Skip to main content

Archived Third-party licenses

QueueRove web license notices

This page records the checked-in web dependency and font evidence. A signed release artifact, immutable image digest, and counsel-reviewed drift result are still required before it can be called a final release notice.

  • Version 2026-07-24-draft.5
  • Effective date: Pending Texas counsel approval
  • SHA-256 e32bf1f8c1a289070c234a793304cb268d8b82097e197476cb46242fcb65cf4f

Archived draft status

Technical draft pending Texas counsel review; production collection and charging also require tax/accounting signoff and explicit launch approval.

This repository-local document is not provider, deployment, counsel, tax, or production evidence. It makes no approval or launch claim.

The content hash is derived from the versioned structured source rendered on this page. Material changes require a new version, archive entry, and the approved reacceptance process.

View the current stable route → · View all archived documents

1. Artifact and evidence boundary

Repository-local candidate, not signed-release evidence

The versions below come from the current repository manifests, lockfile, and an exact locally built web image SBOM with all-file SHA-256 metadata enabled. This checked-in candidate does not itself identify the exact local image config digest, the SHA-256 and byte size of its root-owned image archive, a production environment, or a signed mobile binary. The root-owned release verifier must regenerate the SBOM/notices and fail on drift before publication as final evidence.

Private QueueRove package names, internal image paths, credentials, mutable SBOM identifiers, and vulnerability details are intentionally excluded. Release checks exact-match every non-private package purl, retain the Node.js distribution license bundle and traced Next.js-vendored notices, and bind the distributed Inter files to exact image hashes. The internal SBOM retains the complete file and package inventory.

2. Web runtime notice candidate

Alpine base-image packages and Node.js runtime in the exact web image
ComponentVersionLicense or retained notice evidence
alpine-baselayout-data3.7.2-r0GPL-2.0-only
alpine-baselayout3.7.2-r0GPL-2.0-only
alpine-keys2.6-r0MIT
alpine-release3.23.5-r0MIT
apk-tools3.0.6-r0GPL-2.0-only
busybox-binsh1.37.0-r30GPL-2.0-only
busybox1.37.0-r30GPL-2.0-only
ca-certificates-bundle20260611-r0MPL-2.0 AND MIT
libapk3.0.6-r0GPL-2.0-only
libcrypto33.5.7-r0Apache-2.0
libgcc15.2.0-r2GPL-2.0-or-later AND LGPL-2.1-or-later
libssl33.5.7-r0Apache-2.0
libstdc++15.2.0-r2GPL-2.0-or-later AND LGPL-2.1-or-later
musl-utils1.2.5-r23MIT AND BSD-2-Clause AND GPL-2.0-or-later
musl1.2.5-r23MIT
scanelf1.3.8-r2GPL-2.0-only
ssl_client1.37.0-r30GPL-2.0-only
zlib1.3.2-r0Zlib
node24.17.0Node.js distribution LICENSE bundle (MIT core and bundled third-party terms)

The Node.js distribution retains its composite LICENSE bundle covering the MIT-licensed core and bundled third-party terms. Release evidence binds that file to SHA-256 4573185d56580da2b890ba34a85a409257640f1c5632eade4300137266194d18. Public rows omit internal image paths and mutable SBOM identifiers.

