package-name/node_modules/builtins/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/validate-npm-package-name/node_modules/builtins/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/validate-npm-package-name/node_modules/builtins/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Kyle E. Mitchell <kyle@kemitchell.com> (https://kemitchell.com)"
        }
      ],
      "group": "",
      "name": "validate-npm-package-license",
      "version": "3.0.1",
      "description": "Give me a string and I'll tell you if it's a valid npm package license string",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "Apache-2.0",
            "url": "https://opensource.org/licenses/Apache-2.0"
          }
        }
      ],
      "purl": "pkg:npm/validate-npm-package-license@3.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/kemitchell/validate-npm-package-license.js#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/kemitchell/validate-npm-package-license.js.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/validate-npm-package-license@3.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/validate-npm-package-license/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/validate-npm-package-license/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/validate-npm-package-license/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Kyle E. Mitchell <kyle@kemitchell.com> (http://kemitchell.com)"
        }
      ],
      "group": "",
      "name": "spdx-expression-parse",
      "version": "1.0.2",
      "description": "parse SPDX license expressions",
      "scope": "optional",
      "licenses": [
        {
          "expression": "(MIT AND CC-BY-3.0)"
        }
      ],
      "purl": "pkg:npm/spdx-expression-parse@1.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/kemitchell/spdx-expression-parse.js#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/kemitchell/spdx-expression-parse.js.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/spdx-expression-parse@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/validate-npm-package-license/node_modules/spdx-expression-parse/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/validate-npm-package-license/node_modules/spdx-expression-parse/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/validate-npm-package-license/node_modules/spdx-expression-parse/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Shinnosuke Watanabe (https://github.com/shinnn)"
        }
      ],
      "group": "",
      "name": "spdx-license-ids",
      "version": "1.2.0",
      "description": "A list of SPDX license identifiers",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "Unlicense",
            "url": "https://opensource.org/licenses/Unlicense"
          }
        }
      ],
      "purl": "pkg:npm/spdx-license-ids@1.2.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/shinnn/spdx-license-ids#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/shinnn/spdx-license-ids.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/spdx-license-ids@1.2.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/validate-npm-package-license/node_modules/spdx-expression-parse/node_modules/spdx-license-ids/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/validate-npm-package-license/node_modules/spdx-correct/node_modules/spdx-license-ids/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/validate-npm-package-license/node_modules/spdx-correct/node_modules/spdx-license-ids/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/validate-npm-package-license/node_modules/spdx-correct/node_modules/spdx-license-ids/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "The Linux Foundation"
        }
      ],
      "group": "",
      "name": "spdx-exceptions",
      "version": "1.0.4",
      "description": "list of SPDX standard license exceptions",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "CC-BY-3.0",
            "url": "https://opensource.org/licenses/CC-BY-3.0"
          }
        }
      ],
      "purl": "pkg:npm/spdx-exceptions@1.0.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/kemitchell/spdx-exceptions.json#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/kemitchell/spdx-exceptions.json.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/spdx-exceptions@1.0.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/validate-npm-package-license/node_modules/spdx-expression-parse/node_modules/spdx-exceptions/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/validate-npm-package-license/node_modules/spdx-expression-parse/node_modules/spdx-exceptions/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/validate-npm-package-license/node_modules/spdx-expression-parse/node_modules/spdx-exceptions/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Kyle E. Mitchell <kyle@kemitchell.com> (https://kemitchell.com)"
        }
      ],
      "group": "",
      "name": "spdx-correct",
      "version": "1.0.2",
      "description": "correct invalid SPDX identifiers",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "Apache-2.0",
            "url": "https://opensource.org/licenses/Apache-2.0"
          }
        }
      ],
      "purl": "pkg:npm/spdx-correct@1.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/kemitchell/spdx-correct.js#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/kemitchell/spdx-correct.js.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/spdx-correct@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/validate-npm-package-license/node_modules/spdx-correct/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/validate-npm-package-license/node_modules/spdx-correct/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/validate-npm-package-license/node_modules/spdx-correct/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Douglas Christopher Wilson <doug@somethingdoug.com>"
        }
      ],
      "group": "",
      "name": "unpipe",
      "version": "1.0.0",
      "description": "Unpipe a stream from all destinations",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/unpipe@1.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/stream-utils/unpipe#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/stream-utils/unpipe.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/unpipe@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/unpipe/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/unpipe/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/unpipe/package.json"
          }
        ]
      },
      "tags": [
        "stream"
      ]
    },
    {
      "authors": [
        {
          "name": "Rebecca Turner <me@re-becca.org> (http://re-becca.org/)"
        }
      ],
      "group": "",
      "name": "unique-filename",
      "version": "1.1.0",
      "description": "Generate a unique filename for use in temporary directories or caches.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/unique-filename@1.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/iarna/unique-filename"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/iarna/unique-filename.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/unique-filename@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/unique-filename/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/unique-filename/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/unique-filename/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Rebecca Turner <me@re-becca.org> (http://re-becca.org)"
        }
      ],
      "group": "",
      "name": "unique-slug",
      "version": "2.0.0",
      "description": "Generate a unique character string suitible for use in files and URLs.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/unique-slug@2.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/iarna/unique-slug#readme"
        },
        {
          "type": "vcs",
          "url": "git://github.com/iarna/unique-slug.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/unique-slug@2.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/unique-filename/node_modules/unique-slug/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/unique-filename/node_modules/unique-slug/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/unique-filename/node_modules/unique-slug/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sam Mikes <smikes@cubane.com>"
        }
      ],
      "group": "",
      "name": "umask",
      "version": "1.1.0",
      "description": "convert umask from string <-> number",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/umask@1.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/smikes/umask"
        },
        {
          "type": "vcs",
          "url": "https://github.com/smikes/umask.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/umask@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/umask/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/umask/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/umask/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "uid-number",
      "version": "0.0.6",
      "description": "Convert a username/group name to a uid/gid number",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/uid-number@0.0.6",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/isaacs/uid-number"
        },
        {
          "type": "vcs",
          "url": "git://github.com/isaacs/uid-number.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/uid-number@0.0.6",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/uid-number/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/uid-number/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/uid-number/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "tar",
      "version": "2.2.1",
      "description": "tar for node",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/tar@2.2.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/isaacs/node-tar#readme"
        },
        {
          "type": "vcs",
          "url": "git://github.com/isaacs/node-tar.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/tar@2.2.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/tar/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/tar/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/tar/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "block-stream",
      "version": "0.0.8",
      "description": "a stream of blocks",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/block-stream@0.0.8",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/isaacs/block-stream#readme"
        },
        {
          "type": "vcs",
          "url": "git://github.com/isaacs/block-stream.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/block-stream@0.0.8",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/tar/node_modules/block-stream/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/tar/node_modules/block-stream/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/tar/node_modules/block-stream/package.json"
          }
        ]
      },
      "tags": [
        "stream"
      ]
    },
    {
      "authors": [
        {
          "name": "Domenic Denicola <d@domenic.me> (https://domenic.me/)"
        }
      ],
      "group": "",
      "name": "sorted-object",
      "version": "2.0.1",
      "description": "Returns a copy of an object with its keys sorted",
      "scope": "optional",
      "licenses": [
        {
          "expression": "(WTFPL OR MIT)"
        }
      ],
      "purl": "pkg:npm/sorted-object@2.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/domenic/sorted-object#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/domenic/sorted-object.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/sorted-object@2.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/sorted-object/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/sorted-object/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/sorted-object/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "slide",
      "version": "1.1.6",
      "description": "A flow control lib small enough to fit on in a slide presentation. Derived live at Oak.JS",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/slide@1.1.6",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/isaacs/slide-flow-control"
        },
        {
          "type": "vcs",
          "url": "git://github.com/isaacs/slide-flow-control.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/slide@1.1.6",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/slide/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/slide/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/slide/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "sha",
      "version": "2.0.1",
      "description": "Check and get file hashes",
      "scope": "optional",
      "licenses": [
        {
          "expression": "(BSD-2-Clause OR MIT)"
        }
      ],
      "purl": "pkg:npm/sha@2.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ForbesLindesay/sha"
        },
        {
          "type": "vcs",
          "url": "https://github.com/ForbesLindesay/sha.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/sha@2.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/sha/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/sha/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/sha/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "semver",
      "version": "5.3.0",
      "description": "The semantic version parser used by npm.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/semver@5.3.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/npm/node-semver#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/npm/node-semver.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/semver@5.3.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/semver/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/semver/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/semver/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "rimraf",
      "version": "2.5.4",
      "description": "A deep deletion module for node (like `rm -rf`)",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/rimraf@2.5.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/isaacs/rimraf#readme"
        },
        {
          "type": "vcs",
          "url": "git://github.com/isaacs/rimraf.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/rimraf@2.5.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/rimraf/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/rimraf/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/rimraf/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Tim Koschützki <tim@debuggable.com> (http://debuggable.com/)"
        }
      ],
      "group": "",
      "name": "retry",
      "version": "0.10.0",
      "description": "Abstraction for exponential and custom retry strategies for failed operations.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/retry@0.10.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/tim-kos/node-retry"
        },
        {
          "type": "vcs",
          "url": "git://github.com/tim-kos/node-retry.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/retry@0.10.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/retry/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npm-registry-client/node_modules/retry/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/npm-registry-client/node_modules/retry/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/npm-registry-client/node_modules/retry/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mikeal Rogers <mikeal.rogers@gmail.com>"
        }
      ],
      "group": "",
      "name": "request",
      "version": "2.75.0",
      "description": "Simplified HTTP request client.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "Apache-2.0",
            "url": "https://opensource.org/licenses/Apache-2.0"
          }
        }
      ],
      "purl": "pkg:npm/request@2.75.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/request/request#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/request/request.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/request@2.75.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mikeal Rogers <mikeal.rogers@gmail.com> (http://www.futurealoof.com)"
        }
      ],
      "group": "",
      "name": "tunnel-agent",
      "version": "0.4.3",
      "description": "HTTP proxy tunneling agent. Formerly part of mikeal/request, now a standalone module.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "Apache-2.0",
            "url": "https://opensource.org/licenses/Apache-2.0"
          }
        }
      ],
      "purl": "pkg:npm/tunnel-agent@0.4.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/mikeal/tunnel-agent#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/mikeal/tunnel-agent.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/tunnel-agent@0.4.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/tunnel-agent/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/tunnel-agent/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/tunnel-agent/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jeremy Stashewsky <jstashewsky@salesforce.com>"
        }
      ],
      "group": "",
      "name": "tough-cookie",
      "version": "2.3.1",
      "description": "RFC6265 Cookies and Cookie Jar for node.js",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "BSD-3-Clause",
            "url": "https://opensource.org/licenses/BSD-3-Clause"
          }
        }
      ],
      "purl": "pkg:npm/tough-cookie@2.3.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/SalesforceEng/tough-cookie"
        },
        {
          "type": "vcs",
          "url": "git://github.com/SalesforceEng/tough-cookie.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/tough-cookie@2.3.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/tough-cookie/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/tough-cookie/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/tough-cookie/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Michael Hart <michael.hart.au@gmail.com> (http://github.com/mhart)"
        }
      ],
      "group": "",
      "name": "stringstream",
      "version": "0.0.5",
      "description": "Encode and decode streams into string streams",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/stringstream@0.0.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/mhart/StringStream#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/mhart/StringStream.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/stringstream@0.0.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/stringstream/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/stringstream/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/stringstream/package.json"
          }
        ]
      },
      "tags": [
        "decode"
      ]
    },
    {
      "group": "",
      "name": "qs",
      "version": "6.2.1",
      "description": "A querystring parser that supports nesting and arrays, with a depth limit",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "BSD-3-Clause",
            "url": "https://opensource.org/licenses/BSD-3-Clause"
          }
        }
      ],
      "purl": "pkg:npm/qs@6.2.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/qs"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/qs.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/qs@6.2.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/qs/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/qs/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/qs/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mikeal Rogers <mikeal.rogers@gmail.com> (http://www.futurealoof.com)"
        }
      ],
      "group": "",
      "name": "oauth-sign",
      "version": "0.8.2",
      "description": "OAuth 1 signing. Formerly a vendor lib in mikeal/request, now a standalone module.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "Apache-2.0",
            "url": "https://opensource.org/licenses/Apache-2.0"
          }
        }
      ],
      "purl": "pkg:npm/oauth-sign@0.8.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/mikeal/oauth-sign#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/mikeal/oauth-sign.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/oauth-sign@0.8.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/oauth-sign/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/oauth-sign/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/oauth-sign/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Robert Kieffer <robert@broofa.com>"
        }
      ],
      "group": "",
      "name": "node-uuid",
      "version": "1.4.7",
      "description": "Rigorous implementation of RFC4122 (v1 and v4) UUIDs.",
      "scope": "optional",
      "purl": "pkg:npm/node-uuid@1.4.7",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/broofa/node-uuid"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/broofa/node-uuid.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/node-uuid@1.4.7",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/node-uuid/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/node-uuid/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/node-uuid/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "mime-types",
      "version": "2.1.12",
      "description": "The ultimate javascript content-type utility.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/mime-types@2.1.12",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jshttp/mime-types#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/jshttp/mime-types.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/mime-types@2.1.12",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/mime-types/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/mime-types/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/mime-types/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "mime-db",
      "version": "1.24.0",
      "description": "Media Type Database",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/mime-db@1.24.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jshttp/mime-db#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/jshttp/mime-db.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/mime-db@1.24.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/mime-types/node_modules/mime-db/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/mime-types/node_modules/mime-db/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/mime-types/node_modules/mime-db/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me)"
        }
      ],
      "group": "",
      "name": "json-stringify-safe",
      "version": "5.0.1",
      "description": "Like JSON.stringify, but doesn't blow up on circular refs.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/json-stringify-safe@5.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/isaacs/json-stringify-safe"
        },
        {
          "type": "vcs",
          "url": "git://github.com/isaacs/json-stringify-safe.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/json-stringify-safe@5.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/json-stringify-safe/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/json-stringify-safe/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/json-stringify-safe/package.json"
          }
        ]
      },
      "tags": [
        "json"
      ]
    },
    {
      "authors": [
        {
          "name": "Rod Vagg <rod@vagg.org>"
        }
      ],
      "group": "",
      "name": "isstream",
      "version": "0.1.2",
      "description": "Determine if an object is a Stream",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/isstream@0.1.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/rvagg/isstream"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/rvagg/isstream.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/isstream@0.1.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/isstream/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/isstream/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/isstream/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Hugh Kennedy <hughskennedy@gmail.com> (http://hughsk.io/)"
        }
      ],
      "group": "",
      "name": "is-typedarray",
      "version": "1.0.0",
      "description": "Detect whether or not an object is a Typed Array",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-typedarray@1.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/hughsk/is-typedarray"
        },
        {
          "type": "vcs",
          "url": "git://github.com/hughsk/is-typedarray.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-typedarray@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/is-typedarray/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/is-typedarray/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/is-typedarray/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Joyent"
        },
        {
          "name": " Inc"
        }
      ],
      "group": "",
      "name": "http-signature",
      "version": "1.1.1",
      "description": "Reference implementation of Joyent's HTTP Signature scheme.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/http-signature@1.1.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/joyent/node-http-signature/"
        },
        {
          "type": "vcs",
          "url": "git://github.com/joyent/node-http-signature.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/http-signature@1.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/http-signature/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/http-signature/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/http-signature/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Joyent"
        },
        {
          "name": " Inc"
        }
      ],
      "group": "",
      "name": "sshpk",
      "version": "1.10.1",
      "description": "A library for finding and using SSH public keys",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/sshpk@1.10.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/arekinath/node-sshpk#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/arekinath/node-sshpk.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/sshpk@1.10.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "TweetNaCl-js contributors"
        }
      ],
      "group": "",
      "name": "tweetnacl",
      "version": "0.14.3",
      "description": "Port of TweetNaCl cryptographic library to JavaScript",
      "scope": "optional",
      "licenses": [
        {
          "expression": "SEE LICENSE IN COPYING.txt"
        }
      ],
      "purl": "pkg:npm/tweetnacl@0.14.3",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://tweetnacl.js.org"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/dchest/tweetnacl-js.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/tweetnacl@0.14.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/tweetnacl/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/tweetnacl/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/tweetnacl/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Tom Wu"
        }
      ],
      "group": "",
      "name": "jsbn",
      "version": "0.1.0",
      "description": "The jsbn library is a fast, portable implementation of large-number math in pure JavaScript, enabling public-key crypto and other applications on desktop and mobile browsers.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "name": "BSD"
          }
        }
      ],
      "purl": "pkg:npm/jsbn@0.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/andyperlitch/jsbn"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/andyperlitch/jsbn.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/jsbn@0.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/jsbn/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/jsbn/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/jsbn/package.json"
          }
        ]
      },
      "tags": [
        "crypto"
      ]
    },
    {
      "authors": [
        {
          "name": "Michele Bini"
        },
        {
          "name": " Ron Garret"
        },
        {
          "name": " Guy K. Kloss"
        }
      ],
      "group": "",
      "name": "jodid25519",
      "version": "1.0.2",
      "description": "jodid25519 - Curve 25519-based cryptography",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/jodid25519@1.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/meganz/jodid25519"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/meganz/jodid25519.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/jodid25519@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/jodid25519/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/jodid25519/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/jodid25519/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Alex Wilson <alex.wilson@joyent.com>"
        }
      ],
      "group": "",
      "name": "getpass",
      "version": "0.1.6",
      "description": "getpass for node.js",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/getpass@0.1.6",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/arekinath/node-getpass#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/arekinath/node-getpass.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/getpass@0.1.6",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/getpass/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/getpass/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/getpass/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jeremie Miller <jeremie@jabber.org> (http://jeremie.com/)"
        }
      ],
      "group": "",
      "name": "ecc-jsbn",
      "version": "0.1.1",
      "description": "ECC JS code based on JSBN",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/ecc-jsbn@0.1.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/quartzjer/ecc-jsbn"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/quartzjer/ecc-jsbn.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/ecc-jsbn@0.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/ecc-jsbn/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/ecc-jsbn/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/ecc-jsbn/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Trent Mick <trentm@gmail.com> (http://trentm.com)"
        }
      ],
      "group": "",
      "name": "dashdash",
      "version": "1.14.0",
      "description": "A light, featureful and explicit option parsing library.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/dashdash@1.14.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/trentm/node-dashdash"
        },
        {
          "type": "vcs",
          "url": "git://github.com/trentm/node-dashdash.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/dashdash@1.14.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/dashdash/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/dashdash/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/dashdash/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "bcrypt-pbkdf",
      "version": "1.0.0",
      "description": "Port of the OpenBSD bcrypt_pbkdf function to pure JS",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "BSD-4-Clause",
            "url": "https://opensource.org/licenses/BSD-4-Clause"
          }
        }
      ],
      "purl": "pkg:npm/bcrypt-pbkdf@1.0.0",
      "type": "library",
      "bom-ref": "pkg:npm/bcrypt-pbkdf@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/bcrypt-pbkdf/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/bcrypt-pbkdf/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/bcrypt-pbkdf/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mark Cavage <mcavage@gmail.com>"
        }
      ],
      "group": "",
      "name": "assert-plus",
      "version": "1.0.0",
      "description": "Extra assertions on top of node's assert module",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/assert-plus@1.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/mcavage/node-assert-plus#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/mcavage/node-assert-plus.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/assert-plus@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/assert-plus/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/assert-plus/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/assert-plus/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mark Cavage <mcavage@gmail.com>"
        }
      ],
      "group": "",
      "name": "asn1",
      "version": "0.2.3",
      "description": "Contains parsers and serializers for ASN.1 (currently BER only)",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/asn1@0.2.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/mcavage/node-asn1"
        },
        {
          "type": "vcs",
          "url": "git://github.com/mcavage/node-asn1.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/asn1@0.2.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/asn1/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/asn1/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/asn1/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "jsprim",
      "version": "1.3.1",
      "description": "utilities for primitive JavaScript types",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/jsprim@1.3.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/davepacheco/node-jsprim#readme"
        },
        {
          "type": "vcs",
          "url": "git://github.com/davepacheco/node-jsprim.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/jsprim@1.3.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/jsprim/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/jsprim/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/jsprim/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "verror",
      "version": "1.3.6",
      "description": "richer JavaScript errors",
      "scope": "optional",
      "purl": "pkg:npm/verror@1.3.6",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/davepacheco/node-verror#readme"
        },
        {
          "type": "vcs",
          "url": "git://github.com/davepacheco/node-verror.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/verror@1.3.6",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/jsprim/node_modules/verror/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/jsprim/node_modules/verror/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/jsprim/node_modules/verror/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Kris Zyp"
        }
      ],
      "group": "",
      "name": "json-schema",
      "version": "0.2.3",
      "description": "JSON Schema validation and specifications",
      "scope": "optional",
      "purl": "pkg:npm/json-schema@0.2.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/kriszyp/json-schema#readme"
        },
        {
          "type": "vcs",
          "url": "git+ssh://git@github.com/kriszyp/json-schema.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/json-schema@0.2.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/jsprim/node_modules/json-schema/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/jsprim/node_modules/json-schema/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/jsprim/node_modules/json-schema/package.json"
          }
        ]
      },
      "tags": [
        "validation"
      ]
    },
    {
      "group": "",
      "name": "extsprintf",
      "version": "1.0.2",
      "description": "extended POSIX-style sprintf",
      "scope": "optional",
      "purl": "pkg:npm/extsprintf@1.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/davepacheco/node-extsprintf#readme"
        },
        {
          "type": "vcs",
          "url": "git://github.com/davepacheco/node-extsprintf.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/extsprintf@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/jsprim/node_modules/extsprintf/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/jsprim/node_modules/extsprintf/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/jsprim/node_modules/extsprintf/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mark Cavage <mcavage@gmail.com>"
        }
      ],
      "group": "",
      "name": "assert-plus",
      "version": "0.2.0",
      "description": "Extra assertions on top of node's assert module",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/assert-plus@0.2.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/mcavage/node-assert-plus#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/mcavage/node-assert-plus.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/assert-plus@0.2.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/assert-plus/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/assert-plus/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/assert-plus/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Eran Hammer <eran@hammer.io> (http://hueniverse.com)"
        }
      ],
      "group": "",
      "name": "hawk",
      "version": "3.1.3",
      "description": "HTTP Hawk Authentication Scheme",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "BSD-3-Clause",
            "url": "https://opensource.org/licenses/BSD-3-Clause"
          }
        }
      ],
      "purl": "pkg:npm/hawk@3.1.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/hueniverse/hawk#readme"
        },
        {
          "type": "vcs",
          "url": "git://github.com/hueniverse/hawk.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/hawk@3.1.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/hawk/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/hawk/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/hawk/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Eran Hammer <eran@hammer.io> (http://hueniverse.com)"
        }
      ],
      "group": "",
      "name": "sntp",
      "version": "1.0.9",
      "description": "SNTP Client",
      "scope": "optional",
      "purl": "pkg:npm/sntp@1.0.9",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/hueniverse/sntp"
        },
        {
          "type": "vcs",
          "url": "git://github.com/hueniverse/sntp.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/sntp@1.0.9",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/hawk/node_modules/sntp/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/hawk/node_modules/sntp/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/hawk/node_modules/sntp/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "hoek",
      "version": "2.16.3",
      "description": "General purpose node utilities",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "BSD-3-Clause",
            "url": "https://opensource.org/licenses/BSD-3-Clause"
          }
        }
      ],
      "purl": "pkg:npm/hoek@2.16.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/hapijs/hoek#readme"
        },
        {
          "type": "vcs",
          "url": "git://github.com/hapijs/hoek.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/hoek@2.16.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/hawk/node_modules/hoek/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/hawk/node_modules/hoek/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/hawk/node_modules/hoek/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "cryptiles",
      "version": "2.0.5",
      "description": "General purpose crypto utilities",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "BSD-3-Clause",
            "url": "https://opensource.org/licenses/BSD-3-Clause"
          }
        }
      ],
      "purl": "pkg:npm/cryptiles@2.0.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/hapijs/cryptiles#readme"
        },
        {
          "type": "vcs",
          "url": "git://github.com/hapijs/cryptiles.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/cryptiles@2.0.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/hawk/node_modules/cryptiles/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/hawk/node_modules/cryptiles/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/hawk/node_modules/cryptiles/package.json"
          }
        ]
      },
      "tags": [
        "crypto"
      ]
    },
    {
      "group": "",
      "name": "boom",
      "version": "2.10.1",
      "description": "HTTP-friendly error objects",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "BSD-3-Clause",
            "url": "https://opensource.org/licenses/BSD-3-Clause"
          }
        }
      ],
      "purl": "pkg:npm/boom@2.10.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/hapijs/boom#readme"
        },
        {
          "type": "vcs",
          "url": "git://github.com/hapijs/boom.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/boom@2.10.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/hawk/node_modules/boom/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/hawk/node_modules/boom/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/hawk/node_modules/boom/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Ahmad Nassri <ahmad@ahmadnassri.com> (https://www.ahmadnassri.com/)"
        }
      ],
      "group": "",
      "name": "har-validator",
      "version": "2.0.6",
      "description": "Extremely fast HTTP Archive (HAR) validator using JSON Schema",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/har-validator@2.0.6",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ahmadnassri/har-validator"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ahmadnassri/har-validator.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/har-validator@2.0.6",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/har-validator/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/har-validator/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/har-validator/package.json"
          }
        ]
      },
      "tags": [
        "json"
      ]
    },
    {
      "authors": [
        {
          "name": "Vsevolod Strukchinsky <floatdrop@gmail.com> (github.com/floatdrop)"
        }
      ],
      "group": "",
      "name": "pinkie-promise",
      "version": "2.0.1",
      "description": "ES2015 Promise ponyfill",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/pinkie-promise@2.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/floatdrop/pinkie-promise"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/floatdrop/pinkie-promise.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/pinkie-promise@2.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/pinkie-promise/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/pinkie-promise/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/pinkie-promise/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Vsevolod Strukchinsky <floatdrop@gmail.com> (github.com/floatdrop)"
        }
      ],
      "group": "",
      "name": "pinkie",
      "version": "2.0.4",
      "description": "Itty bitty little widdle twinkie pinkie ES2015 Promise implementation",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/pinkie@2.0.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/floatdrop/pinkie"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/floatdrop/pinkie.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/pinkie@2.0.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/pinkie-promise/node_modules/pinkie/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/pinkie-promise/node_modules/pinkie/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/pinkie-promise/node_modules/pinkie/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mathias Buus"
        }
      ],
      "group": "",
      "name": "is-my-json-valid",
      "version": "2.15.0",
      "description": "A JSONSchema validator that uses code generation to be extremely fast",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-my-json-valid@2.15.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/mafintosh/is-my-json-valid"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/mafintosh/is-my-json-valid.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-my-json-valid@2.15.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/is-my-json-valid/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/is-my-json-valid/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/is-my-json-valid/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Raynos <raynos2@gmail.com>"
        }
      ],
      "group": "",
      "name": "xtend",
      "version": "4.0.1",
      "description": "extend like a boss",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/xtend@4.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/Raynos/xtend"
        },
        {
          "type": "vcs",
          "url": "git://github.com/Raynos/xtend.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/xtend@4.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/is-my-json-valid/node_modules/xtend/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/is-my-json-valid/node_modules/xtend/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/is-my-json-valid/node_modules/xtend/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jan Lehnardt <jan@apache.org>"
        }
      ],
      "group": "",
      "name": "jsonpointer",
      "version": "4.0.0",
      "description": "Simple JSON Addressing.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/jsonpointer@4.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/janl/node-jsonpointer#readme"
        },
        {
          "type": "vcs",
          "url": "git+ssh://git@github.com/janl/node-jsonpointer.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/jsonpointer@4.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/is-my-json-valid/node_modules/jsonpointer/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/is-my-json-valid/node_modules/jsonpointer/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/is-my-json-valid/node_modules/jsonpointer/package.json"
          }
        ]
      },
      "tags": [
        "json"
      ]
    },
    {
      "authors": [
        {
          "name": "Mathias Buus (@mafintosh)"
        }
      ],
      "group": "",
      "name": "generate-object-property",
      "version": "1.2.0",
      "description": "Generate safe JS code that can used to reference a object property",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/generate-object-property@1.2.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/mafintosh/generate-object-property"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/mafintosh/generate-object-property.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/generate-object-property@1.2.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/is-my-json-valid/node_modules/generate-object-property/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/generate-object-property/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/generate-object-property/package.json"
              }
            ],
            "concludedValue": "node_modules/generate-object-property/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mikola Lysenko"
        }
      ],
      "group": "",
      "name": "is-property",
      "version": "1.0.2",
      "description": "Tests if a JSON property can be accessed using . syntax",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-property@1.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/mikolalysenko/is-property"
        },
        {
          "type": "vcs",
