Home
Docs
GitHub
Pricing
Blog
Log In

Run Sandworm Audit for your App

Get started
Hold on, we're currently generating a fresh version of this report
Generated on Mar 29, 2024 via pnpm

openid-connect 0.1.0

This is an OAuth 2 server implementation with support for OpenID/Connect specification. Based on https://github.com/ammmir/node-oauth2-provider.
Package summary
Share
10
issues
6
critical severity
vulnerability
1
license
5
2
high severity
vulnerability
1
meta
1
2
moderate severity
vulnerability
1
meta
1
2
licenses
5
MIT
5
N/A
Package created
31 Jul 2013
Version published
2 Aug 2013
Maintainers
2
Total deps
10
Direct deps
5
License
UNKNOWN

Issues

10

6 critical severity issues

critical
Recommendation: Upgrade to version 0.3.1 or later
via: jwt-simple@0.1.0
Recommendation: Check the package code and files for license information
via: extend@1.1.3
Recommendation: Check the package code and files for license information
via: redis-modelize@0.0.1
Recommendation: Check the package code and files for license information
via: redis-modelize@0.0.1
Recommendation: Check the package code and files for license information
via: redis-modelize@0.0.1
Recommendation: Check the package code and files for license information
via: serializer@0.0.3
Collapse
Expand

2 high severity issues

high
Recommendation: Upgrade to version 0.5.3 or later
via: jwt-simple@0.1.0
via: extend@1.1.3
Collapse
Expand

2 moderate severity issues

moderate
Recommendation: Upgrade to version 2.0.2 or later
via: extend@1.1.3
via: redis-modelize@0.0.1
Collapse
Expand

Licenses

MIT License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
Cannot
hold-liable
Must
include-copyright
include-license
5 Packages, Including:
bindings@1.5.0
file-uri-to-path@1.0.0
jwt-simple@0.1.0
openid-connect@0.1.0
q@0.9.6

N/A

N/A
5 Packages, Including:
extend@1.1.3
hiredis@0.1.15
redis-modelize@0.0.1
redis@0.8.3
serializer@0.0.3
Disclaimer

This deed highlights only some of the key features and terms of the actual license. It is not a license and has no legal value. You should carefully review all of the terms and conditions of the actual license before using the licensed material.

Sandworm is not a law firm and does not provide legal services. Distributing, displaying, or linking to this deed or the license that it summarizes does not create a lawyer-client or any other relationship.

Direct Dependencies

5
All Dependencies CSV
β“˜ This is a list of openid-connect 's direct dependencies. Data on all dependencies, including transitive ones, is available via CSV download.
NameVersionSizeLicenseTypeVulnerabilities
extend1.1.31.96 kBUNKNOWN
prod
1
1
1
jwt-simple0.1.02.84 kBMIT
prod
1
1
q0.9.623.22 kBMIT
prod
redis-modelize0.0.14.74 kBUNKNOWN
prod
3
1
serializer0.0.32.95 kBUNKNOWN
prod
1

Visualizations