Open Source Licenses
Third-party software acknowledgements for Suri Downloader.
Inventory audited: August 10, 2026
Product licensing
Suri Downloader as a complete product is not declared open source. Product code, branding, artwork and content remain proprietary unless a specific file or component states otherwise.
Third-party components
The inventory below identifies directly used runtime, build and media-processing components. Their licenses apply only to those components. Copyright notices and license texts must be retained when required by the applicable license.
Build-specific review
FFmpeg licensing depends on the exact binary configuration. The locally audited FFmpeg 9.0 full build enables GPL and version 3 components; the production VPS binary and any Android-distributed binary must be audited separately before release. Transitive dependency notices must be generated from the locked release artifact.
| Project or library | Version | Upstream | License | Attribution | NOTICE requirement |
|---|---|---|---|---|---|
| React | 19.2.6 | github.com/facebook/react | MIT | Meta Platforms, Inc. and affiliates | Retain MIT license and copyright notice |
| React DOM | 19.2.6 | github.com/facebook/react | MIT | Meta Platforms, Inc. and affiliates | Retain MIT license and copyright notice |
| Vinext | 1.0.0-beta.2 | github.com/cloudflare/vinext | MIT | Cloudflare, Inc. | Retain MIT license and copyright notice |
| Node.js | 24.18.0 (local audit) | github.com/nodejs/node | MIT and bundled third-party licenses | Node.js contributors | Distribute Node.js LICENSE and dependency notices if bundling the runtime |
| yt-dlp | 2026.07.04 (local audit) | github.com/yt-dlp/yt-dlp | Unlicense | yt-dlp contributors | No NOTICE file required; retain included third-party notices when redistributing a binary |
| FFmpeg | 9.0 local full build; production version pending audit | ffmpeg.org | GPL-3.0-or-later for the audited GPL/version3 build | FFmpeg developers and enabled library authors | REVIEW REQUIRED: retain source/license offer obligations and audit exact VPS/Android build flags |
| SQLite via node:sqlite | Bundled with Node.js runtime | sqlite.org | Public domain | SQLite authors | No copyright NOTICE required; blessing text may be included |
| Vite | 8.0.13 | github.com/vitejs/vite | MIT; bundled dependencies include Apache-2.0, BSD-2-Clause, CC0-1.0 and ISC | VoidZero Inc., Vite and bundled dependency contributors | Build-only; retain Vite LICENSE.md if distributing bundled build tooling |
| TypeScript | 5.9.3 | github.com/microsoft/TypeScript | Apache-2.0 | Microsoft Corporation | Build-only; retain license and any upstream NOTICE when redistributed |
| Cloudflare Vite plugin / Wrangler | 1.37.1 / 4.92.0 | github.com/cloudflare/workers-sdk | MIT / MIT OR Apache-2.0 | Cloudflare, Inc. and contributors | Build/deploy tooling; retain selected license and applicable NOTICE if redistributed |
| Geist font | Build-provided | github.com/vercel/geist-font | SIL Open Font License 1.1 | Vercel | Retain OFL text when redistributing font files; do not sell fonts alone |
| Be Vietnam Pro font | Google Fonts hosted | github.com/bettergui/BeVietnamPro | SIL Open Font License 1.1 | Be Vietnam Pro contributors | Retain OFL text when self-hosting or redistributing font files |