          "url": "git://github.com/mikolalysenko/is-property.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-property@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/is-my-json-valid/node_modules/generate-object-property/node_modules/is-property/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/is-property/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-property/package.json"
              }
            ],
            "concludedValue": "node_modules/is-property/package.json"
          }
        ]
      },
      "tags": [
        "json"
      ]
    },
    {
      "authors": [
        {
          "name": "Mathias Buus"
        }
      ],
      "group": "",
      "name": "generate-function",
      "version": "2.0.0",
      "description": "Module that helps you write generated functions in Node",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/generate-function@2.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/mafintosh/generate-function"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/mafintosh/generate-function.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/generate-function@2.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/is-my-json-valid/node_modules/generate-function/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/is-my-json-valid/node_modules/generate-function/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/is-my-json-valid/node_modules/generate-function/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "TJ Holowaychuk <tj@vision-media.ca>"
        }
      ],
      "group": "",
      "name": "commander",
      "version": "2.9.0",
      "description": "the complete solution for node.js command-line programs",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/commander@2.9.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/tj/commander.js#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/tj/commander.js.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/commander@2.9.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/commander/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/commander/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/commander/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "zhiyelee"
        }
      ],
      "group": "",
      "name": "graceful-readlink",
      "version": "1.0.1",
      "description": "graceful fs.readlink",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/graceful-readlink@1.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/zhiyelee/graceful-readlink"
        },
        {
          "type": "vcs",
          "url": "git://github.com/zhiyelee/graceful-readlink.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/graceful-readlink@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/commander/node_modules/graceful-readlink/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/commander/node_modules/graceful-readlink/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/commander/node_modules/graceful-readlink/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "chalk",
      "version": "1.1.3",
      "description": "Terminal string styling done right. Much color.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/chalk@1.1.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/chalk/chalk#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/chalk/chalk.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/chalk@1.1.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/chalk/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/chalk/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/chalk/package.json"
              }
            ],
            "concludedValue": "node_modules/chalk/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "has-ansi",
      "version": "2.0.0",
      "description": "Check if a string has ANSI escape codes",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/has-ansi@2.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/sindresorhus/has-ansi"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/sindresorhus/has-ansi.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/has-ansi@2.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/chalk/node_modules/has-ansi/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/has-ansi/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/has-ansi/package.json"
              }
            ],
            "concludedValue": "node_modules/has-ansi/package.json"
          }
        ]
      },
      "tags": [
        "escape"
      ]
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "escape-string-regexp",
      "version": "1.0.5",
      "description": "Escape RegExp special characters",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/escape-string-regexp@1.0.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/sindresorhus/escape-string-regexp"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/sindresorhus/escape-string-regexp.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/escape-string-regexp@1.0.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/chalk/node_modules/escape-string-regexp/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/escape-string-regexp/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/escape-string-regexp/package.json"
              }
            ],
            "concludedValue": "node_modules/escape-string-regexp/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "ansi-styles",
      "version": "2.2.1",
      "description": "ANSI escape codes for styling strings in the terminal",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/ansi-styles@2.2.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/chalk/ansi-styles#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/chalk/ansi-styles.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/ansi-styles@2.2.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/chalk/node_modules/ansi-styles/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/ansi-styles/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/ansi-styles/package.json"
              }
            ],
            "concludedValue": "node_modules/ansi-styles/package.json"
          }
        ]
      },
      "tags": [
        "escape"
      ]
    },
    {
      "authors": [
        {
          "name": "Felix Geisendörfer <felix@debuggable.com> (http://debuggable.com/)"
        }
      ],
      "group": "",
      "name": "form-data",
      "version": "2.0.0",
      "description": "A library to create readable \"multipart/form-data\" streams. Can be used to submit forms and file uploads to other web applications.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/form-data@2.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/form-data/form-data#readme"
        },
        {
          "type": "vcs",
          "url": "git://github.com/form-data/form-data.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/form-data@2.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/form-data/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/form-data/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/form-data/package.json"
          }
        ]
      },
      "tags": [
        "web"
      ]
    },
    {
      "authors": [
        {
          "name": "Alex Indigo <iam@alexindigo.com>"
        }
      ],
      "group": "",
      "name": "asynckit",
      "version": "0.4.0",
      "description": "Minimal async jobs utility library, with streams support",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/asynckit@0.4.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/alexindigo/asynckit#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/alexindigo/asynckit.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/asynckit@0.4.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/form-data/node_modules/asynckit/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/form-data/node_modules/asynckit/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/form-data/node_modules/asynckit/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mikeal Rogers <mikeal.rogers@gmail.com> (http://www.futurealoof.com)"
        }
      ],
      "group": "",
      "name": "forever-agent",
      "version": "0.6.1",
      "description": "HTTP Agent that keeps socket connections alive between keep-alive requests. Formerly part of mikeal/request, now a standalone module.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "Apache-2.0",
            "url": "https://opensource.org/licenses/Apache-2.0"
          }
        }
      ],
      "purl": "pkg:npm/forever-agent@0.6.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/mikeal/forever-agent"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/mikeal/forever-agent.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/forever-agent@0.6.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/forever-agent/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/forever-agent/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/forever-agent/package.json"
          }
        ]
      },
      "tags": [
        "socket"
      ]
    },
    {
      "authors": [
        {
          "name": "Stefan Thomas <justmoon@members.fsf.org> (http://www.justmoon.net)"
        }
      ],
      "group": "",
      "name": "extend",
      "version": "3.0.0",
      "description": "Port of jQuery.extend for node.js and the browser",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/extend@3.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/justmoon/node-extend#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/justmoon/node-extend.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/extend@3.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/extend/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/extend/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/extend/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Felix Geisendörfer <felix@debuggable.com> (http://debuggable.com/)"
        }
      ],
      "group": "",
      "name": "combined-stream",
      "version": "1.0.5",
      "description": "A stream that emits multiple other streams one after another.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/combined-stream@1.0.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/felixge/node-combined-stream"
        },
        {
          "type": "vcs",
          "url": "git://github.com/felixge/node-combined-stream.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/combined-stream@1.0.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/combined-stream/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/combined-stream/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/combined-stream/package.json"
          }
        ]
      },
      "tags": [
        "stream"
      ]
    },
    {
      "authors": [
        {
          "name": "Felix Geisendörfer <felix@debuggable.com> (http://debuggable.com/)"
        }
      ],
      "group": "",
      "name": "delayed-stream",
      "version": "1.0.0",
      "description": "Buffers events from a stream until you are ready to handle them.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/delayed-stream@1.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/felixge/node-delayed-stream"
        },
        {
          "type": "vcs",
          "url": "git://github.com/felixge/node-delayed-stream.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/delayed-stream@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/combined-stream/node_modules/delayed-stream/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/combined-stream/node_modules/delayed-stream/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/combined-stream/node_modules/delayed-stream/package.json"
          }
        ]
      },
      "tags": [
        "stream"
      ]
    },
    {
      "authors": [
        {
          "name": "Mikeal Rogers <mikeal.rogers@gmail.com>"
        }
      ],
      "group": "",
      "name": "caseless",
      "version": "0.11.0",
      "description": "Caseless object set/get/has, very useful when working with HTTP headers.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "Apache-2.0",
            "url": "https://opensource.org/licenses/Apache-2.0"
          }
        }
      ],
      "purl": "pkg:npm/caseless@0.11.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/mikeal/caseless#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/mikeal/caseless.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/caseless@0.11.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/caseless/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/caseless/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/caseless/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "bl",
      "version": "1.1.2",
      "description": "Buffer List: collect buffers and access with a standard readable Buffer interface, streamable too!",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/bl@1.1.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/rvagg/bl"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/rvagg/bl.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/bl@1.1.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/bl/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/bl/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/bl/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "readable-stream",
      "version": "2.0.6",
      "description": "Streams3, a user-land copy of the stream library from Node.js",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/readable-stream@2.0.6",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/nodejs/readable-stream#readme"
        },
        {
          "type": "vcs",
          "url": "git://github.com/nodejs/readable-stream.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/readable-stream@2.0.6",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/bl/node_modules/readable-stream/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npm-registry-client/node_modules/concat-stream/node_modules/readable-stream/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/npm-registry-client/node_modules/concat-stream/node_modules/readable-stream/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/npm-registry-client/node_modules/concat-stream/node_modules/readable-stream/package.json"
          }
        ]
      },
      "tags": [
        "stream"
      ]
    },
    {
      "group": "",
      "name": "process-nextick-args",
      "version": "1.0.7",
      "description": "process.nextTick but always with args",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/process-nextick-args@1.0.7",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/calvinmetcalf/process-nextick-args"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/calvinmetcalf/process-nextick-args.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/process-nextick-args@1.0.7",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/bl/node_modules/readable-stream/node_modules/process-nextick-args/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/readable-stream/node_modules/process-nextick-args/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npm-registry-client/node_modules/concat-stream/node_modules/readable-stream/node_modules/process-nextick-args/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/npm-registry-client/node_modules/concat-stream/node_modules/readable-stream/node_modules/process-nextick-args/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/npm-registry-client/node_modules/concat-stream/node_modules/readable-stream/node_modules/process-nextick-args/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Julian Gruber <mail@juliangruber.com> (http://juliangruber.com)"
        }
      ],
      "group": "",
      "name": "isarray",
      "version": "1.0.0",
      "description": "Array#isArray for older browsers",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/isarray@1.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/juliangruber/isarray"
        },
        {
          "type": "vcs",
          "url": "git://github.com/juliangruber/isarray.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/isarray@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/bl/node_modules/readable-stream/node_modules/isarray/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/readable-stream/node_modules/isarray/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npm-registry-client/node_modules/concat-stream/node_modules/readable-stream/node_modules/isarray/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/isarray/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/isarray/package.json"
              }
            ],
            "concludedValue": "node_modules/isarray/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "core-util-is",
      "version": "1.0.2",
      "description": "The `util.is*` functions introduced in Node v0.12.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/core-util-is@1.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/isaacs/core-util-is#readme"
        },
        {
          "type": "vcs",
          "url": "git://github.com/isaacs/core-util-is.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/core-util-is@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/bl/node_modules/readable-stream/node_modules/core-util-is/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/readable-stream/node_modules/core-util-is/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npm-registry-client/node_modules/concat-stream/node_modules/readable-stream/node_modules/core-util-is/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/npm-registry-client/node_modules/concat-stream/node_modules/readable-stream/node_modules/core-util-is/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/npm-registry-client/node_modules/concat-stream/node_modules/readable-stream/node_modules/core-util-is/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Michael Hart <michael.hart.au@gmail.com> (http://github.com/mhart)"
        }
      ],
      "group": "",
      "name": "aws4",
      "version": "1.4.1",
      "description": "Signs and prepares requests using AWS Signature Version 4",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/aws4@1.4.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/mhart/aws4#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/mhart/aws4.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/aws4@1.4.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/aws4/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/aws4/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/aws4/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mikeal Rogers <mikeal.rogers@gmail.com> (http://www.futurealoof.com)"
        }
      ],
      "group": "",
      "name": "aws-sign2",
      "version": "0.6.0",
      "description": "AWS signing. Originally pulled from LearnBoost/knox, maintained as vendor in request, now a standalone module.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "Apache-2.0",
            "url": "https://opensource.org/licenses/Apache-2.0"
          }
        }
      ],
      "purl": "pkg:npm/aws-sign2@0.6.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/mikeal/aws-sign#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/mikeal/aws-sign.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/aws-sign2@0.6.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/request/node_modules/aws-sign2/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/request/node_modules/aws-sign2/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/request/node_modules/aws-sign2/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Rebecca Turner <me@re-becca.org> (http://re-becca.org)"
        }
      ],
      "group": "",
      "name": "realize-package-specifier",
      "version": "3.0.3",
      "description": "Like npm-package-arg, but more so, producing full file paths and differentiating local tar and directory sources.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/realize-package-specifier@3.0.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/npm/realize-package-specifier"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/npm/realize-package-specifier.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/realize-package-specifier@3.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/realize-package-specifier/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/realize-package-specifier/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/realize-package-specifier/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "readdir-scoped-modules",
      "version": "1.0.2",
      "description": "Like `fs.readdir` but handling `@org/module` dirs as if they were a single entry.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/readdir-scoped-modules@1.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/npm/readdir-scoped-modules"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/npm/readdir-scoped-modules.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/readdir-scoped-modules@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/readdir-scoped-modules/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/readdir-scoped-modules/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/readdir-scoped-modules/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "readable-stream",
      "version": "2.1.5",
      "description": "Streams3, a user-land copy of the stream library from Node.js",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/readable-stream@2.1.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/nodejs/readable-stream#readme"
        },
        {
          "type": "vcs",
          "url": "git://github.com/nodejs/readable-stream.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/readable-stream@2.1.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/readable-stream/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/readable-stream/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/readable-stream/package.json"
          }
        ]
      },
      "tags": [
        "stream"
      ]
    },
    {
      "group": "",
      "name": "buffer-shims",
      "version": "1.0.0",
      "description": "some shims for node buffers",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/buffer-shims@1.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/calvinmetcalf/buffer-shims#readme"
        },
        {
          "type": "vcs",
          "url": "git+ssh://git@github.com/calvinmetcalf/buffer-shims.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/buffer-shims@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/readable-stream/node_modules/buffer-shims/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/readable-stream/node_modules/buffer-shims/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/readable-stream/node_modules/buffer-shims/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "read-package-tree",
      "version": "5.1.5",
      "description": "Read the contents of node_modules.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/read-package-tree@5.1.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/npm/read-package-tree"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/npm/read-package-tree.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/read-package-tree@5.1.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/read-package-tree/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/read-package-tree/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/read-package-tree/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "read-package-json",
      "version": "2.0.4",
      "description": "The thing npm uses to read package.json files with semantics and defaults and validation",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/read-package-json@2.0.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/npm/read-package-json#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/npm/read-package-json.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/read-package-json@2.0.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/read-package-json/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/read-package-json/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/read-package-json/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "readmes",
      "version": "99.999.999999999",
      "scope": "optional",
      "purl": "pkg:npm/readmes@99.999.999999999",
      "type": "library",
      "bom-ref": "pkg:npm/readmes@99.999.999999999",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/read-package-json/test/fixtures/readmes/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/read-package-json/test/fixtures/readmes/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/read-package-json/test/fixtures/readmes/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sam Mikes <smikes@cubane.com>"
        }
      ],
      "group": "",
      "name": "json-parse-helpfulerror",
      "version": "1.0.3",
      "description": "A drop-in replacement for JSON.parse that uses `jju` to give helpful errors",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/json-parse-helpfulerror@1.0.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/smikes/json-parse-helpfulerror"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/smikes/json-parse-helpfulerror.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/json-parse-helpfulerror@1.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/read-package-json/node_modules/json-parse-helpfulerror/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/read-package-json/node_modules/json-parse-helpfulerror/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/read-package-json/node_modules/json-parse-helpfulerror/package.json"
          }
        ]
      },
      "tags": [
        "json"
      ]
    },
    {
      "authors": [
        {
          "name": "Alex Kocharin <alex@kocharin.ru>"
        }
      ],
      "group": "",
      "name": "jju",
      "version": "1.3.0",
      "description": "a set of utilities to work with JSON / JSON5 documents",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "WTFPL",
            "url": "https://opensource.org/licenses/WTFPL"
          }
        }
      ],
      "purl": "pkg:npm/jju@1.3.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "http://rlidwka.github.io/jju/"
        },
        {
          "type": "vcs",
          "url": "git://github.com/rlidwka/jju.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/jju@1.3.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/read-package-json/node_modules/json-parse-helpfulerror/node_modules/jju/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/read-package-json/node_modules/json-parse-helpfulerror/node_modules/jju/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/read-package-json/node_modules/json-parse-helpfulerror/node_modules/jju/package.json"
          }
        ]
      },
      "tags": [
        "json"
      ]
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "glob",
      "version": "6.0.4",
      "description": "a little globber",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/glob@6.0.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/isaacs/node-glob#readme"
        },
        {
          "type": "vcs",
          "url": "git://github.com/isaacs/node-glob.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/glob@6.0.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/read-package-json/node_modules/glob/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/init-package-json/node_modules/glob/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/init-package-json/node_modules/glob/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/init-package-json/node_modules/glob/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "path-is-absolute",
      "version": "1.0.0",
      "description": "Node.js 0.12 path.isAbsolute() ponyfill",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/path-is-absolute@1.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/sindresorhus/path-is-absolute"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/sindresorhus/path-is-absolute.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/path-is-absolute@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/read-package-json/node_modules/glob/node_modules/path-is-absolute/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/init-package-json/node_modules/glob/node_modules/path-is-absolute/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/init-package-json/node_modules/glob/node_modules/path-is-absolute/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/init-package-json/node_modules/glob/node_modules/path-is-absolute/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me)"
        }
      ],
      "group": "",
      "name": "minimatch",
      "version": "3.0.3",
      "description": "a glob matcher in javascript",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/minimatch@3.0.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/isaacs/minimatch#readme"
        },
        {
          "type": "vcs",
          "url": "git://github.com/isaacs/minimatch.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/minimatch@3.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/read-package-json/node_modules/glob/node_modules/minimatch/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/node-gyp/node_modules/minimatch/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/init-package-json/node_modules/glob/node_modules/minimatch/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/glob/node_modules/minimatch/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/fstream-npm/node_modules/fstream-ignore/node_modules/minimatch/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/fstream-npm/node_modules/fstream-ignore/node_modules/minimatch/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/fstream-npm/node_modules/fstream-ignore/node_modules/minimatch/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Julian Gruber <mail@juliangruber.com> (http://juliangruber.com)"
        }
      ],
      "group": "",
      "name": "brace-expansion",
      "version": "1.1.6",
      "description": "Brace expansion as known from sh/bash",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/brace-expansion@1.1.6",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/juliangruber/brace-expansion"
        },
        {
          "type": "vcs",
          "url": "git://github.com/juliangruber/brace-expansion.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/brace-expansion@1.1.6",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/read-package-json/node_modules/glob/node_modules/minimatch/node_modules/brace-expansion/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/node-gyp/node_modules/minimatch/node_modules/brace-expansion/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/init-package-json/node_modules/glob/node_modules/minimatch/node_modules/brace-expansion/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/glob/node_modules/minimatch/node_modules/brace-expansion/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/fstream-npm/node_modules/fstream-ignore/node_modules/minimatch/node_modules/brace-expansion/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/fstream-npm/node_modules/fstream-ignore/node_modules/minimatch/node_modules/brace-expansion/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/fstream-npm/node_modules/fstream-ignore/node_modules/minimatch/node_modules/brace-expansion/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "James Halliday <mail@substack.net> (http://substack.net)"
        }
      ],
      "group": "",
      "name": "concat-map",
      "version": "0.0.1",
      "description": "concatenative mapdashery",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/concat-map@0.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/substack/node-concat-map"
        },
        {
          "type": "vcs",
          "url": "git://github.com/substack/node-concat-map.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/concat-map@0.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/read-package-json/node_modules/glob/node_modules/minimatch/node_modules/brace-expansion/node_modules/concat-map/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/node-gyp/node_modules/minimatch/node_modules/brace-expansion/node_modules/concat-map/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/init-package-json/node_modules/glob/node_modules/minimatch/node_modules/brace-expansion/node_modules/concat-map/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/glob/node_modules/minimatch/node_modules/brace-expansion/node_modules/concat-map/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/fstream-npm/node_modules/fstream-ignore/node_modules/minimatch/node_modules/brace-expansion/node_modules/concat-map/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/concat-map/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/concat-map/package.json"
              }
            ],
            "concludedValue": "node_modules/concat-map/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Julian Gruber <mail@juliangruber.com> (http://juliangruber.com)"
        }
      ],
      "group": "",
      "name": "balanced-match",
      "version": "0.4.2",
      "description": "Match balanced character pairs, like \"{\" and \"}\"",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/balanced-match@0.4.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/juliangruber/balanced-match"
        },
        {
          "type": "vcs",
          "url": "git://github.com/juliangruber/balanced-match.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/balanced-match@0.4.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/read-package-json/node_modules/glob/node_modules/minimatch/node_modules/brace-expansion/node_modules/balanced-match/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/node-gyp/node_modules/minimatch/node_modules/brace-expansion/node_modules/balanced-match/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/init-package-json/node_modules/glob/node_modules/minimatch/node_modules/brace-expansion/node_modules/balanced-match/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/glob/node_modules/minimatch/node_modules/brace-expansion/node_modules/balanced-match/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/fstream-npm/node_modules/fstream-ignore/node_modules/minimatch/node_modules/brace-expansion/node_modules/balanced-match/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/fstream-npm/node_modules/fstream-ignore/node_modules/minimatch/node_modules/brace-expansion/node_modules/balanced-match/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/fstream-npm/node_modules/fstream-ignore/node_modules/minimatch/node_modules/brace-expansion/node_modules/balanced-match/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "read-installed",
      "version": "4.0.3",
      "description": "Read all the installed packages in a folder, and return a tree structure with all the data.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/read-installed@4.0.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/isaacs/read-installed#readme"
        },
        {
          "type": "vcs",
          "url": "git://github.com/isaacs/read-installed.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/read-installed@4.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/read-installed/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/read-installed/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/read-installed/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "read-installed",
      "version": "1.0.0",
      "description": "Read all the installed packages in a folder, and return a tree structure with all the data.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/read-installed@1.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/isaacs/read-installed"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/read-installed@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/read-installed/test/fixtures/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/read-installed/test/fixtures/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/read-installed/test/fixtures/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "example",
      "version": "0.0.0",
      "scope": "optional",
      "purl": "pkg:npm/example@0.0.0",
      "type": "library",
      "bom-ref": "pkg:npm/example@0.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/read-installed/test/fixtures/grandparent-peer-dev/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/read-installed/test/fixtures/grandparent-peer/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/read-installed/test/fixtures/grandparent-peer/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/read-installed/test/fixtures/grandparent-peer/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "extraneous-dev-dep",
      "version": "0.0.0",
      "scope": "optional",
      "purl": "pkg:npm/extraneous-dev-dep@0.0.0",
      "type": "library",
      "bom-ref": "pkg:npm/extraneous-dev-dep@0.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/read-installed/test/fixtures/extraneous-dev-dep/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/read-installed/test/fixtures/extraneous-dev-dep/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/read-installed/test/fixtures/extraneous-dev-dep/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "extraneous-detected",
      "version": "0.0.0",
      "scope": "optional",
      "purl": "pkg:npm/extraneous-detected@0.0.0",
      "type": "library",
      "bom-ref": "pkg:npm/extraneous-detected@0.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/read-installed/test/fixtures/extraneous-detected/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/read-installed/test/fixtures/extraneous-detected/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/read-installed/test/fixtures/extraneous-detected/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "util-extend",
      "version": "1.0.3",
      "description": "Node's internal object extension function",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/util-extend@1.0.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/isaacs/util-extend#readme"
        },
        {
          "type": "vcs",
          "url": "git://github.com/isaacs/util-extend.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/util-extend@1.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/read-installed/node_modules/util-extend/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/read-installed/node_modules/util-extend/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/read-installed/node_modules/util-extend/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Rebecca Turner <me@re-becca.org> (http://re-becca.org/)"
        }
      ],
      "group": "",
      "name": "read-cmd-shim",
      "version": "1.0.1",
      "description": "Figure out what a cmd-shim is pointing at. This acts as the equivalent of fs.readlink.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/read-cmd-shim@1.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/npm/read-cmd-shim#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/npm/read-cmd-shim.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/read-cmd-shim@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/read-cmd-shim/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/read-cmd-shim/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/read-cmd-shim/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "read",
      "version": "1.0.7",
      "description": "read(1) for node programs",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/read@1.0.7",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/isaacs/read#readme"
        },
        {
          "type": "vcs",
          "url": "git://github.com/isaacs/read.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/read@1.0.7",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/read/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/read/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/read/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "mute-stream",
      "version": "0.0.5",
      "description": "Bytes go in, but they don't come out (when muted).",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/mute-stream@0.0.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/isaacs/mute-stream#readme"
        },
        {
          "type": "vcs",
          "url": "git://github.com/isaacs/mute-stream.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/mute-stream@0.0.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/read/node_modules/mute-stream/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/mute-stream/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/mute-stream/package.json"
              }
            ],
            "concludedValue": "node_modules/mute-stream/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "osenv",
      "version": "0.1.3",
      "description": "Look up environment settings specific to different operating systems",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/osenv@0.1.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/npm/osenv#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/npm/osenv.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/osenv@0.1.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/osenv/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/osenv/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/osenv/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "os-tmpdir",
      "version": "1.0.1",
      "description": "Node.js os.tmpdir() ponyfill",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/os-tmpdir@1.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/sindresorhus/os-tmpdir#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/sindresorhus/os-tmpdir.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/os-tmpdir@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/osenv/node_modules/os-tmpdir/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/osenv/node_modules/os-tmpdir/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/osenv/node_modules/os-tmpdir/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "os-homedir",
      "version": "1.0.1",
      "description": "io.js 2.3.0 os.homedir() ponyfill",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/os-homedir@1.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/sindresorhus/os-homedir#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/sindresorhus/os-homedir.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/os-homedir@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/osenv/node_modules/os-homedir/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/osenv/node_modules/os-homedir/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/osenv/node_modules/os-homedir/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Domenic Denicola <d@domenic.me> (https://domenic.me/)"
        }
      ],
      "group": "",
      "name": "opener",
      "version": "1.4.2",
      "description": "Opens stuff, like webpages and files and executables, cross-platform",
      "scope": "optional",
      "licenses": [
        {
          "expression": "(WTFPL OR MIT)"
        }
      ],
      "purl": "pkg:npm/opener@1.4.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/domenic/opener#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/domenic/opener.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/opener@1.4.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/opener/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/opener/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/opener/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "npmlog",
      "version": "4.0.0",
      "description": "logger for npm",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/npmlog@4.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/npm/npmlog#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/npm/npmlog.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/npmlog@4.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npmlog/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/npmlog/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/npmlog/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Ben Coe <ben@npmjs.com>"
        }
      ],
      "group": "",
      "name": "set-blocking",
      "version": "2.0.0",
      "description": "set blocking stdio and stderr ensuring that terminal output does not truncate",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/set-blocking@2.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/yargs/set-blocking#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/yargs/set-blocking.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/set-blocking@2.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npmlog/node_modules/set-blocking/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npm-registry-client/node_modules/npmlog/node_modules/set-blocking/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/set-blocking/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/set-blocking/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/set-blocking/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Rebecca Turner <me@re-becca.org>"
        }
      ],
      "group": "",
      "name": "gauge",
      "version": "2.6.0",
      "description": "A terminal based horizontal guage",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/gauge@2.6.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/iarna/gauge"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/iarna/gauge.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/gauge@2.6.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npmlog/node_modules/gauge/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npm-registry-client/node_modules/npmlog/node_modules/gauge/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/gauge/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/gauge/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/gauge/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Rebecca Turner <me@re-becca.org> (http://re-becca.org/)"
        }
      ],
      "group": "",
      "name": "wide-align",
      "version": "1.1.0",
      "description": "A wide-character aware text alignment function for use on the console or with fixed width fonts.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/wide-align@1.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/iarna/wide-align#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/iarna/wide-align.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/wide-align@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npmlog/node_modules/gauge/node_modules/wide-align/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npm-registry-client/node_modules/npmlog/node_modules/gauge/node_modules/wide-align/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/gauge/node_modules/wide-align/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/gauge/node_modules/wide-align/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/gauge/node_modules/wide-align/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "is-fullwidth-code-point",
      "version": "1.0.0",
