# Third-party notices

FontTool source is distributed under the GNU AGPL v3; see `LICENSE`.

- **lara / DarkSword**, rooootdev, ruter and contributors. Source: https://github.com/rooootdev/lara, commit `879e3fae0822776d1f75f91d9f2d1aee505f339e`. The selected kernel, offsets, vnode, VFS and library/header files in `Vendor/Lara` are copied unchanged. Upstream AGPL v3 applies. The original authors credit opa334 for the exploit, ChOma and XPF, AppInstaller iOS for offsets, and AlfieCG for libgrabkernel2.
- **GameTool**, source: https://github.com/cc1477/gametool, commit `d290cb7c5c3f1ca9a6bf0ae5f1110e9b9a65ff66`. Permission, pairing, tunnel, support-policy and container components in `Vendor/GameTool` are copied unchanged, with tunnel sources in `TunnelProv` and transport patches in `scripts`; original GPL v3 terms in `Vendor/GameTool/LICENSE`. The GPL v3 code is combined here under AGPL v3 as permitted by GPL v3 section 13. Host adapters and system-font directory transport integration are in `Sources/GameToolAccess.swift`.
- **ChOma**, opa334 and contributors, https://github.com/opa334/ChOma. Headers copied with lara; MIT license in `Vendor/Licenses/ChOma.txt`.
- **XPF**, opa334 and contributors, https://github.com/opa334/XPF. Prebuilt library supplied by lara; original license in `Vendor/Licenses/XPF.txt`.
- **libgrabkernel2**, AlfieCG and contributors, https://github.com/alfiecg24/libgrabkernel2. Prebuilt library supplied by lara; original license in `Vendor/Licenses/libgrabkernel2.txt`.

The binary libraries are bundled from the recorded lara commit. They are not rebuilt from library source in this project's workflow; hashes are pinned in `vendor-manifest.json`. Upstream source links above identify their source projects. FontTool's own UI, compatibility gate, validation, backup and diagnostic code is in `Sources`. `SessionOnly.m` implements two optional upstream persistence hooks as process-local no-ops; the app sets upstream persistence off.

- **AirCard-iOS**, Mak5er and contributors, https://github.com/Mak5er/AirCard-iOS, commit `097a058c984ffc33ccb697b9dfe8058be3e86244`. MIT. The cloud workflow restores the verified GameTool Rust FFI built with the recorded permission/copy-out patches; the corresponding source-build script is included. Provenance and binary hashes are in `Vendor/AirCard/prebuilt.json`. Original license is bundled in `Vendor/Licenses/AirCard.txt`. Dependencies follow their source license notices.
