Home
Docs
GitHub
Pricing
Blog
Log In

Run Sandworm Audit for your App

Get started
Hold on, we're currently generating a fresh version of this report
Generated on May 6, 2024 via pnpm

@semantic-release/gitlab 12.0.6

semantic-release plugin to publish a GitLab release
Package summary
Share
4
issues
2
high severity
license
2
2
low severity
license
2
12
licenses
326
MIT
28
ISC
4
Apache-2.0
15
other licenses
BSD-3-Clause
3
BSD-2-Clause
3
(MIT OR CC0-1.0)
3
(MIT OR Apache-2.0)
1
+ 5 more
Package created
6 Jan 2018
Version published
16 Sep 2023
Maintainers
4
Total deps
373
Direct deps
14
License
MIT

Issues

4

2 high severity issues

high
Recommendation: Validate that the license expression complies with your license policy
via: semantic-release@23.0.8
Recommendation: Read and validate the license terms
via: semantic-release@23.0.8
Collapse
Expand

2 low severity issues

low
Recommendation: Read and validate the license terms
via: semantic-release@23.0.8
Recommendation: Read and validate the license terms
via: semantic-release@23.0.8
Collapse
Expand

Licenses

MIT License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
Cannot
hold-liable
Must
include-copyright
include-license
326 Packages, Including:
@babel/code-frame@7.24.2
@babel/helper-validator-identifier@7.24.5
@babel/highlight@7.24.5
@colors/colors@1.5.0
@nodelib/fs.scandir@2.1.5
@nodelib/fs.stat@2.0.5
@nodelib/fs.walk@1.2.8
@octokit/auth-token@5.1.1
@octokit/core@6.1.2
@octokit/endpoint@10.1.1
@octokit/graphql@8.1.1
@octokit/openapi-types@22.2.0
@octokit/plugin-paginate-rest@11.3.0
@octokit/plugin-retry@7.1.1
@octokit/plugin-throttling@9.3.0
@octokit/request-error@6.1.1
@octokit/request@9.1.1
@octokit/types@13.5.0
@pnpm/config.env-replace@1.1.0
@pnpm/network.ca-file@1.0.2
@pnpm/npm-conf@2.2.2
@semantic-release/commit-analyzer@12.0.0
@semantic-release/error@4.0.0
@semantic-release/github@10.0.3
@semantic-release/gitlab@12.0.6
@semantic-release/npm@12.0.0
@semantic-release/release-notes-generator@13.0.0
@sindresorhus/is@4.6.0
@sindresorhus/is@5.6.0
@sindresorhus/merge-streams@2.3.0
@szmarczak/http-timer@5.0.1
@types/http-cache-semantics@4.0.4
@types/normalize-package-data@2.4.4
agent-base@7.1.1
aggregate-error@5.0.0
ansi-escapes@6.2.1
ansi-regex@5.0.1
ansi-styles@3.2.1
ansi-styles@4.3.0
any-promise@1.3.0
argv-formatter@1.0.0
array-buffer-byte-length@1.0.1
array-ify@1.0.0
array-union@2.1.0
arraybuffer.prototype.slice@1.0.3
asynckit@0.4.0
available-typed-arrays@1.0.7
bottleneck@2.19.5
braces@3.0.2
cacheable-lookup@7.0.0

ISC License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
Cannot
hold-liable
Must
include-copyright
include-license
28 Packages, Including:
cli-highlight@2.1.11
cliui@7.0.4
cliui@8.0.1
conventional-changelog-angular@7.0.0
fastq@1.17.1
get-caller-file@2.0.5
glob-parent@5.1.2
graceful-fs@4.2.10
graceful-fs@4.2.11
hosted-git-info@7.0.2
inherits@2.0.4
ini@1.3.8
isexe@2.0.0
json-stringify-safe@5.0.1
lru-cache@10.2.2
lru-cache@6.0.0
picocolors@1.0.0
proto-list@1.2.4
semver@7.6.0
signal-exit@4.1.0
split2@1.0.0
split2@4.2.0
universal-user-agent@7.0.2
which@2.0.2
y18n@5.0.8
yallist@4.0.0
yargs-parser@20.2.9
yargs-parser@21.1.1

Apache License 2.0

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
use-patent-claims
place-warranty
Cannot
hold-liable
use-trademark
Must
include-copyright
include-license
state-changes
include-notice
4 Packages, Including:
before-after-hook@3.0.2
human-signals@5.0.0
spdx-correct@3.2.0
validate-npm-package-license@3.0.4

BSD 3-Clause "New" or "Revised" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
use-trademark
hold-liable
Must
include-copyright
include-license
3 Packages, Including:
duplexer2@0.1.4
highlight.js@10.7.3
source-map@0.6.1

BSD 2-Clause "Simplified" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
hold-liable
Must
include-copyright
include-license
3 Packages, Including:
http-cache-semantics@4.1.1
normalize-package-data@6.0.1
uglify-js@3.17.4

(MIT OR CC0-1.0)

Public Domain
3 Packages, Including:
type-fest@1.4.0
type-fest@2.19.0
type-fest@4.18.2

(MIT OR Apache-2.0)

Permissive
1 Packages, Including:
JSONStream@1.3.5

Python License 2.0

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
Cannot
use-trademark
hold-liable
Must
include-copyright
include-license
state-changes
1 Packages, Including:
argparse@2.0.1

Artistic License 2.0

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
Cannot
use-trademark
hold-liable
Must
rename
state-changes
include-original
include-install-instructions
1 Packages, Including:
npm@10.7.0

(BSD-2-Clause OR MIT OR Apache-2.0)

Expression
1 Packages, Including:
rc@1.2.8

Creative Commons Attribution 3.0 Unported

Uncategorized
Not OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
Cannot
Must
1 Packages, Including:
spdx-exceptions@2.5.0

Creative Commons Zero v1.0 Universal

Public Domain
Not OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
Cannot
Must
1 Packages, Including:
spdx-license-ids@3.0.17
Disclaimer

This deed highlights only some of the key features and terms of the actual license. It is not a license and has no legal value. You should carefully review all of the terms and conditions of the actual license before using the licensed material.

Sandworm is not a law firm and does not provide legal services. Distributing, displaying, or linking to this deed or the license that it summarizes does not create a lawyer-client or any other relationship.

Direct Dependencies

14
All Dependencies CSV
β“˜ This is a list of @semantic-release/gitlab 's direct dependencies. Data on all dependencies, including transitive ones, is available via CSV download.
NameVersionSizeLicenseTypeVulnerabilities
@semantic-release/error4.0.02 kBMIT
prod
aggregate-error5.0.02.57 kBMIT
prod
debug4.3.412.94 kBMIT
prod
dir-glob3.0.12.21 kBMIT
prod
escape-string-regexp5.0.01.92 kBMIT
prod
form-data4.0.010.24 kBMIT
prod
fs-extra11.2.014.91 kBMIT
prod
globby11.1.06.23 kBMIT
prod
got13.0.057.3 kBMIT
prod
hpagent1.2.07.54 kBMIT
prod
lodash-es4.17.21149.12 kBMIT
prod
parse-url8.1.08.83 kBMIT
prod
semantic-release23.0.8278.11 kBMIT
prod peer
2
2
url-join4.0.15.64 kBMIT
prod

Visualizations