Home
Docs
GitHub
Pricing
Blog
Log In

Run Sandworm Audit for your App

Get started
Hold on, we're currently generating a fresh version of this report
Generated on Apr 19, 2024 via pnpm

@netlify/zip-it-and-ship-it 9.18.1

Zip it and ship it
Package summary
Share
4
issues
2
high severity
license
1
meta
1
1
moderate severity
license
1
1
low severity
license
1
8
licenses
191
MIT
44
ISC
8
Apache-2.0
12
other licenses
BSD-2-Clause
6
BSD-3-Clause
3
Apache 2
1
MPL-2.0
1
+ 1 more
Package created
30 Jan 2019
Version published
11 Sep 2023
Maintainers
19
Total deps
255
Direct deps
32
License
MIT

Issues

4

2 high severity issues

high
Recommendation: Validate that the package complies with your license policy
via: @netlify/binary-info@1.0.0
via: esbuild@0.19.2
Collapse
Expand

1 moderate severity issue

moderate
Recommendation: Validate that the package complies with your license policy
via: precinct@11.0.5
Collapse
Expand

1 low severity issue

low
Recommendation: Read and validate the license terms
via: @netlify/binary-info@1.0.0
Collapse
Expand

Licenses

MIT License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
Cannot
hold-liable
Must
include-copyright
include-license
191 Packages, Including:
@babel/helper-string-parser@7.24.1
@babel/helper-validator-identifier@7.22.20
@babel/parser@7.24.4
@babel/types@7.24.0
@dependents/detective-less@4.1.0
@esbuild/android-arm64@0.19.2
@esbuild/android-arm@0.19.2
@esbuild/android-x64@0.19.2
@esbuild/darwin-arm64@0.19.2
@esbuild/darwin-x64@0.19.2
@esbuild/freebsd-arm64@0.19.2
@esbuild/freebsd-x64@0.19.2
@esbuild/linux-arm64@0.19.2
@esbuild/linux-arm@0.19.2
@esbuild/linux-ia32@0.19.2
@esbuild/linux-loong64@0.19.2
@esbuild/linux-mips64el@0.19.2
@esbuild/linux-ppc64@0.19.2
@esbuild/linux-riscv64@0.19.2
@esbuild/linux-s390x@0.19.2
@esbuild/linux-x64@0.19.2
@esbuild/netbsd-x64@0.19.2
@esbuild/openbsd-x64@0.19.2
@esbuild/sunos-x64@0.19.2
@esbuild/win32-arm64@0.19.2
@esbuild/win32-ia32@0.19.2
@esbuild/win32-x64@0.19.2
@netlify/node-cookies@0.1.0
@netlify/serverless-functions-api@1.16.2
@netlify/zip-it-and-ship-it@9.18.1
@nodelib/fs.scandir@2.1.5
@nodelib/fs.stat@2.0.5
@nodelib/fs.walk@1.2.8
@rollup/pluginutils@4.2.1
@typescript-eslint/types@5.62.0
@typescript-eslint/visitor-keys@5.62.0
@vercel/nft@0.23.1
acorn@8.11.3
agent-base@6.0.2
aggregate-error@4.0.1
ansi-regex@5.0.1
ansi-styles@4.3.0
archiver-utils@4.0.1
archiver@6.0.2
array-union@2.1.0
ast-module-types@5.0.0
async-sema@3.1.1
async@3.2.5
balanced-match@1.0.2
bindings@1.5.0

ISC License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
Cannot
hold-liable
Must
include-copyright
include-license
44 Packages, Including:
abbrev@1.1.1
aproba@2.0.0
are-we-there-yet@2.0.0
chownr@2.0.0
cliui@8.0.1
color-support@1.1.3
common-path-prefix@3.0.0
console-control-strings@1.1.0
fastq@1.17.1
fs-minipass@2.1.0
fs.realpath@1.0.0
gauge@3.0.2
get-caller-file@2.0.5
glob-parent@5.1.2
glob@7.2.3
glob@8.1.0
graceful-fs@4.2.11
has-unicode@2.0.1
inflight@1.0.6
inherits@2.0.4
isexe@2.0.0
lru-cache@6.0.0
minimatch@3.1.2
minimatch@5.1.6
minimatch@9.0.4
minipass@3.3.6
minipass@5.0.0
nopt@5.0.0
npmlog@5.0.1
once@1.4.0
picocolors@1.0.0
remove-trailing-separator@1.1.0
rimraf@3.0.2
semver@6.3.1
semver@7.6.0
set-blocking@2.0.0
signal-exit@3.0.7
tar@6.2.1
which@2.0.2
wide-align@1.1.5
wrappy@1.0.2
y18n@5.0.8
yallist@4.0.0
yargs-parser@21.1.1

