Home
Docs
GitHub
Pricing
Blog
Log In

Run Sandworm Audit for your App

Get started
Hold on, we're currently generating a fresh version of this report
Generated on Apr 20, 2024 via pnpm

react-qr-code 0.1.3

A QR code generator for React and React Native.
Package summary
Share
47
issues
6
critical severity
vulnerability
5
license
1
23
high severity
vulnerability
3
license
6
meta
14
8
moderate severity
vulnerability
7
meta
1
10
low severity
vulnerability
3
license
7
16
licenses
527
MIT
44
ISC
8
Apache-2.0
24
other licenses
BSD-3-Clause
6
BSD-2-Clause
5
Unlicense
2
Apache License, Version 2.0
2
+ 9 more
Package created
28 Jul 2016
Version published
21 Jan 2019
Maintainers
1
Total deps
603
Direct deps
5
License
MIT

Issues

47

6 critical severity issues

critical
Recommendation: None
via: react-native@0.57.8
Recommendation: Upgrade to version 1.3.1 or later
via: react-native@0.57.8
Recommendation: Upgrade to version 3.0.5 or later
via: react-native@0.57.8
Recommendation: Upgrade to version 1.7.3 or later
via: react-native@0.57.8
Recommendation: Upgrade to version 0.2.4 or later
via: react-native@0.57.8
Recommendation: Check the package code and files for license information
via: react-native@0.57.8
Collapse
Expand

23 high severity issues

high
Recommendation: Upgrade to version 5.1.2 or later
via: react-native@0.57.8
Recommendation: Upgrade to version 2.6.7 or later
via: react-native@0.57.8
Recommendation: Upgrade to version 2.1.1 or later
via: react-native@0.57.8
Recommendation: Validate that the package complies with your license policy
via: react-native@0.57.8
Recommendation: Validate that the package complies with your license policy
via: react-native@0.57.8
Recommendation: Read and validate the license terms
via: react-native@0.57.8
Recommendation: Validate that the package complies with your license policy
via: react-native@0.57.8
Recommendation: Validate that the package complies with your license policy
via: react-native@0.57.8
Recommendation: Read and validate the license terms
via: react-native@0.57.8
via: react-art-svg-renderer@0.0.1-rc.8 & others
via: react-art-svg-renderer@0.0.1-rc.8 & others
via: react-native@0.57.8
via: react-native@0.57.8
via: react-native@0.57.8
via: react-art-svg-renderer@0.0.1-rc.8
via: react-native@0.57.8
via: react-native@0.57.8
via: react-native@0.57.8
via: react-native@0.57.8
via: react-native@0.57.8
via: react-native@0.57.8
via: react-art-svg-renderer@0.0.1-rc.8 & others
via: react-native@0.57.8
Collapse
Expand

8 moderate severity issues

moderate
Recommendation: Upgrade to version 4.0.0 or later
via: react-native@0.57.8
Recommendation: Upgrade to version 8.0.1 or later
via: react-native@0.57.8
Recommendation: Upgrade to version 13.1.2 or later
via: react-native@0.57.8
Recommendation: Upgrade to version 0.5.0 or later
via: react-native@0.57.8
Recommendation: Upgrade to version 4.28.4 or later
via: react-native@0.57.8
Recommendation: Upgrade to version 0.2.1 or later
via: react-native@0.57.8
Recommendation: None
via: react-native@0.57.8
via: react-native@0.57.8
Collapse
Expand

10 low severity issues

low
Recommendation: Upgrade to version 2.3.1 or later
via: react-native@0.57.8
Recommendation: Upgrade to version 2.3.1 or later
via: react-native@0.57.8
Recommendation: Upgrade to version 2.6.1 or later
via: react-native@0.57.8
Recommendation: Read and validate the license terms
via: react-native@0.57.8
Recommendation: Read and validate the license terms
via: react-native@0.57.8
Recommendation: Read and validate the license terms
via: react-native@0.57.8
Recommendation: Read and validate the license terms
via: react-native@0.57.8
Recommendation: Read and validate the license terms
via: react-native@0.57.8
Recommendation: Read and validate the license terms
via: react-native@0.57.8
Recommendation: Read and validate the license terms
via: react-native@0.57.8
Collapse
Expand

