Home
Docs
GitHub
Pricing
Blog
Log In

Run Sandworm Audit for your App

Get started
Generated on May 19, 2024 via pnpm
Package summary
Share
14
issues
4
critical severity
vulnerability
1
license
3
6
high severity
vulnerability
1
license
1
meta
4
3
moderate severity
vulnerability
2
meta
1
1
low severity
license
1
9
licenses
137
MIT
11
ISC
8
Apache-2.0
10
other licenses
BSD-3-Clause
3
N/A
3
(AFL-2.1 OR BSD-3-Clause)
1
SEE LICENSE IN LICENSE
1
+ 2 more
Package created
7 Apr 2017
Version published
24 Apr 2017
Maintainers
1
Total deps
166
Direct deps
5
License
ISC

Issues

14

4 critical severity issues

critical
Recommendation: Upgrade to version 1.12.1 or later
via: nedb@1.8.0
Recommendation: Check the package code and files for license information
via: nedb@1.8.0
Recommendation: Check the package code and files for license information
via: natural-brain@0.2.3
Recommendation: Check the package code and files for license information
via: nedb@1.8.0
Collapse
Expand

6 high severity issues

high
Recommendation: None
via: nedb@1.8.0
Recommendation: Validate that the package complies with your license policy
via: nedb@1.8.0
via: node-telegram-bot-api@0.27.1 & others
via: node-telegram-bot-api@0.27.1
via: node-telegram-bot-api@0.27.1 & others
via: node-telegram-bot-api@0.27.1 & others
Collapse
Expand

3 moderate severity issues

moderate
Recommendation: Upgrade to version 4.1.3 or later
via: node-telegram-bot-api@0.27.1 & others
Recommendation: None
via: node-telegram-bot-api@0.27.1 & others
via: natural-brain@0.2.3
Collapse
Expand

1 low severity issue

low
Recommendation: Read and validate the license terms
via: nedb@1.8.0
Collapse
Expand

Licenses

MIT License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
Cannot
hold-liable
Must
include-copyright
include-license
137 Packages, Including:
ajv@6.12.6
apparatus@0.0.10
array-buffer-byte-length@1.0.1
array.prototype.findindex@2.2.3
arraybuffer.prototype.slice@1.0.3
asn1@0.2.6
assert-plus@1.0.0
async@0.2.10
asynckit@0.4.0
available-typed-arrays@1.0.7
aws4@1.12.0
bl@1.2.3
bluebird@3.7.2
brain.js@0.7.0
call-bind@1.0.7
combined-stream@1.0.8
core-util-is@1.0.2
core-util-is@1.0.3
dashdash@1.14.1
data-view-buffer@1.0.1
data-view-byte-length@1.0.1
data-view-byte-offset@1.0.0
date-format@4.0.14
debug@2.6.9
debug@4.3.4
define-data-property@1.1.4
define-properties@1.2.1
delayed-stream@1.0.0
depd@1.1.2
ecc-jsbn@0.1.2
end-of-stream@1.4.4
es-abstract@1.23.3
es-define-property@1.0.0
es-errors@1.3.0
es-object-atoms@1.0.0
es-set-tostringtag@2.0.3
es-shim-unscopables@1.0.2
es-to-primitive@1.2.1
eventemitter3@2.0.3
extend@3.0.2
extsprintf@1.3.0
fast-deep-equal@3.1.3
fast-json-stable-stringify@2.1.0
file-type@3.9.0
for-each@0.3.3
form-data@2.3.3
fs-extra@8.1.0
function-bind@1.1.2
function.prototype.name@1.1.6
functions-have-names@1.2.3

ISC License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
Cannot
hold-liable
Must
include-copyright
include-license
11 Packages, Including:
flatted@3.3.1
graceful-fs@4.2.11
har-schema@2.0.0
inherits@2.0.4
json-stringify-safe@5.0.1
lazy.ai@2.2.6
once@1.4.0
request-promise-core@1.1.4
request-promise@4.2.6
stealthy-require@1.1.1
wrappy@1.0.2

Apache License 2.0

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
use-patent-claims
place-warranty
Cannot
hold-liable
use-trademark
Must
include-copyright
include-license
state-changes
include-notice
8 Packages, Including:
aws-sign2@0.7.0
caseless@0.12.0
forever-agent@0.6.1
localforage@1.10.0
log4js@6.9.1
oauth-sign@0.9.0
request@2.88.2
tunnel-agent@0.6.0

BSD 3-Clause "New" or "Revised" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
use-trademark
hold-liable
Must
include-copyright
include-license
3 Packages, Including:
bcrypt-pbkdf@1.0.2
qs@6.5.3
tough-cookie@2.5.0

N/A

N/A
3 Packages, Including:
binary-search-tree@0.2.5
sylvester@0.0.21
underscore@1.4.4

(AFL-2.1 OR BSD-3-Clause)

Permissive
1 Packages, Including:
json-schema@0.4.0

SEE LICENSE IN LICENSE

Invalid
Not OSI Approved
1 Packages, Including:
nedb@1.8.0

The Unlicense

Public Domain
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
private-use
modify
Cannot
include-copyright
hold-liable
Must
1 Packages, Including:
tweetnacl@0.14.5

BSD 2-Clause "Simplified" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
hold-liable
Must
include-copyright
include-license
1 Packages, Including:
uri-js@4.4.1
Disclaimer

This deed highlights only some of the key features and terms of the actual license. It is not a license and has no legal value. You should carefully review all of the terms and conditions of the actual license before using the licensed material.

Sandworm is not a law firm and does not provide legal services. Distributing, displaying, or linking to this deed or the license that it summarizes does not create a lawyer-client or any other relationship.

Direct Dependencies

5
All Dependencies CSV
β“˜ This is a list of lazy.ai 's direct dependencies. Data on all dependencies, including transitive ones, is available via CSV download.
NameVersionSizeLicenseTypeVulnerabilities
natural-brain0.2.34.1 kBMIT
prod
1
1
nedb1.8.0279.64 kBSEE LICENSE IN LICENSE
prod
3
2
1
node-telegram-bot-api0.27.140.91 kBMIT
prod
4
2
request2.88.257.83 kBApache-2.0
prod peer
3
2
underscore1.13.6211.5 kBMIT
prod

Visualizations