Vendored open-source assets

Every entry was license-verified against the upstream `LICENSE` file on

2026-08-01 before copy. Permissive-only (Apache-2.0 / MIT). GPL/AGPL/SSPL/

NOASSERTION-without-verifiable-LICENSE text are rejected. Upgrades are

reviewed diffs against the pinned commit — never unattended pulls.

AssetSourceLicensePinned commitTakenWhat we took
AI-service fingerprintsTencent/AI-Infra-Guard (`data/fingerprints/`)Apache-2.0`11206fe1731ba0369bad8d4752620012a749d09f`2026-08-01GET-only YAMLs for grader-covered services (16 files). Attribution: Zhuque Lab / Tencent. Plus 3 authored files in upstream schema (qdrant, chroma, weaviate — upstream gap), contribution prepared as a PR draft (`PR-ai-infra-guard-fingerprints.md`).
CVE lookup tableTencent/AI-Infra-Guard (`data/vuln/`)Apache-2.0`11206fe1731ba0369bad8d4752620012a749d09f`2026-08-01Consolidated `vendor/ai-infra-guard/vuln_lookup.json` (1910 entries).
Nuclei AI templatesprojectdiscovery/nuclei-templatesMIT`1532cc9ca1aa0141451e188c9ce77400beb07de6`2026-08-0131 read-only GET templates covering the same service list.
Census Shodan queries + risk rubricBishopFox/aimapMIT`65c820cbdad3da449f49aedb70055ca5ed4fa0ce`2026-08-0132 queries + risk rubric methodology. Attack suites / app stack left behind.
Honeypot profilesta-061/promptpotMIT`903dfb5a46e310e2caa60cc9957786b2a36504fa`2026-08-01Profile definitions (`profiles.json`, `config.example.json`) + LICENSE.
MCP honeypot personaskosiorkosa47/honeymcpApache-2.0 (LICENSE file verified; GitHub SPDX was NOASSERTION)`966bb908d140809957ba01e05132631c514ade5d`2026-08-01`personas/*.yaml` only — not the Rust binary.

Rejected on copy

Layout

← coverage