Home
Docs
GitHub
Pricing
Blog
Log In

Run Sandworm Audit for your App

Get started
Hold on, we're currently generating a fresh version of this report
Generated on May 26, 2024 via pnpm

heroku 7.69.1

CLI to interact with Heroku
Package summary
Share
20
issues
1
critical severity
license
1
14
high severity
vulnerability
3
license
1
meta
10
2
moderate severity
vulnerability
2
3
low severity
vulnerability
1
license
2
12
licenses
382
MIT
54
ISC
9
BSD-3-Clause
22
other licenses
Apache-2.0
7
BSD-2-Clause
5
0BSD
3
(MIT OR CC0-1.0)
2
+ 5 more
Package created
20 Jan 2012
Version published
13 Mar 2023
Maintainers
46
Total deps
467
Direct deps
47
License
ISC

Issues

20

1 critical severity issue

critical
Recommendation: Check the package code and files for license information
via: @heroku-cli/plugin-buildpacks@7.68.0
Collapse
Expand

14 high severity issues

high
Recommendation: Upgrade to version 4.1.1 or later
via: @heroku-cli/plugin-addons-v5@7.68.0 & others
Recommendation: Upgrade to version 0.6.1 or later
via: @heroku-cli/plugin-pg-v5@7.68.0
Recommendation: None
via: @oclif/plugin-help@2.2.0
Recommendation: Validate that the package complies with your license policy
via: @heroku-cli/plugin-ps-exec@2.5.0
via: @heroku-cli/command@8.5.0 & others
via: @heroku-cli/command@8.5.0 & others
via: @heroku-cli/plugin-apps@7.68.0 & others
via: @heroku-cli/plugin-redis-v5@7.68.3
via: @heroku-cli/command@8.5.0 & others
via: @heroku-cli/plugin-redis-v5@7.68.3
via: @heroku-cli/plugin-pg-v5@7.68.0 & others
via: @heroku-cli/plugin-pg-v5@7.68.0
via: uuid@3.3.2
via: @oclif/plugin-plugins@1.10.1
Collapse
Expand

2 moderate severity issues

moderate
Recommendation: Upgrade to version 11.8.5 or later
via: @heroku-cli/plugin-addons-v5@7.68.0 & others
Recommendation: Upgrade to version 5.7.2 or later
via: @heroku-cli/command@8.5.0 & others
Collapse
Expand

3 low severity issues

low
Recommendation: Upgrade to version 4.3.1 or later
via: @heroku-cli/command@8.5.0 & others
Recommendation: Read and validate the license terms
via: @heroku-cli/plugin-config@7.68.0
Recommendation: Read and validate the license terms
via: @heroku-cli/plugin-ps-exec@2.5.0
Collapse
Expand

Licenses

MIT License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
Cannot
hold-liable
Must
include-copyright
include-license
382 Packages, Including:
@babel/runtime@7.24.6
@cspotcode/source-map-support@0.8.1
@heroku-cli/notifications@1.2.4
@heroku-cli/plugin-apps@7.68.0
@heroku-cli/plugin-auth@7.68.0
@heroku-cli/plugin-autocomplete@7.68.0
@heroku-cli/plugin-buildpacks@7.68.0
@heroku-cli/plugin-certs@7.68.0
@heroku-cli/plugin-ci-v5@7.68.0
@heroku-cli/plugin-ci@7.68.0
@heroku-cli/plugin-config@7.68.0
@heroku-cli/plugin-local@7.69.0
@heroku-cli/plugin-pipelines@7.68.0
@heroku-cli/plugin-ps@7.68.0
@heroku-cli/plugin-run@7.68.0
@heroku-cli/plugin-webhooks@7.68.0
@heroku-cli/schema@1.0.25
@heroku/buildpack-registry@1.0.1
@heroku/eventsource@1.0.7
@heroku/socksv5@0.0.9
@jridgewell/resolve-uri@3.1.2
@jridgewell/sourcemap-codec@1.4.15
@jridgewell/trace-mapping@0.3.9
@nodelib/fs.scandir@2.1.5
@nodelib/fs.stat@2.0.5
@nodelib/fs.walk@1.2.8
@oclif/color@0.0.0
@oclif/color@0.1.2
@oclif/command@1.8.16
@oclif/config@1.13.2
@oclif/config@1.18.16
@oclif/config@1.18.17
@oclif/core@2.16.0
@oclif/errors@1.2.2
@oclif/errors@1.3.6
@oclif/help@1.0.15
@oclif/parser@3.8.17
@oclif/plugin-commands@1.3.0
@oclif/plugin-help@2.2.0
@oclif/plugin-legacy@1.2.0
@oclif/plugin-not-found@1.2.2
@oclif/plugin-plugins@1.10.1
@oclif/plugin-update@1.5.0
@oclif/plugin-warn-if-update-available@2.0.29
@oclif/plugin-which@1.0.3
@oclif/screen@1.0.4
@sindresorhus/is@0.14.0
@sindresorhus/is@0.7.0
@sindresorhus/is@4.6.0
@szmarczak/http-timer@1.1.2

