Home
Docs
GitHub
Pricing
Blog
Log In

Run Sandworm Audit for your App

Get started
Hold on, we're currently generating a fresh version of this report
Generated on Nov 23, 2023 via pnpm
Package summary
Share
2
issues
1
high severity
meta
1
1
moderate severity
meta
1
5
licenses
93
MIT
16
Apache-2.0
12
BSD-3-Clause
8
other licenses
ISC
7
BSD-2-Clause
1
Package created
14 Feb 2017
Version published
16 Nov 2023
Maintainers
1
Total deps
129
Direct deps
27
License
Apache-2.0

Issues

2

1 high severity issue

high
via: @grpc/proto-loader@0.7.10 & others
Collapse
Expand

1 moderate severity issue

moderate
via: checkpoint-stream@0.1.2
Collapse
Expand

Licenses

MIT License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
Cannot
hold-liable
Must
include-copyright
include-license
93 Packages, Including:
@tootallnate/once@2.0.0
@types/big.js@6.2.2
@types/caseless@0.12.5
@types/duplexify@3.6.4
@types/long@4.0.2
@types/node@20.9.4
@types/pumpify@1.4.4
@types/request@2.48.12
@types/stack-trace@0.0.32
@types/tough-cookie@4.0.5
abort-controller@3.0.0
agent-base@6.0.2
agent-base@7.1.0
ansi-regex@5.0.1
ansi-styles@4.3.0
arrify@2.0.1
async@2.6.4
asynckit@0.4.0
base64-js@1.5.1
big.js@6.2.1
bignumber.js@9.1.2
checkpoint-stream@0.1.2
color-convert@2.0.1
color-name@1.1.4
combined-stream@1.0.8
core-util-is@1.0.3
debug@4.3.4
delayed-stream@1.0.0
duplexify@3.7.1
duplexify@4.1.2
emoji-regex@8.0.0
end-of-stream@1.4.4
ent@2.2.0
escalade@3.1.1
event-target-shim@5.0.1
eventemitter3@4.0.7
events-intercept@2.0.0
extend@3.0.2
form-data@2.5.1
gtoken@7.0.1
http-proxy-agent@5.0.0
https-proxy-agent@5.0.1
https-proxy-agent@7.0.2
is-fullwidth-code-point@3.0.0
is-stream-ended@0.1.4
is-stream@2.0.1
is@3.3.0
isarray@1.0.0
json-bigint@1.0.0
jwa@2.0.0

Apache License 2.0

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
use-patent-claims
place-warranty
Cannot
hold-liable
use-trademark
Must
include-copyright
include-license
state-changes
include-notice
16 Packages, Including:
@google-cloud/common@5.0.1
@google-cloud/precise-date@3.0.1
@google-cloud/projectify@4.0.0
@google-cloud/promisify@4.0.0
@google-cloud/spanner@7.1.0
@grpc/grpc-js@1.9.11
@grpc/proto-loader@0.7.10
ecdsa-sig-formatter@1.0.11
gaxios@6.1.1
gcp-metadata@6.1.0
google-auth-library@9.2.0
google-gax@4.0.5
grpc-gcp@1.0.1
long@5.2.3
proto3-json-serializer@2.0.0
teeny-request@9.0.0

BSD 3-Clause "New" or "Revised" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
use-trademark
hold-liable
Must
include-copyright
include-license
12 Packages, Including:
@protobufjs/aspromise@1.1.2
@protobufjs/base64@1.1.2
@protobufjs/codegen@2.0.4
@protobufjs/eventemitter@1.1.0
@protobufjs/fetch@1.1.0
@protobufjs/float@1.0.2
@protobufjs/inquire@1.1.0
@protobufjs/path@1.1.2
@protobufjs/pool@1.1.0
@protobufjs/utf8@1.1.0
buffer-equal-constant-time@1.0.1
protobufjs@7.2.5

ISC License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
Cannot
hold-liable
Must
include-copyright
include-license
7 Packages, Including:
cliui@8.0.1
get-caller-file@2.0.5
inherits@2.0.4
once@1.4.0
wrappy@1.0.2
y18n@5.0.8
yargs-parser@21.1.1

BSD 2-Clause "Simplified" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
hold-liable
Must
include-copyright
include-license
1 Packages, Including:
webidl-conversions@3.0.1
Disclaimer

This deed highlights only some of the key features and terms of the actual license. It is not a license and has no legal value. You should carefully review all of the terms and conditions of the actual license before using the licensed material.

Sandworm is not a law firm and does not provide legal services. Distributing, displaying, or linking to this deed or the license that it summarizes does not create a lawyer-client or any other relationship.

Direct Dependencies

27
All Dependencies CSV
β“˜ This is a list of @google-cloud/spanner 's direct dependencies. Data on all dependencies, including transitive ones, is available via CSV download.
NameVersionSizeLicenseTypeVulnerabilities
@google-cloud/common5.0.130.79 kBApache-2.0
prod
@google-cloud/precise-date3.0.112.35 kBApache-2.0
prod
@google-cloud/projectify4.0.09.79 kBApache-2.0
prod
@google-cloud/promisify4.0.010.69 kBApache-2.0
prod
@grpc/proto-loader0.7.1025.37 kBApache-2.0
prod
1
@types/big.js6.2.24.33 kBMIT
prod
@types/stack-trace0.0.321.61 kBMIT
prod
arrify2.0.11.64 kBMIT
prod
big.js6.2.115.88 kBMIT
prod
checkpoint-stream0.1.23.02 kBMIT
prod
1
duplexify4.1.25.11 kBMIT
prod
events-intercept2.0.06.72 kBMIT
prod
extend3.0.27.09 kBMIT
prod
google-auth-library9.2.0114.94 kBApache-2.0
prod
google-gax4.0.5466.5 kBApache-2.0
prod
1
grpc-gcp1.0.123.42 kBApache-2.0
prod
1
is3.3.011.7 kBMIT
prod
lodash.snakecase4.1.16.02 kBMIT
prod
merge-stream2.0.02.21 kBMIT
prod
p-queue6.6.28.17 kBMIT
prod
protobufjs7.2.5565.48 kBBSD-3-Clause
prod
1
retry-request6.0.06.18 kBMIT
prod
split-array-stream2.0.03.76 kBMIT
prod
stack-trace0.0.103.51 kBMIT
prod
stream-events1.0.51.35 kBMIT
prod
teeny-request9.0.017.97 kBApache-2.0
prod
through24.0.23.92 kBMIT
prod

Visualizations