Home
Docs
GitHub
Pricing
Blog
Log In

Run Sandworm Audit for your App

Get started
Hold on, we're currently generating a fresh version of this report
Generated on Feb 14, 2024 via pnpm

player 0.3.1

a command line player, supports play mp3 both from url and local stream.
Package summary
Share
6
issues
4
critical severity
vulnerability
1
license
3
1
high severity
vulnerability
1
1
moderate severity
vulnerability
1
3
licenses
12
MIT
3
N/A
1
ISC
Package created
23 Jul 2013
Version published
30 Jan 2015
Maintainers
1
Total deps
16
Direct deps
6
License
MIT

Issues

6

4 critical severity issues

critical
Recommendation: Upgrade to version 1.12.1 or later
via: underscore@1.6.0
Recommendation: Check the package code and files for license information
via: lame@1.1.1 & others
Recommendation: Check the package code and files for license information
via: lame@1.1.1
Recommendation: Check the package code and files for license information
via: speaker@0.2.1
Collapse
Expand

1 high severity issue

high
Recommendation: Upgrade to version 2.6.9 or later
via: lame@1.1.1 & others
Collapse
Expand

1 moderate severity issue

moderate
Recommendation: Upgrade to version 2.6.9 or later
via: lame@1.1.1 & others
Collapse
Expand

Licenses

MIT License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
Cannot
hold-liable
Must
include-copyright
include-license
12 Packages, Including:
async@0.9.2
bindings@1.2.1
core-util-is@1.0.3
home@0.1.8
isarray@0.0.1
ms@2.0.0
nan@1.2.0
player@0.3.1
pool_stream@0.0.2
readable-stream@1.0.34
string_decoder@0.10.31
underscore@1.6.0

N/A

N/A
3 Packages, Including:
debug@1.0.5
lame@1.1.1
speaker@0.2.1

ISC License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
Cannot
hold-liable
Must
include-copyright
include-license
1 Packages, Including:
inherits@2.0.4
Disclaimer

This deed highlights only some of the key features and terms of the actual license. It is not a license and has no legal value. You should carefully review all of the terms and conditions of the actual license before using the licensed material.

Sandworm is not a law firm and does not provide legal services. Distributing, displaying, or linking to this deed or the license that it summarizes does not create a lawyer-client or any other relationship.

Direct Dependencies

6
All Dependencies CSV
β“˜ This is a list of player 's direct dependencies. Data on all dependencies, including transitive ones, is available via CSV download.
NameVersionSizeLicenseTypeVulnerabilities
async0.9.220.46 kBMIT
prod
home0.1.83.59 kBMIT
prod
lame1.1.13.09 MBUNKNOWN
prod
2
1
1
pool_stream0.0.22.24 kBMIT
prod
speaker0.2.1836.69 kBUNKNOWN
prod
2
1
1
underscore1.6.019.71 kBMIT
prod
1

Visualizations