diff --git a/.gitignore b/.gitignore
index 8b82c0e..d536ace 100644
--- a/.gitignore
+++ b/.gitignore
@@ -7,6 +7,10 @@ __pycache__/
TODO.json
Content/Browser/dist/
Content/Browser/node_modules/
+website/dist/
+website/node_modules/
+website/server/node_modules/
+website/server/data/
# Sensitive or reference-only material.
docs/refs/
diff --git a/docs/generated/higher_dimensional_training_maps/phase6c_dedicated_family_package_validation_report.json b/docs/generated/higher_dimensional_training_maps/phase6c_dedicated_family_package_validation_report.json
new file mode 100644
index 0000000..a50daa0
--- /dev/null
+++ b/docs/generated/higher_dimensional_training_maps/phase6c_dedicated_family_package_validation_report.json
@@ -0,0 +1,93 @@
+{
+ "reportVersion": "ht-higher-dimensional-package-validation/v1",
+ "generatedAtUtc": "2026-06-22T01:43:08.7625247Z",
+ "projectRoot": "C:/HyperTwist_worktrees/phase10validate",
+ "archiveDirectory": "C:/HyperTwist_worktrees/phase10validate_packaged_phase6c_higherdim",
+ "configuration": "Development",
+ "cookMaps": [
+ "/Game/HyperTwistTraining/Maps/L_HyperTwist_Magic120CellTraining",
+ "/Game/HyperTwistTraining/Maps/L_HyperTwist_MagicCube5DTraining"
+ ],
+ "smokeMaps": [
+ "/Game/HyperTwistTraining/Maps/L_HyperTwist_Magic120CellTraining",
+ "/Game/HyperTwistTraining/Maps/L_HyperTwist_MagicCube5DTraining"
+ ],
+ "additionalCookerOptions": [
+ "-DisablePlugins=MovieRenderPipeline",
+ "-SkipCookingEditorContent"
+ ],
+ "cleanArchive": true,
+ "skipBuild": true,
+ "skipLaunch": false,
+ "authoringManifest": {
+ "path": "C:\\HyperTwist_worktrees\\phase10validate\\docs\\generated\\higher_dimensional_training_maps\\phase6c_dedicated_family_map_manifest.json",
+ "manifestId": "phase6c/dedicated-family-training-map-authoring",
+ "manifestVersion": "2026.06.18",
+ "authoredThroughGameModeClassPath": "/Script/UnrealHyperTwist.HyperTwistCoachDashboardGameMode",
+ "validatedEntries": [
+ {
+ "mapKind": "magic120cell",
+ "familyKey": "magic120cell",
+ "mapAssetPath": "/Game/HyperTwistTraining/Maps/L_HyperTwist_Magic120CellTraining",
+ "mapFileRelativePath": "UnrealHyperTwist/Content/HyperTwistTraining/Maps/L_HyperTwist_Magic120CellTraining.umap",
+ "mapHashMd5": "9d9b9301f14cdad8c263d2c57b5f2c7f",
+ "activationProfileId": "magic120cell-cleanroom-runtime-activation",
+ "runtimeModeId": "magic120cell-full-color-runtime-v1",
+ "projectionProfileId": "magic120cell-4d-projection-distance-v1",
+ "primaryPersistenceBoundaryId": "magic120cell-persistence-boundary"
+ },
+ {
+ "mapKind": "magiccube5d",
+ "familyKey": "magiccube5d",
+ "mapAssetPath": "/Game/HyperTwistTraining/Maps/L_HyperTwist_MagicCube5DTraining",
+ "mapFileRelativePath": "UnrealHyperTwist/Content/HyperTwistTraining/Maps/L_HyperTwist_MagicCube5DTraining.umap",
+ "mapHashMd5": "15d2f7acfdce43402ad2fd291fc5c781",
+ "activationProfileId": "magiccube5d-cleanroom-runtime-activation",
+ "runtimeModeId": "magiccube5d-order3-runtime-v1",
+ "projectionProfileId": "magiccube5d-5d-projection-distance-v1",
+ "primaryPersistenceBoundaryId": "magiccube5d-persistence-boundary"
+ }
+ ]
+ },
+ "result": "passed",
+ "packagedExecutablePath": "C:\\HyperTwist_worktrees\\phase10validate_packaged_phase6c_higherdim\\Windows\\UnrealHyperTwist.exe",
