Home
Docs
GitHub
Pricing
Blog
Log In

Run Sandworm Audit for your App

Get started
Hold on, we're currently generating a fresh version of this report
Generated on Apr 17, 2024 via pnpm
Package summary
Share
7
issues
5
high severity
license
1
meta
4
1
moderate severity
meta
1
1
low severity
license
1
6
licenses
133
MIT
8
ISC
7
Apache-2.0
3
other licenses
BSD
1
BSD-2-Clause
1
BSD-3-Clause
1
Package created
22 Oct 2013
Version published
11 Aug 2023
Maintainers
10
Total deps
151
Direct deps
40
License
MIT

Issues

7

5 high severity issues

high
Recommendation: Validate that the package complies with your license policy
via: torrent-discovery@10.0.16 & others
via: torrent-discovery@10.0.16
via: fs-chunk-store@4.1.0
via: torrent-discovery@10.0.16
via: utp-native@2.5.3
Collapse
Expand

1 moderate severity issue

moderate
via: torrent-discovery@10.0.16
Collapse
Expand

1 low severity issue

low
Recommendation: Read and validate the license terms
via: torrent-discovery@10.0.16 & others
Collapse
Expand

Licenses

MIT License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
Cannot
hold-liable
Must
include-copyright
include-license
133 Packages, Including:
@silentbot1/nat-api@0.4.7
@thaunknown/idb-chunk-store@1.0.2
@thaunknown/simple-peer@9.12.1
@thaunknown/simple-websocket@9.1.1
@thaunknown/thirty-two@1.0.3
@webtorrent/http-node@1.3.0
abort-controller@3.0.0
addr-to-ip-port@2.0.0
base64-arraybuffer@1.0.2
bencode@2.0.3
bencode@4.0.0
bep53-range@2.0.0
bitfield@4.2.0
bittorrent-dht@11.0.5
bittorrent-lsd@2.0.0
bittorrent-peerid@1.3.6
bittorrent-protocol@4.1.11
bittorrent-tracker@10.0.12
block-iterator@1.1.1
bufferutil@4.0.8
cache-chunk-store@3.2.2
chrome-dgram@3.0.6
chrome-dns@1.0.1
chrome-net@3.3.4
chunk-store-iterator@1.0.3
clone@2.1.2
cpus@1.0.3
create-torrent@6.0.17
cross-fetch-ponyfill@1.0.3
cross-spawn@7.0.3
data-uri-to-buffer@4.0.1
debug@4.3.4
decompress-response@6.0.0
end-of-stream@1.4.4
err-code@3.0.1
escape-html@1.0.3
event-target-shim@5.0.1
execa@5.1.1
fast-fifo@1.3.2
fast-readable-async-iterator@2.0.0
fetch-blob@3.2.0
filename-reserved-regex@3.0.0
formdata-polyfill@4.0.10
freelist@1.0.3
fs-chunk-store@4.1.0
fsa-chunk-store@1.1.5
get-browser-rtc@1.1.0
get-stdin@9.0.0
get-stream@6.0.1
http-parser-js@0.4.13

ISC License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
Cannot
hold-liable
Must
include-copyright
include-license
8 Packages, Including:
idb@6.1.5
inherits@2.0.4
isexe@2.0.0
once@1.4.0
sax@1.3.0
signal-exit@3.0.7
which@2.0.2
wrappy@1.0.2

Apache License 2.0

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
use-patent-claims
place-warranty
Cannot
hold-liable
use-trademark
Must
include-copyright
include-license
state-changes
include-notice
7 Packages, Including:
b4a@1.6.6
bare-events@2.2.2
bare-fs@2.2.3
bare-os@2.2.1
bare-path@2.1.1
fs-native-extensions@1.2.7
human-signals@2.1.0

BSD

Invalid
Not OSI Approved
1 Packages, Including:
compact2string@1.4.1

BSD 2-Clause "Simplified" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
hold-liable
Must
include-copyright
include-license
1 Packages, Including:
default-gateway@6.0.3

BSD 3-Clause "New" or "Revised" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
use-trademark
hold-liable
Must
include-copyright
include-license
1 Packages, Including:
sprintf-js@1.1.3
Disclaimer

This deed highlights only some of the key features and terms of the actual license. It is not a license and has no legal value. You should carefully review all of the terms and conditions of the actual license before using the licensed material.

Sandworm is not a law firm and does not provide legal services. Distributing, displaying, or linking to this deed or the license that it summarizes does not create a lawyer-client or any other relationship.

Direct Dependencies

40
All Dependencies CSV
β“˜ This is a list of webtorrent 's direct dependencies. Data on all dependencies, including transitive ones, is available via CSV download.
NameVersionSizeLicenseTypeVulnerabilities
@silentbot1/nat-api0.4.751.88 kBMIT
prod
@thaunknown/simple-peer9.12.123.85 kBMIT
prod
@webtorrent/http-node1.3.023.92 kBMIT
prod
addr-to-ip-port2.0.02.65 kBMIT
prod
bitfield4.2.06.03 kBMIT
prod
bittorrent-dht11.0.511.75 kBMIT
prod
bittorrent-protocol4.1.1114.45 kBMIT
prod
cache-chunk-store3.2.22.67 kBMIT
prod
chunk-store-iterator1.0.32.32 kBMIT
prod
cpus1.0.32.04 kBMIT
prod
create-torrent6.0.1732.69 kBMIT
prod
cross-fetch-ponyfill1.0.31018 BMIT
prod
debug4.3.412.94 kBMIT
prod
escape-html1.0.31.87 kBMIT
prod
fs-chunk-store4.1.05.01 kBMIT
prod
1
hybrid-chunk-store1.2.414.58 kBMIT
prod
immediate-chunk-store2.2.02.32 kBMIT
prod
join-async-iterator1.1.12.06 kBMIT
prod
load-ip-set3.0.13.24 kBMIT
prod
lt_donthave2.0.03.35 kBMIT
prod
memory-chunk-store1.3.52.12 kBMIT
prod
mime3.0.018.25 kBMIT
prod
once1.4.01.93 kBISC
prod
parse-torrent11.0.168.46 kBMIT
prod
pump3.0.03.16 kBMIT
prod
queue-microtask1.2.33.59 kBMIT
prod
random-iterate1.0.11.76 kBMIT
prod
range-parser1.2.13.52 kBMIT
prod
run-parallel-limit1.1.03.11 kBMIT
prod
run-parallel1.2.02.75 kBMIT
prod
speed-limiter1.0.24.18 kBMIT
prod
streamx2.16.148.1 kBMIT
prod optional
throughput1.0.11.14 kBMIT
prod
torrent-discovery10.0.166.6 kBMIT
prod
3
1
1
torrent-piece3.0.02.78 kBMIT
prod
uint8-util2.2.42.98 kBMIT
prod
unordered-array-remove1.0.21.75 kBMIT
prod
ut_metadata4.0.34.83 kBMIT
prod
ut_pex4.0.44.86 kBMIT
prod
1
1
utp-native2.5.3569.21 kBMIT
prod optional
1

Visualizations