Licences

Every artefact-platform property that forks, vendors, or deploys a licensed open-source project, and what that licence requires of us. Generated from licences/manifests/*.json in artefact-platform — don't hand-edit this page, edit the manifest and re-run licences/generate.py. Sorted strictest obligation first.

Property Upstream project Licence Rebranded? Status Notes
admitme.io Ticketing alfio-event/alf.io Copyleft
GPL-3.0-only
No
Fork exists but README/branding is still 100% stock alf.io as of the last push (2026-05-05) — no rebrand has shipped yet.
N/A — not yet unbranded
GAP TO CLOSE BEFORE REBRANDING, NOT YET A VIOLATION: LICENSE (unmodified GPL-3.0 text) is present, but there is no MODIFICATIONS.md. Since no unbranding/rebrand has happened yet, GPL-3.0 §5(a)'s change-notice obligation hasn't been triggered — status is not-applicable, not gap. The moment any rebrand work starts here (logo, name, copy changes), this repo needs the same MODIFICATIONS.md + corresponding-source treatment already proven on client-web-crowdsense before it can ship. Re-verified 2026-08-06: repo still 100% stock alf.io (LICENSE diffed byte-identical against upstream alfio-event/alf.io; no admitme branding anywhere; commit history entirely upstream alf.io contributors), so not-applicable still holds. Issue #51 (tracking this) closed via artefact-platform PR #67, which added a ready-to-fill `docs/admitme-ticketing-modifications-template.md`. Whoever picks up the first rebrand PR on ticket-admitme-io should start from that template rather than from scratch.
CrowdSense Web Client meshtastic/web Copyleft
GPL-3.0-only
Yes
Visual rebrand only — palette, wordmark/logo, favicon, page metadata changed from Meshtastic to CrowdSense. Protocol handling, device communication, and product-facing references to Meshtastic itself (firmware names, mobile app, meshtastic.org links, default node names) deliberately left intact.
Compliant
Reference implementation for this whole manifest system. LICENSE (unmodified GPL-3.0 text) + MODIFICATIONS.md (GPL-3.0 §5(a) change notice) both present in the repo. Corresponding source for the exact deployed version is also bundled with the built app itself (source.tar.gz alongside index.html, produced by pulse-dashboard/scripts/build_mesh_clients.sh). Intended deploy target per pulse-crowdsense-events#53 is client.crowdsense.events, but that issue's 'build + deploy' sub-task is still unchecked — live status not confirmed, property_url left null until verified.
CrowdSense Web Flasher Meshtastic Web Flasher Copyleft
GPL-3.0-only
Yes
Visual rebrand only — palette, wordmark/logo, favicon, and page metadata changed from Meshtastic to CrowdSense branding. Product-facing references to Meshtastic itself (firmware names/versions, the Meshtastic mobile app, meshtastic.org links, the bundled-firmware 'Meshtastic UI' feature and its wordmarks, default node names) deliberately left intact.
Compliant
MODIFICATIONS.md content read in full via `gh api repos/artefactgroup/web-flasher-crowdsense/contents/MODIFICATIONS.md` (previously only confirmed present, not re-read). It matches the proven client-web-crowdsense pattern exactly: GPL-3.0 §5(a) change notice stating visual-rebrand-only scope, explicit list of what was deliberately left intact, and a corresponding-source pointer to source.tar.gz bundled alongside the deployed static build (produced by pulse-dashboard/scripts/build_mesh_clients.sh). LICENSE also diffed byte-for-byte against upstream meshtastic/web-flasher's LICENSE via GitHub API and confirmed identical, unmodified GPL-3.0-only text. Both required GPL-3.0 obligations (unmodified licence text + §5(a) change notice) are met and were actually read this pass, not assumed.
Sylph getnao/sylph Permissive
MIT
No
Not deployed as a standalone property. Content used as sylph's markdown knowledge base via nao's ask_nao integration.
Gap
Upstream getnao/sylph has NO LICENSE file in the repo — the only licence statement is a one-line 'MIT - use it however you want' in README.md, and GitHub's own licence detection reports none. MIT is permissive enough that this is a low legal-risk gap, not a copyleft violation, but our fork should still add an explicit LICENSE file (MIT text + copyright line) rather than relying on an upstream README sentence that could be edited or missed. wesleypearson/sylph#1 tracks this; wesleypearson/sylph#2 (opened this pass) adds a standard MIT LICENSE crediting nao Labs as copyright holder, matching their README-stated intent — content and full commit history in this fork are identical to getnao/sylph, so no original-content copyright claim of our own applies. Status stays 'gap' until #2 merges; flip to 'compliant' once it does.