+ "smokeReports": [
+ {
+ "reportVersion": "ht-higher-dimensional-package-smoke/v1",
+ "generatedAtUtc": "2026-06-22T01:45:12.6335785Z",
+ "packageRoot": "C:\\HyperTwist_worktrees\\phase10validate_packaged_phase6c_higherdim",
+ "executablePath": "C:\\HyperTwist_worktrees\\phase10validate_packaged_phase6c_higherdim\\Windows\\UnrealHyperTwist.exe",
+ "mapUrl": "/Game/HyperTwistTraining/Maps/L_HyperTwist_Magic120CellTraining",
+ "smokeSeconds": 10,
+ "resolution": {
+ "width": 1600,
+ "height": 900
+ },
+ "keepRunning": false,
+ "result": "passed",
+ "processId": 29436,
+ "processStopped": true,
+ "exitCode": null,
+ "error": null
+ },
+ {
+ "reportVersion": "ht-higher-dimensional-package-smoke/v1",
+ "generatedAtUtc": "2026-06-22T01:45:23.3808621Z",
+ "packageRoot": "C:\\HyperTwist_worktrees\\phase10validate_packaged_phase6c_higherdim",
+ "executablePath": "C:\\HyperTwist_worktrees\\phase10validate_packaged_phase6c_higherdim\\Windows\\UnrealHyperTwist.exe",
+ "mapUrl": "/Game/HyperTwistTraining/Maps/L_HyperTwist_MagicCube5DTraining",
+ "smokeSeconds": 10,
+ "resolution": {
+ "width": 1600,
+ "height": 900
+ },
+ "keepRunning": false,
+ "result": "passed",
+ "processId": 35616,
+ "processStopped": true,
+ "exitCode": null,
+ "error": null
+ }
+ ],
+ "error": null
+}
diff --git a/docs/ops/HYPERTWIST_COMPREHENSIVE_RECONSTRUCTION_ROADMAP_2026-06-10.md b/docs/ops/HYPERTWIST_COMPREHENSIVE_RECONSTRUCTION_ROADMAP_2026-06-10.md
index 6c59525..c2c1baf 100644
--- a/docs/ops/HYPERTWIST_COMPREHENSIVE_RECONSTRUCTION_ROADMAP_2026-06-10.md
+++ b/docs/ops/HYPERTWIST_COMPREHENSIVE_RECONSTRUCTION_ROADMAP_2026-06-10.md
@@ -369,6 +369,7 @@ Closure read:
- `2026-06-18` Windows checkpoint: after that projection-deferral hardening rebuild with `Result: Succeeded` / UnrealBuildTool `Total execution time: 400.77 seconds`, targeted `UnrealEditor-Cmd` automation exported `C:\HyperTwist_worktrees\phase10validate\UnrealHyperTwist\Saved\AutomationReports\Phase6C-DedicatedFamily-Optimized2\index.json` with all `11` `HyperTwist.FirstParty.HigherDimensional.Phase6C` tests passing, `totalDuration` `41.88494873046875`, and `LaunchExecution` duration `41.53509521484375`; the controller quiet interval fell again to `41.52 seconds` while retaining `**** TEST COMPLETE. EXIT CODE: 0 ****`
- `2026-06-18` recovery proof: current code now deterministically reauthors the dedicated-family `Magic120Cell` / `MagicCube5D` maps through `scripts/hypertwist_author_higher_dimensional_training_maps.py`, stamps `AHyperTwistCoachDashboardGameMode` plus manifest-backed `PlayerStart` ownership tags for activation, host, launch, view-context, session, interactive-scene, scene-context, puzzle, runtime-mode, projection, persistence, and dedicated-family ownership, and records the refreshed owned-map hashes in `docs/generated/higher_dimensional_training_maps/phase6c_dedicated_family_map_manifest.json`; the optional `AHyperTwistHigherDimensionalTrainingShellActor` remains available for manual/editor authoring, but the headless `UnrealEditor-Cmd` lane now intentionally skips spawning it because that path still crashes the commandlet with `EXCEPTION_INT_DIVIDE_BY_ZERO`
