Home
Docs
GitHub
Pricing
Blog
Log In

Run Sandworm Audit for your App

Get started
Hold on, we're currently generating a fresh version of this report
Generated on Apr 16, 2024 via pnpm

pouchdb-server 2.3.6

A drop-in replacement for CouchDB, built on Node.js and PouchDB
Package summary
Share
58
issues
7
critical severity
vulnerability
3
license
4
27
high severity
vulnerability
3
license
11
meta
13
8
moderate severity
vulnerability
7
meta
1
16
low severity
license
16
16
licenses
305
MIT
73
Apache-2.0
26
ISC
39
other licenses
BSD-3-Clause
11
WTFPL
6
N/A
4
SEE LICENSE IN LICENSE.md
3
+ 9 more
Package created
6 Mar 2013
Version published
3 Mar 2017
Maintainers
8
Total deps
443
Direct deps
23
License
Apache-2.0

Issues

58

7 critical severity issues

critical
Recommendation: Upgrade to version 4.1.2 or later
via: http-pouchdb@2.1.2 & others
Recommendation: Upgrade to version 1.12.1 or later
via: nomnom@1.8.1
Recommendation: Upgrade to version 0.2.4 or later
via: express-pouchdb@2.3.6
Recommendation: Check the package code and files for license information
via: express-pouchdb@2.3.6
Recommendation: Check the package code and files for license information
via: express-pouchdb@2.3.6
Recommendation: Check the package code and files for license information
via: nomnom@1.8.1
Recommendation: Check the package code and files for license information
via: express-pouchdb@2.3.6
Collapse
Expand

27 high severity issues

high
Recommendation: Upgrade to version 0.5.2 or later
via: serve-favicon@2.3.2
Recommendation: Upgrade to version 9.0.1 or later
via: http-pouchdb@2.1.2 & others
Recommendation: None
via: http-pouchdb@2.1.2 & others
Recommendation: Validate that the package complies with your license policy
via: http-pouchdb@2.1.2 & others
Recommendation: Validate that the package complies with your license policy
via: http-pouchdb@2.1.2 & others
Recommendation: Validate that the package complies with your license policy
via: http-pouchdb@2.1.2 & others
Recommendation: Validate that the package complies with your license policy
via: express-pouchdb@2.3.6 & others
Recommendation: Validate that the package complies with your license policy
via: express-pouchdb@2.3.6 & others
Recommendation: Validate that the package complies with your license policy
via: http-pouchdb@2.1.2 & others
Recommendation: Validate that the package complies with your license policy
via: express-pouchdb@2.3.6 & others
Recommendation: Validate that the package complies with your license policy
via: express-pouchdb@2.3.6
Recommendation: Validate that the package complies with your license policy
via: pouchdb-adapter-node-websql@6.4.3
Recommendation: Validate that the package complies with your license policy
via: express-pouchdb@2.3.6 & others
Recommendation: Validate that the license expression complies with your license policy
via: http-pouchdb@2.1.2 & others
via: http-pouchdb@2.1.2 & others
via: http-pouchdb@2.1.2 & others
via: http-pouchdb@2.1.2 & others
via: http-pouchdb@2.1.2 & others
via: http-pouchdb@2.1.2 & others
via: http-pouchdb@2.1.2 & others
via: http-pouchdb@2.1.2 & others
via: nomnom@1.8.1
via: http-pouchdb@2.1.2 & others
via: http-pouchdb@2.1.2 & others
via: pouchdb-adapter-node-websql@6.4.3
via: http-pouchdb@2.1.2 & others
via: express-pouchdb@2.3.6 & others
Collapse
Expand

8 moderate severity issues

moderate
Recommendation: Upgrade to version 2.0.2 or later
via: express-pouchdb@2.3.6
Recommendation: Upgrade to version 6.12.3 or later
via: http-pouchdb@2.1.2 & others
Recommendation: Upgrade to version 3.0.0 or later
via: express-pouchdb@2.3.6
Recommendation: Upgrade to version 2.0.0 or later
via: serve-favicon@2.3.2
Recommendation: Upgrade to version 0.2.1 or later
via: express-pouchdb@2.3.6
Recommendation: Upgrade to version 4.1.3 or later
via: http-pouchdb@2.1.2 & others
Recommendation: None
via: http-pouchdb@2.1.2 & others
via: pouchdb-core@6.4.3 & others
Collapse
Expand

