Home
Docs
GitHub
Pricing
Blog
Log In

Run Sandworm Audit for your App

Get started
Hold on, we're currently generating a fresh version of this report
Generated on May 9, 2024 via pnpm

salient 0.2.1

Salient is a natural language processing and sentiment analysis library
Package summary
Share
26
issues
9
critical severity
vulnerability
2
license
7
8
high severity
license
3
meta
5
7
moderate severity
vulnerability
3
meta
4
2
low severity
license
2
12
licenses
76
MIT
17
ISC
7
Apache-2.0
18
other licenses
N/A
7
BSD-3-Clause
4
(MIT OR Apache-2.0)
1
(AFL-2.1 OR BSD-3-Clause)
1
+ 5 more
Package created
27 May 2014
Version published
27 Aug 2015
Maintainers
1
Total deps
118
Direct deps
23
License
MIT

Issues

26

9 critical severity issues

critical
Recommendation: None
via: plotter@0.4.3
Recommendation: Upgrade to version 1.12.1 or later
via: plotter@0.4.3 & others
Recommendation: Check the package code and files for license information
via: redis-stream@0.1.0
Recommendation: Check the package code and files for license information
via: walk@2.2.1
Recommendation: Check the package code and files for license information
via: walk@2.2.1
Recommendation: Check the package code and files for license information
via: sylvester@0.0.21
Recommendation: Check the package code and files for license information
via: twitter-text@1.6.1
Recommendation: Check the package code and files for license information
via: plotter@0.4.3
Recommendation: Check the package code and files for license information
via: xml-stream@0.4.5
Collapse
Expand

8 high severity issues

high
Recommendation: Validate that the package complies with your license policy
via: redis-stream@0.1.0
Recommendation: Validate that the package complies with your license policy
via: readline@0.0.3
Recommendation: Validate that the package complies with your license policy
via: walk@2.2.1
via: cli-color@2.0.4
via: walk@2.2.1
via: request@2.88.2
via: request@2.88.2
via: request@2.88.2
Collapse
Expand

7 moderate severity issues

moderate
Recommendation: Upgrade to version 3.3.5 or later
via: burst-trie@0.1.0
Recommendation: Upgrade to version 4.1.3 or later
via: request@2.88.2
Recommendation: None
via: request@2.88.2
via: redis@4.6.13
via: sylvester@0.0.21
via: redis-stream@0.1.0
via: walk@2.2.1
Collapse
Expand

2 low severity issues

low
Recommendation: Read and validate the license terms
via: redis-stream@0.1.0
Recommendation: Read and validate the license terms
via: readline@0.0.3
Collapse
Expand

Licenses

MIT License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
Cannot
hold-liable
Must
include-copyright
include-license
76 Packages, Including:
@redis/bloom@1.2.0
@redis/client@1.5.14
@redis/graph@1.1.1
@redis/json@1.0.6
@redis/search@1.1.6
@redis/time-series@1.0.5
ajv@6.12.6
asn1@0.2.6
assert-plus@1.0.0
async@3.2.5
asynckit@0.4.0
aws4@1.12.0
bindings@1.5.0
burst-trie@0.1.0
combined-stream@1.0.8
core-util-is@1.0.2
core-util-is@1.0.3
csv-generate@4.4.0
csv-parse@5.5.5
csv-stringify@6.4.6
csv@6.3.8
dashdash@1.14.1
delayed-stream@1.0.0
ecc-jsbn@0.1.2
es6-iterator@2.0.3
event-emitter@0.3.5
extend@3.0.2
extsprintf@1.3.0
fast-deep-equal@3.1.3
fast-json-stable-stringify@2.1.0
file-uri-to-path@1.0.0
form-data@2.3.3
from@0.1.7
generic-pool@3.9.0
getpass@0.1.7
har-validator@5.1.5
he@0.5.0
http-signature@1.2.0
is-promise@2.2.2
is-typedarray@1.0.0
isarray@0.0.1
isstream@0.1.2
jsbn@0.1.1
json-schema-traverse@0.4.1
jsonparse@1.3.1
jsprim@1.4.2
lru-queue@0.1.0
mime-db@1.52.0
mime-types@2.1.35
minimist@1.2.8

