Home
Docs
GitHub
Pricing
Blog
Log In

Run Sandworm Audit for your App

Get started
Hold on, we're currently generating a fresh version of this report
Generated on Apr 29, 2024 via pnpm

express-microservice-starter 0.6.1

An express-based Node.js API bootstrapping module for microservices.
Package summary
Share
25
issues
5
critical severity
vulnerability
2
license
3
11
high severity
vulnerability
2
license
3
meta
6
5
moderate severity
vulnerability
4
license
1
4
low severity
license
4
9
licenses
97
MIT
14
ISC
3
BSD-3-Clause
8
other licenses
N/A
3
BSD-2-Clause
1
BSD
1
Apache 2.0
1
+ 2 more
Package created
12 May 2015
Version published
20 Oct 2017
Maintainers
3
Total deps
122
Direct deps
18
License
ISC

Issues

25

5 critical severity issues

critical
Recommendation: None
via: zoologist@0.4.14
Recommendation: Upgrade to version 1.12.1 or later
via: zoologist@0.4.14
Recommendation: Check the package code and files for license information
via: ip@0.3.2
Recommendation: Check the package code and files for license information
via: konfig@0.2.1
Recommendation: Check the package code and files for license information
via: zoologist@0.4.14
Collapse
Expand

11 high severity issues

high
Recommendation: Upgrade to version 3.13.1 or later
via: konfig@0.2.1
Recommendation: Upgrade to version 6.5.3 or later
via: body-parser@1.18.2 & others
Recommendation: Validate that the package complies with your license policy
via: konfig@0.2.1
Recommendation: Validate that the package complies with your license policy
via: express-enrouten@1.2.1
Recommendation: Validate that the package complies with your license policy
via: caller@1.0.0 & others
via: konfig@0.2.1
via: konfig@0.2.1
via: bunyan@1.8.12 & others
via: zoologist@0.4.14
via: zoologist@0.4.14
via: uuid@3.0.0
Collapse
Expand

5 moderate severity issues

moderate
Recommendation: Upgrade to version 3.13.0 or later
via: konfig@0.2.1
Recommendation: Upgrade to version 13.7.0 or later
via: express-validator@3.0.0
Recommendation: Upgrade to version 1.1.9 or later
via: ip@0.3.2
Recommendation: Upgrade to version 4.19.2 or later
via: express@4.16.2
Recommendation: Validate that the package complies with your license policy
via: konfig@0.2.1
Collapse
Expand

4 low severity issues

low
Recommendation: Read and validate the license terms
via: konfig@0.2.1
Recommendation: Read and validate the license terms
via: express-enrouten@1.2.1
Recommendation: Read and validate the license terms
via: caller@1.0.0 & others
via: konfig@0.2.1
Collapse
Expand

Licenses

MIT License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
Cannot
hold-liable
Must
include-copyright
include-license
97 Packages, Including:
accepts@1.3.8
address@1.0.3
argparse@1.0.10
array-flatten@1.1.1
async@0.2.10
async@0.9.2
async@1.4.0
balanced-match@1.0.2
bluebird@2.9.34
bluebird@3.7.2
body-parser@1.18.2
brace-expansion@1.1.11
bunyan@1.8.12
bytes@3.0.0
caller@1.0.0
coffee-script@1.12.7
coffee-script@1.9.3
concat-map@0.0.1
content-disposition@0.5.2
content-type@1.0.5
cookie-signature@1.0.6
cookie@0.3.1
cors@2.7.1
cson@2.0.0
debug@2.6.9
debuglog@1.0.1
deep-equal@0.1.2
defined@0.0.0
depd@1.1.1
depd@1.1.2
destroy@1.0.4
ee-first@1.1.1
encodeurl@1.0.2
escape-html@1.0.3
etag@1.8.1
express-cache-response-directive@1.1.0
express-partial-response@0.3.4
express-validator@3.0.0
express@4.16.2
finalhandler@1.1.0
forwarded@0.2.0
fresh@0.5.2
http-errors@1.6.2
http-errors@1.6.3
iconv-lite@0.4.19
ipaddr.js@1.9.1
isarray@0.0.1
js-quantities@1.8.0
js-yaml@3.2.7
json-mask@0.3.2

ISC License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
Cannot
hold-liable
Must
include-copyright
include-license
14 Packages, Including:
custom-error-generator@7.0.0
express-microservice-starter@0.6.1
glob@6.0.4
graceful-fs@4.2.11
inflight@1.0.6
inherits@2.0.3
inherits@2.0.4
minimatch@3.1.2
once@1.4.0
rimraf@2.4.5
setprototypeof@1.0.3
setprototypeof@1.1.0
wrappy@1.0.2
zoologist@0.4.14

BSD 3-Clause "New" or "Revised" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
use-trademark
hold-liable
Must
include-copyright
include-license
3 Packages, Including:
cson-parser@1.3.5
qs@6.5.1
sprintf-js@1.0.3

N/A

N/A
3 Packages, Including:
ip@0.3.2
requirefresh@1.1.2
underscore@1.4.4

BSD 2-Clause "Simplified" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
hold-liable
Must
include-copyright
include-license
1 Packages, Including:
dtrace-provider@0.8.8

BSD

Invalid
Not OSI Approved
1 Packages, Including:
esprima@2.0.0

Apache 2.0

Invalid
Not OSI Approved
1 Packages, Including:
express-enrouten@1.2.1

Public Domain

Invalid
Not OSI Approved
1 Packages, Including:
jsonify@0.0.1

GNU Lesser General Public License v3.0 only

Weakly Protective
OSI Approved
Deprecated
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
use-patent-claims
Cannot
sublicense
hold-liable
Must
include-original
state-changes
disclose-source
include-license
include-copyright
include-install-instructions
1 Packages, Including:
konfig@0.2.1
Disclaimer

This deed highlights only some of the key features and terms of the actual license. It is not a license and has no legal value. You should carefully review all of the terms and conditions of the actual license before using the licensed material.

Sandworm is not a law firm and does not provide legal services. Distributing, displaying, or linking to this deed or the license that it summarizes does not create a lawyer-client or any other relationship.

Direct Dependencies

18
All Dependencies CSV
β“˜ This is a list of express-microservice-starter 's direct dependencies. Data on all dependencies, including transitive ones, is available via CSV download.
NameVersionSizeLicenseTypeVulnerabilities
address1.0.34.29 kBMIT
prod
async1.4.025.76 kBMIT
prod
bluebird2.9.3498.24 kBMIT
prod
body-parser1.18.213.3 kBMIT
prod
1
bunyan1.8.12265.05 kBMIT
prod
1
caller1.0.03.13 kBMIT
prod
1
1
cors2.7.19.58 kBMIT
prod
express-cache-response-directive1.1.04.92 kBMIT
prod
express-enrouten1.2.19.88 kBApache 2.0
prod
2
2
express-partial-response0.3.42.48 kBMIT
prod
express-validator3.0.049.84 kBMIT
prod
1
express4.16.252.78 kBMIT
prod
1
1
ip0.3.26.26 kBUNKNOWN
prod
1
1
konfig0.2.14.53 kBLGPL-3.0
prod
1
4
2
2
optional0.1.31.44 kBMIT
prod
uuid3.0.06.72 kBMIT
prod
1
vitalsigns0.4.314.22 kBMIT
prod
zoologist0.4.147.63 kBISC
prod
3
3

Visualizations