Home
Docs
GitHub
Pricing
Blog
Log In

Run Sandworm Audit for your App

Get started
Hold on, we're currently generating a fresh version of this report
Generated on Mar 12, 2024 via pnpm

@pulumi/kubernetes 4.1.0

[![Build Status](https://travis-ci.com/pulumi/pulumi-kubernetes.svg?token=eHg7Zp5zdDDJfTjY8ejq&branch=master)](https://travis-ci.com/pulumi/pulumi-kubernetes) [![Slack](http://www.pulumi.com/images/docs/badges/slack.svg)](https://slack.pulumi.com) [![NPM
Package summary
Share
14
issues
7
high severity
license
4
meta
3
2
moderate severity
meta
2
5
low severity
license
5
10
licenses
154
MIT
96
ISC
32
Apache-2.0
27
other licenses
BSD-3-Clause
15
BSD-2-Clause
6
BlueOak-1.0.0
2
SEE LICENSE IN LICENSE
1
+ 3 more
Package created
1 Feb 2018
Version published
16 Aug 2023
Maintainers
2
Total deps
309
Direct deps
8
License
Apache-2.0

Issues

14

7 high severity issues

high
Recommendation: Read and validate the license terms
via: @pulumi/pulumi@3.109.0
Recommendation: Read and validate the license terms
via: @pulumi/pulumi@3.109.0
Recommendation: Validate that the package complies with your license policy
via: @pulumi/pulumi@3.109.0
Recommendation: Read and validate the license terms
via: @pulumi/pulumi@3.109.0
via: @pulumi/pulumi@3.109.0
via: @pulumi/kubernetes@4.1.0
via: @pulumi/pulumi@3.109.0
Collapse
Expand

2 moderate severity issues

moderate
via: @pulumi/pulumi@3.109.0
via: @pulumi/pulumi@3.109.0
Collapse
Expand

5 low severity issues

low
Recommendation: Read and validate the license terms
via: @pulumi/pulumi@3.109.0
Recommendation: Read and validate the license terms
via: @pulumi/pulumi@3.109.0
Recommendation: Read and validate the license terms
via: @pulumi/pulumi@3.109.0
Recommendation: Read and validate the license terms
via: @pulumi/pulumi@3.109.0
Recommendation: Read and validate the license terms
via: @pulumi/pulumi@3.109.0
Collapse
Expand

Licenses

MIT License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
Cannot
hold-liable
Must
include-copyright
include-license
154 Packages, Including:
@js-sdsl/ordered-map@4.4.2
@pkgjs/parseargs@0.11.0
@sindresorhus/is@4.6.0
@szmarczak/http-timer@4.0.6
@tufjs/canonical-json@2.0.0
@tufjs/models@2.0.0
@types/cacheable-request@6.0.3
@types/glob@5.0.38
@types/google-protobuf@3.15.12
@types/http-cache-semantics@4.0.4
@types/keyv@3.1.4
@types/minimatch@5.1.2
@types/node-fetch@2.6.11
@types/node@20.11.26
@types/responselike@1.0.3
@types/semver@7.5.8
@types/tmp@0.0.33
@types/tmp@0.2.6
agent-base@7.1.0
aggregate-error@3.1.0
ansi-regex@5.0.1
ansi-regex@6.0.1
ansi-styles@4.3.0
ansi-styles@6.2.1
argparse@1.0.10
arrify@1.0.1
asynckit@0.4.0
balanced-match@1.0.2
brace-expansion@1.1.11
brace-expansion@2.0.1
buffer-from@1.1.2
builtins@5.0.1
cacheable-lookup@5.0.4
cacheable-request@7.0.4
clean-stack@2.2.0
clone-response@1.0.3
color-convert@2.0.1
color-name@1.1.4
combined-stream@1.0.8
concat-map@0.0.1
cross-spawn@7.0.3
cssesc@3.0.0
debug@4.3.4
decompress-response@6.0.0
defer-to-connect@2.0.1
delayed-stream@1.0.0
eastasianwidth@0.2.0
emoji-regex@8.0.0
emoji-regex@9.2.2
encoding@0.1.13

ISC License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
Cannot
hold-liable
Must
include-copyright
include-license
96 Packages, Including:
@isaacs/cliui@8.0.2
@isaacs/string-locale-compare@1.1.0
@npmcli/agent@2.2.1
@npmcli/arborist@7.4.0
@npmcli/fs@3.1.0
@npmcli/git@5.0.4
@npmcli/installed-package-contents@2.0.2
@npmcli/map-workspaces@3.0.4
@npmcli/metavuln-calculator@7.0.0
@npmcli/name-from-folder@2.0.0
@npmcli/node-gyp@3.0.0
@npmcli/package-json@5.0.0
@npmcli/promise-spawn@7.0.1
@npmcli/query@3.1.0
@npmcli/run-script@7.0.4
abbrev@2.0.0
aproba@2.0.0
are-we-there-yet@4.0.2
bin-links@4.0.3
cacache@18.0.2
chownr@2.0.0
cliui@8.0.1
cmd-shim@6.0.2
color-support@1.1.3
common-ancestor-path@1.0.1
console-control-strings@1.1.0
foreground-child@3.1.1
fs-minipass@2.1.0
fs-minipass@3.0.3
fs.realpath@1.0.0
gauge@5.0.1
get-caller-file@2.0.5
glob@10.3.10
glob@7.2.3
glob@8.1.0
graceful-fs@4.2.11
has-unicode@2.0.1
hosted-git-info@7.0.1
ignore-walk@6.0.4
inflight@1.0.6
inherits@2.0.4
ini@2.0.0
isexe@2.0.0
isexe@3.1.1
json-stringify-nice@1.1.4
lru-cache@10.2.0
lru-cache@6.0.0
make-error@1.3.6
make-fetch-happen@13.0.0
minimatch@3.1.2

