Home
Docs
GitHub
Pricing
Blog
Log In

Run Sandworm Audit for your App

Get started
Hold on, we're currently generating a fresh version of this report
Generated on May 7, 2024 via pnpm

@angular/cli 16.2.2

CLI tool for Angular
Package summary
Share
10
issues
4
high severity
license
3
meta
1
2
moderate severity
meta
2
4
low severity
license
4
10
licenses
133
MIT
86
ISC
9
Apache-2.0
14
other licenses
BSD-2-Clause
5
BSD-3-Clause
3
BlueOak-1.0.0
2
CC-BY-3.0
1
+ 3 more
Package created
1 Feb 2017
Version published
13 Sep 2023
Maintainers
2
Total deps
242
Direct deps
18
License
MIT

Issues

10

4 high severity issues

high
Recommendation: Read and validate the license terms
via: pacote@15.2.0
Recommendation: Read and validate the license terms
via: pacote@15.2.0
Recommendation: Read and validate the license terms
via: pacote@15.2.0
via: pacote@15.2.0
Collapse
Expand

2 moderate severity issues

moderate
via: pacote@15.2.0
via: pacote@15.2.0
Collapse
Expand

4 low severity issues

low
Recommendation: Read and validate the license terms
via: pacote@15.2.0
Recommendation: Read and validate the license terms
via: pacote@15.2.0
Recommendation: Read and validate the license terms
via: pacote@15.2.0
Recommendation: Read and validate the license terms
via: pacote@15.2.0
Collapse
Expand

Licenses

MIT License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
Cannot
hold-liable
Must
include-copyright
include-license
133 Packages, Including:
@angular-devkit/architect@0.1602.2
@angular-devkit/core@16.2.2
@angular-devkit/schematics@16.2.2
@angular/cli@16.2.2
@gar/promisify@1.1.3
@jridgewell/sourcemap-codec@1.4.15
@npmcli/move-file@2.0.1
@pkgjs/parseargs@0.11.0
@schematics/angular@16.2.2
@tootallnate/once@2.0.0
@tufjs/canonical-json@1.0.0
@tufjs/models@1.0.4
agent-base@6.0.2
agentkeepalive@4.5.0
aggregate-error@3.1.0
ajv-formats@2.1.1
ajv@8.12.0
ansi-colors@4.1.3
ansi-escapes@4.3.2
ansi-regex@5.0.1
ansi-regex@6.0.1
ansi-styles@4.3.0
ansi-styles@6.2.1
balanced-match@1.0.2
base64-js@1.5.1
bl@4.1.0
brace-expansion@1.1.11
brace-expansion@2.0.1
buffer@5.7.1
chalk@4.1.2
chardet@0.7.0
clean-stack@2.2.0
cli-cursor@3.1.0
cli-spinners@2.9.2
clone@1.0.4
color-convert@2.0.1
color-name@1.1.4
concat-map@0.0.1
cross-spawn@7.0.3
debug@4.3.4
defaults@1.0.4
define-lazy-prop@2.0.0
delegates@1.0.0
eastasianwidth@0.2.0
emoji-regex@8.0.0
emoji-regex@9.2.2
encoding@0.1.13
env-paths@2.2.1
err-code@2.0.3
escalade@3.1.2

ISC License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
Cannot
hold-liable
Must
include-copyright
include-license
86 Packages, Including:
@isaacs/cliui@8.0.2
@npmcli/fs@2.1.2
@npmcli/fs@3.1.1
@npmcli/git@4.1.0
@npmcli/installed-package-contents@2.1.0
@npmcli/node-gyp@3.0.0
@npmcli/promise-spawn@6.0.2
@npmcli/run-script@6.0.2
abbrev@1.1.1
aproba@2.0.0
are-we-there-yet@3.0.1
cacache@16.1.3
cacache@17.1.4
chownr@2.0.0
cli-width@3.0.0
cliui@8.0.1
color-support@1.1.3
console-control-strings@1.1.0
foreground-child@3.1.1
fs-minipass@2.1.0
fs-minipass@3.0.3
fs.realpath@1.0.0
gauge@4.0.4
get-caller-file@2.0.5
glob@10.3.12
glob@7.2.3
glob@8.1.0
graceful-fs@4.2.11
has-unicode@2.0.1
hosted-git-info@6.1.1
ignore-walk@6.0.5
infer-owner@1.0.4
inflight@1.0.6
inherits@2.0.4
ini@4.1.1
isexe@2.0.0
lru-cache@10.2.2
lru-cache@6.0.0
lru-cache@7.18.3
make-fetch-happen@10.2.1
make-fetch-happen@11.1.1
minimatch@3.1.2
minimatch@5.1.6
minimatch@9.0.4
minipass-collect@1.0.2
minipass-flush@1.0.5
minipass-pipeline@1.2.4
minipass-sized@1.0.3
minipass@3.3.6
minipass@5.0.0