      "description": "Check if the character represented by a given Unicode code point is fullwidth",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-fullwidth-code-point@1.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/sindresorhus/is-fullwidth-code-point"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/sindresorhus/is-fullwidth-code-point.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-fullwidth-code-point@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npmlog/node_modules/gauge/node_modules/string-width/node_modules/is-fullwidth-code-point/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npm-registry-client/node_modules/npmlog/node_modules/gauge/node_modules/string-width/node_modules/is-fullwidth-code-point/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/gauge/node_modules/string-width/node_modules/is-fullwidth-code-point/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/is-fullwidth-code-point/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-fullwidth-code-point/package.json"
              }
            ],
            "concludedValue": "node_modules/is-fullwidth-code-point/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "number-is-nan",
      "version": "1.0.0",
      "description": "ES6 Number.isNaN() ponyfill",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/number-is-nan@1.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/sindresorhus/number-is-nan#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/sindresorhus/number-is-nan.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/number-is-nan@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npmlog/node_modules/gauge/node_modules/string-width/node_modules/is-fullwidth-code-point/node_modules/number-is-nan/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npmlog/node_modules/gauge/node_modules/string-width/node_modules/code-point-at/node_modules/number-is-nan/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npm-registry-client/node_modules/npmlog/node_modules/gauge/node_modules/string-width/node_modules/is-fullwidth-code-point/node_modules/number-is-nan/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npm-registry-client/node_modules/npmlog/node_modules/gauge/node_modules/string-width/node_modules/code-point-at/node_modules/number-is-nan/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/gauge/node_modules/string-width/node_modules/is-fullwidth-code-point/node_modules/number-is-nan/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/gauge/node_modules/string-width/node_modules/code-point-at/node_modules/number-is-nan/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/gauge/node_modules/string-width/node_modules/code-point-at/node_modules/number-is-nan/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/gauge/node_modules/string-width/node_modules/code-point-at/node_modules/number-is-nan/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "code-point-at",
      "version": "1.0.0",
      "description": "ES2015 String#codePointAt() ponyfill",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/code-point-at@1.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/sindresorhus/code-point-at"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/sindresorhus/code-point-at.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/code-point-at@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npmlog/node_modules/gauge/node_modules/string-width/node_modules/code-point-at/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npm-registry-client/node_modules/npmlog/node_modules/gauge/node_modules/string-width/node_modules/code-point-at/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/gauge/node_modules/string-width/node_modules/code-point-at/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/gauge/node_modules/string-width/node_modules/code-point-at/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/gauge/node_modules/string-width/node_modules/code-point-at/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Ben Coe <ben@npmjs.com>"
        }
      ],
      "group": "",
      "name": "signal-exit",
      "version": "3.0.0",
      "description": "when you want to fire an event no matter how a process exits.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/signal-exit@3.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/tapjs/signal-exit"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/tapjs/signal-exit.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/signal-exit@3.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npmlog/node_modules/gauge/node_modules/signal-exit/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npm-registry-client/node_modules/npmlog/node_modules/gauge/node_modules/signal-exit/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/gauge/node_modules/signal-exit/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/gauge/node_modules/signal-exit/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/gauge/node_modules/signal-exit/package.json"
          }
        ]
      },
      "tags": [
        "event"
      ]
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "object-assign",
      "version": "4.1.0",
      "description": "ES2015 Object.assign() ponyfill",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/object-assign@4.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/sindresorhus/object-assign#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/sindresorhus/object-assign.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/object-assign@4.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npmlog/node_modules/gauge/node_modules/object-assign/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npm-registry-client/node_modules/npmlog/node_modules/gauge/node_modules/object-assign/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/gauge/node_modules/object-assign/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/gauge/node_modules/object-assign/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/gauge/node_modules/object-assign/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (http://sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "has-color",
      "version": "0.1.7",
      "description": "Detect whether a terminal supports color",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/has-color@0.1.7",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/sindresorhus/has-color"
        },
        {
          "type": "vcs",
          "url": "git://github.com/sindresorhus/has-color.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/has-color@0.1.7",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npmlog/node_modules/gauge/node_modules/has-color/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npm-registry-client/node_modules/npmlog/node_modules/gauge/node_modules/has-color/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/gauge/node_modules/has-color/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/gauge/node_modules/has-color/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/gauge/node_modules/has-color/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Rebecca Turner <me@re-becca.org> (http://re-becca.org/)"
        }
      ],
      "group": "",
      "name": "console-control-strings",
      "version": "1.1.0",
      "description": "A library of cross-platform tested terminal/console command strings for doing things like color and cursor positioning.  This is a subset of both ansi and vt100.  All control codes included work on both Windows & Unix-like OSes, except where noted.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/console-control-strings@1.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/iarna/console-control-strings#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/iarna/console-control-strings.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/console-control-strings@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npmlog/node_modules/console-control-strings/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npm-registry-client/node_modules/npmlog/node_modules/console-control-strings/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/console-control-strings/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/console-control-strings/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/console-control-strings/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Rebecca Turner (http://re-becca.org)"
        }
      ],
      "group": "",
      "name": "are-we-there-yet",
      "version": "1.1.2",
      "description": "Keep track of the overall completion of many dispirate processes",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/are-we-there-yet@1.1.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/iarna/are-we-there-yet"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/iarna/are-we-there-yet.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/are-we-there-yet@1.1.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npmlog/node_modules/are-we-there-yet/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npm-registry-client/node_modules/npmlog/node_modules/are-we-there-yet/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/are-we-there-yet/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/are-we-there-yet/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/are-we-there-yet/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "delegates",
      "version": "1.0.0",
      "description": "delegate methods and accessors to another property",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/delegates@1.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/visionmedia/node-delegates#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/visionmedia/node-delegates.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/delegates@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npmlog/node_modules/are-we-there-yet/node_modules/delegates/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npm-registry-client/node_modules/npmlog/node_modules/are-we-there-yet/node_modules/delegates/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/are-we-there-yet/node_modules/delegates/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/are-we-there-yet/node_modules/delegates/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/node-gyp/node_modules/npmlog/node_modules/are-we-there-yet/node_modules/delegates/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Robert Kowalski <rok@kowalski.gd>"
        }
      ],
      "group": "",
      "name": "npm-user-validate",
      "version": "0.1.5",
      "description": "User validations for npm",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "BSD-2-Clause",
            "url": "https://opensource.org/licenses/BSD-2-Clause"
          }
        }
      ],
      "purl": "pkg:npm/npm-user-validate@0.1.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/npm/npm-user-validate#readme"
        },
        {
          "type": "vcs",
          "url": "git://github.com/npm/npm-user-validate.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/npm-user-validate@0.1.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npm-user-validate/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/npm-user-validate/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/npm-user-validate/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "npm-registry-client",
      "version": "7.2.1",
      "description": "Client for the npm registry",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/npm-registry-client@7.2.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/npm/npm-registry-client#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/npm/npm-registry-client.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/npm-registry-client@7.2.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npm-registry-client/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/npm-registry-client/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/npm-registry-client/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "npmlog",
      "version": "3.1.2",
      "description": "logger for npm",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/npmlog@3.1.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/npm/npmlog#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/npm/npmlog.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/npmlog@3.1.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npm-registry-client/node_modules/npmlog/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/node-gyp/node_modules/npmlog/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/node-gyp/node_modules/npmlog/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/node-gyp/node_modules/npmlog/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Max Ogden <max@maxogden.com>"
        }
      ],
      "group": "",
      "name": "concat-stream",
      "version": "1.5.2",
      "description": "writable stream that concatenates strings or binary data and calls a callback with the result",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/concat-stream@1.5.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/maxogden/concat-stream#readme"
        },
        {
          "type": "vcs",
          "url": "git+ssh://git@github.com/maxogden/concat-stream.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/concat-stream@1.5.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npm-registry-client/node_modules/concat-stream/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/npm-registry-client/node_modules/concat-stream/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/npm-registry-client/node_modules/concat-stream/package.json"
          }
        ]
      },
      "tags": [
        "binary",
        "stream"
      ]
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "npm-package-arg",
      "version": "4.2.0",
      "description": "Parse the things that can be arguments to `npm install`",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/npm-package-arg@4.2.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/npm/npm-package-arg"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/npm/npm-package-arg.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/npm-package-arg@4.2.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npm-package-arg/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/npm-package-arg/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/npm-package-arg/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Robert Kowalski <rok@kowalski.gd>"
        }
      ],
      "group": "",
      "name": "npm-install-checks",
      "version": "3.0.0",
      "description": "checks that npm runs during the installation of a module",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "BSD-2-Clause",
            "url": "https://opensource.org/licenses/BSD-2-Clause"
          }
        }
      ],
      "purl": "pkg:npm/npm-install-checks@3.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/npm/npm-install-checks"
        },
        {
          "type": "vcs",
          "url": "git://github.com/npm/npm-install-checks.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/npm-install-checks@3.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npm-install-checks/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/npm-install-checks/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/npm-install-checks/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "npm-cache-filename",
      "version": "1.0.2",
      "description": "Given a cache folder and url, return the appropriate cache folder.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/npm-cache-filename@1.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/npm/npm-cache-filename"
        },
        {
          "type": "vcs",
          "url": "git://github.com/npm/npm-cache-filename.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/npm-cache-filename@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/npm-cache-filename/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/npm-cache-filename/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/npm-cache-filename/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Meryn Stol <merynstol@gmail.com>"
        }
      ],
      "group": "",
      "name": "normalize-package-data",
      "version": "2.3.5",
      "description": "Normalizes data that can be found in package.json files.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "BSD-2-Clause",
            "url": "https://opensource.org/licenses/BSD-2-Clause"
          }
        }
      ],
      "purl": "pkg:npm/normalize-package-data@2.3.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/npm/normalize-package-data#readme"
        },
        {
          "type": "vcs",
          "url": "git://github.com/npm/normalize-package-data.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/normalize-package-data@2.3.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/normalize-package-data/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/normalize-package-data/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/normalize-package-data/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "is-builtin-module",
      "version": "1.0.0",
      "description": "Check if a string matches the name of a Node.js builtin module",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-builtin-module@1.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/sindresorhus/is-builtin-module"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/sindresorhus/is-builtin-module.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-builtin-module@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/normalize-package-data/node_modules/is-builtin-module/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/normalize-package-data/node_modules/is-builtin-module/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/normalize-package-data/node_modules/is-builtin-module/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "builtin-modules",
      "version": "1.1.1",
      "description": "List of the Node.js builtin modules",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/builtin-modules@1.1.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/sindresorhus/builtin-modules#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/sindresorhus/builtin-modules.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/builtin-modules@1.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/normalize-package-data/node_modules/is-builtin-module/node_modules/builtin-modules/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/normalize-package-data/node_modules/is-builtin-module/node_modules/builtin-modules/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/normalize-package-data/node_modules/is-builtin-module/node_modules/builtin-modules/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Forrest L Norvell <ogd@aoaioxxysz.net>"
        }
      ],
      "group": "",
      "name": "normalize-git-url",
      "version": "3.0.2",
      "description": "Normalizes Git URLs. For npm, but you can use it too.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/normalize-git-url@3.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/npm/normalize-git-url"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/npm/normalize-git-url.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/normalize-git-url@3.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/normalize-git-url/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/normalize-git-url/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/normalize-git-url/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "nopt",
      "version": "3.0.6",
      "description": "Option parsing for Node, supporting types, shorthands, etc. Used by npm.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/nopt@3.0.6",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/npm/nopt#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/npm/nopt.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/nopt@3.0.6",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/nopt/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/nopt/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/nopt/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Nathan Rajlich <nathan@tootallnate.net> (http://tootallnate.net)"
        }
      ],
      "group": "",
      "name": "node-gyp",
      "version": "3.4.0",
      "description": "Node.js native addon build tool",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/node-gyp@3.4.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/nodejs/node-gyp#readme"
        },
        {
          "type": "vcs",
          "url": "git://github.com/nodejs/node-gyp.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/node-gyp@3.4.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/node-gyp/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/node-gyp/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/node-gyp/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Nathan Rajlich <nathan@tootallnate.net> (http://n8.io/)"
        }
      ],
      "group": "",
      "name": "path-array",
      "version": "1.0.1",
      "description": "Treat your $PATH like a JavaScript Array",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/path-array@1.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/TooTallNate/node-path-array"
        },
        {
          "type": "vcs",
          "url": "git://github.com/TooTallNate/node-path-array.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/path-array@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/node-gyp/node_modules/path-array/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/node-gyp/node_modules/path-array/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/node-gyp/node_modules/path-array/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Nathan Rajlich <nathan@tootallnate.net> (http://tootallnate.net)"
        }
      ],
      "group": "",
      "name": "array-index",
      "version": "1.0.0",
      "description": "Invoke getter/setter functions on array-like objects",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/array-index@1.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/TooTallNate/array-index#readme"
        },
        {
          "type": "vcs",
          "url": "git://github.com/TooTallNate/array-index.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/array-index@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/node-gyp/node_modules/path-array/node_modules/array-index/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/node-gyp/node_modules/path-array/node_modules/array-index/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/node-gyp/node_modules/path-array/node_modules/array-index/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mariusz Nowak <medyk@medikoo.com> (http://www.medikoo.com/)"
        }
      ],
      "group": "",
      "name": "es6-symbol",
      "version": "3.1.0",
      "description": "ECMAScript 6 Symbol polyfill",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/es6-symbol@3.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/medikoo/es6-symbol#readme"
        },
        {
          "type": "vcs",
          "url": "git://github.com/medikoo/es6-symbol.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/es6-symbol@3.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/node-gyp/node_modules/path-array/node_modules/array-index/node_modules/es6-symbol/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/node-gyp/node_modules/path-array/node_modules/array-index/node_modules/es6-symbol/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/node-gyp/node_modules/path-array/node_modules/array-index/node_modules/es6-symbol/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mariusz Nowak <medyk@medikoo.com> (http://www.medikoo.com/)"
        }
      ],
      "group": "",
      "name": "es5-ext",
      "version": "0.10.12",
      "description": "ECMAScript extensions and shims",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/es5-ext@0.10.12",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/medikoo/es5-ext#readme"
        },
        {
          "type": "vcs",
          "url": "git://github.com/medikoo/es5-ext.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/es5-ext@0.10.12",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/node-gyp/node_modules/path-array/node_modules/array-index/node_modules/es6-symbol/node_modules/es5-ext/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/node-gyp/node_modules/path-array/node_modules/array-index/node_modules/es6-symbol/node_modules/es5-ext/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/node-gyp/node_modules/path-array/node_modules/array-index/node_modules/es6-symbol/node_modules/es5-ext/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mariusz Nowak <medyk@medikoo.com> (http://www.medikoo.com/)"
        }
      ],
      "group": "",
      "name": "es6-iterator",
      "version": "2.0.0",
      "description": "Iterator abstraction based on ES6 specification",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/es6-iterator@2.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/medikoo/es6-iterator#readme"
        },
        {
          "type": "vcs",
          "url": "git://github.com/medikoo/es6-iterator.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/es6-iterator@2.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/node-gyp/node_modules/path-array/node_modules/array-index/node_modules/es6-symbol/node_modules/es5-ext/node_modules/es6-iterator/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/node-gyp/node_modules/path-array/node_modules/array-index/node_modules/es6-symbol/node_modules/es5-ext/node_modules/es6-iterator/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/node-gyp/node_modules/path-array/node_modules/array-index/node_modules/es6-symbol/node_modules/es5-ext/node_modules/es6-iterator/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mariusz Nowak <medyk@medikoo.com> (http://www.medikoo.com/)"
        }
      ],
      "group": "",
      "name": "d",
      "version": "0.1.1",
      "description": "Property descriptor factory",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/d@0.1.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/medikoo/d"
        },
        {
          "type": "vcs",
          "url": "git://github.com/medikoo/d.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/d@0.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/node-gyp/node_modules/path-array/node_modules/array-index/node_modules/es6-symbol/node_modules/d/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/node-gyp/node_modules/path-array/node_modules/array-index/node_modules/es6-symbol/node_modules/d/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/node-gyp/node_modules/path-array/node_modules/array-index/node_modules/es6-symbol/node_modules/d/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "TJ Holowaychuk <tj@vision-media.ca>"
        }
      ],
      "group": "",
      "name": "debug",
      "version": "2.2.0",
      "description": "small debugging utility",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/debug@2.2.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/visionmedia/debug"
        },
        {
          "type": "vcs",
          "url": "git://github.com/visionmedia/debug.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/debug@2.2.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/node-gyp/node_modules/path-array/node_modules/array-index/node_modules/debug/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/node-gyp/node_modules/path-array/node_modules/array-index/node_modules/debug/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/node-gyp/node_modules/path-array/node_modules/array-index/node_modules/debug/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "ms",
      "version": "0.7.1",
      "description": "Tiny ms conversion utility",
      "scope": "optional",
      "purl": "pkg:npm/ms@0.7.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/guille/ms.js"
        },
        {
          "type": "vcs",
          "url": "git://github.com/guille/ms.js.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/ms@0.7.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/node-gyp/node_modules/path-array/node_modules/array-index/node_modules/debug/node_modules/ms/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/node-gyp/node_modules/path-array/node_modules/array-index/node_modules/debug/node_modules/ms/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/node-gyp/node_modules/path-array/node_modules/array-index/node_modules/debug/node_modules/ms/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "James Halliday <mail@substack.net> (http://substack.net)"
        }
      ],
      "group": "",
      "name": "mkdirp",
      "version": "0.5.1",
      "description": "Recursively mkdir, like `mkdir -p`",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/mkdirp@0.5.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/substack/node-mkdirp#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/substack/node-mkdirp.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/mkdirp@0.5.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/mkdirp/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/mkdirp/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/mkdirp/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "James Halliday <mail@substack.net> (http://substack.net)"
        }
      ],
      "group": "",
      "name": "minimist",
      "version": "0.0.8",
      "description": "parse argument options",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/minimist@0.0.8",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/substack/minimist"
        },
        {
          "type": "vcs",
          "url": "git://github.com/substack/minimist.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/minimist@0.0.8",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/mkdirp/node_modules/minimist/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/mkdirp/node_modules/minimist/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/mkdirp/node_modules/minimist/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "John-David Dalton <john.david.dalton@gmail.com> (http://allyoucanleet.com/)"
        }
      ],
      "group": "",
      "name": "lodash.without",
      "version": "4.4.0",
      "description": "The lodash method `_.without` exported as a module.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/lodash.without@4.4.0",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://lodash.com/"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/lodash/lodash.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/lodash.without@4.4.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/lodash.without/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/lodash.without/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/lodash.without/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "John-David Dalton <john.david.dalton@gmail.com> (http://allyoucanleet.com/)"
        }
      ],
      "group": "",
      "name": "lodash.uniq",
      "version": "4.5.0",
      "description": "The lodash method `_.uniq` exported as a module.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/lodash.uniq@4.5.0",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://lodash.com/"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/lodash/lodash.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/lodash.uniq@4.5.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/lodash.uniq/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/lodash.uniq/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/lodash.uniq/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "John-David Dalton <john.david.dalton@gmail.com> (http://allyoucanleet.com/)"
        }
      ],
      "group": "",
      "name": "lodash.union",
      "version": "4.6.0",
      "description": "The lodash method `_.union` exported as a module.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/lodash.union@4.6.0",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://lodash.com/"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/lodash/lodash.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/lodash.union@4.6.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/lodash.union/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/lodash.union/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/lodash.union/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "John-David Dalton <john.david.dalton@gmail.com> (http://allyoucanleet.com/)"
        }
      ],
      "group": "",
      "name": "lodash.restparam",
      "version": "3.6.1",
      "description": "The modern build of lodash’s `_.restParam` as a module.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/lodash.restparam@3.6.1",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://lodash.com/"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/lodash/lodash.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/lodash.restparam@3.6.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/lodash.restparam/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/lodash.restparam/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/lodash.restparam/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "John-David Dalton <john.david.dalton@gmail.com> (http://allyoucanleet.com/)"
        }
      ],
      "group": "",
      "name": "lodash.clonedeep",
      "version": "4.5.0",
      "description": "The lodash method `_.cloneDeep` exported as a module.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/lodash.clonedeep@4.5.0",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://lodash.com/"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/lodash/lodash.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/lodash.clonedeep@4.5.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/lodash.clonedeep/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/lodash.clonedeep/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/lodash.clonedeep/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "John-David Dalton <john.david.dalton@gmail.com> (http://allyoucanleet.com/)"
        }
      ],
      "group": "",
      "name": "lodash._getnative",
      "version": "3.9.1",
      "description": "The modern build of lodash’s internal `getNative` as a module.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/lodash._getnative@3.9.1",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://lodash.com/"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/lodash/lodash.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/lodash._getnative@3.9.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/lodash._getnative/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/lodash._getnative/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/lodash._getnative/package.json"
          }
        ]
      },
      "tags": [
        "native"
      ]
    },
    {
      "authors": [
        {
          "name": "John-David Dalton <john.david.dalton@gmail.com> (http://allyoucanleet.com/)"
        }
      ],
      "group": "",
      "name": "lodash._createcache",
      "version": "3.1.2",
      "description": "The modern build of lodash’s internal `createCache` as a module.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/lodash._createcache@3.1.2",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://lodash.com/"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/lodash/lodash.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/lodash._createcache@3.1.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/lodash._createcache/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/lodash._createcache/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/lodash._createcache/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "John-David Dalton <john.david.dalton@gmail.com> (http://allyoucanleet.com/)"
        }
      ],
      "group": "",
      "name": "lodash._cacheindexof",
      "version": "3.0.2",
      "description": "The modern build of lodash’s internal `cacheIndexOf` as a module.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/lodash._cacheindexof@3.0.2",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://lodash.com/"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/lodash/lodash.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/lodash._cacheindexof@3.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/lodash._cacheindexof/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/lodash._cacheindexof/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/lodash._cacheindexof/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "John-David Dalton <john.david.dalton@gmail.com> (http://allyoucanleet.com/)"
        }
      ],
      "group": "",
      "name": "lodash._bindcallback",
      "version": "3.0.1",
      "description": "The modern build of lodash’s internal `bindCallback` as a module.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/lodash._bindcallback@3.0.1",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://lodash.com/"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/lodash/lodash.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/lodash._bindcallback@3.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/lodash._bindcallback/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/lodash._bindcallback/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/lodash._bindcallback/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "John-David Dalton <john.david.dalton@gmail.com> (http://allyoucanleet.com/)"
        }
      ],
      "group": "",
      "name": "lodash._baseuniq",
      "version": "4.6.0",
      "description": "The internal lodash function `baseUniq` exported as a module.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/lodash._baseuniq@4.6.0",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://lodash.com/"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/lodash/lodash.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/lodash._baseuniq@4.6.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/lodash._baseuniq/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/lodash._baseuniq/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/lodash._baseuniq/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "John-David Dalton <john.david.dalton@gmail.com> (http://allyoucanleet.com/)"
        }
      ],
      "group": "",
      "name": "lodash._root",
      "version": "3.0.1",
      "description": "The internal lodash function `root` exported as a module.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/lodash._root@3.0.1",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://lodash.com/"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/lodash/lodash.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/lodash._root@3.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/lodash._baseuniq/node_modules/lodash._root/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/lodash._baseuniq/node_modules/lodash._root/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/lodash._baseuniq/node_modules/lodash._root/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "John-David Dalton <john.david.dalton@gmail.com> (http://allyoucanleet.com/)"
        }
      ],
      "group": "",
      "name": "lodash._createset",
      "version": "4.0.3",
      "description": "The internal lodash function `createSet` exported as a module.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/lodash._createset@4.0.3",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://lodash.com/"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/lodash/lodash.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/lodash._createset@4.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/lodash._baseuniq/node_modules/lodash._createset/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/lodash._baseuniq/node_modules/lodash._createset/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/lodash._baseuniq/node_modules/lodash._createset/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "John-David Dalton <john.david.dalton@gmail.com> (http://allyoucanleet.com/)"
        }
      ],
      "group": "",
      "name": "lodash._baseindexof",
      "version": "3.1.0",
      "description": "The modern build of lodash’s internal `baseIndexOf` as a module.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/lodash._baseindexof@3.1.0",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://lodash.com/"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/lodash/lodash.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/lodash._baseindexof@3.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/lodash._baseindexof/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/lodash._baseindexof/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/lodash._baseindexof/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "lockfile",
      "version": "1.0.2",
      "description": "A very polite lock file utility, which endeavors to not litter, and to wait patiently for others.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/lockfile@1.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/isaacs/lockfile#readme"
        },
        {
          "type": "vcs",
          "url": "git://github.com/isaacs/lockfile.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/lockfile@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/lockfile/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/lockfile/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/lockfile/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "init-package-json",
      "version": "1.9.4",
      "description": "A node module to get your node module started",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/init-package-json@1.9.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/npm/init-package-json#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/npm/init-package-json.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/init-package-json@1.9.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/init-package-json/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/init-package-json/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/init-package-json/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "promzard",
      "version": "0.3.0",
      "description": "prompting wizardly",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/promzard@0.3.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/isaacs/promzard"
        },
        {
          "type": "vcs",
          "url": "git://github.com/isaacs/promzard.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/promzard@0.3.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/init-package-json/node_modules/promzard/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/init-package-json/node_modules/promzard/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/init-package-json/node_modules/promzard/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "npm-init",
      "version": "0.0.0",
      "description": "an initter you init wit, innit?",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "name": "BSD"
          }
        }
      ],
      "purl": "pkg:npm/npm-init@0.0.0",
      "type": "library",
      "bom-ref": "pkg:npm/npm-init@0.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/init-package-json/node_modules/promzard/example/npm-init/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/init-package-json/node_modules/promzard/example/npm-init/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/init-package-json/node_modules/promzard/example/npm-init/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "ini",
      "version": "1.3.4",
      "description": "An ini encoder/decoder for node",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/ini@1.3.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/isaacs/ini#readme"
        },
        {
          "type": "vcs",
          "url": "git://github.com/isaacs/ini.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/ini@1.3.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/ini/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/ini/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/ini/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "inherits",
      "version": "2.0.3",
      "description": "Browser-friendly inheritance fully compatible with standard node.js inherits()",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/inherits@2.0.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/isaacs/inherits#readme"
        },
        {
          "type": "vcs",
          "url": "git://github.com/isaacs/inherits.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/inherits@2.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/inherits/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/inherits/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/inherits/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "inflight",
      "version": "1.0.5",
      "description": "Add callbacks to requests in flight to avoid async duplication",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/inflight@1.0.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/isaacs/inflight"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/npm/inflight.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/inflight@1.0.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/inflight/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/inflight/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/inflight/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jens Taylor <jensyt@gmail.com> (https://github.com/homebrewing)"
        }
      ],
      "group": "",
      "name": "imurmurhash",
      "version": "0.1.4",
      "description": "An incremental implementation of MurmurHash3",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/imurmurhash@0.1.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jensyt/imurmurhash-js"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/jensyt/imurmurhash-js.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/imurmurhash@0.1.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/imurmurhash/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/imurmurhash/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/imurmurhash/package.json"
              }
            ],
            "concludedValue": "node_modules/imurmurhash/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Nadav Ivgi"
        }
      ],
      "group": "",
      "name": "iferr",
      "version": "0.1.5",
      "description": "Higher-order functions for easier error handling",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/iferr@0.1.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/shesek/iferr"
        },
        {
          "type": "vcs",
          "url": "https://github.com/shesek/iferr"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/iferr@0.1.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/iferr/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/iferr/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/iferr/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Rebecca Turner <me@re-becca.org> (http://re-becca.org)"
        }
      ],
      "group": "",
      "name": "hosted-git-info",
      "version": "2.1.5",