ISC License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
Cannot
hold-liable
Must
include-copyright
include-license
54 Packages, Including:
@heroku-cli/color@1.1.14
@heroku-cli/command@8.5.0
@heroku-cli/heroku-exec-util@0.8.2
@heroku-cli/plugin-addons-v5@7.68.0
@heroku-cli/plugin-addons@1.2.31
@heroku-cli/plugin-apps-v5@7.68.1
@heroku-cli/plugin-certs-v5@7.68.0
@heroku-cli/plugin-container-registry-v5@7.68.0
@heroku-cli/plugin-git@7.68.0
@heroku-cli/plugin-oauth-v5@7.68.0
@heroku-cli/plugin-orgs-v5@7.68.0
@heroku-cli/plugin-pg-v5@7.68.0
@heroku-cli/plugin-ps-exec@2.5.0
@heroku-cli/plugin-redis-v5@7.68.3
@heroku-cli/plugin-run-v5@7.68.0
@heroku-cli/plugin-spaces@7.68.0
@heroku-cli/plugin-status@7.68.0
@heroku/heroku-cli-util@8.0.13
@oclif/linewrap@1.0.0
abbrev@1.1.1
at-least-node@1.0.0
chownr@1.1.4
cli-width@2.2.1
cli-width@3.0.0
fastq@1.17.1
fs.realpath@1.0.0
glob-parent@5.1.2
glob@7.2.3
graceful-fs@4.2.11
heroku-cli-util@8.0.12
heroku@7.69.1
http-call@5.3.0
inflight@1.0.6
inherits@2.0.4
isexe@2.0.0
log-chopper@1.0.2
make-error@1.3.6
minimatch@3.1.2
minimatch@5.1.6
mute-stream@0.0.7
mute-stream@0.0.8
netrc-parser@3.1.6
nopt@4.0.3
once@1.4.0
osenv@0.1.5
rimraf@2.6.3
rimraf@2.7.1
semver@5.6.0
semver@7.6.2
signal-exit@3.0.7

BSD 3-Clause "New" or "Revised" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
use-trademark
hold-liable
Must
include-copyright
include-license
9 Packages, Including:
bcrypt-pbkdf@1.0.2
diff@4.0.2
duplexer3@0.1.5
filesize@4.2.1
filesize@6.4.0
ieee754@1.2.1
printf@0.3.0
sprintf-js@1.0.3
sprintf-js@1.1.2

Apache License 2.0

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
use-patent-claims
place-warranty
Cannot
hold-liable
use-trademark
Must
include-copyright
include-license
state-changes
include-notice
7 Packages, Including:
ejs@3.1.10
filelist@1.0.4
jake@10.9.1
rxjs@6.6.7
tslib@1.9.3
tunnel-agent@0.6.0
typescript@5.4.5

BSD 2-Clause "Simplified" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
hold-liable
Must
include-copyright
include-license
5 Packages, Including:
esprima@4.0.1
http-cache-semantics@3.8.1
http-cache-semantics@4.1.1
webidl-conversions@3.0.1
yarn@1.22.22

BSD Zero Clause License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
include-copyright
include-license
include-original
Cannot
hold-liable
Must
3 Packages, Including:
password-prompt@1.1.3
tslib@1.14.1
tslib@2.6.2

(MIT OR CC0-1.0)

Public Domain
2 Packages, Including:
type-fest@0.21.3
type-fest@0.3.1

Do What The F*ck You Want To Public License

Permissive
Not OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
sublicense
distribute
modify
Cannot
Must
rename
1 Packages, Including:
edit-string@1.1.6

BSD / GPL

Invalid
Not OSI Approved
1 Packages, Including:
keypair@1.0.4

(BSD-3-Clause OR GPL-2.0)

Permissive
1 Packages, Including:
node-forge@1.3.0

The Unlicense

Public Domain
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
private-use
modify
Cannot
include-copyright
hold-liable
Must
1 Packages, Including:
tweetnacl@0.14.5

N/A

N/A
1 Packages, Including:
valid-url@1.0.9
Disclaimer

This deed highlights only some of the key features and terms of the actual license. It is not a license and has no legal value. You should carefully review all of the terms and conditions of the actual license before using the licensed material.

