Home
Docs
GitHub
Pricing
Blog
Log In

Run Sandworm Audit for your App

Get started
Hold on, we're currently generating a fresh version of this report
Generated on Apr 10, 2024 via pnpm

newman 6.0.0

Command-line companion utility for Postman
Package summary
Share
5
issues
1
critical severity
license
1
2
high severity
meta
2
1
moderate severity
vulnerability
1
1
low severity
license
1
9
licenses
78
MIT
19
Apache-2.0
9
ISC
11
other licenses
BSD-3-Clause
5
BSD-2-Clause
2
(AFL-2.1 OR BSD-3-Clause)
1
N/A
1
+ 2 more
Package created
29 Apr 2014
Version published
14 Sep 2023
Maintainers
6
Total deps
117
Direct deps
21
License
Apache-2.0

Issues

5

1 critical severity issue

critical
Recommendation: Check the package code and files for license information
via: postman-runtime@7.33.0 & others
Collapse
Expand

2 high severity issues

high
via: postman-request@2.88.1-postman.33 & others
via: postman-runtime@7.33.0 & others
Collapse
Expand

1 low severity issue

low
Recommendation: Read and validate the license terms
via: postman-request@2.88.1-postman.33 & others
Collapse
Expand

Licenses

MIT License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
Cannot
hold-liable
Must
include-copyright
include-license
78 Packages, Including:
@colors/colors@1.5.0
@faker-js/faker@5.5.3
@postman/form-data@3.1.1
ajv@6.12.6
ansi-regex@5.0.1
asn1@0.2.6
assert-plus@1.0.0
async@3.2.4
asynckit@0.4.0
aws4@1.12.0
base64-js@1.5.1
bluebird@2.11.0
brotli@1.3.3
chardet@1.6.0
charset@1.0.1
cli-progress@3.12.0
cli-table3@0.6.3
colors@1.4.0
combined-stream@1.0.8
commander@11.0.0
commander@8.3.0
core-util-is@1.0.2
csv-parse@4.16.3
dashdash@1.14.1
delayed-stream@1.0.0
des.js@1.1.0
ecc-jsbn@0.1.2
emoji-regex@8.0.0
extend@3.0.2
extsprintf@1.3.0
fast-deep-equal@3.1.3
fast-json-stable-stringify@2.1.0
file-type@3.9.0
getpass@0.1.7
handlebars@4.7.8
har-validator@5.1.5
http-signature@1.3.6
httpntlm@1.8.13
httpreq@1.1.1
iconv-lite@0.6.3
is-fullwidth-code-point@3.0.0
is-typedarray@1.0.0
isstream@0.1.2
jose@4.14.4
js-md4@0.3.2
js-sha512@0.8.0
jsbn@0.1.1
json-schema-traverse@0.4.1
jsprim@2.0.2
lodash@4.17.21

Apache License 2.0

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
use-patent-claims
place-warranty
Cannot
hold-liable
use-trademark
Must
include-copyright
include-license
state-changes
include-notice
19 Packages, Including:
@postman/tunnel-agent@0.6.3
aws-sign2@0.7.0
caseless@0.12.0
forever-agent@0.6.1
http-reasons@0.1.0
liquid-json@0.3.1
mime-format@2.0.1
newman@6.0.0
node-oauth1@1.3.0
oauth-sign@0.9.0
postman-collection-transformer@4.1.7
postman-collection@4.2.0
postman-collection@4.2.1
postman-request@2.88.1-postman.33
postman-runtime@7.33.0
postman-sandbox@4.2.7
postman-url-encoder@3.0.5
serialised-error@1.1.3
uvm@2.1.1

ISC License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
Cannot
hold-liable
Must
include-copyright
include-license
9 Packages, Including:
flatted@3.2.6
har-schema@2.0.0
inherits@2.0.4
json-stringify-safe@5.0.1
lru-cache@6.0.0
minimalistic-assert@1.0.1
semver@7.5.4
teleport-javascript@1.0.0
yallist@4.0.0

BSD 3-Clause "New" or "Revised" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
use-trademark
hold-liable
Must
include-copyright
include-license
5 Packages, Including:
@postman/tough-cookie@4.1.3-postman.1
bcrypt-pbkdf@1.0.2
filesize@10.0.12
qs@6.5.3
source-map@0.6.1