Licenses

MIT License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
Cannot
hold-liable
Must
include-copyright
include-license
527 Packages, Including:
@babel/code-frame@7.24.2
@babel/compat-data@7.24.4
@babel/core@7.24.4
@babel/generator@7.24.4
@babel/helper-annotate-as-pure@7.22.5
@babel/helper-builder-binary-assignment-operator-visitor@7.22.15
@babel/helper-compilation-targets@7.23.6
@babel/helper-create-class-features-plugin@7.24.4
@babel/helper-create-regexp-features-plugin@7.22.15
@babel/helper-define-polyfill-provider@0.6.1
@babel/helper-environment-visitor@7.22.20
@babel/helper-function-name@7.23.0
@babel/helper-hoist-variables@7.22.5
@babel/helper-member-expression-to-functions@7.23.0
@babel/helper-module-imports@7.24.3
@babel/helper-module-transforms@7.23.3
@babel/helper-optimise-call-expression@7.22.5
@babel/helper-plugin-utils@7.24.0
@babel/helper-remap-async-to-generator@7.22.20
@babel/helper-replace-supers@7.24.1
@babel/helper-simple-access@7.22.5
@babel/helper-skip-transparent-expression-wrappers@7.22.5
@babel/helper-split-export-declaration@7.22.6
@babel/helper-string-parser@7.24.1
@babel/helper-validator-identifier@7.22.20
@babel/helper-validator-option@7.23.5
@babel/helper-wrap-function@7.22.20
@babel/helpers@7.24.4
@babel/highlight@7.24.2
@babel/parser@7.24.4
@babel/plugin-external-helpers@7.24.1
@babel/plugin-proposal-class-properties@7.18.6
@babel/plugin-proposal-export-default-from@7.24.1
@babel/plugin-proposal-nullish-coalescing-operator@7.18.6
@babel/plugin-proposal-object-rest-spread@7.20.7
@babel/plugin-proposal-optional-catch-binding@7.18.6
@babel/plugin-proposal-optional-chaining@7.21.0
@babel/plugin-syntax-class-properties@7.12.13
@babel/plugin-syntax-dynamic-import@7.8.3
@babel/plugin-syntax-export-default-from@7.24.1
@babel/plugin-syntax-flow@7.24.1
@babel/plugin-syntax-jsx@7.24.1
@babel/plugin-syntax-nullish-coalescing-operator@7.8.3
@babel/plugin-syntax-object-rest-spread@7.8.3
@babel/plugin-syntax-optional-catch-binding@7.8.3
@babel/plugin-syntax-optional-chaining@7.8.3
@babel/plugin-syntax-typescript@7.24.1
@babel/plugin-transform-arrow-functions@7.24.1
@babel/plugin-transform-async-to-generator@7.24.1
@babel/plugin-transform-block-scoped-functions@7.24.1

ISC License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
Cannot
hold-liable
Must
include-copyright
include-license
44 Packages, Including:
anymatch@2.0.0
are-we-there-yet@1.1.7
capture-exit@1.2.0
cli-width@2.2.1
cliui@3.2.0
color-support@1.1.3
electron-to-chromium@1.4.745
fs.realpath@1.0.0
gauge@1.2.7
get-caller-file@1.0.3
glob-parent@2.0.0
glob@7.2.3
graceful-fs@4.2.11
has-unicode@2.0.1
hosted-git-info@2.8.9
inflight@1.0.6
inherits@2.0.4
isexe@2.0.0
lru-cache@4.1.5
lru-cache@5.1.1
minimatch@3.1.2
mute-stream@0.0.7
npmlog@2.0.4
once@1.4.0
picocolors@1.0.0
pseudomap@1.0.2
remove-trailing-separator@1.1.0
require-main-filename@1.0.1
rimraf@2.7.1
sax@1.1.6
semver@5.7.2
semver@6.3.1
set-blocking@2.0.0
setprototypeof@1.2.0
signal-exit@3.0.7
slide@1.1.6
which-module@2.0.1
which@1.3.1
wrappy@1.0.2
write-file-atomic@1.3.4
y18n@3.2.2
yallist@2.1.2
yallist@3.1.1
yargs-parser@7.0.0

