Trust Center

Software Bill of Materials

In compliance with the Cyber Resilience Act (EU) 2024/2847, Article 13, Veritome maintains a transparent record of all software components used in the platform. This SBOM is automatically generated from the platform's dependency manifest.
44
Runtime Dependencies
17
Build Dependencies
61
Total Packages
4
License Types

License Distribution

Other45 packages
MIT10 packages
Apache-2.05 packages
ISC1 packages

Runtime Dependencies (44)

PackageVersionLicense
@anthropic-ai/sdk0.90.0MIT
@auth/prisma-adapter2.11.1Other
@aws-sdk/client-s33.1028.0Apache-2.0
@aws-sdk/s3-request-presigner3.1028.0Apache-2.0
@dnd-kit/core6.3.1Other
@hello-pangea/dnd18.0.1Other
@phosphor-icons/react2.1.10MIT
@prisma/client6.19.3Apache-2.0
@react-pdf/renderer4.5.1Other
@sentry/nextjs10.48.0Other
@tiptap/extension-placeholder3.22.3Other
@tiptap/pm3.22.3Other
@tiptap/react3.22.3Other
@tiptap/starter-kit3.22.3Other
@upstash/ratelimit2.0.8Other
@upstash/redis1.37.0Other
bcryptjs3.0.3Other
date-fns4.1.0MIT
framer-motion12.38.0MIT
jose6.2.2Other
mammoth1.12.0Other
next16.2.3MIT
next-auth5.0.0-beta.30ISC
otplib12.0.1Other
pdf-lib1.17.1Other
pdf-parse2.4.5Other
posthog-js1.369.2Other
posthog-node5.29.2Other
prisma6.19.3Apache-2.0
qrcode1.5.4Other
react19.2.4MIT
react-dom19.2.4MIT
react-hook-form7.72.1Other
react-markdown10.1.0Other
recharts3.8.1Other
rehype-highlight7.0.2Other
remark-gfm4.0.1Other
resend6.11.0Other
rss-parser3.13.0Other
satori0.26.0Other
sharp0.34.5Other
sonner2.0.7Other
stripe22.0.1MIT
zod4.3.6MIT

Build Dependencies (17)

PackageVersionLicense
@playwright/test1.59.1Other
@storybook/nextjs10.3.5Other
@storybook/react10.3.5Other
@tailwindcss/postcss4Other
@types/bcryptjs2.4.6Other
@types/node20Other
@types/pdf-parse1.1.5Other
@types/qrcode1.5.6Other
@types/react19Other
@types/react-dom19Other
dotenv-cli11.0.0Other
eslint9Other
eslint-config-next16.2.3Other
storybook10.3.5Other
tailwindcss4MIT
tsx4.21.0Other
typescript5Apache-2.0

This SBOM is generated from the platform's package manifest and updated with each deployment. Licence labels are indicative and classified best-effort; consult each package for its authoritative licence. For machine-readable SBOM formats (SPDX, CycloneDX), contact security@veritome.eu.