16 low severity issues

low
Recommendation: Read and validate the license terms
via: express-pouchdb@2.3.6 & others
Recommendation: Read and validate the license terms
via: http-pouchdb@2.1.2 & others
Recommendation: Read and validate the license terms
via: express-pouchdb@2.3.6 & others
Recommendation: Read and validate the license terms
via: http-pouchdb@2.1.2 & others
Recommendation: Read and validate the license terms
via: express-pouchdb@2.3.6
Recommendation: Read and validate the license terms
via: express-pouchdb@2.3.6
Recommendation: Read and validate the license terms
via: http-pouchdb@2.1.2 & others
Recommendation: Read and validate the license terms
via: http-pouchdb@2.1.2 & others
Recommendation: Read and validate the license terms
via: http-pouchdb@2.1.2 & others
Recommendation: Read and validate the license terms
via: express-pouchdb@2.3.6 & others
Recommendation: Read and validate the license terms
via: express-pouchdb@2.3.6 & others
Recommendation: Read and validate the license terms
via: http-pouchdb@2.1.2 & others
Recommendation: Read and validate the license terms
via: express-pouchdb@2.3.6 & others
Recommendation: Read and validate the license terms
via: express-pouchdb@2.3.6
Recommendation: Read and validate the license terms
via: pouchdb-adapter-node-websql@6.4.3
Recommendation: Read and validate the license terms
via: express-pouchdb@2.3.6 & others
Collapse
Expand

Licenses

MIT License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
Cannot
hold-liable
Must
include-copyright
include-license
305 Packages, Including:
abstract-leveldown@2.4.1
abstract-leveldown@3.0.0
abstract-leveldown@4.0.3
accepts@1.3.8
acorn@1.2.2
acorn@5.7.4
ajv@5.5.2
ansi-regex@2.1.1
ansi-styles@1.0.0
array-flatten@1.1.1
asn1@0.2.6
assert-plus@1.0.0
ast-types@0.8.15
ast-types@0.9.6
async@0.9.2
asynckit@0.4.0
attempt-x@1.1.3
aws4@1.12.0
balanced-match@1.0.2
base62@1.2.8
base64url@1.0.6
base64url@3.0.1
basic-auth@1.1.0
bindings@1.3.1
bl@1.2.3
bluebird@1.2.4
bluebird@2.11.0
bluebird@3.7.2
body-parser@1.20.2
brace-expansion@1.1.11
buffer-alloc-unsafe@1.1.0
buffer-alloc@1.2.0
buffer-fill@1.0.0
buffer-from@0.1.1
bytes@3.0.0
bytes@3.1.2
cached-constructors-x@1.0.2
call-bind@1.0.7
camelcase-keys@1.0.0
camelcase@1.2.1
chalk@0.4.0
clone-buffer@1.0.0
co@4.6.0
code-point-at@1.1.0
colors@1.4.0
combined-stream@1.0.8
commander@2.20.3
commoner@0.10.8
compressible@2.0.18
compression@1.7.4

Apache License 2.0

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
use-patent-claims
place-warranty
Cannot
hold-liable
use-trademark
Must
include-copyright
include-license
state-changes
include-notice
73 Packages, Including:
aws-sign2@0.7.0
caseless@0.12.0
couchdb-calculate-session-id@1.1.3
couchdb-eval@1.0.6
couchdb-objects@1.0.7
couchdb-render@1.0.1
couchdb-resp-completer@1.0.3
detect-libc@1.0.3
express-pouchdb@2.3.6
forever-agent@0.6.1
header-case-normalizer@1.0.3
http-pouchdb@2.1.2
oauth-sign@0.8.2
pouchdb-abstract-mapreduce@6.4.3
pouchdb-adapter-http@6.4.3
pouchdb-adapter-leveldb-core@6.4.3
pouchdb-adapter-leveldb@6.4.3
pouchdb-adapter-memory@6.4.3
pouchdb-adapter-node-websql@6.4.3
pouchdb-adapter-utils@6.4.3
pouchdb-adapter-websql-core@6.4.3
pouchdb-ajax@6.4.3
pouchdb-all-dbs@1.1.1
pouchdb-auth@2.1.1
pouchdb-binary-utils@6.4.3
pouchdb-bulkdocs-wrapper@1.0.2
pouchdb-changes-filter@6.4.3
pouchdb-changeslike-wrapper@1.0.1
pouchdb-checkpointer@6.4.3
pouchdb-collate@6.4.3
pouchdb-collections@6.4.3
pouchdb-core@6.4.3
pouchdb-debug@6.4.3
pouchdb-errors@6.4.3
pouchdb-fauxton@0.0.6
pouchdb-find@0.10.5
pouchdb-generate-replication-id@6.4.3
pouchdb-json@6.4.3
pouchdb-list@1.1.0
pouchdb-mapreduce-utils@6.4.3
pouchdb-mapreduce@6.4.3
pouchdb-md5@6.4.3
pouchdb-merge@6.4.3
pouchdb-plugin-error@1.0.1
pouchdb-promise@5.4.0
pouchdb-promise@5.4.5
pouchdb-promise@6.4.3
pouchdb-replication@6.4.3
pouchdb-replicator@2.3.6
pouchdb-req-http-query@1.0.4

ISC License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
Cannot
hold-liable
Must
include-copyright
include-license
26 Packages, Including:
aproba@1.2.0
are-we-there-yet@1.1.7
chownr@1.1.4
console-control-strings@1.1.0
couchdb-log-parse@0.0.4
gauge@2.7.4
glob@5.0.15
graceful-fs@4.2.11
har-schema@2.0.0
har-validator@5.0.3
has-unicode@2.0.1
inflight@1.0.6
inherits@2.0.3
inherits@2.0.4
ini@1.3.8
json-stringify-safe@5.0.1
killable@1.0.1
minimatch@3.1.2
npmlog@4.1.2
once@1.4.0
semver@5.7.2
set-blocking@2.0.0
setprototypeof@1.2.0
signal-exit@3.0.7
wide-align@1.1.5
wrappy@1.0.2