Apache License 2.0

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
use-patent-claims
place-warranty
Cannot
hold-liable
use-trademark
Must
include-copyright
include-license
state-changes
include-notice
8 Packages, Including:
b4a@1.6.6
bare-events@2.2.2
crc-32@1.2.2
detect-libc@2.0.3
eslint-visitor-keys@3.4.3
human-signals@3.0.1
readdir-glob@1.1.3
typescript@5.4.5

BSD 2-Clause "Simplified" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
hold-liable
Must
include-copyright
include-license
6 Packages, Including:
@typescript-eslint/typescript-estree@5.62.0
escodegen@2.1.0
esprima@4.0.1
estraverse@5.3.0
esutils@2.0.3
webidl-conversions@3.0.1

BSD 3-Clause "New" or "Revised" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
use-trademark
hold-liable
Must
include-copyright
include-license
3 Packages, Including:
@mapbox/node-pre-gyp@1.0.11
source-map-js@1.2.0
source-map@0.6.1

Apache 2

Invalid
Not OSI Approved
1 Packages, Including:
@netlify/binary-info@1.0.0

Mozilla Public License 2.0

Weakly Protective
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
place-warranty
use-patent-claims
Cannot
use-trademark
hold-liable
Must
include-copyright
include-license
disclose-source
include-original
1 Packages, Including:
postcss-values-parser@6.0.2

BSD Zero Clause License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
include-copyright
include-license
include-original
Cannot
hold-liable
Must
1 Packages, Including:
tslib@1.14.1
Disclaimer

This deed highlights only some of the key features and terms of the actual license. It is not a license and has no legal value. You should carefully review all of the terms and conditions of the actual license before using the licensed material.

Sandworm is not a law firm and does not provide legal services. Distributing, displaying, or linking to this deed or the license that it summarizes does not create a lawyer-client or any other relationship.

Direct Dependencies

32
All Dependencies CSV
β“˜ This is a list of @netlify/zip-it-and-ship-it 's direct dependencies. Data on all dependencies, including transitive ones, is available via CSV download.
NameVersionSizeLicenseTypeVulnerabilities
@babel/parser7.24.41.8 MBMIT
prod
@netlify/binary-info1.0.076.23 kBApache 2
prod
1
1
@netlify/serverless-functions-api1.16.269.05 kBMIT
prod
@vercel/nft0.23.155.04 kBMIT
prod
archiver6.0.242.07 kBMIT
prod
common-path-prefix3.0.01.92 kBISC
prod
cp-file10.0.04.22 kBMIT
prod
es-module-lexer1.5.088.35 kBMIT
prod
esbuild0.19.228.76 kBMIT
prod
1
execa6.1.014.31 kBMIT
prod
filter-obj5.1.02.09 kBMIT
prod
find-up6.3.04.06 kBMIT
prod
get-tsconfig4.7.398.76 kBMIT
prod
glob8.1.015.35 kBISC
prod
is-builtin-module3.2.11.92 kBMIT
prod
is-path-inside4.0.01.95 kBMIT
prod
junk4.0.12.04 kBMIT
prod
locate-path7.2.02.83 kBMIT
prod
merge-options3.0.44 kBMIT
prod
minimatch9.0.4424.71 kBISC
prod
normalize-path3.0.03.48 kBMIT
prod
p-map5.5.05.27 kBMIT
prod
path-exists5.0.02.04 kBMIT
prod
precinct11.0.54.62 kBMIT
prod
1
require-package-name2.0.11.82 kBMIT
prod
resolve2.0.0-next.524.78 kBMIT
prod
semver7.6.026.57 kBISC
prod
tmp-promise3.0.35.06 kBMIT
prod
toml3.0.020.88 kBMIT
prod
unixify1.0.02.79 kBMIT
prod
urlpattern-polyfill8.0.221.69 kBMIT
prod
yargs17.7.264.15 kBMIT
prod

Visualizations