Apache License 2.0

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
use-patent-claims
place-warranty
Cannot
hold-liable
use-trademark
Must
include-copyright
include-license
state-changes
include-notice
32 Packages, Including:
@grpc/grpc-js@1.10.2
@grpc/proto-loader@0.7.10
@opentelemetry/api-metrics@0.32.0
@opentelemetry/api@1.8.0
@opentelemetry/context-async-hooks@1.22.0
@opentelemetry/core@1.22.0
@opentelemetry/exporter-zipkin@1.22.0
@opentelemetry/instrumentation-grpc@0.32.0
@opentelemetry/instrumentation@0.32.0
@opentelemetry/propagator-b3@1.22.0
@opentelemetry/propagator-jaeger@1.22.0
@opentelemetry/resources@1.22.0
@opentelemetry/sdk-trace-base@1.22.0
@opentelemetry/sdk-trace-node@1.22.0
@opentelemetry/semantic-conventions@1.22.0
@opentelemetry/semantic-conventions@1.6.0
@pulumi/kubernetes@4.1.0
@pulumi/pulumi@3.109.0
@pulumi/query@0.3.0
@sigstore/bundle@2.2.0
@sigstore/core@1.0.0
@sigstore/protobuf-specs@0.3.0
@sigstore/sign@2.2.3
@sigstore/tuf@2.3.1
@sigstore/verify@1.1.0
exponential-backoff@3.1.1
human-signals@2.1.0
long@5.2.3
sigstore@2.2.2
spdx-correct@3.2.0
typescript@3.8.3
validate-npm-package-license@3.0.4

BSD 3-Clause "New" or "Revised" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
use-trademark
hold-liable
Must
include-copyright
include-license
15 Packages, Including:
@protobufjs/aspromise@1.1.2
@protobufjs/base64@1.1.2
@protobufjs/codegen@2.0.4
@protobufjs/eventemitter@1.1.0
@protobufjs/fetch@1.1.0
@protobufjs/float@1.0.2
@protobufjs/inquire@1.1.0
@protobufjs/path@1.1.2
@protobufjs/pool@1.1.0
@protobufjs/utf8@1.1.0
diff@3.5.0
protobufjs@7.2.6
source-map@0.6.1
sprintf-js@1.0.3
sprintf-js@1.1.3

BSD 2-Clause "Simplified" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
hold-liable
Must
include-copyright
include-license
6 Packages, Including:
esprima@4.0.1
http-cache-semantics@4.1.1
normalize-package-data@6.0.0
npm-install-checks@6.3.0
shimmer@1.2.1
webidl-conversions@3.0.1

Blue Oak Model License 1.0.0

Uncategorized
Not OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
Cannot
Must
2 Packages, Including:
jackspeak@2.3.6
path-scurry@1.10.1

SEE LICENSE IN LICENSE

Invalid
Not OSI Approved
1 Packages, Including:
@logdna/tail-file@2.2.0

(BSD-3-Clause AND Apache-2.0)

Permissive
1 Packages, Including:
google-protobuf@3.21.2

Creative Commons Attribution 3.0 Unported

Uncategorized
Not OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
Cannot
Must
1 Packages, Including:
spdx-exceptions@2.5.0

Creative Commons Zero v1.0 Universal

Public Domain
Not OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
Cannot
Must
1 Packages, Including:
spdx-license-ids@3.0.17
Disclaimer

This deed highlights only some of the key features and terms of the actual license. It is not a license and has no legal value. You should carefully review all of the terms and conditions of the actual license before using the licensed material.

Sandworm is not a law firm and does not provide legal services. Distributing, displaying, or linking to this deed or the license that it summarizes does not create a lawyer-client or any other relationship.

Direct Dependencies

8
All Dependencies CSV
β“˜ This is a list of @pulumi/kubernetes 's direct dependencies. Data on all dependencies, including transitive ones, is available via CSV download.
NameVersionSizeLicenseTypeVulnerabilities
@pulumi/pulumi3.109.03.5 MBApache-2.0
prod
6
2
5
@types/glob5.0.382.31 kBMIT
prod
@types/node-fetch2.6.114 kBMIT
prod
@types/tmp0.0.331.75 kBMIT
prod
glob7.2.315.08 kBISC
prod
node-fetch2.7.043.6 kBMIT
prod
shell-quote1.8.115.23 kBMIT
prod
tmp0.0.338.42 kBMIT
prod

Visualizations