Home
Docs
GitHub
Pricing
Blog
Log In

Run Sandworm Audit for your App

Get started
Hold on, we're currently generating a fresh version of this report
Generated on Apr 26, 2024 via pnpm
Package summary
Share
14
issues
5
critical severity
license
5
5
high severity
vulnerability
1
meta
4
2
moderate severity
meta
2
2
low severity
vulnerability
1
license
1
6
licenses
37
MIT
5
N/A
3
ISC
5
other licenses
BSD-3-Clause
3
CC0-1.0
1
0BSD
1
Package created
24 Jan 2018
Version published
15 Jun 2020
Maintainers
2
Total deps
50
Direct deps
11
License
UNKNOWN

Issues

14

5 critical severity issues

critical
Recommendation: Check the package code and files for license information
via: fast-af@0.1.0
Recommendation: Check the package code and files for license information
via: fast-af@0.1.0
Recommendation: Check the package code and files for license information
via: libreact@2.13.3
Recommendation: Check the package code and files for license information
via: nano-css@1.17.2
Recommendation: Check the package code and files for license information
via: react-universal-interface@0.3.2
Collapse
Expand

5 high severity issues

high
Recommendation: Upgrade to version 2.6.7 or later
via: react-focus-lock@1.6.5
via: react-focus-lock@1.6.5
via: libreact@2.13.3
via: nano-css@1.17.2 & others
via: nano-css@1.17.2 & others
Collapse
Expand

2 moderate severity issues

moderate
via: fast-af@0.1.0
via: fast-af@0.1.0
Collapse
Expand

2 low severity issues

low
Recommendation: Upgrade to version 2.6.1 or later
via: react-focus-lock@1.6.5
Recommendation: Read and validate the license terms
via: nano-css@1.17.2
Collapse
Expand

Licenses

MIT License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
Cannot
hold-liable
Must
include-copyright
include-license
37 Packages, Including:
@babel/runtime@7.24.4
asap@2.0.6
bowser@1.9.4
core-js@1.2.7
css-in-js-utils@2.0.1
css-tree@1.1.3
encoding@0.1.13
fast-deep-equal@1.1.0
fastest-stable-stringify@1.0.1
fbjs@0.8.18
iconv-lite@0.6.3
inline-style-prefixer@4.0.2
is-stream@1.1.0
isobject@3.0.1
isomorphic-fetch@2.2.1
js-tokens@4.0.0
loose-envify@1.4.0
node-fetch@1.7.3
object-assign@4.1.1
opencollective-postinstall@2.0.3
promise@7.3.1
prop-types@15.8.1
react-dom@16.14.0
react-is@16.13.1
react-side-effect@1.2.0
react@16.14.0
regenerator-runtime@0.14.1
rtl-css-js@1.16.1
safer-buffer@2.1.2
scheduler@0.19.1
screenfull@3.3.3
setimmediate@1.0.5
shallowequal@1.1.0
stylis@3.5.0
throttle-debounce@2.3.0
ua-parser-js@0.7.37
whatwg-fetch@3.6.20

N/A

N/A
5 Packages, Including:
fast-extend@1.0.2
fast-shallow-equal@0.1.1
libreact@2.13.3
nano-css@1.17.2
react-universal-interface@0.3.2

ISC License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
Cannot
hold-liable
Must
include-copyright
include-license
3 Packages, Including:
fast-af@0.1.0
focus-lock@0.1.0
react-focus-lock@1.6.5

BSD 3-Clause "New" or "Revised" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
use-trademark
hold-liable
Must
include-copyright
include-license
3 Packages, Including:
hyphenate-style-name@1.0.4
prop-types@15.5.10
source-map@0.6.1

Creative Commons Zero v1.0 Universal

Public Domain
Not OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
Cannot
Must
1 Packages, Including:
mdn-data@2.0.14

BSD Zero Clause License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
include-copyright
include-license
include-original
Cannot
hold-liable
Must
1 Packages, Including:
tslib@2.6.2
Disclaimer

This deed highlights only some of the key features and terms of the actual license. It is not a license and has no legal value. You should carefully review all of the terms and conditions of the actual license before using the licensed material.

Sandworm is not a law firm and does not provide legal services. Distributing, displaying, or linking to this deed or the license that it summarizes does not create a lawyer-client or any other relationship.

Direct Dependencies

11
All Dependencies CSV
β“˜ This is a list of libreact 's direct dependencies. Data on all dependencies, including transitive ones, is available via CSV download.
NameVersionSizeLicenseTypeVulnerabilities
fast-af0.1.0650 BISC
prod
2
2
nano-css1.17.229.24 kBUNKNOWN
prod
1
2
1
opencollective-postinstall2.0.31.9 kBMIT
prod
prop-types15.8.122.12 kBMIT
prod peer
react-dom16.14.0722.53 kBMIT
prod peer
2
react-focus-lock1.6.58.15 kBISC
prod
3
1
react-universal-interface0.3.26.56 kBUNKNOWN
prod
1
1
react16.14.059.16 kBMIT
prod peer
1
screenfull3.3.34.55 kBMIT
prod
throttle-debounce2.3.013.27 kBMIT
prod
tslib2.6.215.59 kB0BSD
prod peer

Visualizations