regulation10.com

Open-source acknowledgements

Effective 13 September 2026

regulation10.com is built on open-source software, and we would rather say so plainly than leave it implied. This page names the direct production dependencies of the platform, the licence each one carries and a link to its source. Development and test tooling that never ships to you is not listed here, with thanks all the same.

1. The frameworks that carry the site

ProjectVersionLicenceWhat it does here
Next.js15.5.21MITThe application framework: routing, rendering and the build pipeline
React19.2.7MITThe UI runtime, with react-dom for rendering and hydration
Tailwind CSS3.4.19MITThe styling system every design token resolves through
React Flow (@xyflow/react)12.11.5MITRenders the governance and monitoring flow canvases; its on-canvas attribution mark is left visible by choice

2. MIT licensed

ProjectVersionLicenceWhat it does here
@anthropic-ai/sdk0.100.1MITClient for the Claude API behind the assistant and drafting features
@azure/communication-email1.1.0MITTransactional email delivery
@azure/cosmos4.9.3MITClient for Azure Cosmos DB, the primary datastore
@azure/identity4.13.1MITManaged-identity credential acquisition
@azure/storage-blob12.33.0MITBlob storage for uploaded and generated evidence artefacts
@napi-rs/canvas1.0.8MITServer-side canvas rendering for Open Graph share cards
argon20.44.0MITPassword and token hashing across authentication and recovery codes
clsx2.1.1MITConditional class-name construction
driver.js1.8.0MITThe in-product guided tour
echarts-for-react3.0.6MITReact binding for Apache ECharts
embla-carousel-react8.6.0MITCarousel primitives
Framer Motion11.18.2MITPage transitions and component motion
otplib13.4.1MITTOTP generation and verification for two-factor authentication
PDFKit0.15.2MITPDF generation for exported compliance artefacts
node-qrcode1.5.4MITQR codes for authenticator enrolment
React Hook Form7.75.0MITForm state and validation wiring
react-markdown10.1.0MITSafe rendering of Markdown answers from the assistant
stripe-node17.7.0MITSubscription billing and checkout
tailwind-merge2.6.1MITConflict resolution for merged utility class lists
vanilla-cookieconsent3.1.0MITThe cookie consent banner and preference store
Zod3.25.76MITSchema validation at every system boundary

3. Apache-2.0 licensed

ProjectVersionLicenceWhat it does here
class-variance-authority0.7.1Apache-2.0Type-safe variant definitions for the UI primitives
Apache ECharts6.1.0Apache-2.0The charting engine behind dashboards and scorecards. Its NOTICE file is preserved upstream: NOTICE

4. Other licences

ProjectVersionLicenceWhat it does here
Lucide0.460.0ISCThe icon set used throughout the product
Auth.js (next-auth)5.0.0-beta.32ISCSession handling and the authentication layer
JSZip3.10.1MIT (dual-licensed MIT OR GPL-3.0-or-later; the MIT arm is elected)ZIP assembly for bundled evidence exports

JSZip is dual-licensed and we elect its MIT arm; the note is stated here once so it never has to be rediscovered.

5. Typefaces

  • Archivo and JetBrains Mono are self-hosted at build time and used under the SIL Open Font License 1.1.
  • The Dubai W23 typeface (Dubai Executive Council and Monotype) renders our share-card images. It is a licensed typeface, not open source, and is credited here for completeness.

6. Corrections

This list is reviewed with each release. If you believe we have used your work without crediting it, or credited it incorrectly, write to hello@regulation10.com and we will correct the page.

Open-source acknowledgements | regulation10.com