- `2026-06-18` Windows checkpoint: after patching the missing dedicated-anchor puzzle tag, the same isolated worktree `C:\HyperTwist_worktrees\phase10validate` reran `scripts\Invoke-HyperTwistHigherDimensionalMapAuthoring.ps1` to `Higher-dimensional authored maps verified.`, then targeted `UnrealEditor-Cmd` automation exported `C:\HyperTwist_worktrees\phase10validate\UnrealHyperTwist\Saved\AutomationReports\Phase6C-DedicatedMapOwnership\index.json`; the pulled local proof at `docs/generated/higher_dimensional_training_maps/phase6c_dedicated_map_ownership_automation_report.json` now shows all `13` `HyperTwist.FirstParty.HigherDimensional.Phase6C` tests passing, including `DedicatedMapAuthoringManifest` and `DedicatedMapOwnedShell`, with `**** TEST COMPLETE. EXIT CODE: 0 ****`
+- `2026-06-22` Windows checkpoint: the same primary reverse-SSH `localhost:22022` lane then re-used isolated worktree `C:\HyperTwist_worktrees\phase10validate` for the maintained higher-dimensional package helper, ran `scripts\Invoke-HyperTwistHigherDimensionalPackage.ps1` in `-SkipBuild` mode against the existing target receipt, validated the manifest-backed `Magic120Cell` / `MagicCube5D` dedicated-family map hashes before cook, completed `BuildCookRun` with `ExitCode=0` and `BuildCookRun time: 118.53 s`, wrote archive output to `C:\HyperTwist_worktrees\phase10validate_packaged_phase6c_higherdim`, smoke-booted both `/Game/HyperTwistTraining/Maps/L_HyperTwist_Magic120CellTraining` and `/Game/HyperTwistTraining/Maps/L_HyperTwist_MagicCube5DTraining`, and pulled aggregate proof into `docs/generated/higher_dimensional_training_maps/phase6c_dedicated_family_package_validation_report.json`
- [x] Replace the current placeholder interactive-scene envelopes with full owned `120-cell` and `5D` simulation-state, projection, and persistence ownership in Unreal above the landed higher-dimensional scene-context catalog
- [x] Replace the current shared-map execution bridge with full owned dedicated-family interactive launch, map, and persistence surfaces for `120-cell` and `5D`
diff --git a/docs/ops/HYPERTWIST_PUBLIC_WEBSITE_AUTH_BILLING_AND_DISTRIBUTION_PACKET_2026-06-22.md b/docs/ops/HYPERTWIST_PUBLIC_WEBSITE_AUTH_BILLING_AND_DISTRIBUTION_PACKET_2026-06-22.md
new file mode 100644
index 0000000..e3ee137
--- /dev/null
+++ b/docs/ops/HYPERTWIST_PUBLIC_WEBSITE_AUTH_BILLING_AND_DISTRIBUTION_PACKET_2026-06-22.md
@@ -0,0 +1,216 @@
+# HyperTwist Public Website, Auth, Billing, and Distribution Packet
+
+Created on `2026-06-22`.
+
+## Purpose
+
+This packet records the first-party public `hypertwist.app` lane that now sits
+beside the existing embedded Unreal browser runtime.
+
+It closes one product-surface gap:
+
+- HyperTwist now has a real public website and browser operator shell
+
+It does **not** reopen any previously frozen topology branch:
+
+- it does not claim the optional full-browser simulator is live
+- it does not reopen the native `MagicTile` renderer-port branch
+- it does not replace the embedded Unreal browser/CEF shipping posture
+
+## Why this lane had to exist separately
+
+HyperTwist already had a browser runtime under:
+
+- `Content/Browser/`
+
+That runtime is the embedded Unreal browser/CEF shell, not the public website,
+pricing page, download page, auth shell, or account dashboard.
