Home
Docs
GitHub
Pricing
Blog
Log In

Run Sandworm Audit for your App

Get started
Hold on, we're currently generating a fresh version of this report
Generated on May 8, 2024 via pnpm

hardhat 2.17.3

Hardhat is an extensible developer tool that helps smart contract developers increase productivity by reliably bringing together the tools they want.
Package summary
Share
28
issues
4
high severity
meta
4
24
moderate severity
license
12
meta
12
12
licenses
242
MIT
25
ISC
12
MPL-2.0
28
other licenses
BSD-3-Clause
12
Apache-2.0
7
Unlicense
2
(MIT OR CC0-1.0)
2
+ 5 more
Package created
13 May 2012
Version published
11 Sep 2023
Maintainers
5
Total deps
307
Direct deps
48
License
MIT

Issues

28

4 high severity issues

high
via: @nomicfoundation/ethereumjs-blockchain@7.0.2 & others
via: @metamask/eth-sig-util@4.0.1 & others
via: @metamask/eth-sig-util@4.0.1 & others
via: @metamask/eth-sig-util@4.0.1 & others
Collapse
Expand

24 moderate severity issues

moderate
Recommendation: Validate that the package complies with your license policy
via: @nomicfoundation/ethereumjs-block@5.0.2 & others
Recommendation: Validate that the package complies with your license policy
via: @nomicfoundation/ethereumjs-blockchain@7.0.2 & others
Recommendation: Validate that the package complies with your license policy
via: @nomicfoundation/ethereumjs-blockchain@7.0.2 & others
Recommendation: Validate that the package complies with your license policy
via: @nomicfoundation/ethereumjs-evm@2.0.2 & others
Recommendation: Validate that the package complies with your license policy
via: @nomicfoundation/ethereumjs-block@5.0.2 & others
Recommendation: Validate that the package complies with your license policy
via: @nomicfoundation/ethereumjs-statemanager@2.0.2 & others
Recommendation: Validate that the package complies with your license policy
via: @nomicfoundation/ethereumjs-block@5.0.2 & others
Recommendation: Validate that the package complies with your license policy
via: @nomicfoundation/ethereumjs-block@5.0.2 & others
Recommendation: Validate that the package complies with your license policy
via: @nomicfoundation/ethereumjs-block@5.0.2 & others
Recommendation: Validate that the package complies with your license policy
via: @nomicfoundation/ethereumjs-vm@7.0.2
Recommendation: Validate that the package complies with your license policy
via: @metamask/eth-sig-util@4.0.1 & others
Recommendation: Validate that the package complies with your license policy
via: @metamask/eth-sig-util@4.0.1 & others
via: @nomicfoundation/ethereumjs-block@5.0.2 & others
via: @nomicfoundation/ethereumjs-block@5.0.2 & others
via: @nomicfoundation/solidity-analyzer@0.1.1
via: @nomicfoundation/solidity-analyzer@0.1.1
via: @nomicfoundation/solidity-analyzer@0.1.1
via: @nomicfoundation/solidity-analyzer@0.1.1
via: @nomicfoundation/solidity-analyzer@0.1.1
via: @nomicfoundation/solidity-analyzer@0.1.1
via: @nomicfoundation/solidity-analyzer@0.1.1
via: @nomicfoundation/solidity-analyzer@0.1.1
via: @nomicfoundation/solidity-analyzer@0.1.1
via: @nomicfoundation/solidity-analyzer@0.1.1
Collapse
Expand

