Home
Docs
GitHub
Pricing
Blog
Log In

Run Sandworm Audit for your App

Get started
Generated on May 27, 2024 via pnpm
Package summary
Share
6
issues
1
critical severity
vulnerability
1
3
high severity
meta
3
2
moderate severity
vulnerability
2
6
licenses
48
MIT
14
BSD-3-Clause
13
Apache-2.0
13
other licenses
ISC
11
(BSD-3-Clause OR GPL-2.0)
1
BSD-2-Clause
1
Package created
3 Oct 2017
Version published
20 Aug 2021
Maintainers
1
Total deps
88
Direct deps
4
License
Apache-2.0

Issues

6

1 critical severity issue

critical
Recommendation: Upgrade to version 6.11.4 or later
via: google-gax@2.30.5
Collapse
Expand

3 high severity issues

high
via: google-gax@2.30.5
via: google-gax@2.30.5 & others
via: google-gax@2.30.5
Collapse
Expand

2 moderate severity issues

moderate
Recommendation: Upgrade to version 6.1.0 or later
via: @google-cloud/firestore@4.14.2
Recommendation: Upgrade to version 6.1.0 or later
via: @google-cloud/firestore@4.14.2
Collapse
Expand

Licenses

MIT License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
Cannot
hold-liable
Must
include-copyright
include-license
48 Packages, Including:
@types/long@4.0.2
@types/node@20.12.12
abort-controller@3.0.0
agent-base@6.0.2
ansi-regex@5.0.1
ansi-styles@4.3.0
arrify@2.0.1
base64-js@1.5.1
bignumber.js@9.1.2
color-convert@2.0.1
color-name@1.1.4
debug@4.3.4
duplexify@4.1.3
emoji-regex@8.0.0
end-of-stream@1.4.4
escalade@3.1.2
event-target-shim@5.0.1
extend@3.0.2
fast-deep-equal@3.1.3
functional-red-black-tree@1.0.1
google-p12-pem@3.1.4
gtoken@5.3.2
https-proxy-agent@5.0.1
is-fullwidth-code-point@3.0.0
is-stream-ended@0.1.4
is-stream@2.0.1
json-bigint@1.0.0
jwa@2.0.0
jws@4.0.0
lodash.camelcase@4.3.0
ms@2.1.2
node-fetch@2.7.0
object-hash@3.0.0
readable-stream@3.6.2
require-directory@2.1.1
retry-request@4.2.2
safe-buffer@5.2.1
stream-shift@1.0.3
string-width@4.2.3
string_decoder@1.3.0
strip-ansi@6.0.1
tr46@0.0.3
undici-types@5.26.5
util-deprecate@1.0.2
whatwg-url@5.0.0
wrap-ansi@7.0.0
yargs@16.2.0
yargs@17.7.2

BSD 3-Clause "New" or "Revised" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
use-trademark
hold-liable
Must
include-copyright
include-license
14 Packages, Including:
@protobufjs/aspromise@1.1.2
@protobufjs/base64@1.1.2
@protobufjs/codegen@2.0.4
@protobufjs/eventemitter@1.1.0
@protobufjs/fetch@1.1.0
@protobufjs/float@1.0.2
@protobufjs/inquire@1.1.0
@protobufjs/path@1.1.2
@protobufjs/pool@1.1.0
@protobufjs/utf8@1.1.0
buffer-equal-constant-time@1.0.1
protobufjs@6.11.3
protobufjs@6.11.4
protobufjs@7.3.0

Apache License 2.0

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
use-patent-claims
place-warranty
Cannot
hold-liable
use-trademark
Must
include-copyright
include-license
state-changes
include-notice
13 Packages, Including:
@google-cloud/firestore@4.14.2
@grpc/grpc-js@1.6.12
@grpc/proto-loader@0.6.13
@grpc/proto-loader@0.7.13
ecdsa-sig-formatter@1.0.11
fast-text-encoding@1.0.6
gaxios@4.3.3
gcp-metadata@4.3.1
google-auth-library@7.14.1
google-gax@2.30.5
long@4.0.0
long@5.2.3
proto3-json-serializer@0.1.9

ISC License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
Cannot
hold-liable
Must
include-copyright
include-license
11 Packages, Including:
cliui@7.0.4
cliui@8.0.1
get-caller-file@2.0.5
inherits@2.0.4
lru-cache@6.0.0
once@1.4.0
wrappy@1.0.2
y18n@5.0.8
yallist@4.0.0
yargs-parser@20.2.9
yargs-parser@21.1.1

(BSD-3-Clause OR GPL-2.0)

Permissive
1 Packages, Including:
node-forge@1.3.1

BSD 2-Clause "Simplified" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
hold-liable
Must
include-copyright
include-license
1 Packages, Including:
webidl-conversions@3.0.1
Disclaimer

This deed highlights only some of the key features and terms of the actual license. It is not a license and has no legal value. You should carefully review all of the terms and conditions of the actual license before using the licensed material.

Sandworm is not a law firm and does not provide legal services. Distributing, displaying, or linking to this deed or the license that it summarizes does not create a lawyer-client or any other relationship.

Direct Dependencies

4
All Dependencies CSV
β“˜ This is a list of @google-cloud/firestore 's direct dependencies. Data on all dependencies, including transitive ones, is available via CSV download.
NameVersionSizeLicenseTypeVulnerabilities
fast-deep-equal3.1.33.57 kBMIT
prod
functional-red-black-tree1.0.19.86 kBMIT
prod
google-gax2.30.5885.88 kBApache-2.0
prod
1
3
protobufjs6.11.43.34 MBBSD-3-Clause
prod
1

Visualizations