Home
Docs
GitHub
Pricing
Blog
Log In

Run Sandworm Audit for your App

Get started
Hold on, we're currently generating a fresh version of this report
This package has been deprecated with the following message: This module moved to @hapi/hawk. Please make sure to switch over as this distribution is no longer supported and may contain bugs and critical security issues.
Generated on Sep 28, 2023 via pnpm

hawk 3.1.3

HTTP Hawk Authentication Scheme
Package summary
Share
11
issues
1
critical severity
vulnerability
1
9
high severity
vulnerability
3
license
1
meta
5
1
low severity
license
1
2
licenses
4
BSD-3-Clause
1
BSD
Package created
24 Nov 2012
Version published
21 Jan 2016
Maintainers
5
Total versions
84
License
BSD-3-Clause

Issues

11

1 critical severity issue

critical
Recommendation: Upgrade to version 4.1.2 or later
via: cryptiles@2.0.5
Collapse
Expand

9 high severity issues

high
Recommendation: Upgrade to version 9.0.1 or later
via: hawk@3.1.3
Recommendation: Upgrade to version 9.0.1 or later
via: hawk@3.1.3
Recommendation: Upgrade to version 4.2.1 or later
via: boom@2.10.1 & others
Recommendation: Validate that the package complies with your license policy
via: sntp@1.0.9
via: boom@2.10.1 & others
via: cryptiles@2.0.5
via: hawk@3.1.3
via: boom@2.10.1 & others
via: sntp@1.0.9
Collapse
Expand

1 low severity issue

low
Recommendation: Read and validate the license terms
via: sntp@1.0.9
Collapse
Expand

Licenses

BSD 3-Clause "New" or "Revised" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
use-trademark
hold-liable
Must
include-copyright
include-license
Packages
boom@2.10.1
cryptiles@2.0.5
hawk@3.1.3
hoek@2.16.3

BSD

Invalid
Not OSI Approved
Packages
sntp@1.0.9
Disclaimer

This deed highlights only some of the key features and terms of the actual license. It is not a license and has no legal value. You should carefully review all of the terms and conditions of the actual license before using the licensed material.

Sandworm is not a law firm and does not provide legal services. Distributing, displaying, or linking to this deed or the license that it summarizes does not create a lawyer-client or any other relationship.

Dependencies

5
Get CSV
Name Version Size License Type Vulnerabilities
boom 2.10.1 38.57 kB BSD-3-Clause prod 3
cryptiles 2.0.5 2.84 kB BSD-3-Clause prod 14
hawk 3.1.3 118.94 kB BSD-3-Clause prod 3
hoek 2.16.3 63.68 kB BSD-3-Clause prod 2
sntp 1.0.9 6.69 kB BSD prod 41

Visualizations