Home
Docs
GitHub
Pricing
Blog
Log In

Run Sandworm Audit for your App

Get started
Hold on, we're currently generating a fresh version of this report
Generated on Jul 19, 2024 via pnpm

@wagmi/core 1.4.7

Vanilla JS library for Ethereum
Package summary
Share
24
issues
1
critical severity
license
1
2
high severity
vulnerability
1
meta
1
21
moderate severity
license
3
meta
18
11
licenses
255
MIT
29
ISC
20
Apache-2.0
17
other licenses
BSD-3-Clause
6
MPL-2.0
3
0BSD
3
N/A
1
+ 4 more
Package created
23 Mar 2022
Version published
15 Nov 2023
Maintainers
2
Total deps
321
Direct deps
7
License
MIT

Issues

24

1 critical severity issue

critical
Recommendation: Check the package code and files for license information
via: @wagmi/connectors@3.1.5
Collapse
Expand

2 high severity issues

high
Recommendation: Upgrade to version 8.17.1 or later
via: @wagmi/connectors@3.1.5 & others
via: @wagmi/connectors@3.1.5
Collapse
Expand

21 moderate severity issues

moderate
Recommendation: Validate that the package complies with your license policy
via: @wagmi/connectors@3.1.5
Recommendation: Validate that the package complies with your license policy
via: @wagmi/connectors@3.1.5
Recommendation: Validate that the package complies with your license policy
via: @wagmi/connectors@3.1.5
via: @wagmi/connectors@3.1.5
via: @wagmi/connectors@3.1.5
via: @wagmi/connectors@3.1.5
via: @wagmi/connectors@3.1.5
via: @wagmi/connectors@3.1.5
via: @wagmi/connectors@3.1.5
via: @wagmi/connectors@3.1.5
via: @wagmi/connectors@3.1.5
via: @wagmi/connectors@3.1.5
via: @wagmi/connectors@3.1.5
via: @wagmi/connectors@3.1.5
via: @wagmi/connectors@3.1.5
via: @wagmi/connectors@3.1.5
via: @wagmi/connectors@3.1.5
via: @wagmi/connectors@3.1.5
via: @wagmi/connectors@3.1.5
via: @wagmi/connectors@3.1.5
via: @wagmi/connectors@3.1.5
Collapse
Expand

Licenses

MIT License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
Cannot
hold-liable
Must
include-copyright
include-license
255 Packages, Including:
@adraffy/ens-normalize@1.10.0
@ethereumjs/common@3.2.0
@ledgerhq/connect-kit-loader@1.1.8
@metamask/rpc-errors@6.3.1
@metamask/superstruct@3.1.0
@motionone/animation@10.18.0
@motionone/dom@10.18.0
@motionone/easing@10.18.0
@motionone/generators@10.18.0
@motionone/svelte@10.16.4
@motionone/types@10.17.1
@motionone/utils@10.18.0
@motionone/vue@10.16.4
@noble/curves@1.2.0
@noble/curves@1.4.0
@noble/curves@1.4.2
@noble/hashes@1.3.2
@noble/hashes@1.4.0
@parcel/watcher-android-arm64@2.4.1
@parcel/watcher-darwin-arm64@2.4.1
@parcel/watcher-darwin-x64@2.4.1
@parcel/watcher-freebsd-x64@2.4.1
@parcel/watcher-linux-arm-glibc@2.4.1
@parcel/watcher-linux-arm64-glibc@2.4.1
@parcel/watcher-linux-arm64-musl@2.4.1
@parcel/watcher-linux-x64-glibc@2.4.1
@parcel/watcher-linux-x64-musl@2.4.1
@parcel/watcher-wasm@2.4.1
@parcel/watcher-win32-arm64@2.4.1
@parcel/watcher-win32-ia32@2.4.1
@parcel/watcher-win32-x64@2.4.1
@parcel/watcher@2.4.1
@safe-global/safe-apps-provider@0.17.1
@safe-global/safe-apps-sdk@8.0.0
@safe-global/safe-apps-sdk@8.1.0
@safe-global/safe-gateway-typescript-sdk@3.22.0
@scure/base@1.1.7
@scure/bip32@1.3.2
@scure/bip32@1.4.0
@scure/bip39@1.2.1
@scure/bip39@1.3.0
@stablelib/aead@1.0.1
@stablelib/binary@1.0.1
@stablelib/bytes@1.0.1
@stablelib/chacha20poly1305@1.0.1
@stablelib/chacha@1.0.1
@stablelib/constant-time@1.0.1
@stablelib/ed25519@1.0.3
@stablelib/hash@1.0.1
@stablelib/hkdf@1.0.1