Apache License 2.0

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
use-patent-claims
place-warranty
Cannot
hold-liable
use-trademark
Must
include-copyright
include-license
state-changes
include-notice
9 Packages, Including:
@sigstore/bundle@1.1.0
@sigstore/protobuf-specs@0.2.1
@sigstore/sign@1.0.0
@sigstore/tuf@1.0.3
exponential-backoff@3.1.1
rxjs@7.8.1
sigstore@1.9.0
spdx-correct@3.2.0
validate-npm-package-license@3.0.4

BSD 2-Clause "Simplified" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
hold-liable
Must
include-copyright
include-license
5 Packages, Including:
@yarnpkg/lockfile@1.1.0
http-cache-semantics@4.1.1
normalize-package-data@5.0.0
npm-install-checks@6.3.0
uri-js@4.4.1

BSD 3-Clause "New" or "Revised" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
use-trademark
hold-liable
Must
include-copyright
include-license
3 Packages, Including:
ieee754@1.2.1
source-map@0.7.4
sprintf-js@1.1.3

Blue Oak Model License 1.0.0

Uncategorized
Not OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
Cannot
Must
2 Packages, Including:
jackspeak@2.3.6
path-scurry@1.10.2

Creative Commons Attribution 3.0 Unported

Uncategorized
Not OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
Cannot
Must
1 Packages, Including:
spdx-exceptions@2.5.0

Creative Commons Zero v1.0 Universal

Public Domain
Not OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
Cannot
Must
1 Packages, Including:
spdx-license-ids@3.0.17

BSD Zero Clause License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
include-copyright
include-license
include-original
Cannot
hold-liable
Must
1 Packages, Including:
tslib@2.6.2

(MIT OR CC0-1.0)

Public Domain
1 Packages, Including:
type-fest@0.21.3
Disclaimer

This deed highlights only some of the key features and terms of the actual license. It is not a license and has no legal value. You should carefully review all of the terms and conditions of the actual license before using the licensed material.

Sandworm is not a law firm and does not provide legal services. Distributing, displaying, or linking to this deed or the license that it summarizes does not create a lawyer-client or any other relationship.

Direct Dependencies

18
All Dependencies CSV
β“˜ This is a list of @angular/cli 's direct dependencies. Data on all dependencies, including transitive ones, is available via CSV download.
NameVersionSizeLicenseTypeVulnerabilities
@angular-devkit/architect0.1602.2111.76 kBMIT
prod
@angular-devkit/core16.2.2177.79 kBMIT
prod
@angular-devkit/schematics16.2.2160.83 kBMIT
prod
@schematics/angular16.2.21.62 MBMIT
prod
@yarnpkg/lockfile1.1.073.35 kBBSD-2-Clause
prod
ansi-colors4.1.38.53 kBMIT
prod
ini4.1.14.99 kBISC
prod
inquirer8.2.423.22 kBMIT
prod
jsonc-parser3.2.026.25 kBMIT
prod
npm-package-arg10.1.06.88 kBISC
prod
npm-pick-manifest8.0.15.65 kBISC
prod
open8.4.212.6 kBMIT
prod
ora5.4.16.74 kBMIT
prod
pacote15.2.022.48 kBISC
prod
4
2
4
resolve1.22.226.57 kBMIT
prod
semver7.5.426.25 kBISC
prod
symbol-observable4.0.05.5 kBMIT
prod
yargs17.7.264.15 kBMIT
prod

Visualizations