Home
Docs
GitHub
Pricing
Blog
Log In

Run Sandworm Audit for your App

Get started
Hold on, we're currently generating a fresh version of this report
Generated on May 16, 2024 via pnpm

update-notifier-cjs 5.1.6

Update notifications for your CLI app, maintained in CommonJS (CJS)
Package summary
Share
1
issue
1
high severity
license
1
5
licenses
51
MIT
10
ISC
3
BSD-2-Clause
2
other licenses
(BSD-2-Clause OR MIT OR Apache-2.0)
1
(MIT OR CC0-1.0)
1
Package created
8 Sep 2022
Version published
3 Nov 2022
Maintainers
1
Total deps
66
Direct deps
16
License
BSD-2-Clause

Issues

1

1 high severity issue

high
Recommendation: Validate that the license expression complies with your license policy
via: registry-url@5.1.0
Collapse
Expand

Licenses

MIT License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
Cannot
hold-liable
Must
include-copyright
include-license
51 Packages, Including:
@pnpm/config.env-replace@1.1.0
@pnpm/network.ca-file@1.0.2
@pnpm/npm-conf@2.2.2
ansi-regex@5.0.1
ansi-styles@4.3.0
boxen@5.1.2
camelcase@6.3.0
chalk@4.1.2
ci-info@2.0.0
cli-boxes@2.2.1
color-convert@2.0.1
color-name@1.1.4
config-chain@1.1.13
crypto-random-string@2.0.0
deep-extend@0.6.0
dot-prop@5.3.0
emoji-regex@8.0.0
escape-goat@2.1.1
global-dirs@3.0.1
has-flag@4.0.0
has-yarn@2.1.0
import-lazy@2.1.0
imurmurhash@0.1.4
is-ci@2.0.0
is-fullwidth-code-point@3.0.0
is-installed-globally@0.4.0
is-npm@5.0.0
is-obj@2.0.0
is-path-inside@3.0.3
is-typedarray@1.0.0
is-yarn-global@0.3.0
isomorphic-fetch@3.0.0
make-dir@3.1.0
minimist@1.2.8
node-fetch@2.7.0
pupa@2.1.1
registry-auth-token@5.0.2
registry-url@5.1.0
semver-diff@3.1.1
string-width@4.2.3
strip-ansi@6.0.1
strip-json-comments@2.0.1
supports-color@7.2.0
tr46@0.0.3
typedarray-to-buffer@3.1.5
unique-string@2.0.0
whatwg-fetch@3.6.20
whatwg-url@5.0.0
widest-line@3.1.0
wrap-ansi@7.0.0

ISC License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
Cannot
hold-liable
Must
include-copyright
include-license
10 Packages, Including:
ansi-align@3.0.1
graceful-fs@4.2.10
graceful-fs@4.2.11
ini@1.3.8
ini@2.0.0
proto-list@1.2.4
semver@6.3.1
semver@7.6.2
signal-exit@3.0.7
write-file-atomic@3.0.3

BSD 2-Clause "Simplified" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
hold-liable
Must
include-copyright
include-license
3 Packages, Including:
configstore@5.0.1
update-notifier-cjs@5.1.6
webidl-conversions@3.0.1

(BSD-2-Clause OR MIT OR Apache-2.0)

Expression
1 Packages, Including:
rc@1.2.8

(MIT OR CC0-1.0)

Public Domain
1 Packages, Including:
type-fest@0.20.2
Disclaimer

This deed highlights only some of the key features and terms of the actual license. It is not a license and has no legal value. You should carefully review all of the terms and conditions of the actual license before using the licensed material.

Sandworm is not a law firm and does not provide legal services. Distributing, displaying, or linking to this deed or the license that it summarizes does not create a lawyer-client or any other relationship.

Direct Dependencies

16
All Dependencies CSV
β“˜ This is a list of update-notifier-cjs 's direct dependencies. Data on all dependencies, including transitive ones, is available via CSV download.
NameVersionSizeLicenseTypeVulnerabilities
boxen5.1.25.72 kBMIT
prod
chalk4.1.211.31 kBMIT
prod
configstore5.0.13.32 kBBSD-2-Clause
prod
has-yarn2.1.01.84 kBMIT
prod
import-lazy2.1.02.24 kBMIT
prod
is-ci2.0.02.05 kBMIT
prod
is-installed-globally0.4.01.71 kBMIT
prod
is-npm5.0.02.04 kBMIT
prod
is-yarn-global0.3.01.54 kBMIT
prod
isomorphic-fetch3.0.03.2 kBMIT
prod
pupa2.1.12.32 kBMIT
prod
registry-auth-token5.0.25.28 kBMIT
prod
registry-url5.1.01.93 kBMIT
prod
1
semver-diff3.1.12.18 kBMIT
prod
semver7.6.293.19 kBISC
prod
xdg-basedir4.0.02.24 kBMIT
prod

Visualizations