Declared and locally traced web runtime packages
PackageVersionLicense
@auth0/nextjs-auth04.25.0MIT
@edge-runtime/cookies5.0.2MIT
@img/colour1.1.0MIT
@img/sharp-libvips-linuxmusl-x641.3.0LGPL-3.0-or-later
@img/sharp-linuxmusl-x640.35.0Apache-2.0
@next/env16.2.11MIT
@panva/hkdf1.2.1MIT
@stablelib/base641.0.1MIT
@swc/helpers0.5.15Apache-2.0
client-only0.0.1MIT
detect-libc2.1.2Apache-2.0
drizzle-orm0.45.2Apache-2.0
fast-sha2561.3.0Unlicense
jose6.2.3MIT
next16.2.11MIT
oauth4webapi3.8.6MIT
openid-client6.8.4MIT
postal-mime2.7.4MIT-0
postgres3.4.9Unlicense
react-dom19.2.4MIT
react19.2.4MIT
resend6.17.2MIT
semver6.3.1ISC
semver7.8.5ISC
sharp0.35.0Apache-2.0
standardwebhooks1.0.0MIT
stripe22.3.2MIT
styled-jsx5.1.6MIT
zod4.4.3MIT
Next.js-vendored compiled packages in the traced web runtime
Parent packageBundled packageObserved versionLicense
next@16.2.11@edge-runtime/cookies6.0.0MIT
next@16.2.11@edge-runtime/ponyfill4.0.0MIT
next@16.2.11@edge-runtime/primitives6.0.0MIT
next@16.2.11@hapi/acceptUNKNOWNBSD-3-Clause
next@16.2.11@mswjs/interceptorsUNKNOWNMIT
next@16.2.11@napi-rs/triplesUNKNOWNMIT
next@16.2.11@opentelemetry/apiUNKNOWNApache-2.0
next@16.2.11async-retryUNKNOWNMIT
next@16.2.11async-semaUNKNOWNMIT
next@16.2.11busboyUNKNOWNMIT
next@16.2.11bytesUNKNOWNMIT
next@16.2.11ci-infoUNKNOWNMIT
next@16.2.11commanderUNKNOWNMIT
next@16.2.11comment-jsonUNKNOWNMIT
next@16.2.11compressionUNKNOWNMIT
next@16.2.11confUNKNOWNMIT
next@16.2.11content-dispositionUNKNOWNMIT
next@16.2.11cookieUNKNOWNMIT
next@16.2.11cross-spawnUNKNOWNMIT
next@16.2.11debugUNKNOWNMIT
next@16.2.11edge-runtimeUNKNOWNMIT
next@16.2.11find-upUNKNOWNMIT
next@16.2.11freshUNKNOWNMIT
next@16.2.11http-proxyUNKNOWNMIT
next@16.2.11image-sizeUNKNOWNMIT
next@16.2.11ipaddr.jsUNKNOWNMIT
next@16.2.11is-animatedUNKNOWNMIT
next@16.2.11is-dockerUNKNOWNMIT
next@16.2.11is-wslUNKNOWNMIT
next@16.2.11jsonwebtokenUNKNOWNMIT
next@16.2.11nanoidUNKNOWNMIT
next@16.2.11p-limitUNKNOWNMIT
next@16.2.11p-queueUNKNOWNMIT
next@16.2.11path-browserifyUNKNOWNMIT
next@16.2.11path-to-regexpUNKNOWNMIT
next@16.2.11picomatchUNKNOWNMIT
next@16.2.11react-is19.3.0-canary-3f0b9e61-20260317MIT
next@16.2.11regenerator-runtime0.13.4MIT
next@16.2.11semverUNKNOWNISC
next@16.2.11sendUNKNOWNMIT
next@16.2.11source-mapUNKNOWNBSD-3-Clause
next@16.2.11stacktrace-parserUNKNOWNMIT
next@16.2.11string-hashUNKNOWNCC0-1.0
next@16.2.11strip-ansiUNKNOWNMIT
next@16.2.11superstructUNKNOWNMIT
next@16.2.11tarUNKNOWNBlueOak-1.0.0
next@16.2.11text-tableUNKNOWNMIT
next@16.2.11ua-parser-jsUNKNOWNMIT
next@16.2.11watchpackUNKNOWNMIT
next@16.2.11wsUNKNOWNMIT
next@16.2.11zod-validation-errorUNKNOWNMIT
next@16.2.11zodUNKNOWNMIT

3. Inter font distribution

Distributed Inter assets from repository evidence
AssetSHA-256License
Inter-Medium.ttf97ad806f526e41546d46365bb3a393145f75b7b1568913db74549ad8b8dba872SIL OFL 1.1
Inter-Bold.ttf288316099b1e0a47a4716d159098005eef7c0066921f34e3200393dbdb01947fSIL OFL 1.1
LICENSE.txt262481e844521b326f5ecd053e59b98c8b2da78c8ee1bdbb6e8174305e54935aComplete SIL OFL 1.1 text

The checked-in web assets distribute Inter-Medium.ttf and Inter-Bold.ttf. Copyright (c) 2016 The Inter Project Authors (https://github.com/rsms/inter). The complete SIL Open Font License 1.1 appears below and is distributed beside the public font files as LICENSE.txt.

