
Last updated: 26 May 2026 · Audit reference: oss-license-sweep.md
Surging Markets is built on top of a deep stack of open source software. This page exists to honor the attribution requirements of the licenses we depend on (Apache-2.0, MIT, BSD-2-Clause, BSD-3-Clause, ISC, and Artistic-1.0), and to publicly thank the maintainers and contributors who made our platform possible.
We list every direct dependency declared in composer.json and package.json, grouped
by license. Apache-2.0 dependencies appear first because that license carries the most formal NOTICE-file
requirement; where the upstream project ships a NOTICE file, we reproduce its contents verbatim below. For
transitive dependencies we link to canonical SPDX license text rather than enumerating thousands of packages;
the full transitive license tree can be re-generated at any time via composer licenses --format=json
and npx license-checker --json --production.
If you spot an attribution we owe and have missed, please email [email protected] and we will correct it.
These packages are licensed under the Apache License, Version 2.0. Per §4(d) of the license, any NOTICE files shipped with these projects are reproduced verbatim below.
Sentry SDK for Symfony. Homepage: getsentry.com · Source: github.com/getsentry/sentry-symfony
No upstream NOTICE file shipped with this package version. Attribution provided per Apache-2.0 §4(c) requirement to retain the license terms.
LiveKit JavaScript client SDK used for our real-time audio/video rooms. Homepage: livekit.io · Source: github.com/livekit/client-sdk-js
No upstream NOTICE file shipped with this package version. Copyright © LiveKit, Inc.
High-performance Node.js image processing library. Homepage: sharp.pixelplumbing.com · Source: github.com/lovell/sharp
No upstream NOTICE file shipped with this package version. Copyright © Lovell Fuller and contributors.
Microsoft Playwright — browser automation library used for end-to-end testing. Homepage: playwright.dev · Source: github.com/microsoft/playwright
NOTICE (reproduced verbatim from node_modules/playwright/NOTICE):
Playwright Copyright (c) Microsoft Corporation This software contains code derived from the Puppeteer project (https://github.com/puppeteer/puppeteer), available under the Apache 2.0 license (https://github.com/puppeteer/puppeteer/blob/master/LICENSE).
Transitive UTF-8 polyfill (no longer actively maintained; superseded by symfony/polyfill-*).
Source: github.com/tchwork/utf8
Per the dual-license terms, Surging Markets formally elects the Apache-2.0 prong. No source-disclosure obligation attaches under the elected prong for our SaaS deployment.
The following packages are licensed under the MIT License. The license text is included once below; each listed package’s copyright notice applies.
Permission is hereby granted, free of charge, to any person obtaining a copy of this software and associated documentation files (the "Software"), to deal in the Software without restriction, including without limitation the rights to use, copy, modify, merge, publish, distribute, sublicense, and/or sell copies of the Software, and to permit persons to whom the Software is furnished to do so, subject to the following conditions: The above copyright notice and this permission notice shall be included in all copies or substantial portions of the Software. THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE SOFTWARE.
Plus ~91 transitive MIT-licensed PHP packages (Symfony components, Doctrine ORM, Monolog, Twig, Sentry SDK core, Pusher PHP server, JWT bundles, etc.). Run composer licenses for the full enumerated list.
Plus the broader npm transitive tree (Babel toolchain, Webpack loaders, polyfills, etc.) — predominantly MIT. Run npx license-checker --production for the full enumeration.
Licensed under the BSD 3-Clause License. Redistribution and use in source and binary forms, with or without modification, are permitted provided that the conditions of the BSD-3-Clause license are met.
Licensed under the BSD 2-Clause License.
composer licenses for current name — commonly pdepend or PHP_CodeSniffer in similar trees).Licensed under the ISC License (functionally equivalent to a simplified BSD/MIT).
Licensed under the Artistic License 1.0.
Our charts are powered by the TradingView Charting Library, used under a separate commercial license granted by TradingView, Inc. The library is not open source and is not redistributed by Surging Markets. Per TradingView’s attribution requirement: charts on this site are powered by TradingView, a charting platform for a global community of traders and investors.
Attribution corrections or license questions: [email protected].