Home
Docs
GitHub
Pricing
Blog
Log In

Run Sandworm Audit for your App

Get started
Hold on, we're currently generating a fresh version of this report
Generated on May 18, 2024 via pnpm

telegram-mtproto 3.2.9

Telegram MTProto library
Package summary
Share
13
issues
7
high severity
vulnerability
2
meta
5
6
moderate severity
vulnerability
3
meta
3
5
licenses
77
MIT
11
ISC
2
Apache-2.0
2
other licenses
BSD-2-Clause
1
(MIT AND Zlib)
1
Package created
6 Jan 2017
Version published
15 Sep 2017
Maintainers
1
Total deps
92
Direct deps
24
License
MIT

Issues

13

7 high severity issues

high
Recommendation: Upgrade to version 0.18.1 or later
via: axios@0.16.2
Recommendation: Upgrade to version 0.21.2 or later
via: axios@0.16.2
via: axios@0.16.2
via: mtproto-logger@0.1.9 & others
via: folktale@2.3.2
via: fluture@7.2.2
via: uuid@3.4.0
Collapse
Expand

6 moderate severity issues

moderate
Recommendation: Upgrade to version 6.12.3 or later
via: ajv@5.5.2 & others
Recommendation: Upgrade to version 0.21.1 or later
via: axios@0.16.2
Recommendation: Upgrade to version 0.28.0 or later
via: axios@0.16.2
via: mtproto-logger@0.1.9 & others
via: mtproto-logger@0.1.9 & others
via: mtproto-storage-fs@0.3.1
Collapse
Expand

Licenses

MIT License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
Cannot
hold-liable
Must
include-copyright
include-license
77 Packages, Including:
@goodmind/node-cryptojs-aes@0.5.0
@most/multicast@1.3.0
@most/prelude@1.8.0
@safareli/free@1.0.0
ajv-keywords@2.1.1
ajv@5.5.2
ansi-styles@3.2.1
apropos@0.6.2
array-flatten@2.1.2
axios@0.16.2
bluebird@3.7.2
chalk@2.4.2
co@4.6.0
color-convert@1.9.3
color-name@1.1.3
concurrify@1.1.1
daggy@0.0.1
debug@2.6.9
define-data-property@1.1.4
define-properties@1.2.1
detect-node@2.1.0
es-define-property@1.0.0
es-errors@1.3.0
es6-iterator@2.0.3
escape-string-regexp@1.0.5
event-emitter@0.3.5
eventemitter2@4.1.2
fantasy-land@1.0.1
fast-deep-equal@1.1.0
fast-json-stable-stringify@2.1.0
fluture@7.2.2
folktale@2.3.2
follow-redirects@1.15.6
fs-extra@4.0.3
function-bind@1.1.2
get-intrinsic@1.2.4
globalthis@1.0.4
gopd@1.0.1
has-flag@3.0.0
has-property-descriptors@1.0.2
has-proto@1.0.3
has-symbols@1.0.3
hasown@2.0.2
inspect-f@1.2.2
is-buffer@1.1.6
is-promise@2.2.2
js-tokens@4.0.0
json-schema-traverse@0.3.1
jsonfile@4.0.0
lodash-es@4.17.21

ISC License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
Cannot
hold-liable
Must
include-copyright
include-license
11 Packages, Including:
d@1.0.2
es5-ext@0.10.64
es6-symbol@3.1.4
es6-weak-map@2.0.3
esniff@2.0.1
ext@1.7.0
graceful-fs@4.2.11
memoizee@0.4.15
next-tick@1.1.0
timers-ext@0.1.7
type@2.7.2

Apache License 2.0

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
use-patent-claims
place-warranty
Cannot
hold-liable
use-trademark
Must
include-copyright
include-license
state-changes
include-notice
2 Packages, Including:
denque@1.5.1
redux-act@1.8.0

BSD 2-Clause "Simplified" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
hold-liable
Must
include-copyright
include-license
1 Packages, Including:
fantasy-combinators@0.0.1

(MIT AND Zlib)

Permissive
1 Packages, Including:
pako@1.0.11
Disclaimer

This deed highlights only some of the key features and terms of the actual license. It is not a license and has no legal value. You should carefully review all of the terms and conditions of the actual license before using the licensed material.

Sandworm is not a law firm and does not provide legal services. Distributing, displaying, or linking to this deed or the license that it summarizes does not create a lawyer-client or any other relationship.

Direct Dependencies

24
All Dependencies CSV
β“˜ This is a list of telegram-mtproto 's direct dependencies. Data on all dependencies, including transitive ones, is available via CSV download.
NameVersionSizeLicenseTypeVulnerabilities
@goodmind/node-cryptojs-aes0.5.0220.14 kBMIT
prod
@safareli/free1.0.058.34 kBMIT
prod
ajv-keywords2.1.115.33 kBMIT
prod
1
ajv5.5.2493.95 kBMIT
prod peer
1
apropos0.6.251.52 kBMIT
prod
axios0.16.277.34 kBMIT
prod
3
2
bluebird3.7.2136.03 kBMIT
prod
detect-node2.1.01.57 kBMIT
prod
eventemitter24.1.29.63 kBMIT
prod
fluture7.2.243.77 kBMIT
prod
1
folktale2.3.279.01 kBMIT
prod
1
most-subject5.3.015.33 kBMIT
prod
most1.9.0118.85 kBMIT
prod peer
mtproto-logger0.1.917.02 kBMIT
prod
1
2
mtproto-shared0.1.85.13 kBMIT
prod
1
1
mtproto-storage-fs0.3.13.66 kBMIT
prod
1
3
pako1.0.11199.69 kB(MIT AND Zlib)
prod
ramda0.24.1157.25 kBMIT
prod
randombytes2.1.02.6 kBMIT
prod
redux-act1.8.027.96 kBApache-2.0
prod
redux-most0.6.318.47 kBMIT
prod
redux3.7.230.05 kBMIT
prod peer
rusha0.8.1415.02 kBMIT
prod
uuid3.4.011.87 kBMIT
prod
1

Visualizations