Third-party notices
Sanitize includes open-source software and locally served fonts.
Updated 2026-10-05
PDF rendering
The browser uses @embedpdf/pdfium 2.15.1 and pdf-lib. The wrapper’s MIT license and PDFium’s supplied license are included below. The browser distribution does not include MuPDF. The separate Python command-line project has its own dependencies and licensing obligations.
Additional native dependency notices are included where identified for the pinned WASM build. The source record explains provenance and any remaining verification limits.
Other local runtimes
Pyodide 314.0.7 is distributed without local modifications. Its corresponding source code is available under MPL-2.0. The bundled Python version is 3.14.2; Python’s source and license are available separately.
OCR uses Tesseract.js and its core runtime. Barcode reading uses zxing-wasm 3.1.4 and ZXing-C++. The package, native reader and font license texts supplied with this build are listed below.
Included license texts
- DM-Sans-OFL.txt
- Playfair-Display-OFL.txt
- @pdf-lib-standard-fonts.txt
- @pdf-lib-upng.txt
- LICENSE-pyodide.txt
- LICENSE-python.txt
- LICENSE-zxing-cpp-wrapper.txt
- LICENSE-zxing-cpp.txt
- NOTICE-runtime-sources.json
- base64-js.txt
- buffer.txt
- fast-png.txt
- ieee754.txt
- iobuffer.txt
- jpeg-js.txt
- pako-1.txt
- pako.txt
- pdf-lib.txt
- tslib-copyright.txt
- tslib.txt
- LICENSE-core.txt
- LICENSE-tesseract.txt
- worker.min.js.LICENSE.txt
- LICENSE-NotoSansCJK.txt
- LICENSE-abseil.txt
- LICENSE-agg.txt
- LICENSE-bigint.txt
- LICENSE-compiler-rt.txt
- LICENSE-emscripten.txt
- LICENSE-fast-float.txt
- LICENSE-fp16.txt
- LICENSE-freetype.txt
- LICENSE-highway.txt
- LICENSE-jpeg-turbo.txt
- LICENSE-lcms.txt
- LICENSE-libcxx.txt
- LICENSE-libcxxabi.txt
- LICENSE-libpng.txt
- LICENSE-openjpeg.txt
- LICENSE-pdfium.txt
- LICENSE-tiff.txt
- LICENSE-wrapper.txt
- LICENSE-zlib.txt
- NOTICE-SOURCES.json
- NOTICE-attributions.txt
- NOTICE-jpeg-ijg.txt
- NOTICE-musl.txt
- LICENSE-wrapper.txt
Scope
These notices apply to third-party components. Their licenses govern those components separately from Sanitize’s service terms. A listed source dependency may be disabled in this build; its inclusion does not assert that every upstream feature is enabled. Package upgrades require a fresh notice review.