Home
Docs
GitHub
Pricing
Blog
Log In

Run Sandworm Audit for your App

Get started
Hold on, we're currently generating a fresh version of this report
Generated on May 26, 2024 via pnpm

node-lambda 0.8.14

Command line tool for locally running and remotely deploying your node.js applications to Amazon Lambda.
Package summary
Share
8
issues
1
critical severity
license
1
5
high severity
vulnerability
1
license
2
meta
2
1
moderate severity
vulnerability
1
1
low severity
license
1
8
licenses
42
MIT
10
ISC
2
Apache-2.0
5
other licenses
BSD
1
BSD-3-Clause
1
MIT or GPLv3
1
BSD-2-Clause
1
+ 1 more
Package created
23 Nov 2014
Version published
27 Mar 2017
Maintainers
2
Total deps
59
Direct deps
7
License
BSD-2-Clause

Issues

8

1 critical severity issue

critical
Recommendation: Check the package code and files for license information
via: node-zip@1.1.1
Collapse
Expand

5 high severity issues

high
Recommendation: Upgrade to version 3.8.0 or later
via: node-zip@1.1.1
Recommendation: Validate that the package complies with your license policy
via: dotenv@0.4.0
Recommendation: Validate that the package complies with your license policy
via: node-zip@1.1.1
via: aws-sdk@2.1628.0
via: aws-sdk@2.1628.0
Collapse
Expand

1 moderate severity issue

moderate
Recommendation: Upgrade to version 2.7.0 or later
via: node-zip@1.1.1
Collapse
Expand

1 low severity issue

low
Recommendation: Read and validate the license terms
via: dotenv@0.4.0
Collapse
Expand

Licenses

MIT License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
Cannot
hold-liable
Must
include-copyright
include-license
42 Packages, Including:
async@0.9.2
available-typed-arrays@1.0.7
balanced-match@1.0.2
base64-js@1.5.1
brace-expansion@1.1.11
buffer@4.9.2
call-bind@1.0.7
commander@2.20.3
concat-map@0.0.1
define-data-property@1.1.4
es-define-property@1.0.0
es-errors@1.3.0
events@1.1.1
for-each@0.3.3
fs-extra@0.30.0
function-bind@1.1.2
get-intrinsic@1.2.4
gopd@1.0.1
has-property-descriptors@1.0.2
has-proto@1.0.3
has-symbols@1.0.3
has-tostringtag@1.0.2
hasown@2.0.2
is-arguments@1.1.1
is-callable@1.2.7
is-generator-function@1.0.10
is-typed-array@1.1.13
isarray@1.0.0
jsonfile@2.4.0
klaw@1.3.1
pako@0.2.9
path-is-absolute@1.0.1
possible-typed-array-names@1.0.0
punycode@1.3.2
querystring@0.2.0
set-function-length@1.2.2
url@0.10.3
util@0.12.5
uuid@8.0.0
which-typed-array@1.1.15
xml2js@0.6.2
xmlbuilder@11.0.1

ISC License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
Cannot
hold-liable
Must
include-copyright
include-license
10 Packages, Including:
fs.realpath@1.0.0
glob@7.2.3
graceful-fs@4.2.11
inflight@1.0.6
inherits@2.0.4
minimatch@3.1.2
once@1.4.0
rimraf@2.7.1
sax@1.2.1
wrappy@1.0.2

Apache License 2.0

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
use-patent-claims
place-warranty
Cannot
hold-liable
use-trademark
Must
include-copyright
include-license
state-changes
include-notice
2 Packages, Including:
aws-sdk@2.1628.0
jmespath@0.16.0

BSD

Invalid
Not OSI Approved
1 Packages, Including:
dotenv@0.4.0

BSD 3-Clause "New" or "Revised" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
use-trademark
hold-liable
Must
include-copyright
include-license
1 Packages, Including:
ieee754@1.1.13

MIT or GPLv3

Invalid
1 Packages, Including:
jszip@2.5.0

BSD 2-Clause "Simplified" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
hold-liable
Must
include-copyright
include-license
1 Packages, Including:
node-lambda@0.8.14

N/A

N/A
1 Packages, Including:
node-zip@1.1.1
Disclaimer

This deed highlights only some of the key features and terms of the actual license. It is not a license and has no legal value. You should carefully review all of the terms and conditions of the actual license before using the licensed material.

Sandworm is not a law firm and does not provide legal services. Distributing, displaying, or linking to this deed or the license that it summarizes does not create a lawyer-client or any other relationship.

Direct Dependencies

7
All Dependencies CSV
β“˜ This is a list of node-lambda 's direct dependencies. Data on all dependencies, including transitive ones, is available via CSV download.
NameVersionSizeLicenseTypeVulnerabilities
async0.9.220.46 kBMIT
prod
aws-sdk2.1628.091.24 MBApache-2.0
prod
2
commander2.20.318.26 kBMIT
prod
dotenv0.4.04.73 kBBSD
prod
1
1
fs-extra0.30.024.22 kBMIT
prod
node-zip1.1.12.99 kBUNKNOWN
prod
1
2
1
rimraf2.7.15.53 kBISC
prod

Visualizations