Home
Docs
GitHub
Pricing
Blog
Log In

Run Sandworm Audit for your App

Get started
Hold on, we're currently generating a fresh version of this report
Generated on Feb 27, 2024 via pnpm

react-color-picker 1.4.1

React Color Picker
Package summary
Share
7
issues
2
critical severity
license
2
3
high severity
vulnerability
1
license
2
2
low severity
license
2
5
licenses
15
MIT
2
N/A
2
BSD
3
other licenses
Apache-2.0
2
BSD-3-Clause OR MIT
1
Package created
15 Oct 2014
Version published
27 Oct 2014
Maintainers
1
Total deps
22
Direct deps
5
License
MIT

Issues

7

2 critical severity issues

critical
Recommendation: Check the package code and files for license information
via: react@0.11.2
Recommendation: Check the package code and files for license information
via: tinycolor2@1.0.0
Collapse
Expand

3 high severity issues

high
Recommendation: Upgrade to version 0.14.0 or later
via: react@0.11.2
Recommendation: Validate that the package complies with your license policy
via: react@0.11.2
Recommendation: Validate that the package complies with your license policy
via: react@0.11.2
Collapse
Expand

2 low severity issues

low
Recommendation: Read and validate the license terms
via: react@0.11.2
Recommendation: Read and validate the license terms
via: react@0.11.2
Collapse
Expand

Licenses

MIT License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
Cannot
hold-liable
Must
include-copyright
include-license
15 Packages, Including:
classy@1.4.10
copy-utils@0.1.1
copy-utils@1.0.0
envify@2.0.1
fn-queue@0.2.1
functionally@0.6.2
hasown@1.0.1
i-s@1.2.3
newify@1.1.9
object-keys@0.4.0
react-color-picker@1.4.1
region@1.1.5
through@2.3.8
xtend@2.1.2
zemitter@0.2.5

N/A

N/A
2 Packages, Including:
base62@0.1.1
tinycolor2@1.0.0

BSD

Invalid
Not OSI Approved
2 Packages, Including:
esprima-fb@3001.1.0-dev-harmony-fb
source-map@0.1.31

Apache License 2.0

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
use-patent-claims
place-warranty
Cannot
hold-liable
use-trademark
Must
include-copyright
include-license
state-changes
include-notice
2 Packages, Including:
jstransform@3.0.0
react@0.11.2

BSD-3-Clause OR MIT

Permissive
1 Packages, Including:
amdefine@1.0.1
Disclaimer

This deed highlights only some of the key features and terms of the actual license. It is not a license and has no legal value. You should carefully review all of the terms and conditions of the actual license before using the licensed material.

Sandworm is not a law firm and does not provide legal services. Distributing, displaying, or linking to this deed or the license that it summarizes does not create a lawyer-client or any other relationship.

Direct Dependencies

5
All Dependencies CSV
β“˜ This is a list of react-color-picker 's direct dependencies. Data on all dependencies, including transitive ones, is available via CSV download.
NameVersionSizeLicenseTypeVulnerabilities
copy-utils1.0.09.07 kBMIT
prod
functionally0.6.214.86 kBMIT
prod
react0.11.2593.6 kBApache-2.0
prod
1
3
2
region1.1.519.66 kBMIT
prod
tinycolor21.0.0135.67 kBUNKNOWN
prod
1

Visualizations