PIT docs
v1.0.0
Get help
● Reference · Third parties

Credits & licences
what it builds on.

PIT uses open-source packages, open fonts and third-party services. Each keeps its own licence. The full list is THIRD-PARTY-LICENSES.md in the project root; versions below match package-lock.json.

01Summary

THIRD-PARTY-LICENSES.md (project root, also copied into the Docker image) lists every production package, direct and transitive (npm ls --omit=dev --all), with the licence each declares. By package-lock.json that is 69 production packages: MIT 52, MPL-2.0 14 (satori, @resvg/resvg-js and its 12 per-platform builds), Apache-2.0 2 (lightweight-charts, typescript), ISC 1. No production package uses GPL, AGPL or another strong copyleft licence. The file also carries the upstream licence texts of fancy-canvas, yoga-layout and css-box-shadow, which publish none on npm.

  • MPL-2.0 (satori, @resvg/resvg-js): file-level copyleft. PIT uses both unmodified from npm to render share cards; their source is at github.com/vercel/satori and github.com/thx/resvg-js. If you modify files of those packages and distribute them, those files stay under MPL-2.0. Your own code is not affected.
  • Apache-2.0 (lightweight-charts, © TradingView, Inc.): requires an attribution link to tradingview.com. PIT's footer shows "Charts by TradingView"; keep it when you rebrand.
  • Development tools add more packages (186 in the whole lockfile), among them lightningcss (MPL-2.0, a build tool used by Vite) with its per-platform builds. They are not part of the running server.
  • After you add packages, check their licences in package-lock.json (the license field) or in each package's LICENSE file in node_modules.

02Runtime packages

PackageVersionLicenceUsed for
react, react-dom19.3.0MITWeb app
lightweight-charts5.2.1Apache-2.0Telemetry and equity charts (TradingView)
@nktkas/hyperliquid0.33.3MITHyperliquid market data and orders
viem2.56.8MITWallets, signatures, Sign-In with Ethereum, USDC checks
zod4.6.5MITConfig and API validation
hono, @hono/node-server4.13.9 / 2.1.1MITOperator console server
better-sqlite313.0.3MITOperator console database (native module)
satori0.33.5MPL-2.0Share cards (layout to SVG)
@resvg/resvg-js2.6.2MPL-2.0Share cards (SVG to PNG)

Their own dependencies are listed in package-lock.json. PIT's main database uses Node's built-in node:sqlite.

03Development tools

Used to build and test; not needed by the running server.

PackageVersionLicence
vite8.3.0MIT
@vitejs/plugin-react6.1.1MIT
vitest5.0.1MIT
typescript5.9.3Apache-2.0
tsx4.23.15MIT
concurrently10.0.5MIT
@types/node, @types/react, @types/react-dom, @types/better-sqlite326.6.2 / 19.3.0 / 19.3.0 / 9.6.0MIT

04Operator console

The console in vendor/mikodes-admin/ is the MIKODES Admin Kit 0.3.0, part of this package. Its built interface bundles cmdk and Radix UI primitives (MIT), lucide-react (ISC) and the Geist fonts via @fontsource-variable (SIL Open Font License 1.1).

05Fonts

FontWhereLicence
Mona Sans by GitHubBundled in server/og/fonts/ for share cards (Bold Wide); loaded from Google Fonts by the web appSIL Open Font License 1.1 (OFL-MonaSans.txt)
Geist and Geist Mono by VercelBundled in server/og/fonts/ for share cards; loaded from Google Fonts by the web app; bundled in the consoleSIL Open Font License 1.1 (OFL-Geist.txt)

The web app loads its fonts from Google Fonts at runtime (web/index.html). The PIT name, logo and screenshots are part of the item for reference; replace them with your own brand before you go live (Rebranding).

06Third-party services

PIT can connect to these services. They are not part of the purchase: you sign up, accept their terms and pay their fees yourself. Names are trademarks of their owners and are used only to describe compatibility.

Hyperliquid (market data and trading), Polymarket (forecast league data), Anthropic, OpenAI, Google, xAI and DeepSeek (models), Stripe (card payments), Telegram and Discord (alerts), Google Fonts, and the hosting provider you choose (for example Fly.io or Render).