BSD 2-Clause "Simplified" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
hold-liable
Must
include-copyright
include-license
2 Packages, Including:
uglify-js@3.17.4
uri-js@4.4.1

(AFL-2.1 OR BSD-3-Clause)

Permissive
1 Packages, Including:
json-schema@0.4.0

N/A

N/A
1 Packages, Including:
stack-trace@0.0.9

Do What The F*ck You Want To Public License

Permissive
Not OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
sublicense
distribute
modify
Cannot
Must
rename
1 Packages, Including:
stream-length@1.0.2

The Unlicense

Public Domain
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
private-use
modify
Cannot
include-copyright
hold-liable
Must
1 Packages, Including:
tweetnacl@0.14.5
Disclaimer

This deed highlights only some of the key features and terms of the actual license. It is not a license and has no legal value. You should carefully review all of the terms and conditions of the actual license before using the licensed material.

Sandworm is not a law firm and does not provide legal services. Distributing, displaying, or linking to this deed or the license that it summarizes does not create a lawyer-client or any other relationship.

Direct Dependencies

21
All Dependencies CSV
β“˜ This is a list of newman 's direct dependencies. Data on all dependencies, including transitive ones, is available via CSV download.
NameVersionSizeLicenseTypeVulnerabilities
@postman/tough-cookie4.1.3-postman.130.81 kBBSD-3-Clause
prod
async3.2.4149.05 kBMIT
prod
chardet1.6.021.58 kBMIT
prod
cli-progress3.12.016.91 kBMIT
prod
cli-table30.6.314.77 kBMIT
prod
colors1.4.011 kBMIT
prod
commander11.0.044.33 kBMIT
prod
csv-parse4.16.3148.75 kBMIT
prod
filesize10.0.1210.18 kBBSD-3-Clause
prod
liquid-json0.3.118.57 kBApache-2.0
prod
lodash4.17.21311.49 kBMIT
prod
mkdirp3.0.117.83 kBMIT
prod
postman-collection-transformer4.1.738.71 kBApache-2.0
prod
postman-collection4.2.1118.11 kBApache-2.0
prod
postman-request2.88.1-postman.3368.2 kBApache-2.0
prod
1
1
postman-runtime7.33.01.46 MBApache-2.0
prod
1
2
1
1
pretty-ms7.0.13.73 kBMIT
prod
semver7.5.426.25 kBISC
prod
serialised-error1.1.39.33 kBApache-2.0
prod
1
1
word-wrap1.2.54.31 kBMIT
prod
xmlbuilder15.1.161.4 kBMIT
prod

Visualizations

Frequently Asked Questions

What does newman do?

Newman is a command-line collection runner for Postman that lets you effortlessly run and test a Postman collection straight from the command-line interface. It is designed with extensibility at its core, so it can be seamlessly integrated with your continuous integration servers and build systems.

How do you use newman?

Using Newman is relatively straightforward. To start, ensure that you have Node.js of version 16 or higher installed on your system. Newman can be installed using npm, using the command npm install -g newman. This globally installs Newman, allowing usage from anywhere. For a local installation, skip the -g flag. Moreover, Newman can be installed globally using Homebrew, via brew install newman.

To use Newman, run a command like newman run examples/sample-collection.json to specify a collection to be run. This can be a local or remote resource (like a URL from Postman's Cloud API service).

To use Newman as a library in your JavaScript projects, simply require Newman in your project:

const newman = require('newman');
newman.run({
    collection: require('./sample-collection.json'),
    reporters: 'cli'
}, function (err) {
	if (err) { throw err; }
    console.log('collection run complete!');
});

This will execute your Postman collection and log 'collection run complete!' once finished.

Both Newman's CLI and programmatic capabilities are comprehensive, and include various configurations for reporters (like cli, json, junit), timeouts, delays, bailling, and more. You can find further information and usage examples on Newman's GitHub page.

Where are the newman docs?

The comprehensive Newman documentation can be found on its GitHub page at git://github.com/postmanlabs/newman.git. The readme provides an extensive understanding of the library's capabilities, including a Getting Started guide, a usage guide with code examples for both CLI usage and using Newman as a library, command-line options, API references, information on reporters, and more. The documentation is well structured with a detailed table of contents that can guide you through the different sections of the readme.