      "description": "Provides metadata and conversions from repository urls for Github, Bitbucket and Gitlab",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/hosted-git-info@2.1.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/npm/hosted-git-info"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/npm/hosted-git-info.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/hosted-git-info@2.1.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/hosted-git-info/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/hosted-git-info/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/hosted-git-info/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Rebecca Turner <me@re-becca.org>"
        }
      ],
      "group": "",
      "name": "has-unicode",
      "version": "2.0.1",
      "description": "Try to guess if your terminal supports unicode",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/has-unicode@2.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/iarna/has-unicode"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/iarna/has-unicode.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/has-unicode@2.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/has-unicode/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/has-unicode/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/has-unicode/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "graceful-fs",
      "version": "4.1.9",
      "description": "A drop-in replacement for fs, making various improvements.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/graceful-fs@4.1.9",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/isaacs/node-graceful-fs#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/isaacs/node-graceful-fs.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/graceful-fs@4.1.9",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/graceful-fs/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/graceful-fs/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/graceful-fs/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "glob",
      "version": "7.1.0",
      "description": "a little globber",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/glob@7.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/isaacs/node-glob#readme"
        },
        {
          "type": "vcs",
          "url": "git://github.com/isaacs/node-glob.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/glob@7.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/glob/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/glob/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/glob/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "fs.realpath",
      "version": "1.0.0",
      "description": "Use node's fs.realpath, but fall back to the JS implementation if the native one fails",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/fs.realpath@1.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/isaacs/fs.realpath#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/isaacs/fs.realpath.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/fs.realpath@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/glob/node_modules/fs.realpath/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/fs.realpath/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/fs.realpath/package.json"
              }
            ],
            "concludedValue": "node_modules/fs.realpath/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "fstream-npm",
      "version": "1.2.0",
      "description": "fstream class for creating npm packages",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/fstream-npm@1.2.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/npm/fstream-npm#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/npm/fstream-npm.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/fstream-npm@1.2.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/fstream-npm/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/fstream-npm/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/fstream-npm/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "fstream-ignore",
      "version": "1.0.5",
      "description": "A thing for ignoring files based on globs",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/fstream-ignore@1.0.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/isaacs/fstream-ignore#readme"
        },
        {
          "type": "vcs",
          "url": "git://github.com/isaacs/fstream-ignore.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/fstream-ignore@1.0.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/fstream-npm/node_modules/fstream-ignore/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/fstream-npm/node_modules/fstream-ignore/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/fstream-npm/node_modules/fstream-ignore/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "fstream",
      "version": "1.0.10",
      "description": "Advanced file system stream things",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/fstream@1.0.10",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/npm/fstream#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/npm/fstream.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/fstream@1.0.10",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/fstream/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/fstream/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/fstream/package.json"
          }
        ]
      },
      "tags": [
        "stream"
      ]
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "fs-write-stream-atomic",
      "version": "1.0.8",
      "description": "Like `fs.createWriteStream(...)`, but atomic.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/fs-write-stream-atomic@1.0.8",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/npm/fs-write-stream-atomic"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/npm/fs-write-stream-atomic.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/fs-write-stream-atomic@1.0.8",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/fs-write-stream-atomic/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/fs-write-stream-atomic/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/fs-write-stream-atomic/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Forrest L Norvell <ogd@aoaioxxysz.net>"
        }
      ],
      "group": "",
      "name": "fs-vacuum",
      "version": "1.2.9",
      "description": "recursively remove empty directories -- to a point",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/fs-vacuum@1.2.9",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/npm/fs-vacuum"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/npm/fs-vacuum.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/fs-vacuum@1.2.9",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/fs-vacuum/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/fs-vacuum/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/fs-vacuum/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "James Halliday <mail@substack.net> (http://substack.net)"
        }
      ],
      "group": "",
      "name": "editor",
      "version": "1.0.0",
      "description": "launch $EDITOR in your program",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/editor@1.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/substack/node-editor"
        },
        {
          "type": "vcs",
          "url": "git://github.com/substack/node-editor.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/editor@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/editor/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/editor/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/editor/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "dezalgo",
      "version": "1.0.3",
      "description": "Contain async insanity so that the dark pony lord doesn't eat souls",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/dezalgo@1.0.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/npm/dezalgo"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/npm/dezalgo.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/dezalgo@1.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/dezalgo/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/dezalgo/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/dezalgo/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sam Roberts <sam@strongloop.com>"
        }
      ],
      "group": "",
      "name": "debuglog",
      "version": "1.0.1",
      "description": "backport of util.debuglog from node v0.11",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/debuglog@1.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/sam-github/node-debuglog"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/sam-github/node-debuglog.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/debuglog@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/debuglog/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/debuglog/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/debuglog/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Dominic Tarr <dominic.tarr@gmail.com> (http://dominictarr.com)"
        }
      ],
      "group": "",
      "name": "config-chain",
      "version": "1.1.11",
      "description": "HANDLE CONFIGURATION ONCE AND FOR ALL",
      "scope": "optional",
      "purl": "pkg:npm/config-chain@1.1.11",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "http://github.com/dominictarr/config-chain"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/dominictarr/config-chain.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/config-chain@1.1.11",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/config-chain/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/config-chain/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/config-chain/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "proto-list",
      "version": "1.2.4",
      "description": "A utility for managing a prototype chain",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/proto-list@1.2.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/isaacs/proto-list#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/isaacs/proto-list.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/proto-list@1.2.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/config-chain/node_modules/proto-list/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/config-chain/node_modules/proto-list/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/config-chain/node_modules/proto-list/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Tim Oxley"
        }
      ],
      "group": "",
      "name": "columnify",
      "version": "1.5.4",
      "description": "Render data in text columns. Supports in-column text-wrap.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/columnify@1.5.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/timoxley/columnify"
        },
        {
          "type": "vcs",
          "url": "git://github.com/timoxley/columnify.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/columnify@1.5.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/columnify/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/columnify/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/columnify/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Tim Oxley"
        }
      ],
      "group": "",
      "name": "wcwidth",
      "version": "1.0.0",
      "description": "Port of C's wcwidth() and wcswidth()",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/wcwidth@1.0.0",
      "type": "library",
      "bom-ref": "pkg:npm/wcwidth@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/columnify/node_modules/wcwidth/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/columnify/node_modules/wcwidth/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/columnify/node_modules/wcwidth/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Elijah Insua <tmpvar@gmail.com>"
        }
      ],
      "group": "",
      "name": "defaults",
      "version": "1.0.3",
      "description": "merge single level defaults over a config object",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/defaults@1.0.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/tmpvar/defaults#readme"
        },
        {
          "type": "vcs",
          "url": "git://github.com/tmpvar/defaults.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/defaults@1.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/columnify/node_modules/wcwidth/node_modules/defaults/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/columnify/node_modules/wcwidth/node_modules/defaults/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/columnify/node_modules/wcwidth/node_modules/defaults/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Paul Vorbach <paul@vorba.ch> (http://paul.vorba.ch/)"
        }
      ],
      "group": "",
      "name": "clone",
      "version": "1.0.2",
      "description": "deep cloning of objects and arrays",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/clone@1.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/pvorb/node-clone#readme"
        },
        {
          "type": "vcs",
          "url": "git://github.com/pvorb/node-clone.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/clone@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/columnify/node_modules/wcwidth/node_modules/defaults/node_modules/clone/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/columnify/node_modules/wcwidth/node_modules/defaults/node_modules/clone/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/columnify/node_modules/wcwidth/node_modules/defaults/node_modules/clone/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "cmd-shim",
      "version": "2.0.2",
      "description": "Used in npm for command line application support",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "BSD-2-Clause",
            "url": "https://opensource.org/licenses/BSD-2-Clause"
          }
        }
      ],
      "purl": "pkg:npm/cmd-shim@2.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ForbesLindesay/cmd-shim"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ForbesLindesay/cmd-shim.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/cmd-shim@2.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/cmd-shim/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/cmd-shim/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/cmd-shim/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "chownr",
      "version": "1.0.1",
      "description": "like `chown -R`",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/chownr@1.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/isaacs/chownr#readme"
        },
        {
          "type": "vcs",
          "url": "git://github.com/isaacs/chownr.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/chownr@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/chownr/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/chownr/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/chownr/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "asap",
      "version": "2.0.5",
      "description": "High-priority task queue for Node.js and browsers",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/asap@2.0.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/kriskowal/asap#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/kriskowal/asap.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/asap@2.0.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/asap/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/asap/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/asap/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "James Halliday <mail@substack.net> (http://substack.net)"
        }
      ],
      "group": "",
      "name": "archy",
      "version": "1.0.0",
      "description": "render nested hierarchies `npm ls` style with unicode pipes",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/archy@1.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/substack/node-archy"
        },
        {
          "type": "vcs",
          "url": "git+ssh://git@github.com/substack/node-archy.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/archy@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/archy/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/archy/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/archy/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Rebecca Turner <me@re-becca.org>"
        }
      ],
      "group": "",
      "name": "aproba",
      "version": "1.0.4",
      "description": "A rediculously light-weight argument validator",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/aproba@1.0.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/iarna/aproba"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/iarna/aproba.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/aproba@1.0.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/aproba/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/aproba/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/aproba/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Thorsten Lorenz <thlorenz@gmx.de> (thlorenz.com)"
        }
      ],
      "group": "",
      "name": "ansistyles",
      "version": "0.1.3",
      "description": "Functions that surround a string with ansistyle codes so it prints in style.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/ansistyles@0.1.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/thlorenz/ansistyles.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/ansistyles@0.1.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/ansistyles/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/ansistyles/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/ansistyles/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Thorsten Lorenz <thlorenz@gmx.de> (thlorenz.com)"
        }
      ],
      "group": "",
      "name": "ansicolors",
      "version": "0.3.2",
      "description": "Functions that surround a string with ansicolor codes so it prints in color.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/ansicolors@0.3.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/thlorenz/ansicolors.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/ansicolors@0.3.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/ansicolors/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/ansicolors/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/ansicolors/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "ansi-regex",
      "version": "2.0.0",
      "description": "Regular expression for matching ANSI escape codes",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/ansi-regex@2.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/sindresorhus/ansi-regex#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/sindresorhus/ansi-regex.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/ansi-regex@2.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/ansi-regex/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/ansi-regex/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/ansi-regex/package.json"
          }
        ]
      },
      "tags": [
        "escape"
      ]
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me>"
        }
      ],
      "group": "",
      "name": "abbrev",
      "version": "1.0.9",
      "description": "Like ruby's abbrev module, but in js",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/abbrev@1.0.9",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/isaacs/abbrev-js#readme"
        },
        {
          "type": "vcs",
          "url": "git+ssh://git@github.com/isaacs/abbrev-js.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/abbrev@1.0.9",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/npm/node_modules/abbrev/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/npm/node_modules/abbrev/package.json"
              }
            ],
            "concludedValue": "node_modules/npm/node_modules/abbrev/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "normalize-path",
      "version": "2.1.1",
      "description": "Normalize file path slashes to be unix-like forward slashes. Also condenses repeat slashes to a single slash and removes and trailing slashes unless disabled.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/normalize-path@2.1.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/normalize-path"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/normalize-path@2.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/normalize-path/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/normalize-path/package.json"
              }
            ],
            "concludedValue": "node_modules/normalize-path/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mariusz Nowak <medyk@medikoo.com> (http://www.medikoo.com/)"
        }
      ],
      "group": "",
      "name": "next-tick",
      "version": "1.1.0",
      "description": "Environment agnostic nextTick polyfill",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/next-tick@1.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/medikoo/next-tick.git"
        }
      ],
      "type": "framework",
      "bom-ref": "pkg:npm/next-tick@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/next-tick/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/next-tick/package.json"
              }
            ],
            "concludedValue": "node_modules/next-tick/package.json"
          }
        ]
      },
      "tags": [
        "framework"
      ]
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "nanomatch",
      "version": "1.2.13",
      "description": "Fast, minimal glob matcher for node.js. Similar to micromatch, minimatch and multimatch, but complete Bash 4.3 wildcard support only (no support for exglobs, posix brackets or braces)",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/nanomatch@1.2.13",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/micromatch/nanomatch"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/nanomatch@1.2.13",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/nanomatch/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/nanomatch/package.json"
              }
            ],
            "concludedValue": "node_modules/nanomatch/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (http://sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "multiline",
      "version": "1.0.2",
      "description": "Multiline strings in JavaScript",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/multiline@1.0.2",
      "type": "library",
      "bom-ref": "pkg:npm/multiline@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/multiline/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/multiline/package.json"
              }
            ],
            "concludedValue": "node_modules/multiline/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "ms",
      "version": "2.0.0",
      "description": "Tiny milisecond conversion utility",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/ms@2.0.0",
      "type": "library",
      "bom-ref": "pkg:npm/ms@2.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/ms/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/ms/package.json"
              }
            ],
            "concludedValue": "node_modules/ms/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "mock-property",
      "version": "1.0.3",
      "description": "Given an object and a property, replaces a property descriptor (or deletes it), and returns a thunk to restore it.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/mock-property@1.0.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/mock-property#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/mock-property.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/mock-property@1.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/mock-property/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/mock-property/package.json"
              }
            ],
            "concludedValue": "node_modules/mock-property/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "James Halliday <mail@substack.net> (http://substack.net)"
        }
      ],
      "group": "",
      "name": "mkdirp",
      "version": "0.5.6",
      "description": "Recursively mkdir, like `mkdir -p`",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/mkdirp@0.5.6",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/substack/node-mkdirp.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/mkdirp@0.5.6",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/mkdirp/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/mkdirp/package.json"
              }
            ],
            "concludedValue": "node_modules/mkdirp/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "mixin-deep",
      "version": "1.3.2",
      "description": "Deeply mix the properties of objects into the first object. Like merge-deep, but doesn't clone.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/mixin-deep@1.3.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/mixin-deep"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/mixin-deep@1.3.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/mixin-deep/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/mixin-deep/package.json"
              }
            ],
            "concludedValue": "node_modules/mixin-deep/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "is-extendable",
      "version": "1.0.1",
      "description": "Returns true if a value is a plain object, array or function.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-extendable@1.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/is-extendable"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-extendable@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/mixin-deep/node_modules/is-extendable/package.json"
        },
        {
          "name": "SrcFile",
          "value": "node_modules/extend-shallow/node_modules/is-extendable/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/extend-shallow/node_modules/is-extendable/package.json"
              }
            ],
            "concludedValue": "node_modules/extend-shallow/node_modules/is-extendable/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "James Halliday <mail@substack.net> (http://substack.net)"
        }
      ],
      "group": "",
      "name": "minimist",
      "version": "0.0.5",
      "description": "parse argument options",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/minimist@0.0.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/substack/minimist"
        },
        {
          "type": "vcs",
          "url": "git://github.com/substack/minimist.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/minimist@0.0.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/minimist/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/minimist/package.json"
              }
            ],
            "concludedValue": "node_modules/minimist/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me)"
        }
      ],
      "group": "",
      "name": "minimatch",
      "version": "3.1.5",
      "description": "a glob matcher in javascript",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/minimatch@3.1.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/isaacs/minimatch.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/minimatch@3.1.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/minimatch/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/minimatch/package.json"
              }
            ],
            "concludedValue": "node_modules/minimatch/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "micromatch",
      "version": "2.3.11",
      "description": "Glob matching for javascript/node.js. A drop-in replacement and faster alternative to minimatch and multimatch.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/micromatch@2.3.11",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/micromatch"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/micromatch@2.3.11",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/micromatch/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/micromatch/package.json"
              }
            ],
            "concludedValue": "node_modules/micromatch/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Michael Rhodes"
        }
      ],
      "group": "",
      "name": "math-random",
      "version": "1.0.4",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/math-random@1.0.4",
      "type": "library",
      "bom-ref": "pkg:npm/math-random@1.0.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/math-random/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/math-random/package.json"
              }
            ],
            "concludedValue": "node_modules/math-random/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "math-intrinsics",
      "version": "1.1.0",
      "description": "ES Math-related intrinsics and helpers, robustly cached.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/math-intrinsics@1.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/es-shims/math-intrinsics#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/es-shims/math-intrinsics.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/math-intrinsics@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/math-intrinsics/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/math-intrinsics/package.json"
              }
            ],
            "concludedValue": "node_modules/math-intrinsics/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "map-visit",
      "version": "1.0.0",
      "description": "Map `visit` over an array of objects.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/map-visit@1.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/map-visit"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/map-visit@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/map-visit/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/map-visit/package.json"
              }
            ],
            "concludedValue": "node_modules/map-visit/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "map-cache",
      "version": "0.2.2",
      "description": "Basic cache object for storing key-value pairs.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/map-cache@0.2.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/map-cache"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/map-cache@0.2.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/map-cache/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/map-cache/package.json"
              }
            ],
            "concludedValue": "node_modules/map-cache/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Andres Suarez <zertosh@gmail.com>"
        }
      ],
      "group": "",
      "name": "loose-envify",
      "version": "1.4.0",
      "description": "Fast (and loose) selective `process.env` replacer using js-tokens instead of an AST",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/loose-envify@1.4.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/zertosh/loose-envify"
        },
        {
          "type": "vcs",
          "url": "git://github.com/zertosh/loose-envify.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/loose-envify@1.4.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/loose-envify/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/loose-envify/package.json"
              }
            ],
            "concludedValue": "node_modules/loose-envify/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "John-David Dalton <john.david.dalton@gmail.com>"
        }
      ],
      "group": "",
      "name": "lodash",
      "version": "4.18.1",
      "description": "Lodash modular utilities.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/lodash@4.18.1",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://lodash.com/"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/lodash@4.18.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/lodash/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/lodash/package.json"
              }
            ],
            "concludedValue": "node_modules/lodash/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "George Zahariev <z@georgezahariev.com>"
        }
      ],
      "group": "",
      "name": "levn",
      "version": "0.3.0",
      "description": "Light ECMAScript (JavaScript) Value Notation - human written, concise, typed, flexible",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/levn@0.3.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/gkz/levn"
        },
        {
          "type": "vcs",
          "url": "git://github.com/gkz/levn.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/levn@0.3.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/levn/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/levn/package.json"
              }
            ],
            "concludedValue": "node_modules/levn/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Ethan Cohen"
        }
      ],
      "group": "",
      "name": "jsx-ast-utils",
      "version": "1.4.1",
      "description": "AST utility module for statically analyzing JSX",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/jsx-ast-utils@1.4.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/evcohen/jsx-ast-utils"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/jsx-ast-utils@1.4.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/jsx-ast-utils/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/jsx-ast-utils/package.json"
              }
            ],
            "concludedValue": "node_modules/jsx-ast-utils/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jan Lehnardt <jan@apache.org>"
        }
      ],
      "group": "",
      "name": "jsonpointer",
      "version": "5.0.1",
      "description": "Simple JSON Addressing.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/jsonpointer@5.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/janl/node-jsonpointer.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/jsonpointer@5.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/jsonpointer/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/jsonpointer/package.json"
              }
            ],
            "concludedValue": "node_modules/jsonpointer/package.json"
          }
        ]
      },
      "tags": [
        "json"
      ]
    },
    {
      "authors": [
        {
          "name": "Douglas Crockford (https://crockford.com/)"
        }
      ],
      "group": "",
      "name": "jsonify",
      "version": "0.0.1",
      "description": "JSON without touching any globals",
      "scope": "optional",
      "licenses": [
        {
          "expression": "Public Domain"
        }
      ],
      "purl": "pkg:npm/jsonify@0.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/jsonify.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/jsonify@0.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/jsonify/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/jsonify/package.json"
              }
            ],
            "concludedValue": "node_modules/jsonify/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Aseem Kishore <aseem.kishore@gmail.com>"
        }
      ],
      "group": "",
      "name": "json5",
      "version": "0.5.1",
      "description": "JSON for the ES5 era.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/json5@0.5.1",
      "externalReferences": [
        {
          "type": "website",
          "url": "http://json5.org/"
        },
        {
          "type": "vcs",
          "url": "https://github.com/aseemk/json5.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/json5@0.5.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/json5/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/json5/package.json"
              }
            ],
            "concludedValue": "node_modules/json5/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "James Halliday <mail@substack.net> (http://substack.net)"
        }
      ],
      "group": "",
      "name": "json-stable-stringify",
      "version": "1.3.0",
      "description": "deterministic JSON.stringify() with custom sorting to get deterministic hashes from stringified results",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/json-stable-stringify@1.3.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/json-stable-stringify"
        },
        {
          "type": "vcs",
          "url": "git://github.com/ljharb/json-stable-stringify.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/json-stable-stringify@1.3.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/json-stable-stringify/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/json-stable-stringify/package.json"
              }
            ],
            "concludedValue": "node_modules/json-stable-stringify/package.json"
          }
        ]
      },
      "tags": [
        "json"
      ]
    },
    {
      "authors": [
        {
          "name": "Mathias Bynens (https://mathiasbynens.be/)"
        }
      ],
      "group": "",
      "name": "jsesc",
      "version": "1.3.0",
      "description": "A JavaScript library for escaping JavaScript strings while generating the shortest possible valid output.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/jsesc@1.3.0",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://mths.be/jsesc"
        },
        {
          "type": "vcs",
          "url": "https://github.com/mathiasbynens/jsesc.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/jsesc@1.3.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/jsesc/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/jsesc/package.json"
              }
            ],
            "concludedValue": "node_modules/jsesc/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Vladimir Zapparov <dervus.grim@gmail.com>"
        }
      ],
      "group": "",
      "name": "js-yaml",
      "version": "3.14.2",
      "description": "YAML 1.2 parser and serializer",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/js-yaml@3.14.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/nodeca/js-yaml"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/js-yaml@3.14.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/js-yaml/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/js-yaml/package.json"
              }
            ],
            "concludedValue": "node_modules/js-yaml/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Simon Lydell"
        }
      ],
      "group": "",
      "name": "js-tokens",
      "version": "3.0.2",
      "description": "A regex that tokenizes JavaScript.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/js-tokens@3.0.2",
      "type": "library",
      "bom-ref": "pkg:npm/js-tokens@3.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/js-tokens/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/js-tokens/package.json"
              }
            ],
            "concludedValue": "node_modules/js-tokens/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "isexe",
      "version": "2.0.0",
      "description": "Minimal module to check if a file is executable.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/isexe@2.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/isaacs/isexe#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/isaacs/isexe.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/isexe@2.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/isexe/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/isexe/package.json"
              }
            ],
            "concludedValue": "node_modules/isexe/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "is-windows",
      "version": "1.0.2",
      "description": "Returns true if the platform is windows. UMD module, works with node.js, commonjs, browser, AMD, electron, etc.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-windows@1.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/is-windows"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-windows@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-windows/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-windows/package.json"
              }
            ],
            "concludedValue": "node_modules/is-windows/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "is-weakset",
      "version": "2.0.4",
      "description": "Is this value a JS WeakSet? This module works cross-realm/iframe, and despite ES6 @@toStringTag.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-weakset@2.0.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/is-weakset#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/is-weakset.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-weakset@2.0.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-weakset/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-weakset/package.json"
              }
            ],
            "concludedValue": "node_modules/is-weakset/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "is-weakref",
      "version": "1.1.1",
      "description": "Is this value a JS WeakRef? This module works cross-realm/iframe, and despite ES6 @@toStringTag.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-weakref@1.1.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/is-weakref#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/is-weakref.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-weakref@1.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-weakref/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-weakref/package.json"
              }
            ],
            "concludedValue": "node_modules/is-weakref/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "is-weakmap",
      "version": "2.0.2",
      "description": "Is this value a JS WeakMap? This module works cross-realm/iframe, and despite ES6 @@toStringTag.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-weakmap@2.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/is-weakmap#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/is-weakmap.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-weakmap@2.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-weakmap/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-weakmap/package.json"
              }
            ],
            "concludedValue": "node_modules/is-weakmap/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com> (http://ljharb.codes)"
        }
      ],
      "group": "",
      "name": "is-typed-array",
      "version": "1.1.15",
      "description": "Is this value a JS Typed Array? This module works cross-realm/iframe, does not depend on `instanceof` or mutable properties, and despite ES6 Symbol.toStringTag.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-typed-array@1.1.15",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/inspect-js/is-typed-array.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-typed-array@1.1.15",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-typed-array/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-typed-array/package.json"
              }
            ],
            "concludedValue": "node_modules/is-typed-array/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "is-symbol",
      "version": "1.1.1",
      "description": "Determine if a value is an ES6 Symbol or not.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-symbol@1.1.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/inspect-js/is-symbol.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-symbol@1.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-symbol/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-symbol/package.json"
              }
            ],
            "concludedValue": "node_modules/is-symbol/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "is-string",
      "version": "1.1.1",
      "description": "Is this value a JS String object or primitive? This module works cross-realm/iframe, and despite ES6 @@toStringTag.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-string@1.1.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/inspect-js/is-string.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-string@1.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-string/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-string/package.json"
              }
            ],
            "concludedValue": "node_modules/is-string/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com> (http://ljharb.codes)"
        }
      ],
      "group": "",
      "name": "is-shared-array-buffer",
      "version": "1.0.4",
      "description": "Is this value a JS SharedArrayBuffer?",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-shared-array-buffer@1.0.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/is-shared-array-buffer#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/is-shared-array-buffer.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-shared-array-buffer@1.0.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-shared-array-buffer/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-shared-array-buffer/package.json"
              }
            ],
            "concludedValue": "node_modules/is-shared-array-buffer/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "is-set",
      "version": "2.0.3",
      "description": "Is this value a JS Set? This module works cross-realm/iframe, and despite ES6 @@toStringTag.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-set@2.0.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/is-set#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/is-set.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-set@2.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-set/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-set/package.json"
              }
            ],
            "concludedValue": "node_modules/is-set/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Shinnosuke Watanabe (https://github.com/shinnn)"
        }
      ],
      "group": "",
      "name": "is-resolvable",
      "version": "1.1.0",
      "description": "Check if a module ID is resolvable with require()",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/is-resolvable@1.1.0",
      "type": "library",
      "bom-ref": "pkg:npm/is-resolvable@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-resolvable/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-resolvable/package.json"
              }
            ],
            "concludedValue": "node_modules/is-resolvable/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "is-regex",
      "version": "1.2.1",
      "description": "Is this value a JS regex? Works cross-realm/iframe, and despite ES6 @@toStringTag",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-regex@1.2.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/is-regex"
        },
        {
          "type": "vcs",
          "url": "git://github.com/inspect-js/is-regex.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-regex@1.2.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-regex/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-regex/package.json"
              }
            ],
            "concludedValue": "node_modules/is-regex/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "is-primitive",
      "version": "2.0.0",
      "description": "Returns `true` if the value is a primitive. ",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-primitive@2.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/is-primitive"
