Home
Docs
GitHub
Pricing
Blog
Log In

Run Sandworm Audit for your App

Get started
Hold on, we're currently generating a fresh version of this report
Generated on Apr 22, 2024 via pnpm

connect-mongodb-session 2.1.0

MongoDB session store for connect/express built by MongoDB
Package summary
Share
7
issues
1
critical severity
license
1
3
high severity
vulnerability
1
license
2
1
moderate severity
vulnerability
1
2
low severity
license
2
6
licenses
9
MIT
4
Apache-2.0
1
Apache 2.0
3
other licenses
N/A
1
ISC
1
LAGPL
1
Package created
22 Nov 2014
Version published
5 Feb 2019
Maintainers
1
Total deps
17
Direct deps
2
License
UNKNOWN

Issues

7

1 critical severity issue

critical
Recommendation: Check the package code and files for license information
via: connect-mongodb-session@2.1.0
Collapse
Expand

3 high severity issues

high
Recommendation: None
via: archetype@0.8.8
Recommendation: Validate that the package complies with your license policy
via: archetype@0.8.8
Recommendation: Validate that the package complies with your license policy
via: archetype@0.8.8
Collapse
Expand

1 moderate severity issue

moderate
Recommendation: Upgrade to version 0.8.4 or later
via: archetype@0.8.8
Collapse
Expand

2 low severity issues

low
Recommendation: Read and validate the license terms
via: archetype@0.8.8
Recommendation: Read and validate the license terms
via: archetype@0.8.8
Collapse
Expand

Licenses

MIT License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
Cannot
hold-liable
Must
include-copyright
include-license
9 Packages, Including:
lodash.clonedeep@4.5.0
lodash.set@4.3.2
lodash.unset@4.5.2
memory-pager@1.5.0
mpath@0.5.1
resolve-from@2.0.0
safe-buffer@5.2.1
saslprep@1.0.3
sparse-bitfield@3.0.3

Apache License 2.0

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
use-patent-claims
place-warranty
Cannot
hold-liable
use-trademark
Must
include-copyright
include-license
state-changes
include-notice
4 Packages, Including:
bson@1.1.6
mongodb-core@3.1.11
mongodb@3.1.13
require_optional@1.0.1

Apache 2.0

Invalid
Not OSI Approved
1 Packages, Including:
archetype@0.8.8

N/A

N/A
1 Packages, Including:
connect-mongodb-session@2.1.0

ISC License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
Cannot
hold-liable
Must
include-copyright
include-license
1 Packages, Including:
semver@5.7.2

LAGPL

Invalid
Not OSI Approved
1 Packages, Including:
standard-error@1.1.0
Disclaimer

This deed highlights only some of the key features and terms of the actual license. It is not a license and has no legal value. You should carefully review all of the terms and conditions of the actual license before using the licensed material.

Sandworm is not a law firm and does not provide legal services. Distributing, displaying, or linking to this deed or the license that it summarizes does not create a lawyer-client or any other relationship.

Direct Dependencies

2
All Dependencies CSV
β“˜ This is a list of connect-mongodb-session 's direct dependencies. Data on all dependencies, including transitive ones, is available via CSV download.
NameVersionSizeLicenseTypeVulnerabilities
archetype0.8.811.53 kBApache 2.0
prod
3
1
2
mongodb3.1.13159.34 kBApache-2.0
prod

Visualizations