BSD 3-Clause "New" or "Revised" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
use-trademark
hold-liable
Must
include-copyright
include-license
11 Packages, Including:
bcrypt-pbkdf@1.0.2
boom@4.3.1
hawk@6.0.2
jstransform@11.0.3
qs@6.11.0
qs@6.5.3
sntp@2.1.0
source-map@0.4.4
source-map@0.5.7
sqlite3@3.1.13
tough-cookie@2.3.4

Do What The F*ck You Want To Public License

Permissive
Not OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
sublicense
distribute
modify
Cannot
Must
rename
6 Packages, Including:
argsarray@0.0.1
expand-template@1.1.1
spark-md5@2.0.2
spark-md5@3.0.0
truncate-utf8-bytes@1.0.2
utf8-byte-length@1.0.4

N/A

N/A
4 Packages, Including:
extend@1.3.0
is-empty@0.0.1
nomnom@1.8.1
random-uuid-v4@0.0.4

SEE LICENSE IN LICENSE.md

Invalid
Not OSI Approved
3 Packages, Including:
boom@5.3.3
cryptiles@3.2.1
hoek@4.3.1

BSD

Invalid
Not OSI Approved
3 Packages, Including:
esprima-fb@15001.1.0-dev-harmony-fb
esprima-fb@15001.1001.0-dev-harmony-fb
readable-stream@0.0.4

BSD 2-Clause "Simplified" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
hold-liable
Must
include-copyright
include-license
2 Packages, Including:
esprima@2.7.3
esprima@3.1.3

Apache

Invalid
Not OSI Approved
2 Packages, Including:
pouchdb-collate@1.2.0
pouchdb-promise@0.0.0

Apache 2

Invalid
Not OSI Approved
2 Packages, Including:
pouchdb-collections@1.0.1
tiny-queue@0.2.1

The Unlicense

Public Domain
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
private-use
modify
Cannot
include-copyright
hold-liable
Must
2 Packages, Including:
random-uuid-v4@0.0.6
tweetnacl@0.14.5

BSD-3-Clause OR MIT

Permissive
1 Packages, Including:
amdefine@1.0.1

(AFL-2.1 OR BSD-3-Clause)

Permissive
1 Packages, Including:
json-schema@0.4.0

(BSD-2-Clause OR MIT OR Apache-2.0)

Expression
1 Packages, Including:
rc@1.2.8

WTFPL OR ISC

Permissive
1 Packages, Including:
sanitize-filename@1.6.3
Disclaimer

This deed highlights only some of the key features and terms of the actual license. It is not a license and has no legal value. You should carefully review all of the terms and conditions of the actual license before using the licensed material.

Sandworm is not a law firm and does not provide legal services. Distributing, displaying, or linking to this deed or the license that it summarizes does not create a lawyer-client or any other relationship.

Direct Dependencies

23
All Dependencies CSV
β“˜ This is a list of pouchdb-server 's direct dependencies. Data on all dependencies, including transitive ones, is available via CSV download.
NameVersionSizeLicenseTypeVulnerabilities
colors1.4.011 kBMIT
prod
corser2.0.15.73 kBMIT
prod
couchdb-log-parse0.0.47.04 kBISC
prod
express-pouchdb2.3.625.85 kBApache-2.0
prod
4
6
3
9
express4.19.2209.73 kBMIT
prod
http-pouchdb2.1.273.86 kBApache-2.0
prod
1
18
3
7
killable1.0.11.62 kBISC
prod
mkdirp0.5.62.95 kBMIT
prod
nomnom1.8.110.17 kBUNKNOWN
prod
2
1
object-assign4.1.12.61 kBMIT
prod
pouchdb-adapter-http6.4.313.4 kBApache-2.0
prod
1
15
3
4
pouchdb-adapter-leveldb-core6.4.341.59 kBApache-2.0
prod optional
1
2
pouchdb-adapter-leveldb6.4.37.04 kBApache-2.0
prod optional
4
4
pouchdb-adapter-memory6.4.35.02 kBApache-2.0
prod
1
2
pouchdb-adapter-node-websql6.4.35.08 kBApache-2.0
prod optional
4
4
pouchdb-core6.4.324.09 kBApache-2.0
prod
1
1
1
pouchdb-find0.10.5823.32 kBApache-2.0
prod
3
5
pouchdb-mapreduce6.4.36.96 kBApache-2.0
prod
1
1
2
pouchdb-promise6.4.34.93 kBApache-2.0
prod
pouchdb-replication6.4.312.04 kBApache-2.0
prod
1
1
2
serve-favicon2.3.24.93 kBMIT
prod
1
1
tail1.4.04.21 kBMIT
prod
wordwrap1.0.014.17 kBMIT
prod

Visualizations