        },
        {
          "type": "vcs",
          "url": "git://github.com/jonschlinkert/is-primitive.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-primitive@2.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-primitive/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-primitive/package.json"
              }
            ],
            "concludedValue": "node_modules/is-primitive/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "is-posix-bracket",
      "version": "0.1.1",
      "description": "Returns true if the given string is a POSIX bracket expression (POSIX character class).",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-posix-bracket@0.1.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/is-posix-bracket"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-posix-bracket@0.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-posix-bracket/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-posix-bracket/package.json"
              }
            ],
            "concludedValue": "node_modules/is-posix-bracket/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "is-plain-object",
      "version": "2.0.4",
      "description": "Returns true if an object was created by the `Object` constructor.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-plain-object@2.0.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/is-plain-object"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-plain-object@2.0.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-plain-object/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-plain-object/package.json"
              }
            ],
            "concludedValue": "node_modules/is-plain-object/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "is-number-object",
      "version": "1.1.1",
      "description": "Is this value a JS Number object? This module works cross-realm/iframe, and despite ES6 @@toStringTag.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-number-object@1.1.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/is-number-object#readme"
        },
        {
          "type": "vcs",
          "url": "git://github.com/inspect-js/is-number-object.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-number-object@1.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-number-object/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-number-object/package.json"
              }
            ],
            "concludedValue": "node_modules/is-number-object/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "is-number",
      "version": "2.1.0",
      "description": "Returns true if the value is a number. comprehensive tests.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-number@2.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/is-number"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-number@2.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-number/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-number/package.json"
              }
            ],
            "concludedValue": "node_modules/is-number/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "is-negative-zero",
      "version": "2.0.3",
      "description": "Is this value negative zero? === will lie to you",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-negative-zero@2.0.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/is-negative-zero"
        },
        {
          "type": "vcs",
          "url": "git://github.com/inspect-js/is-negative-zero.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-negative-zero@2.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-negative-zero/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-negative-zero/package.json"
              }
            ],
            "concludedValue": "node_modules/is-negative-zero/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "is-my-json-valid",
      "version": "2.20.6",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-my-json-valid@2.20.6",
      "type": "library",
      "bom-ref": "pkg:npm/is-my-json-valid@2.20.6",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-my-json-valid/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-my-json-valid/package.json"
              }
            ],
            "concludedValue": "node_modules/is-my-json-valid/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "is-my-ip-valid",
      "version": "1.0.1",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-my-ip-valid@1.0.1",
      "type": "library",
      "bom-ref": "pkg:npm/is-my-ip-valid@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-my-ip-valid/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-my-ip-valid/package.json"
              }
            ],
            "concludedValue": "node_modules/is-my-ip-valid/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "is-map",
      "version": "2.0.3",
      "description": "Is this value a JS Map? This module works cross-realm/iframe, and despite ES6 @@toStringTag.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-map@2.0.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/is-map#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/is-map.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-map@2.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-map/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-map/package.json"
              }
            ],
            "concludedValue": "node_modules/is-map/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "is-glob",
      "version": "2.0.1",
      "description": "Returns `true` if the given string looks like a glob pattern or an extglob pattern. This makes it easy to create code that only uses external modules like node-glob when necessary, resulting in much faster code execution and initialization time, and a better user experience.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-glob@2.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/is-glob"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-glob@2.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-glob/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-glob/package.json"
              }
            ],
            "concludedValue": "node_modules/is-glob/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "is-generator-function",
      "version": "1.1.2",
      "description": "Determine if a function is a native generator function.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-generator-function@1.1.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/inspect-js/is-generator-function.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-generator-function@1.1.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-generator-function/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-generator-function/package.json"
              }
            ],
            "concludedValue": "node_modules/is-generator-function/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "is-finite",
      "version": "1.1.0",
      "description": "ES2015 Number.isFinite() ponyfill",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-finite@1.1.0",
      "type": "library",
      "bom-ref": "pkg:npm/is-finite@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-finite/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-finite/package.json"
              }
            ],
            "concludedValue": "node_modules/is-finite/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "is-finalizationregistry",
      "version": "1.1.1",
      "description": "Is this value a JS FinalizationRegistry? This module works cross-realm/iframe, and despite ES6 @@toStringTag.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-finalizationregistry@1.1.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/is-finalizationregistry#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/is-finalizationregistry.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-finalizationregistry@1.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-finalizationregistry/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-finalizationregistry/package.json"
              }
            ],
            "concludedValue": "node_modules/is-finalizationregistry/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "is-extglob",
      "version": "1.0.0",
      "description": "Returns true if a string has an extglob.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-extglob@1.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/is-extglob"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-extglob@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-extglob/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-extglob/package.json"
              }
            ],
            "concludedValue": "node_modules/is-extglob/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "is-extendable",
      "version": "0.1.1",
      "description": "Returns true if a value is any of the object types: array, regexp, plain object, function or date. This is useful for determining if a value can be extended, e.g. \"can the value have keys?\"",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-extendable@0.1.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/is-extendable"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-extendable@0.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-extendable/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-extendable/package.json"
              }
            ],
            "concludedValue": "node_modules/is-extendable/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "is-equal-shallow",
      "version": "0.1.3",
      "description": "Does a shallow comparison of two objects, returning false if the keys or values differ.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-equal-shallow@0.1.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/is-equal-shallow"
        },
        {
          "type": "vcs",
          "url": "git://github.com/jonschlinkert/is-equal-shallow.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-equal-shallow@0.1.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-equal-shallow/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-equal-shallow/package.json"
              }
            ],
            "concludedValue": "node_modules/is-equal-shallow/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "is-dotfile",
      "version": "1.0.3",
      "description": "Return true if a file path is (or has) a dotfile. Returns false if the path is a dot directory.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-dotfile@1.0.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/is-dotfile"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-dotfile@1.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-dotfile/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-dotfile/package.json"
              }
            ],
            "concludedValue": "node_modules/is-dotfile/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "is-descriptor",
      "version": "1.0.3",
      "description": "Returns true if a value has the characteristics of a valid JavaScript descriptor. Works for data descriptors and accessor descriptors.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-descriptor@1.0.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/is-descriptor"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/is-descriptor.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-descriptor@1.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-descriptor/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-descriptor/package.json"
              }
            ],
            "concludedValue": "node_modules/is-descriptor/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband"
        }
      ],
      "group": "",
      "name": "is-date-object",
      "version": "1.1.0",
      "description": "Is this value a JS Date object? This module works cross-realm/iframe, and despite ES6 @@toStringTag.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-date-object@1.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/inspect-js/is-date-object.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-date-object@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-date-object/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-date-object/package.json"
              }
            ],
            "concludedValue": "node_modules/is-date-object/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "is-data-view",
      "version": "1.0.2",
      "description": "Is this value a JS DataView? This module works cross-realm/iframe, does not depend on `instanceof` or mutable properties, and despite ES6 Symbol.toStringTag.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-data-view@1.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/is-data-view#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/is-data-view.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-data-view@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-data-view/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-data-view/package.json"
              }
            ],
            "concludedValue": "node_modules/is-data-view/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "is-data-descriptor",
      "version": "1.0.1",
      "description": "Returns true if a value has the characteristics of a valid JavaScript data descriptor.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-data-descriptor@1.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/is-data-descriptor"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/is-data-descriptor.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-data-descriptor@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-data-descriptor/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-data-descriptor/package.json"
              }
            ],
            "concludedValue": "node_modules/is-data-descriptor/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "is-core-module",
      "version": "2.16.2",
      "description": "Is this specifier a node.js core module?",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-core-module@2.16.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/is-core-module"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/is-core-module.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-core-module@2.16.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-core-module/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-core-module/package.json"
              }
            ],
            "concludedValue": "node_modules/is-core-module/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com> (http://ljharb.codes)"
        }
      ],
      "group": "",
      "name": "is-callable",
      "version": "1.2.7",
      "description": "Is this JS value callable? Works with Functions and GeneratorFunctions, despite ES6 @@toStringTag.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-callable@1.2.7",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/inspect-js/is-callable.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-callable@1.2.7",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-callable/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-callable/package.json"
              }
            ],
            "concludedValue": "node_modules/is-callable/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Feross Aboukhadijeh <feross@feross.org> (http://feross.org/)"
        }
      ],
      "group": "",
      "name": "is-buffer",
      "version": "1.1.6",
      "description": "Determine if an object is a Buffer",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-buffer@1.1.6",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/feross/is-buffer.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-buffer@1.1.6",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-buffer/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-buffer/package.json"
              }
            ],
            "concludedValue": "node_modules/is-buffer/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "is-boolean-object",
      "version": "1.2.2",
      "description": "Is this value a JS Boolean? This module works cross-realm/iframe, and despite ES6 @@toStringTag.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-boolean-object@1.2.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/inspect-js/is-boolean-object.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-boolean-object@1.2.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-boolean-object/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-boolean-object/package.json"
              }
            ],
            "concludedValue": "node_modules/is-boolean-object/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "is-binary-path",
      "version": "1.0.1",
      "description": "Check if a filepath is a binary file",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-binary-path@1.0.1",
      "type": "library",
      "bom-ref": "pkg:npm/is-binary-path@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-binary-path/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-binary-path/package.json"
              }
            ],
            "concludedValue": "node_modules/is-binary-path/package.json"
          }
        ]
      },
      "tags": [
        "binary"
      ]
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "is-bigint",
      "version": "1.1.0",
      "description": "Is this value an ES BigInt?",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-bigint@1.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/is-bigint#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/is-bigint.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-bigint@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-bigint/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-bigint/package.json"
              }
            ],
            "concludedValue": "node_modules/is-bigint/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "is-async-function",
      "version": "2.1.1",
      "description": "Determine if a function is a native async function.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-async-function@2.1.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/inspect-js/is-async-function.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-async-function@2.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-async-function/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-async-function/package.json"
              }
            ],
            "concludedValue": "node_modules/is-async-function/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "is-array-buffer",
      "version": "3.0.5",
      "description": "Is this value a JS ArrayBuffer?",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-array-buffer@3.0.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/is-array-buffer#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/is-array-buffer.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-array-buffer@3.0.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-array-buffer/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-array-buffer/package.json"
              }
            ],
            "concludedValue": "node_modules/is-array-buffer/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com> (http://ljharb.codes)"
        }
      ],
      "group": "",
      "name": "is-arguments",
      "version": "1.2.0",
      "description": "Is this an arguments object? It's a harder question than you think.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-arguments@1.2.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/is-arguments"
        },
        {
          "type": "vcs",
          "url": "git://github.com/inspect-js/is-arguments.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-arguments@1.2.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-arguments/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-arguments/package.json"
              }
            ],
            "concludedValue": "node_modules/is-arguments/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "is-accessor-descriptor",
      "version": "1.0.1",
      "description": "Returns true if a value has the characteristics of a valid JavaScript accessor descriptor.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/is-accessor-descriptor@1.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/is-accessor-descriptor"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/is-accessor-descriptor.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/is-accessor-descriptor@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/is-accessor-descriptor/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/is-accessor-descriptor/package.json"
              }
            ],
            "concludedValue": "node_modules/is-accessor-descriptor/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Andres Suarez <zertosh@gmail.com>"
        }
      ],
      "group": "",
      "name": "invariant",
      "version": "2.2.4",
      "description": "invariant",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/invariant@2.2.4",
      "type": "library",
      "bom-ref": "pkg:npm/invariant@2.2.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/invariant/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/invariant/package.json"
              }
            ],
            "concludedValue": "node_modules/invariant/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "internal-slot",
      "version": "1.1.0",
      "description": "ES spec-like internal slots",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/internal-slot@1.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/internal-slot#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/internal-slot.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/internal-slot@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/internal-slot/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/internal-slot/package.json"
              }
            ],
            "concludedValue": "node_modules/internal-slot/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Simon Boudrias <admin@simonboudrias.com>"
        }
      ],
      "group": "",
      "name": "inquirer",
      "version": "0.12.0",
      "description": "A collection of common interactive command line user interfaces.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/inquirer@0.12.0",
      "type": "library",
      "bom-ref": "pkg:npm/inquirer@0.12.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/inquirer/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/inquirer/package.json"
              }
            ],
            "concludedValue": "node_modules/inquirer/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "inherits",
      "version": "2.0.4",
      "description": "Browser-friendly inheritance fully compatible with standard node.js inherits()",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/inherits@2.0.4",
      "type": "library",
      "bom-ref": "pkg:npm/inherits@2.0.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/inherits/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/inherits/package.json"
              }
            ],
            "concludedValue": "node_modules/inherits/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "inflight",
      "version": "1.0.6",
      "description": "Add callbacks to requests in flight to avoid async duplication",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/inflight@1.0.6",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/isaacs/inflight"
        },
        {
          "type": "vcs",
          "url": "https://github.com/npm/inflight.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/inflight@1.0.6",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/inflight/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/inflight/package.json"
              }
            ],
            "concludedValue": "node_modules/inflight/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Rebecca Turner <me@re-becca.org>"
        }
      ],
      "group": "",
      "name": "in-publish",
      "version": "2.0.1",
      "description": "Detect if we were run as a result of `npm publish`",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/in-publish@2.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/iarna/in-publish"
        },
        {
          "type": "vcs",
          "url": "https://github.com/iarna/in-publish"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/in-publish@2.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/in-publish/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/in-publish/package.json"
              }
            ],
            "concludedValue": "node_modules/in-publish/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "test",
      "version": "1.0.0",
      "scope": "optional",
      "purl": "pkg:npm/test@1.0.0",
      "type": "library",
      "bom-ref": "pkg:npm/test@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/in-publish/test/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/in-publish/test/package.json"
              }
            ],
            "concludedValue": "node_modules/in-publish/test/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "kael"
        }
      ],
      "group": "",
      "name": "ignore",
      "version": "3.3.10",
      "description": "Ignore is a manager and filter for .gitignore rules.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/ignore@3.3.10",
      "type": "library",
      "bom-ref": "pkg:npm/ignore@3.3.10",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/ignore/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/ignore/package.json"
              }
            ],
            "concludedValue": "node_modules/ignore/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "home-or-tmp",
      "version": "2.0.0",
      "description": "Get the user home directory with fallback to the system temp directory",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/home-or-tmp@2.0.0",
      "type": "library",
      "bom-ref": "pkg:npm/home-or-tmp@2.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/home-or-tmp/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/home-or-tmp/package.json"
              }
            ],
            "concludedValue": "node_modules/home-or-tmp/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "hasown",
      "version": "2.0.3",
      "description": "A robust, ES3 compatible, \"has own property\" predicate.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/hasown@2.0.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/hasOwn#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/hasOwn.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/hasown@2.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/hasown/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/hasown/package.json"
              }
            ],
            "concludedValue": "node_modules/hasown/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "has-values",
      "version": "1.0.0",
      "description": "Returns true if any values exist, false if empty. Works for booleans, functions, numbers, strings, nulls, objects and arrays. ",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/has-values@1.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/has-values"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/has-values@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/has-values/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/has-values/package.json"
              }
            ],
            "concludedValue": "node_modules/has-values/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "kind-of",
      "version": "4.0.0",
      "description": "Get the native type of a value.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/kind-of@4.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/kind-of"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/kind-of@4.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/has-values/node_modules/kind-of/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/has-values/node_modules/kind-of/package.json"
              }
            ],
            "concludedValue": "node_modules/has-values/node_modules/kind-of/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "has-value",
      "version": "1.0.0",
      "description": "Returns true if a value exists, false if empty. Works with deeply nested values using object paths.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/has-value@1.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/has-value"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/has-value@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/has-value/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/has-value/package.json"
              }
            ],
            "concludedValue": "node_modules/has-value/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com> (http://ljharb.codes)"
        }
      ],
      "group": "",
      "name": "has-tostringtag",
      "version": "1.0.2",
      "description": "Determine if the JS environment has `Symbol.toStringTag` support. Supports spec, or shams.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/has-tostringtag@1.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/has-tostringtag#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/has-tostringtag.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/has-tostringtag@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/has-tostringtag/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/has-tostringtag/package.json"
              }
            ],
            "concludedValue": "node_modules/has-tostringtag/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com> (http://ljharb.codes)"
        }
      ],
      "group": "",
      "name": "has-symbols",
      "version": "1.1.0",
      "description": "Determine if the JS environment has Symbol support. Supports spec, or shams.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/has-symbols@1.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/has-symbols#readme"
        },
        {
          "type": "vcs",
          "url": "git://github.com/inspect-js/has-symbols.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/has-symbols@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/has-symbols/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/has-symbols/package.json"
              }
            ],
            "concludedValue": "node_modules/has-symbols/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "has-proto",
      "version": "1.2.0",
      "description": "Does this environment have the ability to get the [[Prototype]] of an object on creation with `__proto__`?",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/has-proto@1.2.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/has-proto#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/has-proto.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/has-proto@1.2.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/has-proto/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/has-proto/package.json"
              }
            ],
            "concludedValue": "node_modules/has-proto/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "has-property-descriptors",
      "version": "1.0.2",
      "description": "Does the environment have full property descriptor support? Handles IE 8's broken defineProperty/gOPD.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/has-property-descriptors@1.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/has-property-descriptors#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/has-property-descriptors.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/has-property-descriptors@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/has-property-descriptors/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/has-property-descriptors/package.json"
              }
            ],
            "concludedValue": "node_modules/has-property-descriptors/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "has-bigints",
      "version": "1.1.0",
      "description": "Determine if the JS environment has BigInt support.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/has-bigints@1.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/has-bigints#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/has-bigints.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/has-bigints@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/has-bigints/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/has-bigints/package.json"
              }
            ],
            "concludedValue": "node_modules/has-bigints/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Thiago de Arruda <tpadilha84@gmail.com>"
        }
      ],
      "group": "",
      "name": "has",
      "version": "1.0.4",
      "description": "Object.prototype.hasOwnProperty.call shortcut",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/has@1.0.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/tarruda/has"
        },
        {
          "type": "vcs",
          "url": "git://github.com/tarruda/has.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/has@1.0.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/has/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/has/package.json"
              }
            ],
            "concludedValue": "node_modules/has/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "graceful-fs",
      "version": "4.2.11",
      "description": "A drop-in replacement for fs, making various improvements.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/graceful-fs@4.2.11",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/isaacs/node-graceful-fs"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/graceful-fs@4.2.11",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/graceful-fs/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/graceful-fs/package.json"
              }
            ],
            "concludedValue": "node_modules/graceful-fs/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "gopd",
      "version": "1.2.0",
      "description": "`Object.getOwnPropertyDescriptor`, but accounts for IE's broken implementation.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/gopd@1.2.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/gopd#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/gopd.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/gopd@1.2.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/gopd/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/gopd/package.json"
              }
            ],
            "concludedValue": "node_modules/gopd/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "globalthis",
      "version": "1.0.4",
      "description": "ECMAScript spec-compliant polyfill/shim for `globalThis`",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/globalthis@1.0.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/ljharb/System.global.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/globalthis@1.0.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/globalthis/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/globalthis/package.json"
              }
            ],
            "concludedValue": "node_modules/globalthis/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (http://sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "globals",
      "version": "9.18.0",
      "description": "Global identifiers from different JavaScript environments",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/globals@9.18.0",
      "type": "library",
      "bom-ref": "pkg:npm/globals@9.18.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/globals/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/globals/package.json"
              }
            ],
            "concludedValue": "node_modules/globals/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Elan Shanker"
        }
      ],
      "group": "",
      "name": "glob-parent",
      "version": "2.0.0",
      "description": "Strips glob magic from a string to provide the parent path",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/glob-parent@2.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/es128/glob-parent"
        },
        {
          "type": "vcs",
          "url": "https://github.com/es128/glob-parent"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/glob-parent@2.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/glob-parent/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/glob-parent/package.json"
              }
            ],
            "concludedValue": "node_modules/glob-parent/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "glob-base",
      "version": "0.3.0",
      "description": "Returns an object with the (non-glob) base path and the actual pattern.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/glob-base@0.3.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/glob-base"
        },
        {
          "type": "vcs",
          "url": "git://github.com/jonschlinkert/glob-base.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/glob-base@0.3.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/glob-base/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/glob-base/package.json"
              }
            ],
            "concludedValue": "node_modules/glob-base/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "glob",
      "version": "7.2.3",
      "description": "a little globber",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/glob@7.2.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/isaacs/node-glob.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/glob@7.2.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/glob/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/glob/package.json"
              }
            ],
            "concludedValue": "node_modules/glob/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "get-value",
      "version": "2.0.6",
      "description": "Use property paths (`a.b.c`) to get a nested value from an object.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/get-value@2.0.6",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/get-value"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/get-value@2.0.6",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/get-value/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/get-value/package.json"
              }
            ],
            "concludedValue": "node_modules/get-value/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "get-symbol-description",
      "version": "1.1.0",
      "description": "Gets the description of a Symbol. Handles `Symbol()` vs `Symbol('')` properly when possible.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/get-symbol-description@1.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/get-symbol-description#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/get-symbol-description.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/get-symbol-description@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/get-symbol-description/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/get-symbol-description/package.json"
              }
            ],
            "concludedValue": "node_modules/get-symbol-description/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "get-stdin",
      "version": "5.0.1",
      "description": "Get stdin as a string or buffer",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/get-stdin@5.0.1",
      "type": "library",
      "bom-ref": "pkg:npm/get-stdin@5.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/get-stdin/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/get-stdin/package.json"
              }
            ],
            "concludedValue": "node_modules/get-stdin/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "get-proto",
      "version": "1.0.1",
      "description": "Robustly get the [[Prototype]] of an object",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/get-proto@1.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/get-proto#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/get-proto.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/get-proto@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/get-proto/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/get-proto/package.json"
              }
            ],
            "concludedValue": "node_modules/get-proto/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "get-intrinsic",
      "version": "1.3.0",
      "description": "Get and robustly cache all JS language-level intrinsics at first require time",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/get-intrinsic@1.3.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/get-intrinsic#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/get-intrinsic.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/get-intrinsic@1.3.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/get-intrinsic/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/get-intrinsic/package.json"
              }
            ],
            "concludedValue": "node_modules/get-intrinsic/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harbamd <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "generator-function",
      "version": "2.0.1",
      "description": "A function that returns the normally hidden `GeneratorFunction` constructor",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/generator-function@2.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/TimothyGu/generator-function#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/TimothyGu/generator-function.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/generator-function@2.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/generator-function/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/generator-function/package.json"
              }
            ],
            "concludedValue": "node_modules/generator-function/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mathias Buus"
        }
      ],
      "group": "",
      "name": "generate-function",
      "version": "2.3.1",
      "description": "Module that helps you write generated functions in Node",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/generate-function@2.3.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/mafintosh/generate-function"
        },
        {
          "type": "vcs",
          "url": "https://github.com/mafintosh/generate-function"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/generate-function@2.3.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/generate-function/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/generate-function/package.json"
              }
            ],
            "concludedValue": "node_modules/generate-function/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "functions-have-names",
      "version": "1.2.3",
      "description": "Does this JS environment support the `name` property on functions?",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/functions-have-names@1.2.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/functions-have-names#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/functions-have-names.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/functions-have-names@1.2.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/functions-have-names/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/functions-have-names/package.json"
              }
            ],
            "concludedValue": "node_modules/functions-have-names/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "function.prototype.name",
      "version": "1.1.8",
      "description": "An ES2015 spec-compliant `Function.prototype.name` shim",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/function.prototype.name@1.1.8",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/es-shims/Function.prototype.name.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/function.prototype.name@1.1.8",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/function.prototype.name/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/function.prototype.name/package.json"
              }
            ],
            "concludedValue": "node_modules/function.prototype.name/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Raynos <raynos2@gmail.com>"
        }
      ],
      "group": "",
      "name": "function-bind",
      "version": "1.1.2",
      "description": "Implementation of Function.prototype.bind",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/function-bind@1.1.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/Raynos/function-bind"
        },
        {
          "type": "vcs",
          "url": "https://github.com/Raynos/function-bind.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/function-bind@1.1.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/function-bind/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/function-bind/package.json"
              }
            ],
            "concludedValue": "node_modules/function-bind/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jonathan Ong <me@jongleberry.com> (http://jongleberry.com)"
        }
      ],
      "group": "",
      "name": "fs-readdir-recursive",
      "version": "1.1.0",
      "description": "Recursively read a directory",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/fs-readdir-recursive@1.1.0",
      "type": "library",
      "bom-ref": "pkg:npm/fs-readdir-recursive@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/fs-readdir-recursive/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/fs-readdir-recursive/package.json"
              }
            ],
            "concludedValue": "node_modules/fs-readdir-recursive/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "fragment-cache",
      "version": "0.2.1",
      "description": "A cache for managing namespaced sub-caches",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/fragment-cache@0.2.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/fragment-cache"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/fragment-cache@0.2.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/fragment-cache/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/fragment-cache/package.json"
              }
            ],
            "concludedValue": "node_modules/fragment-cache/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "for-own",
      "version": "0.1.5",
      "description": "Iterate over the own enumerable properties of an object, and return an object with properties that evaluate to true from the callback. Exit early by returning `false`. JavaScript/Node.js.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/for-own@0.1.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/for-own"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/for-own@0.1.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/for-own/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/for-own/package.json"
              }
            ],
            "concludedValue": "node_modules/for-own/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "for-in",
      "version": "1.0.2",
