Home
Docs
GitHub
Pricing
Blog
Log In

Run Sandworm Audit for your App

Get started
Hold on, we're currently generating a fresh version of this report
Generated on May 8, 2024 via pnpm
Package summary
Share
9
issues
5
high severity
meta
5
4
moderate severity
vulnerability
3
meta
1
8
licenses
106
MIT
9
Apache-2.0
8
ISC
10
other licenses
BSD-3-Clause
6
(MIT OR Apache-2.0)
1
(AFL-2.1 OR BSD-3-Clause)
1
Unlicense
1
+ 1 more
Package created
20 Dec 2013
Version published
1 Jun 2023
Maintainers
4
Total deps
133
Direct deps
22
License
Apache-2.0

Issues

9

5 high severity issues

high
via: request@2.88.2 & others
via: aws-sdk@2.1357.0 & others
via: request@2.88.2 & others
via: s3urls@1.5.2
via: request@2.88.2 & others
Collapse
Expand

4 moderate severity issues

moderate
Recommendation: Upgrade to version 5.7.2 or later
via: semver@5.7.1
Recommendation: Upgrade to version 4.1.3 or later
via: request@2.88.2 & others
Recommendation: None
via: request@2.88.2 & others
via: s3urls@1.5.2
Collapse
Expand

Licenses

MIT License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
Cannot
hold-liable
Must
include-copyright
include-license
106 Packages, Including:
@fast-csv/format@4.3.5
@fast-csv/parse@4.3.6
@types/node@14.18.63
ajv@6.12.6
asn1@0.2.6
assert-plus@1.0.0
async@2.6.4
asynckit@0.4.0
available-typed-arrays@1.0.7
aws4@1.12.0
base64-js@1.5.1
big.js@5.2.2
buffer-queue@1.0.0
buffer@4.9.2
bytes@3.1.2
call-bind@1.0.7
combined-stream@1.0.8
core-util-is@1.0.2
core-util-is@1.0.3
dashdash@1.14.1
define-data-property@1.1.4
delay@5.0.0
delayed-stream@1.0.0
ecc-jsbn@0.1.2
es-define-property@1.0.0
es-errors@1.3.0
eventemitter3@4.0.7
events@1.1.1
extend@3.0.2
extends-classes@1.0.5
extsprintf@1.3.0
fast-csv@4.3.6
fast-deep-equal@3.1.3
fast-json-stable-stringify@2.1.0
for-each@0.3.3
form-data@2.3.3
function-bind@1.1.2
get-intrinsic@1.2.4
getpass@0.1.7
gopd@1.0.1
har-validator@5.1.5
has-property-descriptors@1.0.2
has-proto@1.0.3
has-symbols@1.0.3
has-tostringtag@1.0.2
hasown@2.0.2
http-signature@1.2.0
ip-address@6.1.0
is-arguments@1.1.1
is-callable@1.2.7

Apache License 2.0

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
use-patent-claims
place-warranty
Cannot
hold-liable
use-trademark
Must
include-copyright
include-license
state-changes
include-notice
9 Packages, Including:
aws-sdk@2.1357.0
aws-sign2@0.7.0
caseless@0.12.0
elasticdump@6.103.0
forever-agent@0.6.1
jmespath@0.16.0
oauth-sign@0.9.0
request@2.88.2
tunnel-agent@0.6.0

ISC License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
Cannot
hold-liable
Must
include-copyright
include-license
8 Packages, Including:
har-schema@2.0.0
inherits@2.0.4
ini@2.0.0
json-stringify-safe@5.0.1
s3signed@0.1.0
s3urls@1.5.2
sax@1.2.1
semver@5.7.1

BSD 3-Clause "New" or "Revised" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
use-trademark
hold-liable
Must
include-copyright
include-license
6 Packages, Including:
bcrypt-pbkdf@1.0.2
http-status@1.7.4
ieee754@1.1.13
qs@6.5.3
sprintf-js@1.1.2
tough-cookie@2.5.0

(MIT OR Apache-2.0)

Permissive
1 Packages, Including:
@search-dump/jsonstream@1.5.0

(AFL-2.1 OR BSD-3-Clause)

Permissive
1 Packages, Including:
json-schema@0.4.0

The Unlicense

Public Domain
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
private-use
modify
Cannot
include-copyright
hold-liable
Must
1 Packages, Including:
tweetnacl@0.14.5

BSD 2-Clause "Simplified" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
hold-liable
Must
include-copyright
include-license
1 Packages, Including:
uri-js@4.4.1
Disclaimer

This deed highlights only some of the key features and terms of the actual license. It is not a license and has no legal value. You should carefully review all of the terms and conditions of the actual license before using the licensed material.

Sandworm is not a law firm and does not provide legal services. Distributing, displaying, or linking to this deed or the license that it summarizes does not create a lawyer-client or any other relationship.

Direct Dependencies

22
All Dependencies CSV
β“˜ This is a list of elasticdump 's direct dependencies. Data on all dependencies, including transitive ones, is available via CSV download.
NameVersionSizeLicenseTypeVulnerabilities
@search-dump/jsonstream1.5.05.71 kB(MIT OR Apache-2.0)
prod
async2.6.4120.04 kBMIT
prod
aws-sdk2.1357.09.87 MBApache-2.0
prod
1
aws41.12.08.06 kBMIT
prod
big.js5.2.215.93 kBMIT
prod
bytes3.1.24.39 kBMIT
prod
delay5.0.03.96 kBMIT
prod
extends-classes1.0.54.45 kBMIT
prod
fast-csv4.3.62.84 kBMIT
prod
http-status1.7.468.93 kBBSD-3-Clause
prod
ini2.0.03.99 kBISC
prod
lodash4.17.21311.49 kBMIT
prod
lossless-json1.0.517.5 kBMIT
prod
minimist1.2.815.16 kBMIT
prod
p-queue6.6.28.17 kBMIT
prod
request2.88.257.83 kBApache-2.0
prod peer
3
2
requestretry7.1.014.93 kBMIT
prod
3
2
s3-stream-upload2.0.24.05 kBMIT
prod
s3urls1.5.22.97 kBISC
prod
2
1
semver5.7.117.13 kBISC
prod
1
socks5-http-client1.0.42.79 kBMIT
prod
socks5-https-client1.2.13.19 kBMIT
prod

Visualizations