Home
Docs
GitHub
Pricing
Blog
Log In

Run Sandworm Audit for your App

Get started
Generated on May 18, 2024 via pnpm
Package summary
Share
3
issues
1
critical severity
vulnerability
1
2
high severity
meta
2
8
licenses
89
MIT
16
Apache-2.0
15
BSD-3-Clause
27
other licenses
ISC
15
BSD-2-Clause
9
Python-2.0
1
Unlicense
1
+ 1 more
Package created
3 Oct 2017
Version published
20 Jul 2023
Maintainers
1
Total deps
147
Direct deps
4
License
Apache-2.0

Issues

3

1 critical severity issue

critical
Recommendation: Upgrade to version 7.2.5 or later
via: google-gax@3.6.1
Collapse
Expand

2 high severity issues

high
via: google-gax@3.6.1
via: google-gax@3.6.1 & others
Collapse
Expand

Licenses

MIT License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
Cannot
hold-liable
Must
include-copyright
include-license
89 Packages, Including:
@babel/helper-string-parser@7.24.1
@babel/helper-validator-identifier@7.24.5
@babel/parser@7.24.5
@babel/types@7.24.5
@types/glob@8.1.0
@types/linkify-it@5.0.0
@types/long@4.0.2
@types/markdown-it@14.1.1
@types/mdurl@2.0.0
@types/minimatch@5.1.2
@types/node@20.12.12
@types/rimraf@3.0.2
abort-controller@3.0.0
acorn-jsx@5.3.2
acorn@8.11.3
agent-base@6.0.2
ansi-regex@5.0.1
ansi-styles@4.3.0
arrify@2.0.1
balanced-match@1.0.2
base64-js@1.5.1
bignumber.js@9.1.2
bluebird@3.7.2
brace-expansion@2.0.1
catharsis@0.9.0
chalk@4.1.2
color-convert@2.0.1
color-name@1.1.4
debug@4.3.4
deep-is@0.1.4
duplexify@4.1.3
emoji-regex@8.0.0
end-of-stream@1.4.4
escalade@3.1.2
escape-string-regexp@2.0.0
event-target-shim@5.0.1
extend@3.0.2
fast-deep-equal@3.1.3
fast-levenshtein@2.0.6
functional-red-black-tree@1.0.1
google-p12-pem@4.0.1
gtoken@6.1.2
has-flag@4.0.0
https-proxy-agent@5.0.1
is-fullwidth-code-point@3.0.0
is-stream-ended@0.1.4
is-stream@2.0.1
json-bigint@1.0.0
jwa@2.0.0
jws@4.0.0

Apache License 2.0

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
use-patent-claims
place-warranty
Cannot
hold-liable
use-trademark
Must
include-copyright
include-license
state-changes
include-notice
16 Packages, Including:
@google-cloud/firestore@6.7.0
@grpc/grpc-js@1.8.21
@grpc/proto-loader@0.7.13
@jsdoc/salty@0.2.8
ecdsa-sig-formatter@1.0.11
eslint-visitor-keys@3.4.3
fast-text-encoding@1.0.6
gaxios@5.1.3
gcp-metadata@5.3.0
google-auth-library@8.9.0
google-gax@3.6.1
js2xmlparser@4.0.2
jsdoc@4.0.3
long@5.2.3
proto3-json-serializer@1.1.1
xmlcreate@2.0.4

BSD 3-Clause "New" or "Revised" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
use-trademark
hold-liable
Must
include-copyright
include-license
15 Packages, Including:
@protobufjs/aspromise@1.1.2
@protobufjs/base64@1.1.2
@protobufjs/codegen@2.0.4
@protobufjs/eventemitter@1.1.0
@protobufjs/fetch@1.1.0
@protobufjs/float@1.0.2
@protobufjs/inquire@1.1.0
@protobufjs/path@1.1.2
@protobufjs/pool@1.1.0
@protobufjs/utf8@1.1.0
buffer-equal-constant-time@1.0.1
protobufjs-cli@1.1.1
protobufjs@7.2.4
protobufjs@7.3.0
source-map@0.6.1

ISC License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
Cannot
hold-liable
Must
include-copyright
include-license
15 Packages, Including:
cliui@8.0.1
fs.realpath@1.0.0
get-caller-file@2.0.5
glob@8.1.0
graceful-fs@4.2.11
inflight@1.0.6
inherits@2.0.4
lru-cache@6.0.0
minimatch@5.1.6
once@1.4.0
semver@7.6.2
wrappy@1.0.2
y18n@5.0.8
yallist@4.0.0
yargs-parser@21.1.1

BSD 2-Clause "Simplified" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
hold-liable
Must
include-copyright
include-license
9 Packages, Including:
entities@4.5.0
escodegen@1.14.3
espree@9.6.1
esprima@4.0.1
estraverse@4.3.0
estraverse@5.3.0
esutils@2.0.3
uglify-js@3.17.4
webidl-conversions@3.0.1

Python License 2.0

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
Cannot
use-trademark
hold-liable
Must
include-copyright
include-license
state-changes
1 Packages, Including:
argparse@2.0.1

The Unlicense

Public Domain
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
private-use
modify
Cannot
include-copyright
hold-liable
Must
1 Packages, Including:
markdown-it-anchor@8.6.7

(BSD-3-Clause OR GPL-2.0)

Permissive
1 Packages, Including:
node-forge@1.3.1
Disclaimer

This deed highlights only some of the key features and terms of the actual license. It is not a license and has no legal value. You should carefully review all of the terms and conditions of the actual license before using the licensed material.

Sandworm is not a law firm and does not provide legal services. Distributing, displaying, or linking to this deed or the license that it summarizes does not create a lawyer-client or any other relationship.

Direct Dependencies

4
All Dependencies CSV
β“˜ This is a list of @google-cloud/firestore 's direct dependencies. Data on all dependencies, including transitive ones, is available via CSV download.
NameVersionSizeLicenseTypeVulnerabilities
fast-deep-equal3.1.33.57 kBMIT
prod
functional-red-black-tree1.0.19.86 kBMIT
prod
google-gax3.6.1467.84 kBApache-2.0
prod
1
2
protobufjs7.3.02.64 MBBSD-3-Clause
prod
1

Visualizations