Home
Docs
GitHub
Pricing
Blog
Log In

Run Sandworm Audit for your App

Get started
Generated on May 27, 2024 via pnpm

pouchdb 7.2.0

PouchDB is a pocket-sized database
Package summary
Share
10
issues
5
high severity
vulnerability
1
license
1
meta
3
1
moderate severity
vulnerability
1
4
low severity
vulnerability
1
license
3
7
licenses
49
MIT
2
WTFPL
2
Unlicense
6
other licenses
BSD-3-Clause
2
Apache-2.0
2
ISC
1
BSD
1
Package created
25 Oct 2012
Version published
16 Feb 2020
Maintainers
12
Total deps
59
Direct deps
20
License
Apache-2.0

Issues

10

5 high severity issues

high
Recommendation: Upgrade to version 2.6.7 or later
via: node-fetch@2.4.1
Recommendation: Validate that the package complies with your license policy
via: level-write-stream@1.0.0
via: level@6.0.0
via: level@6.0.0 & others
via: uuid@3.3.3
Collapse
Expand

1 moderate severity issue

moderate
Recommendation: Upgrade to version 4.1.3 or later
via: fetch-cookie@0.7.3
Collapse
Expand

4 low severity issues

low
Recommendation: Upgrade to version 2.6.1 or later
via: node-fetch@2.4.1
Recommendation: Read and validate the license terms
via: argsarray@0.0.1
Recommendation: Read and validate the license terms
via: spark-md5@3.0.0
Recommendation: Read and validate the license terms
via: level-write-stream@1.0.0
Collapse
Expand

Licenses

MIT License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
Cannot
hold-liable
Must
include-copyright
include-license
49 Packages, Including:
abort-controller@3.0.0
abstract-leveldown@6.0.3
abstract-leveldown@6.2.3
abstract-leveldown@6.3.0
base64-js@1.5.1
buffer-from@1.1.0
buffer@5.7.1
clone-buffer@1.0.0
core-util-is@1.0.3
deferred-leveldown@5.1.0
deferred-leveldown@5.3.0
double-ended-queue@2.1.0-0
encoding-down@6.3.0
end-stream@0.1.0
errno@0.1.8
event-target-shim@5.0.1
immediate@3.0.6
immediate@3.3.0
isarray@0.0.1
level-codec@9.0.1
level-concat-iterator@2.0.1
level-errors@2.0.1
level-iterator-stream@4.0.2
level-js@5.0.2
level-packager@5.1.1
level-supports@1.0.1
level-write-stream@1.0.0
level@6.0.0
leveldown@5.4.1
levelup@4.1.0
levelup@4.4.0
ltgt@2.2.1
napi-macros@2.0.0
node-fetch@2.4.1
node-gyp-build@4.1.1
opencollective-postinstall@2.0.3
prr@1.0.1
psl@1.9.0
punycode@2.3.1
readable-stream@1.0.33
readable-stream@3.6.2
safe-buffer@5.2.1
string_decoder@0.10.31
string_decoder@1.3.0
through2@3.0.1
util-deprecate@1.0.2
uuid@3.3.3
write-stream@0.4.3
xtend@4.0.2

Do What The F*ck You Want To Public License

Permissive
Not OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
sublicense
distribute
modify
Cannot
Must
rename
2 Packages, Including:
argsarray@0.0.1
spark-md5@3.0.0

The Unlicense

Public Domain
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
private-use
modify
Cannot
include-copyright
hold-liable
Must
2 Packages, Including:
es6-denodeify@0.1.5
fetch-cookie@0.7.3

BSD 3-Clause "New" or "Revised" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
use-trademark
hold-liable
Must
include-copyright
include-license
2 Packages, Including:
ieee754@1.2.1
tough-cookie@2.5.0

Apache License 2.0

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
use-patent-claims
place-warranty
Cannot
hold-liable
use-trademark
Must
include-copyright
include-license
state-changes
include-notice
2 Packages, Including:
pouchdb@7.2.0
vuvuzela@1.0.3

ISC License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
Cannot
hold-liable
Must
include-copyright
include-license
1 Packages, Including:
inherits@2.0.4

BSD

Invalid
Not OSI Approved
1 Packages, Including:
readable-stream@0.0.4
Disclaimer

This deed highlights only some of the key features and terms of the actual license. It is not a license and has no legal value. You should carefully review all of the terms and conditions of the actual license before using the licensed material.

Sandworm is not a law firm and does not provide legal services. Distributing, displaying, or linking to this deed or the license that it summarizes does not create a lawyer-client or any other relationship.

Direct Dependencies

20
All Dependencies CSV
β“˜ This is a list of pouchdb 's direct dependencies. Data on all dependencies, including transitive ones, is available via CSV download.
NameVersionSizeLicenseTypeVulnerabilities
abort-controller3.0.017.14 kBMIT
prod
argsarray0.0.12.57 kBWTFPL
prod
1
buffer-from1.1.01.59 kBMIT
prod
clone-buffer1.0.02.11 kBMIT
prod
double-ended-queue2.1.0-06.97 kBMIT
prod
fetch-cookie0.7.33.51 kBUnlicense
prod
1
immediate3.0.64.79 kBMIT
prod
inherits2.0.41.98 kBISC
prod
level-codec9.0.17.87 kBMIT
prod
level-write-stream1.0.01.73 kBMIT
prod
1
1
level6.0.013.17 kBMIT
prod
2
leveldown5.4.11.63 MBMIT
prod
1
levelup4.1.024.27 kBMIT
prod
ltgt2.2.14.97 kBMIT
prod
node-fetch2.4.140.76 kBMIT
prod
1
1
readable-stream1.0.3315.05 kBMIT
prod
spark-md53.0.09.44 kBWTFPL
prod
1
through23.0.15.37 kBMIT
prod
uuid3.3.311.83 kBMIT
prod
1
vuvuzela1.0.38.03 kBApache-2.0
prod

Visualizations