Home
Docs
GitHub
Pricing
Blog
Log In

Run Sandworm Audit for your App

Get started
Hold on, we're currently generating a fresh version of this report
Generated on May 17, 2024 via pnpm

gulp-shell 0.2.5

A handy command line interface for gulp
Package summary
Share
14
issues
1
critical severity
vulnerability
1
7
high severity
vulnerability
4
license
2
meta
1
3
moderate severity
vulnerability
3
3
low severity
license
3
7
licenses
79
MIT
5
ISC
2
Apache-2.0
4
other licenses
BSD
1
BSD-2-Clause
1
CC-BY-3.0
1
CC0-1.0
1
Package created
22 Feb 2014
Version published
11 May 2014
Maintainers
1
Total deps
90
Direct deps
4
License
MIT

Issues

14

1 critical severity issue

critical
Recommendation: Upgrade to version 4.17.12 or later
via: lodash@2.4.2
Collapse
Expand

7 high severity issues

high
Recommendation: Upgrade to version 4.17.11 or later
via: lodash@2.4.2
Recommendation: Upgrade to version 3.0.1 or later
via: gulp-util@2.2.20
Recommendation: None
via: gulp-util@2.2.20
Recommendation: Upgrade to version 4.17.21 or later
via: lodash@2.4.2
Recommendation: Validate that the package complies with your license policy
via: gulp-util@2.2.20
Recommendation: Read and validate the license terms
via: gulp-util@2.2.20
via: gulp-util@2.2.20
Collapse
Expand

3 moderate severity issues

moderate
Recommendation: Upgrade to version 4.17.11 or later
via: lodash@2.4.2
Recommendation: Upgrade to version 4.17.21 or later
via: lodash@2.4.2
Recommendation: Upgrade to version 4.17.5 or later
via: lodash@2.4.2
Collapse
Expand

3 low severity issues

low
Recommendation: Read and validate the license terms
via: gulp-util@2.2.20
Recommendation: Read and validate the license terms
via: gulp-util@2.2.20
Recommendation: Read and validate the license terms
via: gulp-util@2.2.20
Collapse
Expand

Licenses

MIT License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
Cannot
hold-liable
Must
include-copyright
include-license
79 Packages, Including:
ansi-regex@0.2.1
ansi-styles@1.1.0
array-find-index@1.0.2
async@0.2.10
camelcase-keys@2.1.0
camelcase@2.1.1
chalk@0.5.1
clone-stats@0.0.1
core-util-is@1.0.3
currently-unhandled@0.4.1
dateformat@1.0.12
decamelize@1.2.0
error-ex@1.3.2
escape-string-regexp@1.0.5
find-up@1.1.2
function-bind@1.1.2
get-stdin@4.0.1
gulp-shell@0.2.5
gulp-util@2.2.20
has-ansi@0.1.0
hasown@2.0.2
indent-string@2.1.0
is-arrayish@0.2.1
is-core-module@2.13.1
is-finite@1.1.0
is-utf8@0.2.1
isarray@0.0.1
load-json-file@1.1.0
lodash._escapehtmlchar@2.4.1
lodash._escapestringchar@2.4.1
lodash._htmlescapes@2.4.1
lodash._isnative@2.4.1
lodash._objecttypes@2.4.1
lodash._reinterpolate@2.4.1
lodash._reunescapedhtml@2.4.1
lodash._shimkeys@2.4.1
lodash.defaults@2.4.1
lodash.escape@2.4.1
lodash.isobject@2.4.1
lodash.keys@2.4.1
lodash.template@2.4.1
lodash.templatesettings@2.4.1
lodash.values@2.4.1
lodash@2.4.2
loud-rejection@1.6.0
map-obj@1.0.1
meow@3.7.0
minimist@0.2.4
minimist@1.2.8
multipipe@0.1.2

ISC License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
Cannot
hold-liable
Must
include-copyright
include-license
5 Packages, Including:
graceful-fs@4.2.11
hosted-git-info@2.8.9
inherits@2.0.4
semver@5.7.2
signal-exit@3.0.7

Apache License 2.0

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
use-patent-claims
place-warranty
Cannot
hold-liable
use-trademark
Must
include-copyright
include-license
state-changes
include-notice
2 Packages, Including:
spdx-correct@3.2.0
validate-npm-package-license@3.0.4

BSD

Invalid
Not OSI Approved
1 Packages, Including:
duplexer2@0.0.2

BSD 2-Clause "Simplified" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
hold-liable
Must
include-copyright
include-license
1 Packages, Including:
normalize-package-data@2.5.0

Creative Commons Attribution 3.0 Unported

Uncategorized
Not OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
Cannot
Must
1 Packages, Including:
spdx-exceptions@2.5.0

Creative Commons Zero v1.0 Universal

Public Domain
Not OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
Cannot
Must
1 Packages, Including:
spdx-license-ids@3.0.17
Disclaimer

This deed highlights only some of the key features and terms of the actual license. It is not a license and has no legal value. You should carefully review all of the terms and conditions of the actual license before using the licensed material.

Sandworm is not a law firm and does not provide legal services. Distributing, displaying, or linking to this deed or the license that it summarizes does not create a lawyer-client or any other relationship.

Direct Dependencies

4
All Dependencies CSV
β“˜ This is a list of gulp-shell 's direct dependencies. Data on all dependencies, including transitive ones, is available via CSV download.
NameVersionSizeLicenseTypeVulnerabilities
async0.2.1015.4 kBMIT
prod
gulp-util2.2.205.11 kBMIT
prod
5
3
lodash2.4.2192.11 kBMIT
prod
1
2
3
through20.4.24.09 kBMIT
prod

Visualizations