Licenses

MIT License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
Cannot
hold-liable
Must
include-copyright
include-license
242 Packages, Including:
@ethersproject/abi@5.7.0
@ethersproject/abstract-provider@5.7.0
@ethersproject/abstract-signer@5.7.0
@ethersproject/address@5.7.0
@ethersproject/base64@5.7.0
@ethersproject/basex@5.7.0
@ethersproject/bignumber@5.7.0
@ethersproject/bytes@5.7.0
@ethersproject/constants@5.7.0
@ethersproject/contracts@5.7.0
@ethersproject/hash@5.7.0
@ethersproject/hdnode@5.7.0
@ethersproject/json-wallets@5.7.0
@ethersproject/keccak256@5.7.0
@ethersproject/logger@5.7.0
@ethersproject/networks@5.7.1
@ethersproject/pbkdf2@5.7.0
@ethersproject/properties@5.7.0
@ethersproject/providers@5.7.2
@ethersproject/random@5.7.0
@ethersproject/rlp@5.7.0
@ethersproject/sha2@5.7.0
@ethersproject/signing-key@5.7.0
@ethersproject/solidity@5.7.0
@ethersproject/strings@5.7.0
@ethersproject/transactions@5.7.0
@ethersproject/units@5.7.0
@ethersproject/wallet@5.7.0
@ethersproject/web@5.7.1
@ethersproject/wordlists@5.7.0
@fastify/busboy@2.1.1
@noble/hashes@1.2.0
@noble/secp256k1@1.7.1
@nomicfoundation/ethereumjs-common@4.0.2
@nomicfoundation/solidity-analyzer-darwin-arm64@0.1.1
@nomicfoundation/solidity-analyzer-darwin-x64@0.1.1
@nomicfoundation/solidity-analyzer-freebsd-x64@0.1.1
@nomicfoundation/solidity-analyzer-linux-arm64-gnu@0.1.1
@nomicfoundation/solidity-analyzer-linux-arm64-musl@0.1.1
@nomicfoundation/solidity-analyzer-linux-x64-gnu@0.1.1
@nomicfoundation/solidity-analyzer-linux-x64-musl@0.1.1
@nomicfoundation/solidity-analyzer-win32-arm64-msvc@0.1.1
@nomicfoundation/solidity-analyzer-win32-ia32-msvc@0.1.1
@nomicfoundation/solidity-analyzer-win32-x64-msvc@0.1.1
@nomicfoundation/solidity-analyzer@0.1.1
@scure/base@1.1.6
@scure/bip32@1.1.5
@scure/bip39@1.1.1
@sentry/tracing@5.30.0
@types/bn.js@4.11.6

ISC License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
Cannot
hold-liable
Must
include-copyright
include-license
25 Packages, Including:
@metamask/eth-sig-util@4.0.1
anymatch@3.1.3
browser-stdout@1.3.1
cliui@7.0.4
fs.realpath@1.0.0
get-caller-file@2.0.5
glob-parent@5.1.2
glob@7.2.0
glob@8.1.0
graceful-fs@4.2.11
inflight@1.0.6
inherits@2.0.4
lru-cache@5.1.1
minimalistic-assert@1.0.1
minimatch@3.1.2
minimatch@5.0.1
once@1.4.0
rimraf@2.7.1
semver@5.7.2
semver@6.3.1
setprototypeof@1.2.0
wrappy@1.0.2
y18n@5.0.8
yallist@3.1.1
yargs-parser@20.2.4

Mozilla Public License 2.0

Weakly Protective
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
place-warranty
use-patent-claims
Cannot
use-trademark
hold-liable
Must
include-copyright
include-license
disclose-source
include-original
12 Packages, Including:
@nomicfoundation/ethereumjs-block@5.0.2
@nomicfoundation/ethereumjs-blockchain@7.0.2
@nomicfoundation/ethereumjs-ethash@3.0.2
@nomicfoundation/ethereumjs-evm@2.0.2
@nomicfoundation/ethereumjs-rlp@5.0.2
@nomicfoundation/ethereumjs-statemanager@2.0.2
@nomicfoundation/ethereumjs-trie@6.0.2
@nomicfoundation/ethereumjs-tx@5.0.2
@nomicfoundation/ethereumjs-util@9.0.2
@nomicfoundation/ethereumjs-vm@7.0.2
ethereumjs-util@6.2.1
rlp@2.2.7

BSD 3-Clause "New" or "Revised" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
use-trademark
hold-liable
Must
include-copyright
include-license
12 Packages, Including:
@sentry/core@5.30.0
@sentry/hub@5.30.0
@sentry/minimal@5.30.0
@sentry/node@5.30.0
@sentry/types@5.30.0
@sentry/utils@5.30.0
diff@5.0.0
flat@5.0.2
ieee754@1.2.1
mcl-wasm@0.7.9
serialize-javascript@6.0.0
source-map@0.6.1

Apache License 2.0

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
use-patent-claims
place-warranty
Cannot
hold-liable
use-trademark
Must
include-copyright
include-license
state-changes
include-notice
7 Packages, Including:
@chainsafe/as-sha256@0.3.1
@chainsafe/persistent-merkle-tree@0.4.2
@chainsafe/persistent-merkle-tree@0.5.0
@chainsafe/ssz@0.10.2
@chainsafe/ssz@0.9.4
crc-32@1.2.2
workerpool@6.2.1

The Unlicense

Public Domain
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
private-use
modify
Cannot
include-copyright
hold-liable
Must
2 Packages, Including:
tweetnacl-util@0.15.1
tweetnacl@1.0.3

(MIT OR CC0-1.0)