Apache License 2.0

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
use-patent-claims
place-warranty
Cannot
hold-liable
use-trademark
Must
include-copyright
include-license
state-changes
include-notice
8 Packages, Including:
@ampproject/remapping@2.3.0
bser@2.1.1
fb-watchman@2.0.2
spdx-correct@3.2.0
validate-npm-package-license@3.0.4
walker@1.0.8
watch@0.18.0
xcode@1.1.0

BSD 3-Clause "New" or "Revised" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
use-trademark
hold-liable
Must
include-copyright
include-license
6 Packages, Including:
makeerror@1.0.12
react-devtools-core@3.6.3
source-map@0.5.7
source-map@0.6.1
sprintf-js@1.0.3
tmpl@1.0.5

BSD 2-Clause "Simplified" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
hold-liable
Must
include-copyright
include-license
5 Packages, Including:
esprima@4.0.1
normalize-package-data@2.5.0
regjsparser@0.9.1
uglify-es@3.3.9
webidl-conversions@3.0.1

The Unlicense

Public Domain
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
private-use
modify
Cannot
include-copyright
hold-liable
Must
2 Packages, Including:
big-integer@1.6.52
stream-buffers@2.2.0

Apache License, Version 2.0

Invalid
Not OSI Approved
2 Packages, Including:
rx-lite-aggregates@4.0.8
rx-lite@4.0.8

(MIT OR Apache-2.0)

Permissive
1 Packages, Including:
atob@2.1.2

Creative Commons Attribution 4.0 International

Uncategorized
Not OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
Cannot
Must
1 Packages, Including:
caniuse-lite@1.0.30001611

Public Domain

Invalid
Not OSI Approved
1 Packages, Including:
jsonify@0.0.1

MIT/X11

Invalid
Not OSI Approved
1 Packages, Including:
optimist@0.6.1

N/A

N/A
1 Packages, Including:
options@0.0.6

Creative Commons Attribution 3.0 Unported

Uncategorized
Not OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
Cannot
Must
1 Packages, Including:
spdx-exceptions@2.5.0

Creative Commons Zero v1.0 Universal

Public Domain
Not OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
Cannot
Must
1 Packages, Including:
spdx-license-ids@3.0.17

(MIT OR CC0-1.0)

Public Domain
1 Packages, Including:
type-fest@0.7.1

(LGPL-2.0 or MIT)

Permissive
1 Packages, Including:
xmldom@0.1.31
Disclaimer

This deed highlights only some of the key features and terms of the actual license. It is not a license and has no legal value. You should carefully review all of the terms and conditions of the actual license before using the licensed material.

Sandworm is not a law firm and does not provide legal services. Distributing, displaying, or linking to this deed or the license that it summarizes does not create a lawyer-client or any other relationship.

Direct Dependencies

5
All Dependencies CSV
β“˜ This is a list of react-qr-code 's direct dependencies. Data on all dependencies, including transitive ones, is available via CSV download.
NameVersionSizeLicenseTypeVulnerabilities
prop-types15.8.122.12 kBMIT
prod
qr.js0.0.08.95 kBMIT
prod
react-art-svg-renderer0.0.1-rc.85.28 kBMIT
prod
4
react-native0.57.88.34 MBMIT
prod peer
6
22
8
10
react16.6.351.32 kBMIT
prod peer

Visualizations