Audit Speedometer offline pack redistribution rights #18

Closed
opened 2026-09-27 19:10:29 +00:00 by xavierk · 1 comment
Owner

Part of Find the way to Odin’s build-ready specification.

Question

For the exact Speedometer 3.1 source snapshot at 1386415be8fef2f6b6bbdbe1828872471c5d802a, can Odin redistribute a complete frozen offline workload pack? Inventory every final shipped asset and its upstream provenance, license, copyright notice, attribution, and redistribution condition, including generated JavaScript bundles, fonts, images, fixtures, and nested third-party work. Identify any missing or incompatible grant and the smallest compliant remedy: retain notices, obtain permission, omit a separable asset without changing the official suite, or replace the selected workload. State the enforceable notice and manifest requirements for packaging. Use primary source licenses and source code. Do not run a benchmark, install browsers, or modify the host.

Context: offline pack research established static feasibility but did not complete the per-asset license audit.

Part of [Find the way to Odin’s build-ready specification](https://git.bongbetic.com/xavierk/odin/issues/1). <!-- wayfinder-map: 1 --> ## Question For the exact Speedometer 3.1 source snapshot at `1386415be8fef2f6b6bbdbe1828872471c5d802a`, can Odin redistribute a complete frozen offline workload pack? Inventory every final shipped asset and its upstream provenance, license, copyright notice, attribution, and redistribution condition, including generated JavaScript bundles, fonts, images, fixtures, and nested third-party work. Identify any missing or incompatible grant and the smallest compliant remedy: retain notices, obtain permission, omit a separable asset without changing the official suite, or replace the selected workload. State the enforceable notice and manifest requirements for packaging. Use primary source licenses and source code. Do not run a benchmark, install browsers, or modify the host. Context: [offline pack research](https://git.bongbetic.com/xavierk/odin/src/commit/408611d59fdac713676c533a2be82c09918e021c/docs/research/speedometer-offline-pack.md) established static feasibility but did not complete the per-asset license audit.
xavierk added the wayfinder:research label 2026-09-27 19:10:29 +00:00
xavierk added a new dependency 2026-09-27 19:10:30 +00:00
xavierk self-assigned this 2026-09-27 19:42:17 +00:00
Author
Owner

Research resolution

Decision: the complete pinned Speedometer 3.1 archive is not cleared for redistribution. The root BSD-style license covers Speedometer-owned material subject to its notice conditions; it does not grant rights to embedded third-party work. A full-source inventory records 1,118 files, their sizes and SHA-256 values. It is a file inventory, not a per-file license clearance or a final runtime pack manifest.

Confirmed gaps include the NewsSite template with no visible redistribution license, unproven rights for copied chart datasets, unresolved Adobe Spectrum icon/CSS provenance, Project Gutenberg conditions, and incomplete component-to-notice mapping for generated bundles and imagery. Nine separate notice files are identified. Retaining them is necessary where applicable, but does not cure missing grants. The smallest available routes are: obtain verifiable grants and required notices for affected assets; replace affected assets with cleared equivalents and rebuild/validate; or omit affected suites and reselect the browser workload. No unchanged complete pack can be approved from current evidence.

Read the source-grounded audit and per-file inventory. Evidence is on research/speedometer-license-audit at 151505b4f7a5b602902f676063d1c3c68f1af8aa.

Verify the offline Speedometer pack and its redistribution terms now owns the acquisition, replacement, or workload-selection decision. Any selected final pack still needs a per-file provenance/license/notice matrix, content-addressed manifest, and separate offline validation before packaging. No benchmark was run or browser installed.

## Research resolution **Decision: the complete pinned Speedometer 3.1 archive is not cleared for redistribution.** The root BSD-style license covers Speedometer-owned material subject to its notice conditions; it does not grant rights to embedded third-party work. A full-source inventory records 1,118 files, their sizes and SHA-256 values. It is a file inventory, not a per-file license clearance or a final runtime pack manifest. Confirmed gaps include the NewsSite template with no visible redistribution license, unproven rights for copied chart datasets, unresolved Adobe Spectrum icon/CSS provenance, Project Gutenberg conditions, and incomplete component-to-notice mapping for generated bundles and imagery. Nine separate notice files are identified. Retaining them is necessary where applicable, but does not cure missing grants. The smallest available routes are: obtain verifiable grants and required notices for affected assets; replace affected assets with cleared equivalents and rebuild/validate; or omit affected suites and reselect the browser workload. No unchanged complete pack can be approved from current evidence. [Read the source-grounded audit](https://git.bongbetic.com/xavierk/odin/src/commit/151505b4f7a5b602902f676063d1c3c68f1af8aa/docs/research/speedometer-license-audit.md) and [per-file inventory](https://git.bongbetic.com/xavierk/odin/src/commit/151505b4f7a5b602902f676063d1c3c68f1af8aa/docs/research/speedometer-license-manifest.tsv). Evidence is on `research/speedometer-license-audit` at `151505b4f7a5b602902f676063d1c3c68f1af8aa`. [Verify the offline Speedometer pack and its redistribution terms](https://git.bongbetic.com/xavierk/odin/issues/16) now owns the acquisition, replacement, or workload-selection decision. Any selected final pack still needs a per-file provenance/license/notice matrix, content-addressed manifest, and separate offline validation before packaging. No benchmark was run or browser installed.
xavierk added a new dependency 2026-09-27 20:12:40 +00:00
Sign in to join this conversation.
1 Participants
Notifications
Due Date
No due date set.
Reference: xavierk/odin#18