ISC License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
Cannot
hold-liable
Must
include-copyright
include-license
29 Packages, Including:
@metamask/json-rpc-engine@7.3.3
@metamask/safe-event-emitter@2.0.0
@metamask/safe-event-emitter@3.1.1
@metamask/utils@5.0.2
@metamask/utils@8.5.0
@metamask/utils@9.1.0
anymatch@3.1.3
cliui@6.0.0
eth-json-rpc-filters@6.0.1
eth-query@2.1.2
get-caller-file@2.0.5
glob-parent@5.1.2
inherits@2.0.4
isexe@2.0.0
json-rpc-engine@6.1.0
json-rpc-random-id@1.0.1
lru-cache@10.4.3
minimalistic-assert@1.0.1
once@1.4.0
require-main-filename@2.0.0
semver@7.6.3
set-blocking@2.0.0
signal-exit@4.1.0
split2@4.2.0
which-module@2.0.1
which@2.0.2
wrappy@1.0.2
y18n@4.0.3
yargs-parser@18.1.3

Apache License 2.0

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
use-patent-claims
place-warranty
Cannot
hold-liable
use-trademark
Must
include-copyright
include-license
state-changes
include-notice
20 Packages, Including:
@coinbase/wallet-sdk@3.9.3
@walletconnect/core@2.10.2
@walletconnect/ethereum-provider@2.10.2
@walletconnect/legacy-client@2.0.0
@walletconnect/legacy-modal@2.0.0
@walletconnect/legacy-provider@2.0.0
@walletconnect/legacy-types@2.0.0
@walletconnect/legacy-utils@2.0.0
@walletconnect/modal-core@2.6.2
@walletconnect/modal-ui@2.6.2
@walletconnect/modal@2.6.2
@walletconnect/sign-client@2.10.2
@walletconnect/types@2.10.2
@walletconnect/universal-provider@2.10.2
@walletconnect/utils@2.10.2
crc-32@1.2.2
detect-libc@1.0.3
human-signals@5.0.0
idb-keyval@6.2.1
typescript@5.5.3

BSD 3-Clause "New" or "Revised" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
use-trademark
hold-liable
Must
include-copyright
include-license
6 Packages, Including:
@lit-labs/ssr-dom-shim@1.2.0
@lit/reactive-element@1.6.3
ieee754@1.2.1
lit-element@3.3.3
lit-html@2.8.0
lit@2.8.0

Mozilla Public License 2.0

Weakly Protective
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
place-warranty
use-patent-claims
Cannot
use-trademark
hold-liable
Must
include-copyright
include-license
disclose-source
include-original
3 Packages, Including:
@ethereumjs/rlp@4.0.1
@ethereumjs/tx@4.2.0
@ethereumjs/util@8.1.0

BSD Zero Clause License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
include-copyright
include-license
include-original
Cannot
hold-liable
Must
3 Packages, Including:
pony-cause@2.1.11
tslib@1.14.1
tslib@2.6.3

N/A

N/A
1 Packages, Including:
@metamask/eth-json-rpc-provider@1.0.1

(Apache-2.0 AND MIT)

Permissive
1 Packages, Including:
multiformats@9.9.0

(BSD-3-Clause OR GPL-2.0)

Permissive
1 Packages, Including:
node-forge@1.3.1

(MIT AND BSD-3-Clause)

Permissive
1 Packages, Including:
sha.js@2.4.11

BSD 2-Clause "Simplified" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
hold-liable
Must
include-copyright
include-license
1 Packages, Including:
webidl-conversions@3.0.1
Disclaimer

This deed highlights only some of the key features and terms of the actual license. It is not a license and has no legal value. You should carefully review all of the terms and conditions of the actual license before using the licensed material.

Sandworm is not a law firm and does not provide legal services. Distributing, displaying, or linking to this deed or the license that it summarizes does not create a lawyer-client or any other relationship.

Direct Dependencies

7
All Dependencies CSV
β“˜ This is a list of @wagmi/core 's direct dependencies. Data on all dependencies, including transitive ones, is available via CSV download.
NameVersionSizeLicenseTypeVulnerabilities
@wagmi/connectors3.1.516.13 kBMIT
prod
1
2
21
abitype0.8.7117.21 kBMIT
prod
eventemitter34.0.79.43 kBMIT
prod
typescript5.5.320.85 MBApache-2.0
prod peer
viem1.21.4805.43 kBMIT
prod peer
1
viem2.17.510.53 MBMIT
prod
zustand4.5.4317.38 kBMIT
prod

Visualizations