Home
Docs
GitHub
Pricing
Blog
Log In

Run Sandworm Audit for your App

Get started
Hold on, we're currently generating a fresh version of this report
Generated on Apr 14, 2024 via pnpm

recompose 0.22.0

A React utility belt for function components and higher-order components
Package summary
Share
7
issues
5
high severity
vulnerability
1
license
1
meta
3
2
low severity
vulnerability
1
license
1
2
licenses
23
MIT
1
BSD
Package created
7 Oct 2015
Version published
28 Jan 2017
Maintainers
2
Total deps
24
Direct deps
5
License
MIT

Issues

7

5 high severity issues

high
Recommendation: Upgrade to version 2.6.7 or later
via: fbjs@0.8.18 & others
Recommendation: Validate that the package complies with your license policy
via: hoist-non-react-statics@1.2.0
via: fbjs@0.8.18 & others
via: react@15.7.0
via: react@15.7.0
Collapse
Expand

2 low severity issues

low
Recommendation: Upgrade to version 2.6.1 or later
via: fbjs@0.8.18 & others
Recommendation: Read and validate the license terms
via: hoist-non-react-statics@1.2.0
Collapse
Expand

Licenses

MIT License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
Cannot
hold-liable
Must
include-copyright
include-license
23 Packages, Including:
asap@2.0.6
change-emitter@0.1.6
core-js@1.2.7
create-react-class@15.7.0
encoding@0.1.13
fbjs@0.8.18
iconv-lite@0.6.3
is-stream@1.1.0
isomorphic-fetch@2.2.1
js-tokens@4.0.0
loose-envify@1.4.0
node-fetch@1.7.3
object-assign@4.1.1
promise@7.3.1
prop-types@15.8.1
react-is@16.13.1
react@15.7.0
recompose@0.22.0
safer-buffer@2.1.2
setimmediate@1.0.5
symbol-observable@1.2.0
ua-parser-js@0.7.37
whatwg-fetch@3.6.20

BSD

Invalid
Not OSI Approved
1 Packages, Including:
hoist-non-react-statics@1.2.0
Disclaimer

This deed highlights only some of the key features and terms of the actual license. It is not a license and has no legal value. You should carefully review all of the terms and conditions of the actual license before using the licensed material.

Sandworm is not a law firm and does not provide legal services. Distributing, displaying, or linking to this deed or the license that it summarizes does not create a lawyer-client or any other relationship.

Direct Dependencies

5
All Dependencies CSV
β“˜ This is a list of recompose 's direct dependencies. Data on all dependencies, including transitive ones, is available via CSV download.
NameVersionSizeLicenseTypeVulnerabilities
change-emitter0.1.62.59 kBMIT
prod
fbjs0.8.1898.08 kBMIT
prod
2
1
hoist-non-react-statics1.2.07.14 kBBSD
prod
1
1
react15.7.0140.13 kBMIT
prod peer
4
1
symbol-observable1.2.03.58 kBMIT
prod

Visualizations