ISC License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
Cannot
hold-liable
Must
include-copyright
include-license
17 Packages, Including:
cli-color@2.0.4
d@1.0.2
es5-ext@0.10.64
es6-symbol@3.1.4
es6-weak-map@2.0.3
esniff@2.0.1
ext@1.7.0
har-schema@2.0.0
iconv@2.3.5
iconv@3.0.1
inherits@2.0.4
json-stringify-safe@5.0.1
memoizee@0.4.15
next-tick@1.1.0
timers-ext@0.1.7
type@2.7.2
yallist@4.0.0

Apache License 2.0

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
use-patent-claims
place-warranty
Cannot
hold-liable
use-trademark
Must
include-copyright
include-license
state-changes
include-notice
7 Packages, Including:
aws-sign2@0.7.0
caseless@0.12.0
cluster-key-slot@1.1.2
forever-agent@0.6.1
oauth-sign@0.9.0
request@2.88.2
tunnel-agent@0.6.0

N/A

N/A
7 Packages, Including:
event-stream@2.1.9
forEachAsync@2.2.1
sequence@2.2.1
sylvester@0.0.21
twitter-text@1.6.1
underscore@1.4.4
xml-stream@0.4.5

BSD 3-Clause "New" or "Revised" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
use-trademark
hold-liable
Must
include-copyright
include-license
4 Packages, Including:
bcrypt-pbkdf@1.0.2
hiredis@0.5.0
qs@6.5.3
tough-cookie@2.5.0

(MIT OR Apache-2.0)

Permissive
1 Packages, Including:
JSONStream@1.3.5

(AFL-2.1 OR BSD-3-Clause)

Permissive
1 Packages, Including:
json-schema@0.4.0

MIT/X11

Invalid
Not OSI Approved
1 Packages, Including:
optimist@0.2.8

BSD

Invalid
Not OSI Approved
1 Packages, Including:
readline@0.0.3

The Unlicense

Public Domain
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
private-use
modify
Cannot
include-copyright
hold-liable
Must
1 Packages, Including:
tweetnacl@0.14.5

BSD 2-Clause "Simplified" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
hold-liable
Must
include-copyright
include-license
1 Packages, Including:
uri-js@4.4.1

(MIT OR Apache2)

Invalid
1 Packages, Including:
walk@2.2.1
Disclaimer

This deed highlights only some of the key features and terms of the actual license. It is not a license and has no legal value. You should carefully review all of the terms and conditions of the actual license before using the licensed material.

Sandworm is not a law firm and does not provide legal services. Distributing, displaying, or linking to this deed or the license that it summarizes does not create a lawyer-client or any other relationship.

Direct Dependencies

23
All Dependencies CSV
β“˜ This is a list of salient 's direct dependencies. Data on all dependencies, including transitive ones, is available via CSV download.
NameVersionSizeLicenseTypeVulnerabilities
JSONStream1.3.5136.16 kB(MIT OR Apache-2.0)
prod
async3.2.5146.47 kBMIT
prod
burst-trie0.1.06.12 kBMIT
prod
1
cli-color2.0.438.69 kBISC
prod
1
csv6.3.81.93 MBMIT
prod
he0.5.033.6 kBMIT
prod
hiredis0.5.059.85 kBBSD-3-Clause
prod
iconv3.0.11.14 MBISC
prod
minimist1.2.815.16 kBMIT
prod
node-expat2.4.14.23 MBMIT
prod
plotter0.4.37.25 kBMIT
prod
3
readline0.0.3717.48 kBBSD
prod
1
1
redis-stream0.1.05.21 kBMIT
prod
1
1
1
1
redis4.6.139.44 kBMIT
prod
1
request-progress3.0.05.36 kBMIT
prod
request2.88.257.83 kBApache-2.0
prod
3
2
robots0.9.510.71 kBMIT
prod
sylvester0.0.2130 kBUNKNOWN
prod
1
1
treetagger0.1.12.95 kBMIT
prod
twitter-text1.6.1299.68 kBUNKNOWN
prod
1
underscore1.5.218.01 kBMIT
prod
1
walk2.2.13.29 kB(MIT OR Apache2)
prod
2
2
1
xml-stream0.4.59.67 kBUNKNOWN
prod
1

Visualizations

All Versions