Home
Docs
GitHub
Pricing
Blog
Log In

Run Sandworm Audit for your App

Get started
Hold on, we're currently generating a fresh version of this report
Generated on May 10, 2024 via pnpm

@datadog/sketches-js 1.0.0

TypeScript implementation of DDSketch, a distributed quantile sketch algorithm
Package summary
Share
5
issues
4
high severity
vulnerability
1
license
1
meta
2
1
moderate severity
vulnerability
1
6
licenses
81
MIT
12
BSD-3-Clause
7
ISC
5
other licenses
Apache-2.0
2
BSD-2-Clause
2
(BSD-2-Clause OR MIT OR Apache-2.0)
1
Package created
7 Dec 2020
Version published
7 Dec 2020
Maintainers
1
Total deps
105
Direct deps
3
License
Apache-2.0

Issues

5

4 high severity issues

high
Recommendation: Upgrade to version 4.2.1 or later
via: math-float64-frexp@1.0.0 & others
Recommendation: Validate that the license expression complies with your license policy
via: math-float64-frexp@1.0.0 & others
via: protobufjs@6.11.4
via: math-float64-frexp@1.0.0 & others
Collapse
Expand

1 moderate severity issue

moderate
Recommendation: Upgrade to version 11.8.5 or later
via: math-float64-frexp@1.0.0 & others
Collapse
Expand

Licenses

MIT License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
Cannot
hold-liable
Must
include-copyright
include-license
81 Packages, Including:
@types/keyv@3.1.4
@types/long@4.0.2
@types/node@20.12.11
@types/responselike@1.0.3
ansi-regex@2.1.1
ansi-styles@2.2.1
boxen@0.3.1
capture-stack-trace@1.0.2
chalk@1.1.3
code-point-at@1.1.0
const-ninf-float64@1.0.0
const-pinf-float64@1.0.0
const-smallest-float64@1.0.0
core-util-is@1.0.3
create-error-class@3.0.2
deep-extend@0.6.0
dot-prop@3.0.0
error-ex@1.3.2
escape-string-regexp@1.0.5
filled-array@1.1.0
got@5.7.1
has-ansi@2.0.0
imurmurhash@0.1.4
is-arrayish@0.2.1
is-finite@1.1.0
is-fullwidth-code-point@1.0.0
is-npm@1.0.0
is-obj@1.0.1
is-redirect@1.0.0
is-retry-allowed@1.2.0
is-stream@1.1.0
isarray@1.0.0
latest-version@2.0.0
lowercase-keys@1.0.1
math-abs@1.0.2
math-float64-copysign@1.0.0
math-float64-exponent@1.0.0
math-float64-frexp@1.0.0
math-float64-from-words@1.0.0
math-float64-get-high-word@1.0.0
math-float64-ldexp@1.0.1
math-float64-normalize@1.0.0
math-float64-to-words@1.0.0
minimist@1.2.8
mkdirp@0.5.6
node-status-codes@1.0.0
number-is-nan@1.0.1
object-assign@4.1.1
os-homedir@1.0.2
os-tmpdir@1.0.2

BSD 3-Clause "New" or "Revised" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
use-trademark
hold-liable
Must
include-copyright
include-license
12 Packages, Including:
@protobufjs/aspromise@1.1.2
@protobufjs/base64@1.1.2
@protobufjs/codegen@2.0.4
@protobufjs/eventemitter@1.1.0
@protobufjs/fetch@1.1.0
@protobufjs/float@1.0.2
@protobufjs/inquire@1.1.0
@protobufjs/path@1.1.2
@protobufjs/pool@1.1.0
@protobufjs/utf8@1.1.0
duplexer2@0.1.4
protobufjs@6.11.4

ISC License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
Cannot
hold-liable
Must
include-copyright
include-license
7 Packages, Including:
graceful-fs@4.2.11
inherits@2.0.4
ini@1.3.8
osenv@0.1.5
semver@5.7.2
slide@1.1.6
write-file-atomic@1.3.4

Apache License 2.0

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
use-patent-claims
place-warranty
Cannot
hold-liable
use-trademark
Must
include-copyright
include-license
state-changes
include-notice
2 Packages, Including:
@datadog/sketches-js@1.0.0
long@4.0.0

BSD 2-Clause "Simplified" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
hold-liable
Must
include-copyright
include-license
2 Packages, Including:
configstore@2.1.0
update-notifier@0.6.3

(BSD-2-Clause OR MIT OR Apache-2.0)

Expression
1 Packages, Including:
rc@1.2.8
Disclaimer

This deed highlights only some of the key features and terms of the actual license. It is not a license and has no legal value. You should carefully review all of the terms and conditions of the actual license before using the licensed material.

Sandworm is not a law firm and does not provide legal services. Distributing, displaying, or linking to this deed or the license that it summarizes does not create a lawyer-client or any other relationship.

Direct Dependencies

3
All Dependencies CSV
β“˜ This is a list of @datadog/sketches-js 's direct dependencies. Data on all dependencies, including transitive ones, is available via CSV download.
NameVersionSizeLicenseTypeVulnerabilities
math-float64-frexp1.0.03.96 kBMIT
prod
3
1
math-float64-ldexp1.0.13.99 kBMIT
prod
3
1
protobufjs6.11.43.34 MBBSD-3-Clause
prod
1

Visualizations