      "description": "Iterate over the own and inherited enumerable properties of an object, and return an object with properties that evaluate to true from the callback. Exit early by returning `false`. JavaScript/Node.js",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/for-in@1.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/for-in"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/for-in@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/for-in/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/for-in/package.json"
              }
            ],
            "concludedValue": "node_modules/for-in/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Raynos <raynos2@gmail.com>"
        }
      ],
      "group": "",
      "name": "for-each",
      "version": "0.3.5",
      "description": "A better forEach",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/for-each@0.3.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/Raynos/for-each"
        },
        {
          "type": "vcs",
          "url": "https://github.com/Raynos/for-each.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/for-each@0.3.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/for-each/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/for-each/package.json"
              }
            ],
            "concludedValue": "node_modules/for-each/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Roy Riojas (http://royriojas.com)"
        }
      ],
      "group": "",
      "name": "flat-cache",
      "version": "1.3.4",
      "description": "A stupidly simple key/value storage using files to persist some data",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/flat-cache@1.3.4",
      "type": "library",
      "bom-ref": "pkg:npm/flat-cache@1.3.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/flat-cache/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/flat-cache/package.json"
              }
            ],
            "concludedValue": "node_modules/flat-cache/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "rimraf",
      "version": "2.6.3",
      "description": "A deep deletion module for node (like `rm -rf`)",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/rimraf@2.6.3",
      "type": "library",
      "bom-ref": "pkg:npm/rimraf@2.6.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/flat-cache/node_modules/rimraf/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/flat-cache/node_modules/rimraf/package.json"
              }
            ],
            "concludedValue": "node_modules/flat-cache/node_modules/rimraf/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "jsdnxx"
        }
      ],
      "group": "",
      "name": "find-root",
      "version": "1.1.0",
      "description": "find the closest package.json",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/find-root@1.1.0",
      "type": "library",
      "bom-ref": "pkg:npm/find-root@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/find-root/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/find-root/package.json"
              }
            ],
            "concludedValue": "node_modules/find-root/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "fill-range",
      "version": "2.2.4",
      "description": "Fill in a range of numbers or letters, optionally passing an increment or multiplier to use.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/fill-range@2.2.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/fill-range"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/fill-range@2.2.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/fill-range/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/fill-range/package.json"
              }
            ],
            "concludedValue": "node_modules/fill-range/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "filename-regex",
      "version": "2.0.1",
      "description": "Regular expression for matching file names, with or without extension.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/filename-regex@2.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/regexhq/filename-regex"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/filename-regex@2.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/filename-regex/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/filename-regex/package.json"
              }
            ],
            "concludedValue": "node_modules/filename-regex/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Roy Riojas (http://royriojas.com)"
        }
      ],
      "group": "",
      "name": "file-entry-cache",
      "version": "1.3.1",
      "description": "Super simple cache for file metadata, useful for process that work o a given series of files and that only need to repeat the job on the changed ones since the previous run of the process",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/file-entry-cache@1.3.1",
      "type": "library",
      "bom-ref": "pkg:npm/file-entry-cache@1.3.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/file-entry-cache/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/file-entry-cache/package.json"
              }
            ],
            "concludedValue": "node_modules/file-entry-cache/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "figures",
      "version": "1.7.0",
      "description": "Unicode symbols with Windows CMD fallbacks",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/figures@1.7.0",
      "type": "library",
      "bom-ref": "pkg:npm/figures@1.7.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/figures/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/figures/package.json"
              }
            ],
            "concludedValue": "node_modules/figures/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "James Halliday <mail@substack.net> (http://substack.net)"
        }
      ],
      "group": "",
      "name": "faucet",
      "version": "0.0.1",
      "description": "human-readable TAP summarizer",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/faucet@0.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/substack/faucet"
        },
        {
          "type": "vcs",
          "url": "git://github.com/substack/faucet.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/faucet@0.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/faucet/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/faucet/package.json"
              }
            ],
            "concludedValue": "node_modules/faucet/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "James Halliday <mail@substack.net> (http://substack.net)"
        }
      ],
      "group": "",
      "name": "tape",
      "version": "2.3.3",
      "description": "tap-producing test harness for node and browsers",
      "scope": "required",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/tape@2.3.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/substack/tape"
        },
        {
          "type": "vcs",
          "url": "git://github.com/substack/tape.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/tape@2.3.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/faucet/node_modules/tape/package.json"
        },
        {
          "name": "ImportedModules",
          "value": "tape"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/faucet/node_modules/tape/package.json"
              }
            ],
            "concludedValue": "node_modules/faucet/node_modules/tape/package.json"
          }
        ],
        "occurrences": [
          {
            "location": "build-test/index.js#3"
          }
        ]
      },
      "tags": [
        "test"
      ]
    },
    {
      "authors": [
        {
          "name": "James Halliday <mail@substack.net> (http://substack.net)"
        }
      ],
      "group": "",
      "name": "deep-equal",
      "version": "0.1.2",
      "description": "node's assert.deepEqual algorithm",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/deep-equal@0.1.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "http://github.com/substack/node-deep-equal.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/deep-equal@0.1.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/faucet/node_modules/deep-equal/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/faucet/node_modules/deep-equal/package.json"
              }
            ],
            "concludedValue": "node_modules/faucet/node_modules/deep-equal/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Ramesh Nair <ram@hiddentao.com> (http://www.hiddentao.com/)"
        }
      ],
      "group": "",
      "name": "fast-levenshtein",
      "version": "2.0.6",
      "description": "Efficient implementation of Levenshtein algorithm  with locale-specific collator support.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/fast-levenshtein@2.0.6",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/hiddentao/fast-levenshtein.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/fast-levenshtein@2.0.6",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/fast-levenshtein/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/fast-levenshtein/package.json"
              }
            ],
            "concludedValue": "node_modules/fast-levenshtein/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "extglob",
      "version": "0.3.2",
      "description": "Convert extended globs to regex-compatible strings. Add (almost) the expressive power of regular expressions to glob patterns.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/extglob@0.3.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/extglob"
        },
        {
          "type": "vcs",
          "url": "git://github.com/jonschlinkert/extglob.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/extglob@0.3.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/extglob/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/extglob/package.json"
              }
            ],
            "concludedValue": "node_modules/extglob/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "extend-shallow",
      "version": "3.0.2",
      "description": "Extend an object with the properties of additional objects. node.js/javascript util.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/extend-shallow@3.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/extend-shallow"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/extend-shallow@3.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/extend-shallow/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/extend-shallow/package.json"
              }
            ],
            "concludedValue": "node_modules/extend-shallow/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mariusz Nowak <medyk@medikoo.com> (http://www.medikoo.com/)"
        }
      ],
      "group": "",
      "name": "ext",
      "version": "1.7.0",
      "description": "JavaScript utilities with respect to emerging standard",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/ext@1.7.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/medikoo/es5-ext#ext"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/ext@1.7.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/ext/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/ext/package.json"
              }
            ],
            "concludedValue": "node_modules/ext/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "expand-range",
      "version": "1.8.2",
      "description": "Fast, bash-like range expansion. Expand a range of numbers or letters, uppercase or lowercase. See the benchmarks. Used by micromatch.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/expand-range@1.8.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/expand-range"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/expand-range@1.8.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/expand-range/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/expand-range/package.json"
              }
            ],
            "concludedValue": "node_modules/expand-range/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "expand-brackets",
      "version": "0.1.5",
      "description": "Expand POSIX bracket expressions (character classes) in glob patterns.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/expand-brackets@0.1.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/expand-brackets"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/expand-brackets@0.1.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/expand-brackets/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/expand-brackets/package.json"
              }
            ],
            "concludedValue": "node_modules/expand-brackets/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (http://sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "exit-hook",
      "version": "1.1.1",
      "description": "Run some code when the process exits",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/exit-hook@1.1.1",
      "type": "library",
      "bom-ref": "pkg:npm/exit-hook@1.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/exit-hook/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/exit-hook/package.json"
              }
            ],
            "concludedValue": "node_modules/exit-hook/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mariusz Nowak <medyk@medikoo.com> (http://www.medikoo.com/)"
        }
      ],
      "group": "",
      "name": "event-emitter",
      "version": "0.3.5",
      "description": "Environment agnostic event emitter",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/event-emitter@0.3.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/medikoo/event-emitter.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/event-emitter@0.3.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/event-emitter/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/event-emitter/package.json"
              }
            ],
            "concludedValue": "node_modules/event-emitter/package.json"
          }
        ]
      },
      "tags": [
        "event"
      ]
    },
    {
      "group": "",
      "name": "esutils",
      "version": "2.0.3",
      "description": "utility box for ECMAScript language tools",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "BSD-2-Clause",
            "url": "https://opensource.org/licenses/BSD-2-Clause"
          }
        }
      ],
      "purl": "pkg:npm/esutils@2.0.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/estools/esutils"
        },
        {
          "type": "vcs",
          "url": "http://github.com/estools/esutils.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/esutils@2.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/esutils/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/esutils/package.json"
              }
            ],
            "concludedValue": "node_modules/esutils/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "estraverse",
      "version": "4.3.0",
      "description": "ECMAScript JS AST traversal functions",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "BSD-2-Clause",
            "url": "https://opensource.org/licenses/BSD-2-Clause"
          }
        }
      ],
      "purl": "pkg:npm/estraverse@4.3.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/estools/estraverse"
        },
        {
          "type": "vcs",
          "url": "http://github.com/estools/estraverse.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/estraverse@4.3.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/estraverse/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/estraverse/package.json"
              }
            ],
            "concludedValue": "node_modules/estraverse/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "esrecurse",
      "version": "4.3.0",
      "description": "ECMAScript AST recursive visitor",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "BSD-2-Clause",
            "url": "https://opensource.org/licenses/BSD-2-Clause"
          }
        }
      ],
      "purl": "pkg:npm/esrecurse@4.3.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/estools/esrecurse"
        },
        {
          "type": "vcs",
          "url": "https://github.com/estools/esrecurse.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/esrecurse@4.3.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/esrecurse/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/esrecurse/package.json"
              }
            ],
            "concludedValue": "node_modules/esrecurse/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "estraverse",
      "version": "5.3.0",
      "description": "ECMAScript JS AST traversal functions",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "BSD-2-Clause",
            "url": "https://opensource.org/licenses/BSD-2-Clause"
          }
        }
      ],
      "purl": "pkg:npm/estraverse@5.3.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/estools/estraverse"
        },
        {
          "type": "vcs",
          "url": "http://github.com/estools/estraverse.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/estraverse@5.3.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/esrecurse/node_modules/estraverse/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/esrecurse/node_modules/estraverse/package.json"
              }
            ],
            "concludedValue": "node_modules/esrecurse/node_modules/estraverse/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Ariya Hidayat <ariya.hidayat@gmail.com>"
        }
      ],
      "group": "",
      "name": "esprima",
      "version": "4.0.1",
      "description": "ECMAScript parsing infrastructure for multipurpose analysis",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "BSD-2-Clause",
            "url": "https://opensource.org/licenses/BSD-2-Clause"
          }
        }
      ],
      "purl": "pkg:npm/esprima@4.0.1",
      "externalReferences": [
        {
          "type": "website",
          "url": "http://esprima.org"
        },
        {
          "type": "vcs",
          "url": "https://github.com/jquery/esprima.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/esprima@4.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/esprima/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/esprima/package.json"
              }
            ],
            "concludedValue": "node_modules/esprima/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Nicholas C. Zakas <nicholas+npm@nczconsulting.com>"
        }
      ],
      "group": "",
      "name": "espree",
      "version": "3.1.4",
      "description": "An Esprima-compatible JavaScript parser built on Acorn",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "BSD-2-Clause",
            "url": "https://opensource.org/licenses/BSD-2-Clause"
          }
        }
      ],
      "purl": "pkg:npm/espree@3.1.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/eslint/espree"
        },
        {
          "type": "vcs",
          "url": "http://github.com/eslint/espree.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/espree@3.1.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/espree/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/espree/package.json"
              }
            ],
            "concludedValue": "node_modules/espree/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mariusz Nowak <medyk@medikoo.com> (http://www.medikoo.com/)"
        }
      ],
      "group": "",
      "name": "esniff",
      "version": "2.0.1",
      "description": "Low footprint ECMAScript source code parser",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/esniff@2.0.1",
      "type": "library",
      "bom-ref": "pkg:npm/esniff@2.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/esniff/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/esniff/package.json"
              }
            ],
            "concludedValue": "node_modules/esniff/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jamund Ferguson <jamund@gmail.com>"
        }
      ],
      "group": "",
      "name": "eslint-plugin-standard",
      "version": "1.3.3",
      "description": "ESlint Plugin for the Standard Linter",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/eslint-plugin-standard@1.3.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/xjamundx/eslint-plugin-standard#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/xjamundx/eslint-plugin-standard.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/eslint-plugin-standard@1.3.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/eslint-plugin-standard/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/eslint-plugin-standard/package.json"
              }
            ],
            "concludedValue": "node_modules/eslint-plugin-standard/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Yannick Croissant <yannick.croissant+npm@gmail.com>"
        }
      ],
      "group": "",
      "name": "eslint-plugin-react",
      "version": "5.2.2",
      "description": "React specific linting rules for ESLint",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/eslint-plugin-react@5.2.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/yannickcr/eslint-plugin-react"
        },
        {
          "type": "vcs",
          "url": "https://github.com/yannickcr/eslint-plugin-react"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/eslint-plugin-react@5.2.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/eslint-plugin-react/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/eslint-plugin-react/package.json"
              }
            ],
            "concludedValue": "node_modules/eslint-plugin-react/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "jden <jason@denizac.org>"
        }
      ],
      "group": "",
      "name": "eslint-plugin-promise",
      "version": "1.3.2",
      "description": "Enforce best practices for JavaScript promises",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/eslint-plugin-promise@1.3.2",
      "type": "library",
      "bom-ref": "pkg:npm/eslint-plugin-promise@1.3.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/eslint-plugin-promise/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/eslint-plugin-promise/package.json"
              }
            ],
            "concludedValue": "node_modules/eslint-plugin-promise/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Feross Aboukhadijeh <feross@feross.org> (http://feross.org/)"
        }
      ],
      "group": "",
      "name": "eslint-config-standard-jsx",
      "version": "1.2.1",
      "description": "JavaScript Standard Style JSX support - ESLint Shareable Config",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/eslint-config-standard-jsx@1.2.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/feross/eslint-config-standard-jsx"
        },
        {
          "type": "vcs",
          "url": "git://github.com/feross/eslint-config-standard-jsx.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/eslint-config-standard-jsx@1.2.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/eslint-config-standard-jsx/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/eslint-config-standard-jsx/package.json"
              }
            ],
            "concludedValue": "node_modules/eslint-config-standard-jsx/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Feross Aboukhadijeh <feross@feross.org> (http://feross.org/)"
        }
      ],
      "group": "",
      "name": "eslint-config-standard",
      "version": "5.3.1",
      "description": "JavaScript Standard Style - ESLint Shareable Config",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/eslint-config-standard@5.3.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/feross/eslint-config-standard"
        },
        {
          "type": "vcs",
          "url": "git://github.com/feross/eslint-config-standard.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/eslint-config-standard@5.3.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/eslint-config-standard/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/eslint-config-standard/package.json"
              }
            ],
            "concludedValue": "node_modules/eslint-config-standard/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Nicholas C. Zakas <nicholas+npm@nczconsulting.com>"
        }
      ],
      "group": "",
      "name": "eslint",
      "version": "2.10.2",
      "description": "An AST-based pattern checker for JavaScript.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/eslint@2.10.2",
      "externalReferences": [
        {
          "type": "website",
          "url": "http://eslint.org"
        },
        {
          "type": "vcs",
          "url": "https://github.com/eslint/eslint"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/eslint@2.10.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/eslint/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/eslint/package.json"
              }
            ],
            "concludedValue": "node_modules/eslint/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "escope",
      "version": "3.6.0",
      "description": "ECMAScript scope analyzer",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "BSD-2-Clause",
            "url": "https://opensource.org/licenses/BSD-2-Clause"
          }
        }
      ],
      "purl": "pkg:npm/escope@3.6.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "http://github.com/estools/escope"
        },
        {
          "type": "vcs",
          "url": "https://github.com/estools/escope.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/escope@3.6.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/escope/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/escope/package.json"
              }
            ],
            "concludedValue": "node_modules/escope/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mariusz Nowak <medyk@medikoo.com> (http://www.medikoo.com/)"
        }
      ],
      "group": "",
      "name": "es6-weak-map",
      "version": "2.0.3",
      "description": "ECMAScript6 WeakMap polyfill",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/es6-weak-map@2.0.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/medikoo/es6-weak-map.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/es6-weak-map@2.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/es6-weak-map/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/es6-weak-map/package.json"
              }
            ],
            "concludedValue": "node_modules/es6-weak-map/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mariusz Nowak <medyk@medikoo.com> (http://www.medikoo.com/)"
        }
      ],
      "group": "",
      "name": "es6-symbol",
      "version": "3.1.4",
      "description": "ECMAScript 6 Symbol polyfill",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/es6-symbol@3.1.4",
      "type": "library",
      "bom-ref": "pkg:npm/es6-symbol@3.1.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/es6-symbol/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/es6-symbol/package.json"
              }
            ],
            "concludedValue": "node_modules/es6-symbol/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Paul Miller (http://paulmillr.com)"
        }
      ],
      "group": "",
      "name": "es6-shim",
      "version": "0.35.8",
      "description": "ECMAScript 6 (Harmony) compatibility shims for legacy JavaScript engines",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/es6-shim@0.35.8",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/paulmillr/es6-shim/"
        },
        {
          "type": "vcs",
          "url": "git://github.com/paulmillr/es6-shim.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/es6-shim@0.35.8",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/es6-shim/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/es6-shim/package.json"
              }
            ],
            "concludedValue": "node_modules/es6-shim/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mariusz Nowak <medyk@medikoo.com> (http://www.medikoo.com/)"
        }
      ],
      "group": "",
      "name": "es6-set",
      "version": "0.1.6",
      "description": "ECMAScript6 Set polyfill",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/es6-set@0.1.6",
      "type": "library",
      "bom-ref": "pkg:npm/es6-set@0.1.6",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/es6-set/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/es6-set/package.json"
              }
            ],
            "concludedValue": "node_modules/es6-set/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mariusz Nowak <medyk@medikoo.com> (http://www.medikoo.com/)"
        }
      ],
      "group": "",
      "name": "es6-map",
      "version": "0.1.5",
      "description": "ECMAScript6 Map polyfill",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/es6-map@0.1.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/medikoo/es6-map.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/es6-map@0.1.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/es6-map/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/es6-map/package.json"
              }
            ],
            "concludedValue": "node_modules/es6-map/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mariusz Nowak <medyk@medikoo.com> (http://www.medikoo.com/)"
        }
      ],
      "group": "",
      "name": "es6-iterator",
      "version": "2.0.3",
      "description": "Iterator abstraction based on ES6 specification",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/es6-iterator@2.0.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/medikoo/es6-iterator.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/es6-iterator@2.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/es6-iterator/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/es6-iterator/package.json"
              }
            ],
            "concludedValue": "node_modules/es6-iterator/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "es5-shim",
      "version": "4.6.7",
      "description": "ECMAScript 5 compatibility shims for legacy JavaScript engines",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/es5-shim@4.6.7",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/es-shims/es5-shim/"
        },
        {
          "type": "vcs",
          "url": "https://github.com/es-shims/es5-shim.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/es5-shim@4.6.7",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/es5-shim/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/es5-shim/package.json"
              }
            ],
            "concludedValue": "node_modules/es5-shim/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mariusz Nowak <medyk@medikoo.com> (http://www.medikoo.com/)"
        }
      ],
      "group": "",
      "name": "es5-ext",
      "version": "0.10.64",
      "description": "ECMAScript extensions and shims",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/es5-ext@0.10.64",
      "type": "library",
      "bom-ref": "pkg:npm/es5-ext@0.10.64",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/es5-ext/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/es5-ext/package.json"
              }
            ],
            "concludedValue": "node_modules/es5-ext/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "es-to-primitive",
      "version": "1.3.0",
      "description": "ECMAScript “ToPrimitive” algorithm. Provides ES5 and ES2015 versions.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/es-to-primitive@1.3.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/ljharb/es-to-primitive.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/es-to-primitive@1.3.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/es-to-primitive/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/es-to-primitive/package.json"
              }
            ],
            "concludedValue": "node_modules/es-to-primitive/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "es-shim-unscopables",
      "version": "1.1.0",
      "description": "Helper package to shim a method into `Array.prototype[Symbol.unscopables]`",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/es-shim-unscopables@1.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/es-shim-unscopables#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/es-shim-unscopables.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/es-shim-unscopables@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/es-shim-unscopables/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/es-shim-unscopables/package.json"
              }
            ],
            "concludedValue": "node_modules/es-shim-unscopables/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "es-set-tostringtag",
      "version": "2.1.0",
      "description": "A helper to optimistically set Symbol.toStringTag, when possible.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/es-set-tostringtag@2.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/es-shims/es-set-tostringtag#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/es-shims/es-set-tostringtag.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/es-set-tostringtag@2.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/es-set-tostringtag/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/es-set-tostringtag/package.json"
              }
            ],
            "concludedValue": "node_modules/es-set-tostringtag/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "es-object-atoms",
      "version": "1.1.1",
      "description": "ES Object-related atoms: Object, ToObject, RequireObjectCoercible",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/es-object-atoms@1.1.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/es-object-atoms#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/es-object-atoms.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/es-object-atoms@1.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/es-object-atoms/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/es-object-atoms/package.json"
              }
            ],
            "concludedValue": "node_modules/es-object-atoms/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "es-errors",
      "version": "1.3.0",
      "description": "A simple cache for a few of the JS Error constructors.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/es-errors@1.3.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/es-errors#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/es-errors.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/es-errors@1.3.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/es-errors/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/es-errors/package.json"
              }
            ],
            "concludedValue": "node_modules/es-errors/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "es-define-property",
      "version": "1.0.1",
      "description": "`Object.defineProperty`, but not IE 8's broken one.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/es-define-property@1.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/es-define-property#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/es-define-property.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/es-define-property@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/es-define-property/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/es-define-property/package.json"
              }
            ],
            "concludedValue": "node_modules/es-define-property/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "es-array-method-boxes-properly",
      "version": "1.0.0",
      "description": "Utility package to determine if an `Array.prototype` method properly boxes the callback's receiver and third argument.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/es-array-method-boxes-properly@1.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/es-array-method-boxes-properly#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/es-array-method-boxes-properly.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/es-array-method-boxes-properly@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/es-array-method-boxes-properly/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/es-array-method-boxes-properly/package.json"
              }
            ],
            "concludedValue": "node_modules/es-array-method-boxes-properly/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com> (http://ljharb.codes)"
        }
      ],
      "group": "",
      "name": "es-abstract",
      "version": "1.24.2",
      "description": "ECMAScript spec abstract operations.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/es-abstract@1.24.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/ljharb/es-abstract.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/es-abstract@1.24.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/es-abstract/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/es-abstract/package.json"
              }
            ],
            "concludedValue": "node_modules/es-abstract/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Kilian Valkhof"
        }
      ],
      "group": "",
      "name": "electron-to-chromium",
      "version": "1.5.352",
      "description": "Provides a list of electron-to-chromium version mappings",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/electron-to-chromium@1.5.352",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git+https://github.com/Kilian/electron-to-chromium.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/electron-to-chromium@1.5.352",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/electron-to-chromium/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/electron-to-chromium/package.json"
              }
            ],
            "concludedValue": "node_modules/electron-to-chromium/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Raynos <raynos2@gmail.com>"
        }
      ],
      "group": "",
      "name": "duplexer",
      "version": "0.1.2",
      "description": "Creates a duplex stream",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/duplexer@0.1.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/Raynos/duplexer"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/duplexer@0.1.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/duplexer/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/duplexer/package.json"
              }
            ],
            "concludedValue": "node_modules/duplexer/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "dunder-proto",
      "version": "1.0.1",
      "description": "If available, the `Object.prototype.__proto__` accessor and mutator, call-bound",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/dunder-proto@1.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/es-shims/dunder-proto#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/es-shims/dunder-proto.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/dunder-proto@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/dunder-proto/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/dunder-proto/package.json"
              }
            ],
            "concludedValue": "node_modules/dunder-proto/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "bradleymeck"
        }
      ],
      "group": "",
      "name": "dotignore",
      "version": "0.1.2",
      "description": "ignorefile/includefile matching .gitignore spec",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/dotignore@0.1.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "http://github.com/bmeck/dotignore"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/dotignore@0.1.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/dotignore/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/dotignore/package.json"
              }
            ],
            "concludedValue": "node_modules/dotignore/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "doctrine",
      "version": "1.5.0",
      "description": "JSDoc parser",
      "scope": "optional",
      "purl": "pkg:npm/doctrine@1.5.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/eslint/doctrine"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/doctrine@1.5.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/doctrine/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/doctrine/package.json"
              }
            ],
            "concludedValue": "node_modules/doctrine/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "detect-indent",
      "version": "4.0.0",
      "description": "Detect the indentation of code",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/detect-indent@4.0.0",
      "type": "library",
      "bom-ref": "pkg:npm/detect-indent@4.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/detect-indent/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/detect-indent/package.json"
              }
            ],
            "concludedValue": "node_modules/detect-indent/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Dan Flettre <fletd01@yahoo.com>"
        }
      ],
      "group": "",
      "name": "deglob",
      "version": "1.1.2",
      "description": "Take a list of glob patterns and return an array of file locations, respecting `.gitignore` and allowing for ignore patterns via `package.json`.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/deglob@1.1.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/flet/deglob"
        },
        {
          "type": "vcs",
          "url": "https://github.com/flet/deglob.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/deglob@1.1.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/deglob/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/deglob/package.json"
              }
            ],
            "concludedValue": "node_modules/deglob/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "James Halliday <mail@substack.net> (http://substack.net)"
        }
      ],
      "group": "",
      "name": "defined",
      "version": "0.0.0",
      "description": "return the first argument that is `!== undefined`",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/defined@0.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/substack/defined"
        },
        {
          "type": "vcs",
          "url": "git://github.com/substack/defined.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/defined@0.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/defined/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/defined/package.json"
              }
            ],
            "concludedValue": "node_modules/defined/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "define-property",
      "version": "2.0.2",
      "description": "Define a non-enumerable property on an object. Uses Reflect.defineProperty when available, otherwise Object.defineProperty.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/define-property@2.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/define-property"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/define-property@2.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/define-property/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/define-property/package.json"
              }
            ],
            "concludedValue": "node_modules/define-property/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "define-properties",
      "version": "1.2.1",
      "description": "Define multiple non-enumerable properties at once. Uses `Object.defineProperty` when available; falls back to standard assignment in older engines.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/define-properties@1.2.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/ljharb/define-properties.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/define-properties@1.2.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/define-properties/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/define-properties/package.json"
              }
            ],
            "concludedValue": "node_modules/define-properties/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "define-data-property",
      "version": "1.1.4",
      "description": "Define a data property on an object. Will fall back to assignment in an engine without descriptors.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/define-data-property@1.1.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/define-data-property#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/define-data-property.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/define-data-property@1.1.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/define-data-property/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/define-data-property/package.json"
              }
            ],
            "concludedValue": "node_modules/define-data-property/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Elijah Insua <tmpvar@gmail.com>"
        }
      ],
      "group": "",
      "name": "defaults",
      "version": "1.0.4",
      "description": "merge single level defaults over a config object",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/defaults@1.0.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/sindresorhus/node-defaults.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/defaults@1.0.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/defaults/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/defaults/package.json"
              }
            ],
            "concludedValue": "node_modules/defaults/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Thorsten Lorenz <thlorenz@gmx.de> (http://thlorenz.com)"
        }
      ],
      "group": "",
      "name": "deep-is",
      "version": "0.1.4",
      "description": "node's assert.deepEqual algorithm except for NaN being equal to NaN",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/deep-is@0.1.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "http://github.com/thlorenz/deep-is.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/deep-is@0.1.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/deep-is/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/deep-is/package.json"
              }
            ],
            "concludedValue": "node_modules/deep-is/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "James Halliday <mail@substack.net> (http://substack.net)"
        }
      ],
      "group": "",
      "name": "deep-equal",
      "version": "1.1.2",
      "description": "node's assert.deepEqual algorithm",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/deep-equal@1.1.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "http://github.com/inspect-js/node-deep-equal.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/deep-equal@1.1.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/deep-equal/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/deep-equal/package.json"
              }
            ],
            "concludedValue": "node_modules/deep-equal/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sam Verschueren <sam.verschueren@gmail.com> (github.com/SamVerschueren)"
        }
      ],
      "group": "",
      "name": "decode-uri-component",
      "version": "0.2.2",
      "description": "A better decodeURIComponent",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/decode-uri-component@0.2.2",
      "type": "library",
