Home
Docs
GitHub
Pricing
Blog
Log In

Run Sandworm Audit for your App

Get started
Hold on, we're currently generating a fresh version of this report
Generated on May 4, 2024 via pnpm
Package summary
Share
32
issues
3
critical severity
vulnerability
1
license
2
12
high severity
vulnerability
3
license
7
meta
2
10
moderate severity
vulnerability
7
meta
3
7
low severity
vulnerability
1
license
6
11
licenses
157
MIT
25
ISC
9
BSD-2-Clause
19
other licenses
Apache-2.0
5
BSD-3-Clause
4
AGPL-3.0
2
Apache-2
2
+ 4 more
Package created
4 Sep 2020
Version published
4 Sep 2020
Maintainers
1
Total deps
210
Direct deps
31
License
AGPL-3.0

Issues

32

3 critical severity issues

critical
Recommendation: Upgrade to version 1.1.0 or later
via: @pm2/io@4.3.5
Recommendation: Check the package code and files for license information
via: cli-tableau@2.0.1
Recommendation: Check the package code and files for license information
via: pm2-axon@3.3.0
Collapse
Expand

12 high severity issues

high
Recommendation: Upgrade to version 5.6.4 or later
via: systeminformation@4.34.23
Recommendation: Upgrade to version 5.0.0 or later
via: @pm2/agent@1.0.8 & others
Recommendation: Upgrade to version 3.0.1 or later
via: @pm2/agent@1.0.8 & others
Recommendation: Validate that the package complies with your license policy
via: @pm2/agent@1.0.8
Recommendation: Validate that the package complies with your license policy
via: @web-native-js/pm2@4.4.1
Recommendation: Validate that the package complies with your license policy
via: @pm2/io@4.3.5
Recommendation: Validate that the package complies with your license policy
via: @pm2/js-api@0.6.7
Recommendation: Validate that the package complies with your license policy
via: pm2-multimeter@0.1.2
Recommendation: Validate that the package complies with your license policy
via: pm2-multimeter@0.1.2
Recommendation: Validate that the license expression complies with your license policy
via: pm2-deploy@1.0.2
via: @pm2/io@4.3.5 & others
via: @pm2/io@4.3.5
Collapse
Expand

10 moderate severity issues

moderate
Recommendation: Upgrade to version 5.3.1 or later
via: systeminformation@4.34.23
Recommendation: Upgrade to version 7.4.6 or later
via: @pm2/agent@1.0.8
Recommendation: Upgrade to version 2.0.1 or later
via: @pm2/io@4.3.5
Recommendation: Upgrade to version 7.5.2 or later
via: @pm2/agent@1.0.8
Recommendation: Upgrade to version 6.3.1 or later
via: @pm2/io@4.3.5
Recommendation: Upgrade to version 0.28.0 or later
via: @pm2/js-api@0.6.7
Recommendation: Upgrade to version 1.1.9 or later
via: @pm2/io@4.3.5
via: @pm2/agent@1.0.8
via: @pm2/pm2-version-check@1.0.4
via: pm2-axon@3.3.0
Collapse
Expand

7 low severity issues

low
Recommendation: Upgrade to version 4.3.1 or later
via: @pm2/io@4.3.5 & others
via: @pm2/agent@1.0.8
via: @web-native-js/pm2@4.4.1
Recommendation: Read and validate the license terms
via: @pm2/io@4.3.5
Recommendation: Read and validate the license terms
via: @pm2/js-api@0.6.7
Recommendation: Read and validate the license terms
via: pm2-multimeter@0.1.2
Recommendation: Read and validate the license terms
via: pm2-multimeter@0.1.2
Collapse
Expand

Licenses

MIT License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
Cannot
hold-liable
Must
include-copyright
include-license
157 Packages, Including:
@pm2/pm2-version-check@1.0.4
@tootallnate/once@1.1.2
agent-base@4.2.1
agent-base@4.3.0
agent-base@6.0.2
amp-message@0.1.2
amp@0.3.1
ansi-colors@3.2.4
ansi-styles@4.3.0
argparse@1.0.10
ast-types@0.13.4
ast-types@0.14.2
async-limiter@1.0.1
async@1.5.2
async@2.6.4
async@3.2.5
axios@0.21.4
balanced-match@1.0.2
binary-extensions@2.3.0
blessed@0.1.81
brace-expansion@1.1.11
braces@3.0.2
buffer-from@1.1.2
bytes@3.1.2
chalk@3.0.0
chokidar@3.6.0
co@4.6.0
color-convert@2.0.1
color-name@1.1.4
commander@2.15.1
concat-map@0.0.1
core-util-is@1.0.3
cron@1.8.2
data-uri-to-buffer@1.2.0
data-uri-to-buffer@3.0.1
dayjs@1.8.36
debug@2.6.9
debug@3.1.0
debug@3.2.7
debug@4.1.1
debug@4.3.4
deep-is@0.1.4
degenerator@1.0.4
degenerator@2.2.0
depd@2.0.0
enquirer@2.3.5
es6-promise@4.2.8
es6-promisify@5.0.0
escape-string-regexp@4.0.0
eventemitter2@0.4.14

