Home
Docs
GitHub
Pricing
Blog
Log In

Run Sandworm Audit for your App

Get started
Hold on, we're currently generating a fresh version of this report
Generated on May 2, 2024 via pnpm

@sanity/code-input 4.1.2

Sanity input component for code, powered by CodeMirror
Package summary
Share
22
issues
1
critical severity
license
1
8
high severity
license
5
meta
3
6
moderate severity
meta
6
7
low severity
license
7
13
licenses
773
MIT
47
ISC
15
Apache-2.0
26
other licenses
BSD-2-Clause
9
BSD-3-Clause
4
(MIT OR CC0-1.0)
3
BlueOak-1.0.0
2
+ 6 more
Package created
13 Jun 2017
Version published
15 Dec 2023
Maintainers
44
Total deps
861
Direct deps
24
License
MIT

Issues

22

1 critical severity issue

critical
Recommendation: Check the package code and files for license information
via: sanity@3.40.0
Collapse
Expand

8 high severity issues

high
Recommendation: Read and validate the license terms
via: sanity@3.40.0
Recommendation: Read and validate the license terms
via: sanity@3.40.0
Recommendation: Read and validate the license terms
via: sanity@3.40.0
Recommendation: Read and validate the license terms
via: sanity@3.40.0
Recommendation: Validate that the package complies with your license policy
via: sanity@3.40.0
via: sanity@3.40.0
via: sanity@3.40.0
via: sanity@3.40.0
Collapse
Expand

6 moderate severity issues

moderate
via: sanity@3.40.0
via: sanity@3.40.0
via: sanity@3.40.0
via: sanity@3.40.0
via: sanity@3.40.0
via: sanity@3.40.0
Collapse
Expand

7 low severity issues

low
Recommendation: Read and validate the license terms
via: sanity@3.40.0
Recommendation: Read and validate the license terms
via: sanity@3.40.0
Recommendation: Read and validate the license terms
via: sanity@3.40.0
Recommendation: Read and validate the license terms
via: sanity@3.40.0
Recommendation: Read and validate the license terms
via: sanity@3.40.0
Recommendation: Read and validate the license terms
via: sanity@3.40.0
Recommendation: Read and validate the license terms
via: sanity@3.40.0
Collapse
Expand

Licenses

MIT License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
Cannot
hold-liable
Must
include-copyright
include-license
773 Packages, Including:
@asamuzakjp/dom-selector@2.0.2
@babel/code-frame@7.24.2
@babel/compat-data@7.24.4
@babel/core@7.24.5
@babel/generator@7.24.5
@babel/helper-annotate-as-pure@7.22.5
@babel/helper-builder-binary-assignment-operator-visitor@7.22.15
@babel/helper-compilation-targets@7.23.6
@babel/helper-create-class-features-plugin@7.24.5
@babel/helper-create-regexp-features-plugin@7.22.15
@babel/helper-define-polyfill-provider@0.6.2
@babel/helper-environment-visitor@7.22.20
@babel/helper-function-name@7.23.0
@babel/helper-hoist-variables@7.22.5
@babel/helper-member-expression-to-functions@7.24.5
@babel/helper-module-imports@7.24.3
@babel/helper-module-transforms@7.24.5
@babel/helper-optimise-call-expression@7.22.5
@babel/helper-plugin-utils@7.24.5
@babel/helper-remap-async-to-generator@7.22.20
@babel/helper-replace-supers@7.24.1
@babel/helper-simple-access@7.24.5
@babel/helper-skip-transparent-expression-wrappers@7.22.5
@babel/helper-split-export-declaration@7.24.5
@babel/helper-string-parser@7.24.1
@babel/helper-validator-identifier@7.24.5
@babel/helper-validator-option@7.23.5
@babel/helper-wrap-function@7.24.5
@babel/helpers@7.24.5
@babel/highlight@7.24.5
@babel/parser@7.24.5
@babel/plugin-bugfix-firefox-class-in-computed-class-key@7.24.5
@babel/plugin-bugfix-safari-id-destructuring-collision-in-function-expression@7.24.1
@babel/plugin-bugfix-v8-spread-parameters-in-optional-chaining@7.24.1
@babel/plugin-bugfix-v8-static-class-fields-redefine-readonly@7.24.1
@babel/plugin-proposal-private-property-in-object@7.21.0-placeholder-for-preset-env.2
@babel/plugin-syntax-async-generators@7.8.4
@babel/plugin-syntax-class-properties@7.12.13
@babel/plugin-syntax-class-static-block@7.14.5
@babel/plugin-syntax-dynamic-import@7.8.3
@babel/plugin-syntax-export-namespace-from@7.8.3
@babel/plugin-syntax-import-assertions@7.24.1
@babel/plugin-syntax-import-attributes@7.24.1
@babel/plugin-syntax-import-meta@7.10.4
@babel/plugin-syntax-json-strings@7.8.3
@babel/plugin-syntax-jsx@7.24.1
@babel/plugin-syntax-logical-assignment-operators@7.10.4
@babel/plugin-syntax-nullish-coalescing-operator@7.8.3
@babel/plugin-syntax-numeric-separator@7.10.4
@babel/plugin-syntax-object-rest-spread@7.8.3