NeoMind Extensions Marketplace camthink-ai/NeoMind-Extensions Permissive
MIT
Yes
Rebranded to CrowdSense. Verified against the repo's DEFAULT BRANCH via the GitHub API (`gh api repos/artefactgroup/NeoMind-Extensions/contents/README.md`), which opens 'CrowdSense Extensions / Official extension marketplace for the CrowdSense Edge AI Platform'. A previous pass recorded performed=false from a local checkout sitting on `feat/meshtastic-bridge` whose `main` was one commit behind origin — i.e. it described a stale working copy, not the repo. Always resolve this field against the default branch as published. GitHub reports this as a non-fork (independently created) repo rather than a true GitHub fork, though content and licence (MIT) match upstream; treated as a vendored copy for compliance purposes either way. MIT permits rebranding provided the copyright notice and licence text are retained, which they are (see notes).
Needs verification
TWO SEPARATE QUESTIONS; the second is open, which is why this is needs-verification rather than compliant. (1) THE MARKETPLACE ITSELF — clean. LICENSE (MIT) diffed byte-for-byte against upstream camthink-ai/NeoMind-Extensions via the GitHub API and confirmed identical, including the 'Copyright (c) 2026 CamThink Team' line, retained unmodified. MIT allows the CrowdSense rebrand so long as that notice survives, and it does. (2) THE meshtastic-bridge EXTENSION — unresolved, and NOT currently distributed. A previous pass recorded that it 'HAS now landed' and dismissed the copyleft question on the basis that it is 'a first-party, from-scratch Rust implementation' that 'does not vendor GPL-3.0 Meshtastic source'. Both halves are wrong. It is not on the default branch — `gh api .../contents/extensions/meshtastic-bridge` returns 404, and the published listing has 25 extensions, none of them this one; it exists only on `feat/meshtastic-bridge`. And its own source contradicts the from-scratch claim: `src/proto.rs` (640 lines) states in its module docstring that it is 'transcribed **verbatim** from the canonical protobuf definitions at github.com/meshtastic/protobufs@master (meshtastic/{mqtt,mesh,portnums,telemetry,paxcount}.proto)', carrying message names, field names and wire tags across, with 'Field numbers are load-bearing'. That upstream repo is GPL-3.0 (confirmed via the GitHub API), while this crate's Cargo.toml declares `license = "Apache-2.0"`. Whether transcribing protobuf schema definitions produces a derivative work is a real legal question and not one this manifest should answer either way — but it must be answered before that branch merges, because if it is derivative then the Apache-2.0 declaration conflicts with GPL-3.0 and §5(a) change-notice obligations attach. Nothing GPL-derived is distributed today, so this is a pre-merge condition, not a live violation.
NeoMind (CrowdSense hosted server) camthink-ai/NeoMind Permissive
Apache-2.0
Yes
Confirmed via the local checkout (~/Documents/GitHub/NeoMind): full visual rebrand to CrowdSense — web/public/logo-{light,dark,square}.png, favicon set, and app splash screens are custom CrowdSense assets, and README.md is rewritten around 'What is CrowdSense?' rather than NeoMind. Upstream camthink-ai/NeoMind badges (release/star/last-commit) and wiki.camthink.ai documentation links are deliberately left intact near the top of the README even though the product identity itself is fully CrowdSense-branded.
Compliant
LICENSE diffed byte-for-byte against upstream camthink-ai/NeoMind's LICENSE via GitHub API — identical, unmodified Apache-2.0 text. Upstream has no NOTICE file (confirmed via repo root content listing), so there is nothing to retain. Apache-2.0 permits stripping visible branding as long as licence/copyright text in the source tree survives, which it does — obligations met and actually checked, not assumed.
admitme.io Scan App alfio-event/Alf.ioBackoffice Permissive
Apache-2.0
No
Confirmed unbranded (not just unchecked): package.json's name/description/readme fields are still stock ('alf.io-app', 'Alf.io Scan'), README.md is untouched stock alf.io copy, and `grep -rl admitme src/ App_Resources/` returns no hits anywhere in the app. Full commit history (`git log --all --format=%an`) is entirely upstream alf.io contributors — no artefactgroup/wesleypearson-authored commits at all. This is a straight unmodified mirror, not yet touched.
Compliant
Checked locally (repo present at ~/Documents/GitHub/scan-admitme-io). LICENSE diffed byte-for-byte against upstream alfio-event/Alf.ioBackoffice's LICENSE via GitHub API — identical, unmodified Apache-2.0 text. Upstream has no NOTICE file (confirmed via repo root listing), so there's nothing to retain. Since no modifications have been made at all, every Apache-2.0 obligation (retain licence text, retain copyright notices, carry a NOTICE file if one exists) is trivially met today — unlike its GPL-3.0 sibling admitme-ticketing, Apache-2.0 doesn't require a change-notice when a rebrand eventually does land here, only that LICENSE stays intact.