Home
Docs
GitHub
Pricing
Blog
Log In

Run Sandworm Audit for your App

Get started
Hold on, we're currently generating a fresh version of this report
Generated on Apr 9, 2024 via pnpm

init-package-json 4.0.0

A node module to get your node module started
Package summary
Share
7
issues
3
high severity
license
3
4
low severity
license
4
7
licenses
25
ISC
20
MIT
2
BlueOak-1.0.0
5
other licenses
Apache-2.0
2
BSD-2-Clause
1
CC-BY-3.0
1
CC0-1.0
1
Package created
17 Jun 2012
Version published
14 Oct 2022
Maintainers
5
Total deps
52
Direct deps
7
License
ISC

Issues

7

3 high severity issues

high
Recommendation: Read and validate the license terms
via: read-package-json@6.0.4
Recommendation: Read and validate the license terms
via: read-package-json@6.0.4
Recommendation: Read and validate the license terms
via: read-package-json@6.0.4 & others
Collapse
Expand

4 low severity issues

low
Recommendation: Read and validate the license terms
via: read-package-json@6.0.4
Recommendation: Read and validate the license terms
via: read-package-json@6.0.4
Recommendation: Read and validate the license terms
via: read-package-json@6.0.4 & others
Recommendation: Read and validate the license terms
via: read-package-json@6.0.4 & others
Collapse
Expand

Licenses

ISC License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
Cannot
hold-liable
Must
include-copyright
include-license
25 Packages, Including:
@isaacs/cliui@8.0.2
foreground-child@3.1.1
glob@10.3.12
hosted-git-info@5.2.1
hosted-git-info@6.1.1
init-package-json@4.0.0
isexe@2.0.0
lru-cache@10.2.0
lru-cache@6.0.0
lru-cache@7.18.3
minimatch@9.0.4
minipass@7.0.4
mute-stream@0.0.8
npm-normalize-package-bin@3.0.1
npm-package-arg@9.1.2
proc-log@2.0.1
promzard@0.3.0
read-package-json@6.0.4
read@1.0.7
semver@7.6.0
signal-exit@4.1.0
validate-npm-package-name@4.0.0
validate-npm-package-name@5.0.0
which@2.0.2
yallist@4.0.0

MIT License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
Cannot
hold-liable
Must
include-copyright
include-license
20 Packages, Including:
@pkgjs/parseargs@0.11.0
ansi-regex@6.0.1
ansi-styles@6.2.1
balanced-match@1.0.2
brace-expansion@2.0.1
builtins@5.1.0
cross-spawn@7.0.3
eastasianwidth@0.2.0
emoji-regex@9.2.2
function-bind@1.1.2
hasown@2.0.2
is-core-module@2.13.1
json-parse-even-better-errors@3.0.1
path-key@3.1.1
shebang-command@2.0.0
shebang-regex@3.0.0
spdx-expression-parse@3.0.1
string-width@5.1.2
strip-ansi@7.1.0
wrap-ansi@8.1.0

Blue Oak Model License 1.0.0

Uncategorized
Not OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
Cannot
Must
2 Packages, Including:
jackspeak@2.3.6
path-scurry@1.10.2

Apache License 2.0

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
use-patent-claims
place-warranty
Cannot
hold-liable
use-trademark
Must
include-copyright
include-license
state-changes
include-notice
2 Packages, Including:
spdx-correct@3.2.0
validate-npm-package-license@3.0.4

BSD 2-Clause "Simplified" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
hold-liable
Must
include-copyright
include-license
1 Packages, Including:
normalize-package-data@5.0.0

Creative Commons Attribution 3.0 Unported

Uncategorized
Not OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
Cannot
Must
1 Packages, Including:
spdx-exceptions@2.5.0

Creative Commons Zero v1.0 Universal

Public Domain
Not OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
Cannot
Must
1 Packages, Including:
spdx-license-ids@3.0.17
Disclaimer

This deed highlights only some of the key features and terms of the actual license. It is not a license and has no legal value. You should carefully review all of the terms and conditions of the actual license before using the licensed material.

Sandworm is not a law firm and does not provide legal services. Distributing, displaying, or linking to this deed or the license that it summarizes does not create a lawyer-client or any other relationship.

Direct Dependencies

7
All Dependencies CSV
β“˜ This is a list of init-package-json 's direct dependencies. Data on all dependencies, including transitive ones, is available via CSV download.
NameVersionSizeLicenseTypeVulnerabilities
npm-package-arg9.1.26.6 kBISC
prod
promzard0.3.08.95 kBISC
prod
read-package-json6.0.46.97 kBISC
prod
3
4
read1.0.72.61 kBISC
prod
semver7.6.026.57 kBISC
prod
validate-npm-package-license3.0.45.54 kBApache-2.0
prod
1
2
validate-npm-package-name5.0.03.11 kBISC
prod

Visualizations