ISC License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
Cannot
hold-liable
Must
include-copyright
include-license
47 Packages, Including:
@isaacs/cliui@8.0.2
anymatch@3.1.3
chownr@1.1.4
cliui@8.0.1
css-color-keywords@1.0.0
electron-to-chromium@1.4.754
fastq@1.17.1
foreground-child@3.1.1
fs.realpath@1.0.0
get-caller-file@2.0.5
glob-parent@5.1.2
glob@10.3.12
glob@7.2.3
graceful-fs@4.2.11
hosted-git-info@2.8.9
hosted-git-info@4.1.0
hotscript@1.0.13
inflight@1.0.6
inherits@2.0.4
isexe@2.0.0
json-lexer@1.2.0
lru-cache@10.2.2
lru-cache@5.1.1
lru-cache@6.0.0
minimatch@3.1.2
minimatch@5.1.6
minimatch@9.0.4
minipass@7.0.4
once@1.4.0
picocolors@1.0.0
rimraf@3.0.2
saxes@6.0.0
semver@5.7.2
semver@6.3.1
semver@7.6.0
signal-exit@3.0.7
signal-exit@4.1.0
split2@4.2.0
validate-npm-package-name@3.0.0
which@2.0.2
wrappy@1.0.2
write-file-atomic@3.0.3
y18n@5.0.8
yallist@3.1.1
yallist@4.0.0
yargs-parser@20.2.9
yargs-parser@21.1.1

Apache License 2.0

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
use-patent-claims
place-warranty
Cannot
hold-liable
use-trademark
Must
include-copyright
include-license
state-changes
include-notice
15 Packages, Including:
@ampproject/remapping@2.3.0
@juggle/resize-observer@3.4.0
@sanity/diff-match-patch@3.1.1
b4a@1.6.6
bare-events@2.2.2
crc-32@1.2.2
diff-match-patch@1.0.5
readdir-glob@1.1.3
rxjs@7.8.1
spdx-correct@3.2.0
tunnel-agent@0.6.0
typeid-js@0.3.0
uuidv7@0.4.4
validate-npm-package-license@3.0.4
xml-name-validator@5.0.0

BSD 2-Clause "Simplified" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
hold-liable
Must
include-copyright
include-license
9 Packages, Including:
configstore@5.0.1
entities@4.5.0
esutils@2.0.3
mississippi@4.0.0
normalize-package-data@2.5.0
normalize-package-data@3.0.3
progress-stream@2.0.0
regjsparser@0.9.1
webidl-conversions@7.0.0

BSD 3-Clause "New" or "Revised" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
use-trademark
hold-liable
Must
include-copyright
include-license
4 Packages, Including:
ieee754@1.2.1
source-map-js@1.2.0
source-map@0.6.1
tough-cookie@4.1.4

(MIT OR CC0-1.0)

Public Domain
3 Packages, Including:
type-fest@0.18.1
type-fest@0.6.0
type-fest@0.8.1

Blue Oak Model License 1.0.0

Uncategorized
Not OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
Cannot
Must
2 Packages, Including:
jackspeak@2.3.6
path-scurry@1.10.2

Creative Commons Zero v1.0 Universal

Public Domain
Not OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
Cannot
Must
2 Packages, Including:
mdn-data@2.0.30
spdx-license-ids@3.0.17

BSD Zero Clause License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
include-copyright
include-license
include-original
Cannot
hold-liable
Must
2 Packages, Including:
tslib@2.5.0
tslib@2.6.2

Creative Commons Attribution 4.0 International

Uncategorized
Not OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
Cannot
Must
1 Packages, Including:
caniuse-lite@1.0.30001615

N/A

N/A
1 Packages, Including:
silver-fleece@1.1.0

Creative Commons Attribution 3.0 Unported

Uncategorized
Not OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
Cannot
Must
1 Packages, Including:
spdx-exceptions@2.5.0

BSD

Invalid
Not OSI Approved
1 Packages, Including:
speakingurl@14.0.1
Disclaimer

This deed highlights only some of the key features and terms of the actual license. It is not a license and has no legal value. You should carefully review all of the terms and conditions of the actual license before using the licensed material.

Sandworm is not a law firm and does not provide legal services. Distributing, displaying, or linking to this deed or the license that it summarizes does not create a lawyer-client or any other relationship.

Direct Dependencies

24
All Dependencies CSV
β“˜ This is a list of @sanity/code-input 's direct dependencies. Data on all dependencies, including transitive ones, is available via CSV download.
NameVersionSizeLicenseTypeVulnerabilities
@codemirror/autocomplete6.16.0234.84 kBMIT
prod peer
@codemirror/commands6.5.0217.27 kBMIT
prod peer
@codemirror/lang-html6.4.976.37 kBMIT
prod
@codemirror/lang-java6.0.13.25 kBMIT
prod
@codemirror/lang-javascript6.2.259.98 kBMIT
prod
@codemirror/lang-json6.0.13.42 kBMIT
prod
@codemirror/lang-markdown6.2.559.08 kBMIT
prod
@codemirror/lang-php6.0.13.81 kBMIT
prod
@codemirror/lang-sql6.6.3117.4 kBMIT
prod
@codemirror/language6.10.179.47 kBMIT
prod peer
@codemirror/legacy-modes6.4.01.87 MBMIT
prod
@codemirror/search6.5.6129.31 kBMIT
prod peer
@codemirror/state6.4.1425.8 kBMIT
prod peer
@codemirror/view6.26.31.05 MBMIT
prod peer
@juggle/resize-observer3.4.017.15 kBApache-2.0
prod
@lezer/highlight1.2.015.63 kBMIT
prod
@sanity/incompatible-plugin1.0.47.94 kBMIT
prod
@sanity/ui1.9.3591.76 kBMIT
prod
@uiw/codemirror-themes4.22.025.83 kBMIT
prod
@uiw/react-codemirror4.22.0741.29 kBMIT
prod
react-dom18.3.14.3 MBMIT
prod peer
react18.3.1310.65 kBMIT
prod peer
sanity3.40.035.04 MBMIT
prod peer
1
8
6
7
styled-components6.1.91.73 MBMIT
prod peer

Visualizations