ISC License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
Cannot
hold-liable
Must
include-copyright
include-license
25 Packages, Including:
@pm2/agent-node@1.1.10
anymatch@3.1.3
fs.realpath@1.0.0
glob-parent@5.1.2
glob@7.2.3
graceful-fs@4.2.11
inflight@1.0.6
inherits@2.0.4
log-driver@1.2.7
lru-cache@5.1.1
lru-cache@6.0.0
minimatch@3.1.2
mute-stream@0.0.8
once@1.4.0
read@1.0.7
sax@1.3.0
semver@5.7.2
semver@6.3.0
semver@7.2.3
semver@7.6.0
setprototypeof@1.2.0
signal-exit@3.0.7
wrappy@1.0.2
yallist@3.1.1
yallist@4.0.0

BSD 2-Clause "Simplified" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
hold-liable
Must
include-copyright
include-license
9 Packages, Including:
async-listener@0.6.10
continuation-local-storage@3.2.1
emitter-listener@1.1.2
escodegen@1.14.3
esprima@3.1.3
esprima@4.0.1
estraverse@4.3.0
esutils@2.0.3
shimmer@1.2.1

Apache License 2.0

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
use-patent-claims
place-warranty
Cannot
hold-liable
use-trademark
Must
include-copyright
include-license
state-changes
include-notice
5 Packages, Including:
@opencensus/core@0.0.8
@opencensus/core@0.0.9
@opencensus/propagation-b3@0.0.8
tslib@1.9.3
vizion@0.2.13

BSD 3-Clause "New" or "Revised" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
use-trademark
hold-liable
Must
include-copyright
include-license
4 Packages, Including:
source-map@0.6.1
sprintf-js@1.0.3
sprintf-js@1.1.2
sprintf-js@1.1.3

GNU Affero General Public License v3.0

Network Protective
OSI Approved
Deprecated
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
sublicense
hold-liable
Must
include-copyright
include-license
state-changes
disclose-source
include-install-instructions
2 Packages, Including:
@pm2/agent@1.0.8
@web-native-js/pm2@4.4.1

Apache-2

Invalid
Not OSI Approved
2 Packages, Including:
@pm2/io@4.3.5
@pm2/js-api@0.6.7

MIT/X11

Invalid
Not OSI Approved
2 Packages, Including:
charm@0.1.2
pm2-multimeter@0.1.2

N/A

N/A
2 Packages, Including:
cli-tableau@2.0.1
escape-regexp@0.0.1

BSD Zero Clause License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
include-copyright
include-license
include-original
Cannot
hold-liable
Must
1 Packages, Including:
tslib@2.6.2

(Public Domain OR MIT)

Expression
1 Packages, Including:
tv4@1.3.0
Disclaimer

This deed highlights only some of the key features and terms of the actual license. It is not a license and has no legal value. You should carefully review all of the terms and conditions of the actual license before using the licensed material.

Sandworm is not a law firm and does not provide legal services. Distributing, displaying, or linking to this deed or the license that it summarizes does not create a lawyer-client or any other relationship.

Direct Dependencies

31
All Dependencies CSV
β“˜ This is a list of @web-native-js/pm2 's direct dependencies. Data on all dependencies, including transitive ones, is available via CSV download.
NameVersionSizeLicenseTypeVulnerabilities
@pm2/agent1.0.845.46 kBAGPL-3.0
prod
3
3
1
@pm2/io4.3.5135.36 kBApache-2
prod
1
5
3
2
@pm2/js-api0.6.7160.86 kBApache-2
prod
1
1
1
@pm2/pm2-version-check1.0.4979 BMIT
prod
1
async3.2.5146.47 kBMIT
prod
blessed0.1.81255.48 kBMIT
prod
chalk3.0.010.67 kBMIT
prod
chokidar3.6.025.83 kBMIT
prod
cli-tableau2.0.16.22 kBUNKNOWN
prod
1
commander2.15.117.46 kBMIT
prod
cron1.8.217.53 kBMIT
prod
dayjs1.8.36109.01 kBMIT
prod
debug4.1.121.26 kBMIT
prod
1
1
enquirer2.3.546.68 kBMIT
prod
eventemitter25.0.19.91 kBMIT
prod
fclone1.0.114.53 kBMIT
prod
mkdirp1.0.46.51 kBMIT
prod
needle2.4.041.98 kBMIT
prod
pidusage2.0.1810.19 kBMIT
prod
pm2-axon-rpc0.5.13.59 kBMIT
prod
pm2-axon3.3.013.08 kBMIT
prod
1
1
pm2-deploy1.0.26.06 kBMIT
prod
1
pm2-multimeter0.1.23.87 kBMIT/X11
prod
2
2
promptly2.2.05.66 kBMIT
prod
ps-list6.3.025.35 kBMIT
prod
semver7.6.026.57 kBISC
prod
source-map-support0.5.1625.5 kBMIT
prod
sprintf-js1.1.211.01 kBBSD-3-Clause
prod
systeminformation4.34.2399.98 kBMIT
prod optional
1
1
vizion0.2.137.25 kBApache-2.0
prod
yamljs0.3.0150.28 kBMIT
prod

Visualizations

All Versions