Home
Docs
GitHub
Pricing
Blog
Log In

Run Sandworm Audit for your App

Get started
Hold on, we're currently generating a fresh version of this report
Generated on Feb 29, 2024 via pnpm

fontkit 1.7.4

An advanced font engine for Node and the browser
Package summary
Share
13
issues
7
high severity
license
5
meta
2
1
moderate severity
meta
1
5
low severity
license
5
6
licenses
82
MIT
7
BSD-2-Clause
5
BSD
5
other licenses
BSD-3-Clause
3
BSD-3-Clause OR MIT
1
ISC
1
Package created
28 Nov 2014
Version published
4 Jun 2017
Maintainers
1
Total deps
99
Direct deps
11
License
MIT

Issues

13

7 high severity issues

high
Recommendation: Validate that the package complies with your license policy
via: browserify-optional@1.0.1 & others
Recommendation: Validate that the package complies with your license policy
via: browserify-optional@1.0.1 & others
Recommendation: Validate that the package complies with your license policy
via: browserify-optional@1.0.1 & others
Recommendation: Validate that the package complies with your license policy
via: browserify-optional@1.0.1 & others
Recommendation: Validate that the package complies with your license policy
via: browserify-optional@1.0.1 & others
via: babel-runtime@6.26.0
via: babel-runtime@6.26.0
Collapse
Expand

1 moderate severity issue

moderate
via: fontkit@1.7.4
Collapse
Expand

5 low severity issues

low
Recommendation: Read and validate the license terms
via: browserify-optional@1.0.1 & others
Recommendation: Read and validate the license terms
via: browserify-optional@1.0.1 & others
Recommendation: Read and validate the license terms
via: browserify-optional@1.0.1 & others
Recommendation: Read and validate the license terms
via: browserify-optional@1.0.1 & others
Recommendation: Read and validate the license terms
via: browserify-optional@1.0.1 & others
Collapse
Expand

Licenses

MIT License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
Cannot
hold-liable
Must
include-copyright
include-license
82 Packages, Including:
acorn@7.4.1
ast-transform@0.0.0
ast-types@0.7.8
babel-runtime@6.26.0
base64-js@1.5.1
brfs@1.6.1
brotli@1.3.3
browser-resolve@1.11.3
browserify-optional@1.0.1
buffer-equal@0.0.1
buffer-from@1.1.2
call-bind@1.0.7
clone@1.0.4
concat-stream@1.6.2
convert-source-map@1.9.0
core-js@2.6.12
core-util-is@1.0.3
deep-equal@1.1.2
deep-is@0.1.4
define-data-property@1.1.4
define-properties@1.2.1
dfa@1.2.0
es-define-property@1.0.0
es-errors@1.3.0
falafel@2.2.5
fast-levenshtein@2.0.6
fontkit@1.7.4
function-bind@1.1.2
functions-have-names@1.2.3
get-intrinsic@1.2.4
gopd@1.0.1
has-property-descriptors@1.0.2
has-proto@1.0.3
has-symbols@1.0.3
has-tostringtag@1.0.2
has@1.0.4
hasown@2.0.1
is-arguments@1.1.1
is-core-module@2.13.1
is-date-object@1.0.5
is-regex@1.1.4
isarray@1.0.0
isarray@2.0.5
levn@0.3.0
magic-string@0.22.5
merge-source-map@1.0.4
minimist@1.2.8
object-inspect@1.4.1
object-is@1.1.6
object-keys@1.1.1

BSD 2-Clause "Simplified" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
hold-liable
Must
include-copyright
include-license
7 Packages, Including:
escodegen@1.9.1
escodegen@2.1.0
esprima@3.1.3
esprima@4.0.1
estraverse@4.3.0
estraverse@5.3.0
esutils@2.0.3

BSD

Invalid
Not OSI Approved
5 Packages, Including:
escodegen@1.2.0
esprima@1.0.4
estraverse@1.5.1
esutils@1.0.0
source-map@0.1.43

BSD 3-Clause "New" or "Revised" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
use-trademark
hold-liable
Must
include-copyright
include-license
3 Packages, Including:
duplexer2@0.1.4
source-map@0.5.7
source-map@0.6.1

BSD-3-Clause OR MIT

Permissive
1 Packages, Including:
amdefine@1.0.1

ISC License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
Cannot
hold-liable
Must
include-copyright
include-license
1 Packages, Including:
inherits@2.0.4
Disclaimer

This deed highlights only some of the key features and terms of the actual license. It is not a license and has no legal value. You should carefully review all of the terms and conditions of the actual license before using the licensed material.

Sandworm is not a law firm and does not provide legal services. Distributing, displaying, or linking to this deed or the license that it summarizes does not create a lawyer-client or any other relationship.

Direct Dependencies

11
All Dependencies CSV
β“˜ This is a list of fontkit 's direct dependencies. Data on all dependencies, including transitive ones, is available via CSV download.
NameVersionSizeLicenseTypeVulnerabilities
babel-runtime6.26.013.06 kBMIT
prod
2
brfs1.6.17.55 kBMIT
prod
brotli1.3.3406.89 kBMIT
prod
browserify-optional1.0.14.39 kBMIT
prod
5
5
clone1.0.44.35 kBMIT
prod
deep-equal1.1.220.09 kBMIT
prod
dfa1.2.028.65 kBMIT
prod
restructure0.5.421.37 kBMIT
prod
5
5
tiny-inflate1.0.315.2 kBMIT
prod
unicode-properties1.4.130.1 kBMIT
prod
unicode-trie0.3.114.77 kBMIT
prod

Visualizations