Home
Docs
GitHub
Pricing
Blog
Log In

Run Sandworm Audit for your App

Get started
Hold on, we're currently generating a fresh version of this report
This package has been deprecated with the following message: The functionality that this package provided is now in @npmcli/arborist
Generated on Apr 16, 2024 via pnpm

read-package-tree 5.3.0

Read the contents of node_modules.
Package summary
Share
5
issues
3
high severity
license
1
meta
2
2
low severity
license
2
6
licenses
81
MIT
15
ISC
2
Apache-2.0
3
other licenses
BSD-2-Clause
1
CC-BY-3.0
1
CC0-1.0
1
Package created
12 Aug 2014
Version published
26 Jun 2019
Maintainers
5
Total deps
101
Direct deps
3
License
ISC

Issues

5

3 high severity issues

high
Recommendation: Read and validate the license terms
via: read-package-json@2.1.2
via: read-package-tree@5.3.0
via: readdir-scoped-modules@1.1.0
Collapse
Expand

2 low severity issues

low
Recommendation: Read and validate the license terms
via: read-package-json@2.1.2
Recommendation: Read and validate the license terms
via: read-package-json@2.1.2
Collapse
Expand

Licenses

MIT License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
Cannot
hold-liable
Must
include-copyright
include-license
81 Packages, Including:
array-buffer-byte-length@1.0.1
array.prototype.reduce@1.0.7
arraybuffer.prototype.slice@1.0.3
asap@2.0.6
available-typed-arrays@1.0.7
balanced-match@1.0.2
brace-expansion@1.1.11
call-bind@1.0.7
concat-map@0.0.1
data-view-buffer@1.0.1
data-view-byte-length@1.0.1
data-view-byte-offset@1.0.0
debuglog@1.0.1
define-data-property@1.1.4
define-properties@1.2.1
es-abstract@1.23.3
es-array-method-boxes-properly@1.0.0
es-define-property@1.0.0
es-errors@1.3.0
es-object-atoms@1.0.0
es-set-tostringtag@2.0.3
es-to-primitive@1.2.1
for-each@0.3.3
function-bind@1.1.2
function.prototype.name@1.1.6
functions-have-names@1.2.3
get-intrinsic@1.2.4
get-symbol-description@1.0.2
globalthis@1.0.3
gopd@1.0.1
has-bigints@1.0.2
has-property-descriptors@1.0.2
has-proto@1.0.3
has-symbols@1.0.3
has-tostringtag@1.0.2
hasown@2.0.2
internal-slot@1.0.7
is-array-buffer@3.0.4
is-bigint@1.0.4
is-boolean-object@1.1.2
is-callable@1.2.7
is-core-module@2.13.1
is-data-view@1.0.1
is-date-object@1.0.5
is-negative-zero@2.0.3
is-number-object@1.0.7
is-regex@1.1.4
is-shared-array-buffer@1.0.3
is-string@1.0.7
is-symbol@1.0.4

ISC License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
Cannot
hold-liable
Must
include-copyright
include-license
15 Packages, Including:
dezalgo@1.0.4
fs.realpath@1.0.0
glob@7.2.3
graceful-fs@4.2.11
hosted-git-info@2.8.9
inflight@1.0.6
inherits@2.0.4
minimatch@3.1.2
npm-normalize-package-bin@1.0.1
once@1.4.0
read-package-json@2.1.2
read-package-tree@5.3.0
readdir-scoped-modules@1.1.0
semver@5.7.2
wrappy@1.0.2

Apache License 2.0

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
use-patent-claims
place-warranty
Cannot
hold-liable
use-trademark
Must
include-copyright
include-license
state-changes
include-notice
2 Packages, Including:
spdx-correct@3.2.0
validate-npm-package-license@3.0.4

BSD 2-Clause "Simplified" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
hold-liable
Must
include-copyright
include-license
1 Packages, Including:
normalize-package-data@2.5.0

Creative Commons Attribution 3.0 Unported

Uncategorized
Not OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
Cannot
Must
1 Packages, Including:
spdx-exceptions@2.5.0

Creative Commons Zero v1.0 Universal

Public Domain
Not OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
Cannot
Must
1 Packages, Including:
spdx-license-ids@3.0.17
Disclaimer

This deed highlights only some of the key features and terms of the actual license. It is not a license and has no legal value. You should carefully review all of the terms and conditions of the actual license before using the licensed material.

Sandworm is not a law firm and does not provide legal services. Distributing, displaying, or linking to this deed or the license that it summarizes does not create a lawyer-client or any other relationship.

Direct Dependencies

3
All Dependencies CSV
β“˜ This is a list of read-package-tree 's direct dependencies. Data on all dependencies, including transitive ones, is available via CSV download.
NameVersionSizeLicenseTypeVulnerabilities
read-package-json2.1.26.58 kBISC
prod
1
2
readdir-scoped-modules1.1.01.85 kBISC
prod
1
util-promisify2.1.014.76 kBMIT
prod

Visualizations