Public Domain
2 Packages, Including:
type-fest@0.21.3
type-fest@0.7.1

Python License 2.0

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
Cannot
use-trademark
hold-liable
Must
include-copyright
include-license
state-changes
1 Packages, Including:
argparse@2.0.1

(MIT OR GPL-3.0-or-later)

Permissive
1 Packages, Including:
case@1.6.3

(MIT OR Apache-2.0)

Permissive
1 Packages, Including:
rustbn.js@0.2.0

(MIT AND BSD-3-Clause)

Permissive
1 Packages, Including:
sha.js@2.4.11

BSD Zero Clause License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
include-copyright
include-license
include-original
Cannot
hold-liable
Must
1 Packages, Including:
tslib@1.14.1
Disclaimer

This deed highlights only some of the key features and terms of the actual license. It is not a license and has no legal value. You should carefully review all of the terms and conditions of the actual license before using the licensed material.

Sandworm is not a law firm and does not provide legal services. Distributing, displaying, or linking to this deed or the license that it summarizes does not create a lawyer-client or any other relationship.

Direct Dependencies

48
All Dependencies CSV
β“˜ This is a list of hardhat 's direct dependencies. Data on all dependencies, including transitive ones, is available via CSV download.
NameVersionSizeLicenseTypeVulnerabilities
@ethersproject/abi5.7.068.43 kBMIT
prod
@metamask/eth-sig-util4.0.126.04 kBISC
prod
3
2
@nomicfoundation/ethereumjs-block5.0.250.3 kBMPL-2.0
prod
2
7
@nomicfoundation/ethereumjs-blockchain7.0.2592.02 kBMPL-2.0
prod
3
9
@nomicfoundation/ethereumjs-common4.0.260.87 kBMIT
prod
2
3
@nomicfoundation/ethereumjs-evm2.0.2137.92 kBMPL-2.0
prod
2
6
@nomicfoundation/ethereumjs-rlp5.0.213.57 kBMPL-2.0
prod
1
@nomicfoundation/ethereumjs-statemanager2.0.232.97 kBMPL-2.0
prod
2
4
@nomicfoundation/ethereumjs-trie6.0.257.43 kBMPL-2.0
prod
2
4
@nomicfoundation/ethereumjs-tx5.0.262.59 kBMPL-2.0
prod
2
5
@nomicfoundation/ethereumjs-util9.0.254.03 kBMPL-2.0
prod
2
3
@nomicfoundation/ethereumjs-vm7.0.269.87 kBMPL-2.0
prod
3
12
@nomicfoundation/solidity-analyzer0.1.18.81 kBMIT
prod
10
@sentry/node5.30.070.04 kBBSD-3-Clause
prod
@types/bn.js5.1.53.59 kBMIT
prod
@types/lru-cache5.1.13.6 kBMIT
prod
adm-zip0.4.1618.03 kBMIT
prod
aggregate-error3.1.02.59 kBMIT
prod
ansi-escapes4.3.25.13 kBMIT
prod
chalk2.4.29.63 kBMIT
prod
chokidar3.6.025.83 kBMIT
prod
ci-info2.0.04.75 kBMIT
prod
debug4.3.412.94 kBMIT
prod peer
enquirer2.4.145.11 kBMIT
prod
env-paths2.2.13.33 kBMIT
prod
ethereum-cryptography1.2.016.05 kBMIT
prod
ethereumjs-abi0.6.813.01 kBMIT
prod
3
2
find-up2.1.02.18 kBMIT
prod
fp-ts1.19.3306.1 kBMIT
prod
fs-extra7.0.131.33 kBMIT
prod
glob7.2.014.97 kBISC
prod
immutable4.3.5134.87 kBMIT
prod
io-ts1.10.433.14 kBMIT
prod
keccak3.0.4277.52 kBMIT
prod
1
lodash4.17.21311.49 kBMIT
prod
mnemonist0.38.566.26 kBMIT
prod
mocha10.4.01.99 MBMIT
prod
p-map4.0.03.36 kBMIT
prod
raw-body2.5.28.45 kBMIT
prod
resolve1.17.021.3 kBMIT
prod
semver6.3.118.65 kBISC
prod
solc0.7.36.54 MBMIT
prod
source-map-support0.5.2126.03 kBMIT
prod
stacktrace-parser0.1.103.57 kBMIT
prod
tsort0.0.11.58 kBMIT
prod
undici5.28.41.12 MBMIT
prod
uuid8.3.227.32 kBMIT
prod
ws7.5.928.37 kBMIT
prod

Visualizations