Sandworm is not a law firm and does not provide legal services. Distributing, displaying, or linking to this deed or the license that it summarizes does not create a lawyer-client or any other relationship.

Direct Dependencies

47
All Dependencies CSV
β“˜ This is a list of heroku 's direct dependencies. Data on all dependencies, including transitive ones, is available via CSV download.
NameVersionSizeLicenseTypeVulnerabilities
@heroku-cli/color1.1.141.93 kBISC
prod
@heroku-cli/command8.5.014.54 kBISC
prod
3
1
1
@heroku-cli/plugin-addons-v57.68.016.81 kBISC
prod
1
2
@heroku-cli/plugin-apps-v57.68.138.12 kBISC
prod
4
2
1
@heroku-cli/plugin-apps7.68.08.43 kBMIT
prod
4
1
1
@heroku-cli/plugin-auth7.68.08.71 kBMIT
prod
3
1
1
@heroku-cli/plugin-autocomplete7.68.015.19 kBMIT
prod
3
1
1
@heroku-cli/plugin-buildpacks7.68.09.16 kBMIT
prod
1
4
2
1
@heroku-cli/plugin-certs-v57.68.015.95 kBISC
prod
1
2
@heroku-cli/plugin-certs7.68.04.38 kBMIT
prod
3
1
1
@heroku-cli/plugin-ci-v57.68.012.73 kBMIT
prod
4
2
1
@heroku-cli/plugin-ci7.68.013.29 kBMIT
prod
3
2
1
@heroku-cli/plugin-config7.68.08.81 kBMIT
prod
3
1
2
@heroku-cli/plugin-container-registry-v57.68.08.89 kBISC
prod
2
2
1
@heroku-cli/plugin-git7.68.06.59 kBISC
prod
3
1
1
@heroku-cli/plugin-local7.69.05.59 kBMIT
prod
3
1
1
@heroku-cli/plugin-oauth-v57.68.08.47 kBISC
prod
1
2
@heroku-cli/plugin-orgs-v57.68.011.63 kBISC
prod
4
2
1
@heroku-cli/plugin-pg-v57.68.0137.77 kBISC
prod
5
2
1
@heroku-cli/plugin-pipelines7.68.023.14 kBMIT
prod
5
2
1
@heroku-cli/plugin-ps-exec2.5.024.76 kBISC
prod
2
1
1
@heroku-cli/plugin-ps7.68.07.46 kBMIT
prod
3
1
1
@heroku-cli/plugin-redis-v57.68.311.25 kBISC
prod
3
2
@heroku-cli/plugin-run7.68.014.75 kBMIT
prod
4
1
1
@heroku-cli/plugin-spaces7.68.023.21 kBISC
prod
4
2
1
@heroku-cli/plugin-status7.68.05.53 kBISC
prod
3
1
1
@heroku-cli/plugin-webhooks7.68.07.41 kBMIT
prod
4
1
1
@oclif/command1.8.1618.24 kBMIT
prod
1
1
@oclif/config1.13.222.57 kBMIT
prod peer
1
1
@oclif/errors1.2.26.17 kBMIT
prod
@oclif/plugin-commands1.3.060.49 kBMIT
prod
3
1
@oclif/plugin-help2.2.010.77 kBMIT
prod
2
1
@oclif/plugin-legacy1.2.06.24 kBMIT
prod
3
1
1
@oclif/plugin-not-found1.2.24.85 kBMIT
prod
3
1
1
@oclif/plugin-plugins1.10.117.1 kBMIT
prod
4
1
@oclif/plugin-update1.5.011.02 kBMIT
prod
3
1
@oclif/plugin-warn-if-update-available2.0.293.95 kBMIT
prod
1
1
@oclif/plugin-which1.0.32.69 kBMIT
prod
3
1
1
cli-ux4.9.318.74 kBMIT
prod
2
1
debug4.1.121.26 kBMIT
prod
1
1
execa1.0.06.83 kBMIT
prod
1
fs-extra7.0.131.33 kBMIT
prod
http-call5.3.08.27 kBISC
prod
1
1
netrc-parser3.1.63.86 kBISC
prod
1
semver5.6.016.16 kBISC
prod
1
tslib1.14.17.43 kB0BSD
prod
uuid3.3.212.61 kBMIT
prod
1

Visualizations