      "bom-ref": "pkg:npm/decode-uri-component@0.2.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/decode-uri-component/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/decode-uri-component/package.json"
              }
            ],
            "concludedValue": "node_modules/decode-uri-component/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "debug-log",
      "version": "1.0.1",
      "description": "Node.js 0.12 util.debuglog() ponyfill",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/debug-log@1.0.1",
      "type": "library",
      "bom-ref": "pkg:npm/debug-log@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/debug-log/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/debug-log/package.json"
              }
            ],
            "concludedValue": "node_modules/debug-log/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "TJ Holowaychuk <tj@vision-media.ca>"
        }
      ],
      "group": "",
      "name": "debug",
      "version": "2.6.9",
      "description": "small debugging utility",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/debug@2.6.9",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/visionmedia/debug.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/debug@2.6.9",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/debug/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/debug/package.json"
              }
            ],
            "concludedValue": "node_modules/debug/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "data-view-byte-offset",
      "version": "1.0.1",
      "description": "Get the byteOffset out of a DataView, robustly.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/data-view-byte-offset@1.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/data-view-byte-offset#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/data-view-byte-offset.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/data-view-byte-offset@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/data-view-byte-offset/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/data-view-byte-offset/package.json"
              }
            ],
            "concludedValue": "node_modules/data-view-byte-offset/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "data-view-byte-length",
      "version": "1.0.2",
      "description": "Get the byteLength out of a DataView, robustly.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/data-view-byte-length@1.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/data-view-byte-length#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/data-view-byte-length.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/data-view-byte-length@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/data-view-byte-length/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/data-view-byte-length/package.json"
              }
            ],
            "concludedValue": "node_modules/data-view-byte-length/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "data-view-buffer",
      "version": "1.0.2",
      "description": "Get the ArrayBuffer out of a DataView, robustly.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/data-view-buffer@1.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/data-view-buffer#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/data-view-buffer.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/data-view-buffer@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/data-view-buffer/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/data-view-buffer/package.json"
              }
            ],
            "concludedValue": "node_modules/data-view-buffer/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Mariusz Nowak <medyk@medikoo.com> (http://www.medikoo.com/)"
        }
      ],
      "group": "",
      "name": "d",
      "version": "1.0.2",
      "description": "Property descriptor factory",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/d@1.0.2",
      "type": "library",
      "bom-ref": "pkg:npm/d@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/d/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/d/package.json"
              }
            ],
            "concludedValue": "node_modules/d/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Isaac Z. Schlueter <i@izs.me> (http://blog.izs.me/)"
        }
      ],
      "group": "",
      "name": "core-util-is",
      "version": "1.0.3",
      "description": "The `util.is*` functions introduced in Node v0.12.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/core-util-is@1.0.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/isaacs/core-util-is"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/core-util-is@1.0.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/core-util-is/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/core-util-is/package.json"
              }
            ],
            "concludedValue": "node_modules/core-util-is/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "core-js",
      "version": "2.6.12",
      "description": "Standard library",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/core-js@2.6.12",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/zloirock/core-js.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/core-js@2.6.12",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/core-js/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/core-js/package.json"
              }
            ],
            "concludedValue": "node_modules/core-js/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "copy-descriptor",
      "version": "0.1.1",
      "description": "Copy a descriptor from object A to object B",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/copy-descriptor@0.1.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/copy-descriptor"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/copy-descriptor@0.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/copy-descriptor/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/copy-descriptor/package.json"
              }
            ],
            "concludedValue": "node_modules/copy-descriptor/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Thorsten Lorenz <thlorenz@gmx.de> (http://thlorenz.com)"
        }
      ],
      "group": "",
      "name": "convert-source-map",
      "version": "1.9.0",
      "description": "Converts a source-map from/to  different formats and allows adding/changing properties.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/convert-source-map@1.9.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/thlorenz/convert-source-map"
        },
        {
          "type": "vcs",
          "url": "git://github.com/thlorenz/convert-source-map.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/convert-source-map@1.9.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/convert-source-map/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/convert-source-map/package.json"
              }
            ],
            "concludedValue": "node_modules/convert-source-map/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Max Ogden <max@maxogden.com>"
        }
      ],
      "group": "",
      "name": "concat-stream",
      "version": "1.6.2",
      "description": "writable stream that concatenates strings or binary data and calls a callback with the result",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/concat-stream@1.6.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "http://github.com/maxogden/concat-stream.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/concat-stream@1.6.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/concat-stream/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/concat-stream/package.json"
              }
            ],
            "concludedValue": "node_modules/concat-stream/package.json"
          }
        ]
      },
      "tags": [
        "binary",
        "stream"
      ]
    },
    {
      "group": "",
      "name": "component-emitter",
      "version": "1.3.1",
      "description": "Event emitter",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/component-emitter@1.3.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/sindresorhus/component-emitter.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/component-emitter@1.3.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/component-emitter/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/component-emitter/package.json"
              }
            ],
            "concludedValue": "node_modules/component-emitter/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "TJ Holowaychuk <tj@vision-media.ca>"
        }
      ],
      "group": "",
      "name": "commander",
      "version": "2.20.3",
      "description": "the complete solution for node.js command-line programs",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/commander@2.20.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/tj/commander.js.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/commander@2.20.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/commander/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/commander/package.json"
              }
            ],
            "concludedValue": "node_modules/commander/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "collection-visit",
      "version": "1.0.0",
      "description": "Visit a method over the items in an object, or map visit over the objects in an array.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/collection-visit@1.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/collection-visit"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/collection-visit@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/collection-visit/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/collection-visit/package.json"
              }
            ],
            "concludedValue": "node_modules/collection-visit/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "code-point-at",
      "version": "1.1.0",
      "description": "ES2015 `String#codePointAt()` ponyfill",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/code-point-at@1.1.0",
      "type": "library",
      "bom-ref": "pkg:npm/code-point-at@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/code-point-at/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/code-point-at/package.json"
              }
            ],
            "concludedValue": "node_modules/code-point-at/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "co",
      "version": "4.6.0",
      "description": "generator async control flow goodness",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/co@4.6.0",
      "type": "library",
      "bom-ref": "pkg:npm/co@4.6.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/co/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/co/package.json"
              }
            ],
            "concludedValue": "node_modules/co/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Paul Vorbach <paul@vorba.ch> (http://paul.vorba.ch/)"
        }
      ],
      "group": "",
      "name": "clone",
      "version": "1.0.4",
      "description": "deep cloning of objects and arrays",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/clone@1.0.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/pvorb/node-clone.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/clone@1.0.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/clone/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/clone/package.json"
              }
            ],
            "concludedValue": "node_modules/clone/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Ilya Radchenko <knownasilya@gmail.com>"
        }
      ],
      "group": "",
      "name": "cli-width",
      "version": "2.2.1",
      "description": "Get stdout window width, with two fallbacks, tty and then a default.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/cli-width@2.2.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/knownasilya/cli-width"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/cli-width@2.2.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/cli-width/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/cli-width/package.json"
              }
            ],
            "concludedValue": "node_modules/cli-width/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "cli-cursor",
      "version": "1.0.2",
      "description": "Toggle the CLI cursor",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/cli-cursor@1.0.2",
      "type": "library",
      "bom-ref": "pkg:npm/cli-cursor@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/cli-cursor/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/cli-cursor/package.json"
              }
            ],
            "concludedValue": "node_modules/cli-cursor/package.json"
          }
        ]
      },
      "tags": [
        "cli"
      ]
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "class-utils",
      "version": "0.3.6",
      "description": "Utils for working with JavaScript classes and prototype methods.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/class-utils@0.3.6",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/class-utils"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/class-utils@0.3.6",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/class-utils/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/class-utils/package.json"
              }
            ],
            "concludedValue": "node_modules/class-utils/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Andrea Giammarchi"
        }
      ],
      "group": "",
      "name": "circular-json",
      "version": "0.3.3",
      "description": "JSON does not handle circular references. This version does",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/circular-json@0.3.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/WebReflection/circular-json"
        },
        {
          "type": "vcs",
          "url": "git://github.com/WebReflection/circular-json.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/circular-json@0.3.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/circular-json/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/circular-json/package.json"
              }
            ],
            "concludedValue": "node_modules/circular-json/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Paul Miller (http://paulmillr.com)"
        },
        {
          "name": " Elan Shanker"
        }
      ],
      "group": "",
      "name": "chokidar",
      "version": "1.7.0",
      "description": "A neat wrapper around node.js fs.watch / fs.watchFile / fsevents.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/chokidar@1.7.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/paulmillr/chokidar"
        },
        {
          "type": "vcs",
          "url": "https://github.com/paulmillr/chokidar.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/chokidar@1.7.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/chokidar/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/chokidar/package.json"
              }
            ],
            "concludedValue": "node_modules/chokidar/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Ben Briggs <beneb.info@gmail.com> (http://beneb.info)"
        }
      ],
      "group": "",
      "name": "caniuse-lite",
      "version": "1.0.30001792",
      "description": "A smaller version of caniuse-db, with only the essentials!",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "CC-BY-4.0",
            "url": "https://opensource.org/licenses/CC-BY-4.0"
          }
        }
      ],
      "purl": "pkg:npm/caniuse-lite@1.0.30001792",
      "type": "library",
      "bom-ref": "pkg:npm/caniuse-lite@1.0.30001792",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/caniuse-lite/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/caniuse-lite/package.json"
              }
            ],
            "concludedValue": "node_modules/caniuse-lite/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (http://sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "callsites",
      "version": "0.2.0",
      "description": "Get callsites from the V8 stack trace API",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/callsites@0.2.0",
      "type": "library",
      "bom-ref": "pkg:npm/callsites@0.2.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/callsites/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/callsites/package.json"
              }
            ],
            "concludedValue": "node_modules/callsites/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (http://sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "caller-path",
      "version": "0.1.0",
      "description": "Get the path of the caller module",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/caller-path@0.1.0",
      "type": "library",
      "bom-ref": "pkg:npm/caller-path@0.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/caller-path/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/caller-path/package.json"
              }
            ],
            "concludedValue": "node_modules/caller-path/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "call-bound",
      "version": "1.0.4",
      "description": "Robust call-bound JavaScript intrinsics, using `call-bind` and `get-intrinsic`.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/call-bound@1.0.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/call-bound#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/call-bound.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/call-bound@1.0.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/call-bound/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/call-bound/package.json"
              }
            ],
            "concludedValue": "node_modules/call-bound/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "call-bind-apply-helpers",
      "version": "1.0.2",
      "description": "Helper functions around Function call/apply/bind, for use in `call-bind`",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/call-bind-apply-helpers@1.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/call-bind-apply-helpers#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/call-bind-apply-helpers.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/call-bind-apply-helpers@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/call-bind-apply-helpers/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/call-bind-apply-helpers/package.json"
              }
            ],
            "concludedValue": "node_modules/call-bind-apply-helpers/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "call-bind",
      "version": "1.0.9",
      "description": "Robustly `.call.bind()` a function",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/call-bind@1.0.9",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/call-bind#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/call-bind.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/call-bind@1.0.9",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/call-bind/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/call-bind/package.json"
              }
            ],
            "concludedValue": "node_modules/call-bind/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "cache-base",
      "version": "1.0.1",
      "description": "Basic object cache with `get`, `set`, `del`, and `has` methods for node.js/javascript projects.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/cache-base@1.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/cache-base"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/cache-base@1.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/cache-base/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/cache-base/package.json"
              }
            ],
            "concludedValue": "node_modules/cache-base/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "buffer-from",
      "version": "1.1.2",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/buffer-from@1.1.2",
      "type": "library",
      "bom-ref": "pkg:npm/buffer-from@1.1.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/buffer-from/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/buffer-from/package.json"
              }
            ],
            "concludedValue": "node_modules/buffer-from/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Andrey Sitnik <andrey@sitnik.ru>"
        }
      ],
      "group": "",
      "name": "browserslist",
      "version": "3.2.8",
      "description": "Share target browsers between different front-end tools, like Autoprefixer, Stylelint and babel-env-preset",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/browserslist@3.2.8",
      "type": "library",
      "bom-ref": "pkg:npm/browserslist@3.2.8",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/browserslist/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/browserslist/package.json"
              }
            ],
            "concludedValue": "node_modules/browserslist/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "braces",
      "version": "1.8.5",
      "description": "Fastest brace expansion for node.js, with the most complete support for the Bash 4.3 braces specification.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/braces@1.8.5",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/braces"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/braces@1.8.5",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/braces/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/braces/package.json"
              }
            ],
            "concludedValue": "node_modules/braces/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Julian Gruber <mail@juliangruber.com> (http://juliangruber.com)"
        }
      ],
      "group": "",
      "name": "brace-expansion",
      "version": "1.1.14",
      "description": "Brace expansion as known from sh/bash",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/brace-expansion@1.1.14",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/juliangruber/brace-expansion"
        },
        {
          "type": "vcs",
          "url": "git://github.com/juliangruber/brace-expansion.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/brace-expansion@1.1.14",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/brace-expansion/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/brace-expansion/package.json"
              }
            ],
            "concludedValue": "node_modules/brace-expansion/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "binary-extensions",
      "version": "1.13.1",
      "description": "List of binary file extensions",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/binary-extensions@1.13.1",
      "type": "library",
      "bom-ref": "pkg:npm/binary-extensions@1.13.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/binary-extensions/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/binary-extensions/package.json"
              }
            ],
            "concludedValue": "node_modules/binary-extensions/package.json"
          }
        ]
      },
      "tags": [
        "binary"
      ]
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "base",
      "version": "0.11.2",
      "description": "base is the foundation for creating modular, unit testable and highly pluggable node.js applications, starting with a handful of common methods, like `set`, `get`, `del` and `use`.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/base@0.11.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/node-base/base"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/base@0.11.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/base/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/base/package.json"
              }
            ],
            "concludedValue": "node_modules/base/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Julian Gruber <mail@juliangruber.com> (http://juliangruber.com)"
        }
      ],
      "group": "",
      "name": "balanced-match",
      "version": "1.0.2",
      "description": "Match balanced character pairs, like \"{\" and \"}\"",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/balanced-match@1.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/juliangruber/balanced-match"
        },
        {
          "type": "vcs",
          "url": "git://github.com/juliangruber/balanced-match.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/balanced-match@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/balanced-match/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/balanced-match/package.json"
              }
            ],
            "concludedValue": "node_modules/balanced-match/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sebastian McKenzie <sebmck@gmail.com>"
        }
      ],
      "group": "",
      "name": "babylon",
      "version": "6.18.0",
      "description": "A JavaScript parser",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babylon@6.18.0",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://babeljs.io/"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/babylon@6.18.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babylon/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babylon/package.json"
              }
            ],
            "concludedValue": "node_modules/babylon/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sebastian McKenzie <sebmck@gmail.com>"
        }
      ],
      "group": "",
      "name": "babel-types",
      "version": "6.26.0",
      "description": "Babel Types is a Lodash-esque utility library for AST nodes",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-types@6.26.0",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://babeljs.io/"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/babel-types@6.26.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-types/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-types/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-types/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sebastian McKenzie <sebmck@gmail.com>"
        }
      ],
      "group": "",
      "name": "babel-traverse",
      "version": "6.26.0",
      "description": "The Babel Traverse module maintains the overall tree state, and is responsible for replacing, removing, and adding nodes",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-traverse@6.26.0",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://babeljs.io/"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/babel-traverse@6.26.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-traverse/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-traverse/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-traverse/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sebastian McKenzie <sebmck@gmail.com>"
        }
      ],
      "group": "",
      "name": "babel-template",
      "version": "6.26.0",
      "description": "Generate an AST from a string template.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-template@6.26.0",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://babeljs.io/"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/babel-template@6.26.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-template/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-template/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-template/package.json"
          }
        ]
      },
      "tags": [
        "template"
      ]
    },
    {
      "authors": [
        {
          "name": "Sebastian McKenzie <sebmck@gmail.com>"
        }
      ],
      "group": "",
      "name": "babel-runtime",
      "version": "6.26.0",
      "description": "babel selfContained runtime",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-runtime@6.26.0",
      "type": "library",
      "bom-ref": "pkg:npm/babel-runtime@6.26.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-runtime/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-runtime/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-runtime/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Ben Newman <bn@cs.stanford.edu>"
        }
      ],
      "group": "",
      "name": "regenerator-runtime",
      "version": "0.11.1",
      "description": "Runtime for Regenerator-compiled generator and async functions.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/regenerator-runtime@0.11.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/facebook/regenerator/tree/master/packages/regenerator-runtime"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/regenerator-runtime@0.11.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-runtime/node_modules/regenerator-runtime/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-runtime/node_modules/regenerator-runtime/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-runtime/node_modules/regenerator-runtime/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sebastian McKenzie <sebmck@gmail.com>"
        }
      ],
      "group": "",
      "name": "babel-register",
      "version": "6.26.0",
      "description": "babel require hook",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-register@6.26.0",
      "type": "library",
      "bom-ref": "pkg:npm/babel-register@6.26.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-register/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-register/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-register/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sebastian McKenzie <sebmck@gmail.com>"
        }
      ],
      "group": "",
      "name": "babel-preset-react",
      "version": "6.24.1",
      "description": "Babel preset for all React plugins.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-preset-react@6.24.1",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://babeljs.io/"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/babel-preset-react@6.24.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-preset-react/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-preset-react/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-preset-react/package.json"
          }
        ]
      },
      "tags": [
        "plugins"
      ]
    },
    {
      "authors": [
        {
          "name": "James Kyle <me@thejameskyle.com>"
        }
      ],
      "group": "",
      "name": "babel-preset-flow",
      "version": "6.23.0",
      "description": "Babel preset for all Flow plugins.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-preset-flow@6.23.0",
      "type": "library",
      "bom-ref": "pkg:npm/babel-preset-flow@6.23.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-preset-flow/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-preset-flow/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-preset-flow/package.json"
          }
        ]
      },
      "tags": [
        "plugins"
      ]
    },
    {
      "authors": [
        {
          "name": "Henry Zhu <hi@henryzoo.com>"
        }
      ],
      "group": "",
      "name": "babel-preset-env",
      "version": "1.7.0",
      "description": "A Babel preset for each environment.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-preset-env@1.7.0",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://babeljs.io/"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/babel-preset-env@1.7.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-preset-env/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-preset-env/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-preset-env/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Josh Perez <josh.perez@airbnb.com>"
        }
      ],
      "group": "",
      "name": "babel-preset-airbnb",
      "version": "2.6.0",
      "description": "A babel preset for transforming your JavaScript for Airbnb",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "Apache-2.0",
            "url": "https://opensource.org/licenses/Apache-2.0"
          }
        }
      ],
      "purl": "pkg:npm/babel-preset-airbnb@2.6.0",
      "type": "library",
      "bom-ref": "pkg:npm/babel-preset-airbnb@2.6.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-preset-airbnb/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-preset-airbnb/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-preset-airbnb/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sebastian McKenzie <sebmck@gmail.com>"
        }
      ],
      "group": "",
      "name": "babel-polyfill",
      "version": "6.26.0",
      "description": "Provides polyfills necessary for a full ES2015+ environment",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-polyfill@6.26.0",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://babeljs.io/"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/babel-polyfill@6.26.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-polyfill/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-polyfill/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-polyfill/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-plugin-transform-strict-mode",
      "version": "6.24.1",
      "description": "This plugin places a 'use strict'; directive at the top of all files to enable strict mode",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-transform-strict-mode@6.24.1",
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-transform-strict-mode@6.24.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-transform-strict-mode/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-transform-strict-mode/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-transform-strict-mode/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Ben Newman <bn@cs.stanford.edu>"
        }
      ],
      "group": "",
      "name": "babel-plugin-transform-regenerator",
      "version": "6.26.0",
      "description": "Explode async and generator functions into a state machine.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-transform-regenerator@6.26.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/babel/babel/tree/master/packages/babel-plugin-transform-regenerator"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-transform-regenerator@6.26.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-transform-regenerator/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-transform-regenerator/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-transform-regenerator/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Nikita Gusakov"
        }
      ],
      "group": "",
      "name": "babel-plugin-transform-react-remove-prop-types",
      "version": "0.4.24",
      "description": "Remove unnecessary React propTypes from the production build",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-transform-react-remove-prop-types@0.4.24",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/oliviertassinari/babel-plugin-transform-react-remove-prop-types.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-transform-react-remove-prop-types@0.4.24",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-transform-react-remove-prop-types/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-transform-react-remove-prop-types/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-transform-react-remove-prop-types/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-plugin-transform-react-jsx-source",
      "version": "6.22.0",
      "description": "Add a __source prop to all JSX Elements",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-transform-react-jsx-source@6.22.0",
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-transform-react-jsx-source@6.22.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-transform-react-jsx-source/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-transform-react-jsx-source/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-transform-react-jsx-source/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-plugin-transform-react-jsx-self",
      "version": "6.22.0",
      "description": "Add a __self prop to all JSX Elements",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-transform-react-jsx-self@6.22.0",
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-transform-react-jsx-self@6.22.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-transform-react-jsx-self/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-transform-react-jsx-self/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-transform-react-jsx-self/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-plugin-transform-react-jsx",
      "version": "6.24.1",
      "description": "Turn JSX into React function calls",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-transform-react-jsx@6.24.1",
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-transform-react-jsx@6.24.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-transform-react-jsx/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-transform-react-jsx/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-transform-react-jsx/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-plugin-transform-react-display-name",
      "version": "6.25.0",
      "description": "Add displayName to React.createClass calls",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-transform-react-display-name@6.25.0",
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-transform-react-display-name@6.25.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-transform-react-display-name/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-transform-react-display-name/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-transform-react-display-name/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-plugin-transform-object-rest-spread",
      "version": "6.26.0",
      "description": "Compile object rest and spread to ES5",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-transform-object-rest-spread@6.26.0",
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-transform-object-rest-spread@6.26.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-transform-object-rest-spread/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-transform-object-rest-spread/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-transform-object-rest-spread/package.json"
          }
        ]
      },
      "tags": [
        "rest"
      ]
    },
    {
      "group": "",
      "name": "babel-plugin-transform-jscript",
      "version": "6.22.0",
      "description": "Babel plugin to fix buggy JScript named function expressions",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-transform-jscript@6.22.0",
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-transform-jscript@6.22.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-transform-jscript/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-transform-jscript/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-transform-jscript/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-plugin-transform-flow-strip-types",
      "version": "6.22.0",
      "description": "Strip flow type annotations from your output code.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-transform-flow-strip-types@6.22.0",
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-transform-flow-strip-types@6.22.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-transform-flow-strip-types/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-transform-flow-strip-types/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-transform-flow-strip-types/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-plugin-transform-exponentiation-operator",
      "version": "6.24.1",
      "description": "Compile exponentiation operator to ES5",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-transform-exponentiation-operator@6.24.1",
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-transform-exponentiation-operator@6.24.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-transform-exponentiation-operator/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-transform-exponentiation-operator/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-transform-exponentiation-operator/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-plugin-transform-es5-property-mutators",
      "version": "6.24.1",
      "description": "Compile ES5 property mutator shorthand syntax to Object.defineProperty",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-transform-es5-property-mutators@6.24.1",
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-transform-es5-property-mutators@6.24.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-transform-es5-property-mutators/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-transform-es5-property-mutators/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-transform-es5-property-mutators/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-plugin-transform-es3-property-literals",
      "version": "6.22.0",
      "description": "Ensure that reserved words are quoted in object property keys",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-transform-es3-property-literals@6.22.0",
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-transform-es3-property-literals@6.22.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-transform-es3-property-literals/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-transform-es3-property-literals/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-transform-es3-property-literals/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-plugin-transform-es3-member-expression-literals",
      "version": "6.22.0",
      "description": "Ensure that reserved words are quoted in property accesses",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-transform-es3-member-expression-literals@6.22.0",
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-transform-es3-member-expression-literals@6.22.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-transform-es3-member-expression-literals/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-transform-es3-member-expression-literals/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-transform-es3-member-expression-literals/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-plugin-transform-es2015-unicode-regex",
      "version": "6.24.1",
      "description": "Compile ES2015 Unicode regex to ES5",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-transform-es2015-unicode-regex@6.24.1",
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-transform-es2015-unicode-regex@6.24.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-transform-es2015-unicode-regex/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-transform-es2015-unicode-regex/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-transform-es2015-unicode-regex/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-plugin-transform-es2015-typeof-symbol",
      "version": "6.23.0",
      "description": "This transformer wraps all typeof expressions with a method that replicates native behaviour. (ie. returning “symbol” for symbols)",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-transform-es2015-typeof-symbol@6.23.0",
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-transform-es2015-typeof-symbol@6.23.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-transform-es2015-typeof-symbol/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-transform-es2015-typeof-symbol/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-transform-es2015-typeof-symbol/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-plugin-transform-es2015-template-literals",
      "version": "6.22.0",
      "description": "Compile ES2015 template literals to ES5",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-transform-es2015-template-literals@6.22.0",
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-transform-es2015-template-literals@6.22.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-transform-es2015-template-literals/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-transform-es2015-template-literals/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-transform-es2015-template-literals/package.json"
          }
        ]
      },
      "tags": [
        "template"
      ]
    },
    {
      "group": "",
      "name": "babel-plugin-transform-es2015-sticky-regex",
      "version": "6.24.1",
      "description": "Compile ES2015 sticky regex to an ES5 RegExp constructor",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-transform-es2015-sticky-regex@6.24.1",
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-transform-es2015-sticky-regex@6.24.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-transform-es2015-sticky-regex/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-transform-es2015-sticky-regex/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-transform-es2015-sticky-regex/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-plugin-transform-es2015-spread",
      "version": "6.22.0",
      "description": "Compile ES2015 spread to ES5",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-transform-es2015-spread@6.22.0",
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-transform-es2015-spread@6.22.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-transform-es2015-spread/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-transform-es2015-spread/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-transform-es2015-spread/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-plugin-transform-es2015-shorthand-properties",
      "version": "6.24.1",
      "description": "Compile ES2015 shorthand properties to ES5",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-transform-es2015-shorthand-properties@6.24.1",
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-transform-es2015-shorthand-properties@6.24.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-transform-es2015-shorthand-properties/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-transform-es2015-shorthand-properties/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-transform-es2015-shorthand-properties/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-plugin-transform-es2015-parameters",
      "version": "6.24.1",
      "description": "Compile ES2015 default and rest parameters to ES5",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-transform-es2015-parameters@6.24.1",
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-transform-es2015-parameters@6.24.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-transform-es2015-parameters/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-transform-es2015-parameters/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-transform-es2015-parameters/package.json"
          }
        ]
      },
      "tags": [
        "rest"
      ]
    },
    {
      "group": "",
      "name": "babel-plugin-transform-es2015-object-super",
      "version": "6.24.1",
      "description": "Compile ES2015 object super to ES5",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-transform-es2015-object-super@6.24.1",
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-transform-es2015-object-super@6.24.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-transform-es2015-object-super/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-transform-es2015-object-super/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-transform-es2015-object-super/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-plugin-transform-es2015-modules-umd",
      "version": "6.24.1",