Complete Inter SIL Open Font License 1.1

Copyright (c) 2016 The Inter Project Authors (https://github.com/rsms/inter)

This Font Software is licensed under the SIL Open Font License, Version 1.1.
This license is copied below, and is also available with a FAQ at:
http://scripts.sil.org/OFL

-----------------------------------------------------------
SIL OPEN FONT LICENSE Version 1.1 - 26 February 2007
-----------------------------------------------------------

PREAMBLE
The goals of the Open Font License (OFL) are to stimulate worldwide
development of collaborative font projects, to support the font creation
efforts of academic and linguistic communities, and to provide a free and
open framework in which fonts may be shared and improved in partnership
with others.

The OFL allows the licensed fonts to be used, studied, modified and
redistributed freely as long as they are not sold by themselves. The
fonts, including any derivative works, can be bundled, embedded,
redistributed and/or sold with any software provided that any reserved
names are not used by derivative works. The fonts and derivatives,
however, cannot be released under any other type of license. The
requirement for fonts to remain under this license does not apply
to any document created using the fonts or their derivatives.

DEFINITIONS
"Font Software" refers to the set of files released by the Copyright
Holder(s) under this license and clearly marked as such. This may
include source files, build scripts and documentation.

"Reserved Font Name" refers to any names specified as such after the
copyright statement(s).

"Original Version" refers to the collection of Font Software components as
distributed by the Copyright Holder(s).

"Modified Version" refers to any derivative made by adding to, deleting,
or substituting -- in part or in whole -- any of the components of the
Original Version, by changing formats or by porting the Font Software to a
new environment.

"Author" refers to any designer, engineer, programmer, technical
writer or other person who contributed to the Font Software.

PERMISSION AND CONDITIONS
Permission is hereby granted, free of charge, to any person obtaining
a copy of the Font Software, to use, study, copy, merge, embed, modify,
redistribute, and sell modified and unmodified copies of the Font
Software, subject to the following conditions:

1) Neither the Font Software nor any of its individual components,
in Original or Modified Versions, may be sold by itself.

2) Original or Modified Versions of the Font Software may be bundled,
redistributed and/or sold with any software, provided that each copy
contains the above copyright notice and this license. These can be
included either as stand-alone text files, human-readable headers or
in the appropriate machine-readable metadata fields within text or
binary files as long as those fields can be easily viewed by the user.

3) No Modified Version of the Font Software may use the Reserved Font
Name(s) unless explicit written permission is granted by the corresponding
Copyright Holder. This restriction only applies to the primary font name as
presented to the users.

4) The name(s) of the Copyright Holder(s) or the Author(s) of the Font
Software shall not be used to promote, endorse or advertise any
Modified Version, except to acknowledge the contribution(s) of the
Copyright Holder(s) and the Author(s) or with their explicit written
permission.

5) The Font Software, modified or unmodified, in part or in whole,
must be distributed entirely under this license, and must not be
distributed under any other license. The requirement for fonts to
remain under this license does not apply to any document created
using the Font Software.

TERMINATION
This license becomes null and void if any of the above conditions are
not met.

DISCLAIMER
THE FONT SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND,
EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO ANY WARRANTIES OF
MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT
OF COPYRIGHT, PATENT, TRADEMARK, OR OTHER RIGHT. IN NO EVENT SHALL THE
COPYRIGHT HOLDER BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY,
INCLUDING ANY GENERAL, SPECIAL, INDIRECT, INCIDENTAL, OR CONSEQUENTIAL
DAMAGES, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING
FROM, OUT OF THE USE OR INABILITY TO USE THE FONT SOFTWARE OR FROM
OTHER DEALINGS IN THE FONT SOFTWARE.

4. iOS and Android are separate artifact gates

This web inventory does not cover either native application. Apple and Android notices, SDKs, permissions, assets, data practices, screenshots, and store disclosures must be generated independently from each exact signed release binary. Website completion is not mobile-artifact evidence.

Questions may be sent to support@itecsonline.com with the subject “QueueRove support”.