Transparency

Open Source Licenses

A public record of the open-source software and external runtime assets used in ONSEMO’s public services.

Confirmed project records

This page summarizes the confirmed records in each project’s source notice. It does not relicense ONSEMO code, logos, icons or other brand assets. Full license text is linked to the official source whenever available.

Each project repository remains the source of truth for its detailed notice files. A central page does not replace notices required in a redistributed PWA bundle, Android APK, offline asset or downloadable file.

Flight and shared web assets

  • Three.js 0.170.0 and GLTFLoader — MIT. Copyright and notice: retain the upstream MIT notice when bundled or redistributed. Official license · Source
  • Poly Haven apartment, lamp and ground assets — CC0. Official license · Source
  • VitruvianGodot / CharMorph character assets — CC0 as recorded by the upstream notice. Embedded Mixamo animation clips require the commercial-use terms described by Adobe’s FAQ. Upstream notice · Mixamo terms

Source record: HOME third-party asset register.

SMS Push / PWA and Worker

  • @hpke/core 1.9.0, @hpke/dhkem-x25519 1.8.0, @hpke/common 1.10.1 — MIT. Copyright notices identify Ajitomi Daisuke; retain the applicable MIT text. Official source
  • @zxing/browser 0.2.1 — MIT. Copyright notice identifies ZXing for JS. Official source
  • @zxing/library 0.23.0 — Apache-2.0. Retain the license and applicable notice information. Official license
  • @zxing/text-encoding 0.9.0 — Unlicense OR Apache-2.0. Preserve the applicable license and source attribution. Official source
  • protobufjs 8.8.0 — BSD-3-Clause. Copyright notice identifies Daniel Wirtz; retain the license and disclaimer. Package metadata
  • qrcode 1.5.4 — MIT. Copyright notice identifies Ryan Day. Official source
  • @block65/webcrypto-web-push 2.0.0 — MIT. Copyright notice identifies Block65 Pte Ltd. Official source
  • uint8array-extras 1.6.0 — MIT. Package metadata

Build/test-only records such as esbuild and fake-indexeddb are retained in the repository notice but are not PWA runtime imports. Source record: Connect third-party notices.

The PWA build currently removes upstream legal comments from the generated bundle. The repository notice and applicable license texts must be carried with any separate redistribution.

On-device OCR

  • tesseract.js 6.0.1 — Apache-2.0. Official license · Source
  • tesseract.js-core 6.0.0 — Apache-2.0 for the core distribution. Its upstream component terms must also be considered for binary redistribution. Official license
  • @tesseract.js-data/kor 1.0.0 and @tesseract.js-data/eng 1.0.0 — MIT at the package level for the recorded 4.0.0_best_int data packages. Korean package · English package · Source register

Core component notices include Tesseract, Leptonica, libwebp, giflib and zlib/libpng. The CART project keeps the detailed package and component review in ocr/LICENSES.md; this public index does not replace those notices.

Browser utilities

  • qrcodejs 1.0.0 — MIT. Copyright notice identifies davidshimjs; retain the copyright and MIT text. Official license
  • gifuct-js 2.1.2 — MIT. The package identifies Matt Way as author. Official license · Source
  • js-binary-schema-parser 2.0.3 — MIT. This is the recorded parser dependency of the GIF distribution. Package metadata

pdf.js is mentioned in historical project documentation but was not found as an active runtime reference in the current source review, so it is not listed as an active dependency.

Source record: Web Tools third-party notices.

Published content

No separate third-party runtime library is currently recorded in the BLOG project notice inventory. Blog content and brand assets are not granted an open-source license by this page. Any future external font, image, icon or library must be recorded before publication.

Notices travel with the artifact

For a bundled web app, PWA, offline package, Android APK or downloadable file, the applicable copyright notices and license texts must be checked in the actual distribution. Project-level records and this central index are references; they do not remove an obligation to include a notice where the applicable license requires it.

ONSeMO brand assets with no creator, assignment or permission record are intentionally not listed as open-source assets or relicensed here.