      "description": "This plugin transforms ES2015 modules to UMD",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-transform-es2015-modules-umd@6.24.1",
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-transform-es2015-modules-umd@6.24.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-transform-es2015-modules-umd/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-transform-es2015-modules-umd/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-transform-es2015-modules-umd/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-plugin-transform-es2015-modules-systemjs",
      "version": "6.24.1",
      "description": "This plugin transforms ES2015 modules to SystemJS",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-transform-es2015-modules-systemjs@6.24.1",
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-transform-es2015-modules-systemjs@6.24.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-transform-es2015-modules-systemjs/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-transform-es2015-modules-systemjs/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-transform-es2015-modules-systemjs/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-plugin-transform-es2015-modules-commonjs",
      "version": "6.26.2",
      "description": "This plugin transforms ES2015 modules to CommonJS",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-transform-es2015-modules-commonjs@6.26.2",
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-transform-es2015-modules-commonjs@6.26.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-transform-es2015-modules-commonjs/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-transform-es2015-modules-commonjs/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-transform-es2015-modules-commonjs/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-plugin-transform-es2015-modules-amd",
      "version": "6.24.1",
      "description": "This plugin transforms ES2015 modules to AMD",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-transform-es2015-modules-amd@6.24.1",
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-transform-es2015-modules-amd@6.24.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-transform-es2015-modules-amd/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-transform-es2015-modules-amd/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-transform-es2015-modules-amd/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-plugin-transform-es2015-literals",
      "version": "6.22.0",
      "description": "Compile ES2015 unicode string and number literals to ES5",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-transform-es2015-literals@6.22.0",
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-transform-es2015-literals@6.22.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-transform-es2015-literals/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-transform-es2015-literals/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-transform-es2015-literals/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-plugin-transform-es2015-function-name",
      "version": "6.24.1",
      "description": "Apply ES2015 function.name semantics to all functions",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-transform-es2015-function-name@6.24.1",
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-transform-es2015-function-name@6.24.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-transform-es2015-function-name/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-transform-es2015-function-name/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-transform-es2015-function-name/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-plugin-transform-es2015-for-of",
      "version": "6.23.0",
      "description": "Compile ES2015 for...of to ES5",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-transform-es2015-for-of@6.23.0",
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-transform-es2015-for-of@6.23.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-transform-es2015-for-of/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-transform-es2015-for-of/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-transform-es2015-for-of/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-plugin-transform-es2015-duplicate-keys",
      "version": "6.24.1",
      "description": "Compile objects with duplicate keys to valid strict ES5",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-transform-es2015-duplicate-keys@6.24.1",
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-transform-es2015-duplicate-keys@6.24.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-transform-es2015-duplicate-keys/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-transform-es2015-duplicate-keys/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-transform-es2015-duplicate-keys/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-plugin-transform-es2015-destructuring",
      "version": "6.23.0",
      "description": "Compile ES2015 destructuring to ES5",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-transform-es2015-destructuring@6.23.0",
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-transform-es2015-destructuring@6.23.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-transform-es2015-destructuring/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-transform-es2015-destructuring/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-transform-es2015-destructuring/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-plugin-transform-es2015-computed-properties",
      "version": "6.24.1",
      "description": "Compile ES2015 computed properties to ES5",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-transform-es2015-computed-properties@6.24.1",
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-transform-es2015-computed-properties@6.24.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-transform-es2015-computed-properties/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-transform-es2015-computed-properties/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-transform-es2015-computed-properties/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-plugin-transform-es2015-classes",
      "version": "6.24.1",
      "description": "Compile ES2015 classes to ES5",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-transform-es2015-classes@6.24.1",
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-transform-es2015-classes@6.24.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-transform-es2015-classes/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-transform-es2015-classes/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-transform-es2015-classes/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-plugin-transform-es2015-block-scoping",
      "version": "6.26.0",
      "description": "Compile ES2015 block scoping (const and let) to ES5",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-transform-es2015-block-scoping@6.26.0",
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-transform-es2015-block-scoping@6.26.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-transform-es2015-block-scoping/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-transform-es2015-block-scoping/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-transform-es2015-block-scoping/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-plugin-transform-es2015-block-scoped-functions",
      "version": "6.22.0",
      "description": "Babel plugin to ensure function declarations at the block level are block scoped",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-transform-es2015-block-scoped-functions@6.22.0",
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-transform-es2015-block-scoped-functions@6.22.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-transform-es2015-block-scoped-functions/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-transform-es2015-block-scoped-functions/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-transform-es2015-block-scoped-functions/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-plugin-transform-es2015-arrow-functions",
      "version": "6.22.0",
      "description": "Compile ES2015 arrow functions to ES5",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-transform-es2015-arrow-functions@6.22.0",
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-transform-es2015-arrow-functions@6.22.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-transform-es2015-arrow-functions/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-transform-es2015-arrow-functions/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-transform-es2015-arrow-functions/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-plugin-transform-async-to-generator",
      "version": "6.24.1",
      "description": "Turn async functions into ES2015 generators",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-transform-async-to-generator@6.24.1",
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-transform-async-to-generator@6.24.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-transform-async-to-generator/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-transform-async-to-generator/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-transform-async-to-generator/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-plugin-syntax-trailing-function-commas",
      "version": "6.22.0",
      "description": "Compile trailing function commas to ES5",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-syntax-trailing-function-commas@6.22.0",
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-syntax-trailing-function-commas@6.22.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-syntax-trailing-function-commas/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-syntax-trailing-function-commas/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-syntax-trailing-function-commas/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-plugin-syntax-object-rest-spread",
      "version": "6.13.0",
      "description": "Allow parsing of object rest/spread",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-syntax-object-rest-spread@6.13.0",
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-syntax-object-rest-spread@6.13.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-syntax-object-rest-spread/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-syntax-object-rest-spread/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-syntax-object-rest-spread/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-plugin-syntax-jsx",
      "version": "6.18.0",
      "description": "Allow parsing of jsx",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-syntax-jsx@6.18.0",
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-syntax-jsx@6.18.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-syntax-jsx/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-syntax-jsx/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-syntax-jsx/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-plugin-syntax-flow",
      "version": "6.18.0",
      "description": "Allow parsing of the flow syntax",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-syntax-flow@6.18.0",
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-syntax-flow@6.18.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-syntax-flow/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-syntax-flow/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-syntax-flow/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-plugin-syntax-exponentiation-operator",
      "version": "6.13.0",
      "description": "Allow parsing of the exponentiation operator",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-syntax-exponentiation-operator@6.13.0",
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-syntax-exponentiation-operator@6.13.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-syntax-exponentiation-operator/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-syntax-exponentiation-operator/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-syntax-exponentiation-operator/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-plugin-syntax-async-functions",
      "version": "6.13.0",
      "description": "Allow parsing of async functions",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-syntax-async-functions@6.13.0",
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-syntax-async-functions@6.13.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-syntax-async-functions/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-syntax-async-functions/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-syntax-async-functions/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-plugin-check-es2015-constants",
      "version": "6.22.0",
      "description": "Compile ES2015 constants to ES5",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-plugin-check-es2015-constants@6.22.0",
      "type": "library",
      "bom-ref": "pkg:npm/babel-plugin-check-es2015-constants@6.22.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-plugin-check-es2015-constants/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-plugin-check-es2015-constants/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-plugin-check-es2015-constants/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sebastian McKenzie <sebmck@gmail.com>"
        }
      ],
      "group": "",
      "name": "babel-messages",
      "version": "6.23.0",
      "description": "Collection of debug messages used by Babel.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-messages@6.23.0",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://babeljs.io/"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/babel-messages@6.23.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-messages/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-messages/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-messages/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sebastian McKenzie <sebmck@gmail.com>"
        }
      ],
      "group": "",
      "name": "babel-helpers",
      "version": "6.24.1",
      "description": "Collection of helper functions used by Babel transforms.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-helpers@6.24.1",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://babeljs.io/"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/babel-helpers@6.24.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-helpers/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-helpers/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-helpers/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-helper-replace-supers",
      "version": "6.24.1",
      "description": "Helper function to replace supers",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-helper-replace-supers@6.24.1",
      "type": "library",
      "bom-ref": "pkg:npm/babel-helper-replace-supers@6.24.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-helper-replace-supers/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-helper-replace-supers/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-helper-replace-supers/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-helper-remap-async-to-generator",
      "version": "6.24.1",
      "description": "Helper function to remap async functions to generators",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-helper-remap-async-to-generator@6.24.1",
      "type": "library",
      "bom-ref": "pkg:npm/babel-helper-remap-async-to-generator@6.24.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-helper-remap-async-to-generator/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-helper-remap-async-to-generator/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-helper-remap-async-to-generator/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-helper-regex",
      "version": "6.26.0",
      "description": "Helper function to check for literal RegEx",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-helper-regex@6.26.0",
      "type": "library",
      "bom-ref": "pkg:npm/babel-helper-regex@6.26.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-helper-regex/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-helper-regex/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-helper-regex/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-helper-optimise-call-expression",
      "version": "6.24.1",
      "description": "Helper function to optimise call expression",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-helper-optimise-call-expression@6.24.1",
      "type": "library",
      "bom-ref": "pkg:npm/babel-helper-optimise-call-expression@6.24.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-helper-optimise-call-expression/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-helper-optimise-call-expression/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-helper-optimise-call-expression/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-helper-hoist-variables",
      "version": "6.24.1",
      "description": "Helper function to hoist variables",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-helper-hoist-variables@6.24.1",
      "type": "library",
      "bom-ref": "pkg:npm/babel-helper-hoist-variables@6.24.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-helper-hoist-variables/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-helper-hoist-variables/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-helper-hoist-variables/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-helper-get-function-arity",
      "version": "6.24.1",
      "description": "Helper function to get function arity",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-helper-get-function-arity@6.24.1",
      "type": "library",
      "bom-ref": "pkg:npm/babel-helper-get-function-arity@6.24.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-helper-get-function-arity/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-helper-get-function-arity/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-helper-get-function-arity/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-helper-function-name",
      "version": "6.24.1",
      "description": "Helper function to change the property 'name' of every function",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-helper-function-name@6.24.1",
      "type": "library",
      "bom-ref": "pkg:npm/babel-helper-function-name@6.24.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-helper-function-name/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-helper-function-name/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-helper-function-name/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-helper-explode-assignable-expression",
      "version": "6.24.1",
      "description": "Helper function to explode an assignable expression",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-helper-explode-assignable-expression@6.24.1",
      "type": "library",
      "bom-ref": "pkg:npm/babel-helper-explode-assignable-expression@6.24.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-helper-explode-assignable-expression/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-helper-explode-assignable-expression/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-helper-explode-assignable-expression/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-helper-define-map",
      "version": "6.26.0",
      "description": "Helper function to define a map",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-helper-define-map@6.26.0",
      "type": "library",
      "bom-ref": "pkg:npm/babel-helper-define-map@6.26.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-helper-define-map/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-helper-define-map/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-helper-define-map/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-helper-call-delegate",
      "version": "6.24.1",
      "description": "Helper function to call delegate",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-helper-call-delegate@6.24.1",
      "type": "library",
      "bom-ref": "pkg:npm/babel-helper-call-delegate@6.24.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-helper-call-delegate/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-helper-call-delegate/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-helper-call-delegate/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-helper-builder-react-jsx",
      "version": "6.26.0",
      "description": "Helper function to build react jsx",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-helper-builder-react-jsx@6.26.0",
      "type": "library",
      "bom-ref": "pkg:npm/babel-helper-builder-react-jsx@6.26.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-helper-builder-react-jsx/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-helper-builder-react-jsx/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-helper-builder-react-jsx/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "babel-helper-builder-binary-assignment-operator-visitor",
      "version": "6.24.1",
      "description": "Helper function to build binary assignment operator visitors",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-helper-builder-binary-assignment-operator-visitor@6.24.1",
      "type": "library",
      "bom-ref": "pkg:npm/babel-helper-builder-binary-assignment-operator-visitor@6.24.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-helper-builder-binary-assignment-operator-visitor/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-helper-builder-binary-assignment-operator-visitor/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-helper-builder-binary-assignment-operator-visitor/package.json"
          }
        ]
      },
      "tags": [
        "binary"
      ]
    },
    {
      "authors": [
        {
          "name": "Sebastian McKenzie <sebmck@gmail.com>"
        }
      ],
      "group": "",
      "name": "babel-generator",
      "version": "6.26.1",
      "description": "Turns an AST into code.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-generator@6.26.1",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://babeljs.io/"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/babel-generator@6.26.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-generator/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-generator/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-generator/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sebastian McKenzie <sebmck@gmail.com>"
        }
      ],
      "group": "",
      "name": "babel-core",
      "version": "6.26.3",
      "description": "Babel compiler core.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-core@6.26.3",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://babeljs.io/"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/babel-core@6.26.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-core/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-core/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-core/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sebastian McKenzie <sebmck@gmail.com>"
        }
      ],
      "group": "",
      "name": "babel-code-frame",
      "version": "6.26.0",
      "description": "Generate errors that contain a code frame that point to source locations.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-code-frame@6.26.0",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://babeljs.io/"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/babel-code-frame@6.26.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-code-frame/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-code-frame/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-code-frame/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sebastian McKenzie <sebmck@gmail.com>"
        }
      ],
      "group": "",
      "name": "babel-cli",
      "version": "6.26.0",
      "description": "Babel command line.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/babel-cli@6.26.0",
      "externalReferences": [
        {
          "type": "website",
          "url": "https://babeljs.io/"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/babel-cli@6.26.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/babel-cli/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/babel-cli/package.json"
              }
            ],
            "concludedValue": "node_modules/babel-cli/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "available-typed-arrays",
      "version": "1.0.7",
      "description": "Returns an array of Typed Array names that are available in the current environment",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/available-typed-arrays@1.0.7",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/available-typed-arrays#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/available-typed-arrays.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/available-typed-arrays@1.0.7",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/available-typed-arrays/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/available-typed-arrays/package.json"
              }
            ],
            "concludedValue": "node_modules/available-typed-arrays/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "AJ ONeal <coolaj86@gmail.com> (https://coolaj86.com)"
        }
      ],
      "group": "",
      "name": "atob",
      "version": "2.1.2",
      "description": "atob for Node.JS and Linux / Mac / Windows CLI (it's a one-liner)",
      "scope": "optional",
      "licenses": [
        {
          "expression": "(MIT OR Apache-2.0)"
        }
      ],
      "purl": "pkg:npm/atob@2.1.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://git.coolaj86.com/coolaj86/atob.js.git"
        },
        {
          "type": "vcs",
          "url": "git://git.coolaj86.com/coolaj86/atob.js.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/atob@2.1.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/atob/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/atob/package.json"
              }
            ],
            "concludedValue": "node_modules/atob/package.json"
          }
        ]
      },
      "tags": [
        "cli"
      ]
    },
    {
      "authors": [
        {
          "name": "Jordan Harbamd <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "async-function",
      "version": "1.0.0",
      "description": "A function that returns the normally hidden `AsyncFunction` constructor",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/async-function@1.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/async-function#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/async-function.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/async-function@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/async-function/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/async-function/package.json"
              }
            ],
            "concludedValue": "node_modules/async-function/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Paul Miller (https://paulmillr.com/)"
        }
      ],
      "group": "",
      "name": "async-each",
      "version": "1.0.6",
      "description": "No-bullshit, ultra-simple, 35-lines-of-code async parallel forEach / map function for JavaScript.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/async-each@1.0.6",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/paulmillr/async-each/"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/paulmillr/async-each.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/async-each@1.0.6",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/async-each/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/async-each/package.json"
              }
            ],
            "concludedValue": "node_modules/async-each/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "assign-symbols",
      "version": "1.0.0",
      "description": "Assign the enumerable es6 Symbol properties from an object (or objects) to the first object passed on the arguments. Can be used as a supplement to other extend, assign or merge methods as a polyfill for the Symbols part of the es6 Object.assign method.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/assign-symbols@1.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/assign-symbols"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/assign-symbols@1.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/assign-symbols/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/assign-symbols/package.json"
              }
            ],
            "concludedValue": "node_modules/assign-symbols/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "arraybuffer.prototype.slice",
      "version": "1.0.4",
      "description": "ES spec-compliant shim for ArrayBuffer.prototype.slice",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/arraybuffer.prototype.slice@1.0.4",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/es-shims/ArrayBuffer.prototype.slice#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/es-shims/ArrayBuffer.prototype.slice.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/arraybuffer.prototype.slice@1.0.4",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/arraybuffer.prototype.slice/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/arraybuffer.prototype.slice/package.json"
              }
            ],
            "concludedValue": "node_modules/arraybuffer.prototype.slice/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "array.prototype.reduce",
      "version": "1.0.8",
      "description": "An ES5 spec-compliant `Array.prototype.reduce` shim/polyfill/replacement that works as far down as ES3.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/array.prototype.reduce@1.0.8",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/es-shims/Array.prototype.reduce#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/es-shims/Array.prototype.reduce.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/array.prototype.reduce@1.0.8",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/array.prototype.reduce/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/array.prototype.reduce/package.json"
              }
            ],
            "concludedValue": "node_modules/array.prototype.reduce/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com> (http://ljharb.codes)"
        }
      ],
      "group": "",
      "name": "array.prototype.flatten",
      "version": "1.2.1",
      "description": "An ESnext spec-compliant `Array.prototype.flatten` shim/polyfill/replacement that works as far down as ES3.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/array.prototype.flatten@1.2.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/es-shims/Array.prototype.flatten.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/array.prototype.flatten@1.2.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/array.prototype.flatten/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/array.prototype.flatten/package.json"
              }
            ],
            "concludedValue": "node_modules/array.prototype.flatten/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com> (http://ljharb.codes)"
        }
      ],
      "group": "",
      "name": "array.prototype.flatmap",
      "version": "1.3.3",
      "description": "An ES2019 spec-compliant `Array.prototype.flatMap` shim/polyfill/replacement that works as far down as ES3.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/array.prototype.flatmap@1.3.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/es-shims/Array.prototype.flatMap.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/array.prototype.flatmap@1.3.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/array.prototype.flatmap/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/array.prototype.flatmap/package.json"
              }
            ],
            "concludedValue": "node_modules/array.prototype.flatmap/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com> (http://ljharb.codes)"
        }
      ],
      "group": "",
      "name": "array.prototype.flat",
      "version": "1.3.3",
      "description": "An ES2019 spec-compliant `Array.prototype.flat` shim/polyfill/replacement that works as far down as ES3.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/array.prototype.flat@1.3.3",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/es-shims/Array.prototype.flat.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/array.prototype.flat@1.3.3",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/array.prototype.flat/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/array.prototype.flat/package.json"
              }
            ],
            "concludedValue": "node_modules/array.prototype.flat/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "array-unique",
      "version": "0.2.1",
      "description": "Return an array free of duplicate values. Fastest ES5 implementation.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/array-unique@0.2.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/array-unique"
        },
        {
          "type": "vcs",
          "url": "git://github.com/jonschlinkert/array-unique.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/array-unique@0.2.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/array-unique/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/array-unique/package.json"
              }
            ],
            "concludedValue": "node_modules/array-unique/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com> (http://ljharb.codes)"
        }
      ],
      "group": "",
      "name": "array-includes",
      "version": "3.1.9",
      "description": "An ES7/ES2016 spec-compliant `Array.prototype.includes` shim/polyfill/replacement that works as far down as ES3.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/array-includes@3.1.9",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/es-shims/array-includes.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/array-includes@3.1.9",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/array-includes/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/array-includes/package.json"
              }
            ],
            "concludedValue": "node_modules/array-includes/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "array-buffer-byte-length",
      "version": "1.0.2",
      "description": "Get the byte length of an ArrayBuffer, even in engines without a `.byteLength` method.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/array-buffer-byte-length@1.0.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/inspect-js/array-buffer-byte-length#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/inspect-js/array-buffer-byte-length.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/array-buffer-byte-length@1.0.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/array-buffer-byte-length/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/array-buffer-byte-length/package.json"
              }
            ],
            "concludedValue": "node_modules/array-buffer-byte-length/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "arr-union",
      "version": "3.1.0",
      "description": "Combines a list of arrays, returning a single array with unique values, using strict equality for comparisons.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/arr-union@3.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/arr-union"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/arr-union@3.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/arr-union/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/arr-union/package.json"
              }
            ],
            "concludedValue": "node_modules/arr-union/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "arr-flatten",
      "version": "1.1.0",
      "description": "Recursively flatten an array or arrays.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/arr-flatten@1.1.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/arr-flatten"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/arr-flatten@1.1.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/arr-flatten/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/arr-flatten/package.json"
              }
            ],
            "concludedValue": "node_modules/arr-flatten/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Jon Schlinkert (https://github.com/jonschlinkert)"
        }
      ],
      "group": "",
      "name": "arr-diff",
      "version": "2.0.0",
      "description": "Returns an array with only the unique values from the first array, by excluding all values from additional arrays using strict equality for comparisons.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/arr-diff@2.0.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/jonschlinkert/arr-diff"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/arr-diff@2.0.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/arr-diff/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/arr-diff/package.json"
              }
            ],
            "concludedValue": "node_modules/arr-diff/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "argparse",
      "version": "1.0.10",
      "description": "Very powerful CLI arguments parser. Native port of argparse - python's options parsing library",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/argparse@1.0.10",
      "type": "library",
      "bom-ref": "pkg:npm/argparse@1.0.10",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/argparse/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/argparse/package.json"
              }
            ],
            "concludedValue": "node_modules/argparse/package.json"
          }
        ]
      },
      "tags": [
        "cli"
      ]
    },
    {
      "authors": [
        {
          "name": "Elan Shanker (http://github.com/es128)"
        }
      ],
      "group": "",
      "name": "anymatch",
      "version": "1.3.2",
      "description": "Matches strings against configurable strings, globs, regular expressions, and/or functions",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "ISC",
            "url": "https://opensource.org/licenses/ISC"
          }
        }
      ],
      "purl": "pkg:npm/anymatch@1.3.2",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/es128/anymatch"
        },
        {
          "type": "vcs",
          "url": "https://github.com/es128/anymatch"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/anymatch@1.3.2",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/anymatch/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/anymatch/package.json"
              }
            ],
            "concludedValue": "node_modules/anymatch/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "ansi-regex",
      "version": "2.1.1",
      "description": "Regular expression for matching ANSI escape codes",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/ansi-regex@2.1.1",
      "type": "library",
      "bom-ref": "pkg:npm/ansi-regex@2.1.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/ansi-regex/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/ansi-regex/package.json"
              }
            ],
            "concludedValue": "node_modules/ansi-regex/package.json"
          }
        ]
      },
      "tags": [
        "escape"
      ]
    },
    {
      "authors": [
        {
          "name": "Sindre Sorhus <sindresorhus@gmail.com> (sindresorhus.com)"
        }
      ],
      "group": "",
      "name": "ansi-escapes",
      "version": "1.4.0",
      "description": "ANSI escape codes for manipulating the terminal",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/ansi-escapes@1.4.0",
      "type": "library",
      "bom-ref": "pkg:npm/ansi-escapes@1.4.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/ansi-escapes/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/ansi-escapes/package.json"
              }
            ],
            "concludedValue": "node_modules/ansi-escapes/package.json"
          }
        ]
      },
      "tags": [
        "escape"
      ]
    },
    {
      "authors": [
        {
          "name": "Evgeny Poberezkin"
        }
      ],
      "group": "",
      "name": "ajv-keywords",
      "version": "1.5.1",
      "description": "Custom JSON-Schema keywords for ajv validator",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/ajv-keywords@1.5.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/epoberezkin/ajv-keywords#readme"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/epoberezkin/ajv-keywords.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/ajv-keywords@1.5.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/ajv-keywords/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/ajv-keywords/package.json"
              }
            ],
            "concludedValue": "node_modules/ajv-keywords/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Evgeny Poberezkin"
        }
      ],
      "group": "",
      "name": "ajv",
      "version": "4.11.8",
      "description": "Another JSON Schema Validator",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/ajv@4.11.8",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/epoberezkin/ajv"
        },
        {
          "type": "vcs",
          "url": "https://github.com/epoberezkin/ajv.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/ajv@4.11.8",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/ajv/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/ajv/package.json"
              }
            ],
            "concludedValue": "node_modules/ajv/package.json"
          }
        ]
      },
      "tags": [
        "json"
      ]
    },
    {
      "authors": [
        {
          "name": "Jordan Harband <ljharb@gmail.com>"
        }
      ],
      "group": "",
      "name": "airbnb-js-shims",
      "version": "1.7.1",
      "description": "JS language shims used by Airbnb.",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/airbnb-js-shims@1.7.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "git://github.com/airbnb/js-shims.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/airbnb-js-shims@1.7.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/airbnb-js-shims/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/airbnb-js-shims/package.json"
              }
            ],
            "concludedValue": "node_modules/airbnb-js-shims/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "acorn-jsx",
      "version": "3.0.1",
      "description": "Alternative, faster React.js JSX parser",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/acorn-jsx@3.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/RReverser/acorn-jsx"
        },
        {
          "type": "vcs",
          "url": "https://github.com/RReverser/acorn-jsx"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/acorn-jsx@3.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/acorn-jsx/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/acorn-jsx/package.json"
              }
            ],
            "concludedValue": "node_modules/acorn-jsx/package.json"
          }
        ]
      }
    },
    {
      "group": "",
      "name": "acorn",
      "version": "3.3.0",
      "description": "ECMAScript parser",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/acorn@3.3.0",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ternjs/acorn"
        },
        {
          "type": "vcs",
          "url": "https://github.com/ternjs/acorn.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/acorn@3.3.0",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/acorn/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/acorn/package.json"
              }
            ],
            "concludedValue": "node_modules/acorn/package.json"
          }
        ]
      }
    },
    {
      "authors": [
        {
          "name": "Dominic Tarr <dominic.tarr@gmail.com> (dominictarr.com)"
        }
      ],
      "group": "@ljharb",
      "name": "through",
      "version": "2.3.14",
      "description": "simplified stream construction",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/%40ljharb/through@2.3.14",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/through"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/through.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/@ljharb/through@2.3.14",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/@ljharb/through/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/@ljharb/through/package.json"
              }
            ],
            "concludedValue": "node_modules/@ljharb/through/package.json"
          }
        ]
      },
      "tags": [
        "stream"
      ]
    },
    {
      "authors": [
        {
          "name": "James Halliday <mail@substack.net> (http://substack.net)"
        }
      ],
      "group": "@ljharb",
      "name": "resumer",
      "version": "0.0.1",
      "description": "a through stream that starts paused and resumes on the next tick",
      "scope": "optional",
      "licenses": [
        {
          "license": {
            "id": "MIT",
            "url": "https://opensource.org/licenses/MIT"
          }
        }
      ],
      "purl": "pkg:npm/%40ljharb/resumer@0.0.1",
      "externalReferences": [
        {
          "type": "vcs",
          "url": "https://github.com/ljharb/resumer"
        },
        {
          "type": "vcs",
          "url": "git+https://github.com/ljharb/resumer.git"
        }
      ],
      "type": "library",
      "bom-ref": "pkg:npm/@ljharb/resumer@0.0.1",
      "properties": [
        {
          "name": "SrcFile",
          "value": "node_modules/@ljharb/resumer/package.json"
        }
      ],
      "evidence": {
        "identity": [
          {
            "field": "purl",
            "confidence": 0.7,
            "methods": [
              {
                "technique": "manifest-analysis",
                "confidence": 0.7,
                "value": "node_modules/@ljharb/resumer/package.json"
              }
            ],
            "concludedValue": "node_modules/@ljharb/resumer/package.json"
          }
        ]
      },
      "tags": [
        "stream"
      ]
    }
  ],
  "dependencies": [],
  "annotations": [
    {
      "bom-ref": "metadata-annotations",
      "subjects": [
        "pkg:npm/npm-path@2.0.4"
      ],
      "annotator": {
        "component": {
          "group": "@cyclonedx",
          "name": "cdxgen",
          "version": "12.3.3",
          "purl": "pkg:npm/%40cyclonedx/cdxgen@12.3.3",
          "type": "application",
          "bom-ref": "pkg:npm/@cyclonedx/cdxgen@12.3.3",
          "publisher": "OWASP Foundation",
          "authors": [
            {
              "name": "OWASP Foundation"
            }
          ]
        }
      },
      "timestamp": "2026-07-31T01:54:13Z",
      "text": "This Software Bill-of-Materials (SBOM) document was created on Friday, July 31, 2026 with cdxgen. The data was captured during the pre-build lifecycle phase without building the application. The document describes an application named 'npm-path' with version '2.0.4'. The package type in this SBOM is npm with 2 purl namespaces described under components. The components were identified from 831 source files."
    }
  ]
}