+
+The public product/distribution surface now lives under:
+
+- `website/`
+
+## Cross-repo reference posture
+
+This packet intentionally reused website structure and auth posture from:
+
+- FamiliarOS website structure, public-page layout discipline, and centered loading spinner
+- ScriptoriumAI browser dashboard and protected-app-shell posture
+
+But the resulting code is now:
+
+- first-party HyperTwist-owned
+- rebranded to HyperTwist content and product truth
+- constrained by HyperTwist roadmap and feature-registry authority
+
+## Landed first-party surfaces
+
+### Frontend app
+
+- `website/src/App.tsx`
+- `website/src/router/AppRouteTree.tsx`
+- `website/src/router/PublicRoutes.tsx`
+- `website/src/components/layout/MarketingShell.tsx`
+- `website/src/components/layout/AppShell.tsx`
+- `website/src/components/ui/Skeletons.tsx`
+- `website/src/pages/public-pages.tsx`
+- `website/src/pages/auth-pages.tsx`
+- `website/src/pages/app-pages.tsx`
+
+Current public/product routes now include:
+
+- `/`
+- `/about`
+- `/resources`
+- `/docs`
+- `/support`
+- `/changelog`
+- `/pricing`
+- `/download`
+- `/open-source-notices`
+- `/privacy`
+- `/terms`
+- `/shipping-payment`
+- `/login`
+- `/register`
+- protected `/app` routes for browser-based operator access
+
+### Auth posture
+
+Shared auth posture now exists through:
+
+- `website/src/auth/auth-env.ts`
+- `website/src/auth/auth-api.ts`
+- `website/src/auth/supertokens-client.ts`
+- `website/src/auth/platform-auth.tsx`
+
+Current behavior:
+
+- shared SuperTokens auth frontend posture aligned with FamiliarOS and ScriptoriumAI
+- email/password login and registration
+- optional GitHub and Google OAuth flags
+- optional ORCID redirect posture retained client-side as a backend-gated extension point
+- deterministic local fallback mode when the backend is not configured
+- bounded auth-health probing that now distinguishes configured, reachable, and ready shared-core posture without mutating auth state
+
+### Browser dashboard posture
+
+Protected browser dashboard routes now expose:
+
+- account state
+- auth/server health
+- desktop-link token generation
+- download/release posture
+- billing and entitlement state
+- browser-access boundary explanation
+- notices review
+
+That auth/server health surface now also reports:
+
+- whether the shared SuperTokens core is merely configured or actually reachable
+- the reported core API version when reachable
+- whether fallback posture is currently active and why
+
+This is browser-based user access for the operator/account surface.
+
+It is **not** a claim that the simulator itself is now browser-owned.
+
+### Desktop distribution and pairing posture
+
+The website now includes:
+
+- public download center
+- plan-gated release posture
+- browser-to-desktop token handoff
+- protected-dashboard download gating above the public target-description page
+
+Current pairing endpoint family:
+
+- `POST /api/auth/desktop-link`
+- `GET /api/auth/desktop-link/verify`
+
+Current hardening on that lane now also includes:
+
+- exact website-origin matching instead of prefix-only acceptance
+- bounded per-user desktop-link issuance
+- one-time verification-token consumption after the first successful desktop-side use
+- billing-resolved plan/role plus download-entitlement posture carried into the desktop-link token rather than stale session defaults
+- public `/download` messaging that routes real download access through the protected dashboard instead of exposing raw release URLs on the marketing page
+
+### Billing posture
+
+Pricing now exists as a public first-party page and is wired for:
+
+- env-configured plan labels
+- env-configured Paddle checkout URLs
+- shared webhook endpoint family
+
+Current billing endpoint:
+
+- `POST /api/billing/paddle/webhook`
+
+Current billing hardening now includes:
+
+- raw-body signature verification against `PADDLE_WEBHOOK_SECRET`
+- `Paddle-Signature` timestamp tolerance enforcement
+- bounded first-party billing-state persistence
+- verified-event application into account/download entitlement state
+- focused backend tests for valid, malformed, expired, and mismatched signatures
+
+## Public legal and MPL distribution posture
+
+This packet explicitly satisfies the earlier doctrine requirement that public
+distribution surfaces must expose legal/notices guidance when shipped builds
+contain `MPL`-covered material.
+
+The website now has:
+
+- a public `Open Source Notices` route
+- footer linkage
+- pricing/download/legal linkage
+- corresponding-source configuration slots
+
+This packet does **not** pretend deployment is finished.
+
+Before public launch, operators still must configure:
+
+- the real public corresponding-source URL
+- real Paddle checkout URLs
+- real production download URLs
+- live notification-destination secret management
+- any broader operator/admin billing workflow beyond the current bounded entitlement application
+
+## Validation completed
+
+Frontend validation:
+
+- `npm run type-check`
+- `npm test`
+- `npm run build`
+
+Backend validation:
+
+- `npm run type-check`
+- `npm test`
+
+Validation result on `2026-06-22`:
+
+- frontend type-check passed
+- frontend tests passed
+- frontend production build passed
+- backend type-check passed
+- backend focused security tests passed
+- `website/server` billing/entitlement tests passed
+- the new bounded auth-health probe tests passed, and the protected dashboard type/build surface remained green after adopting the richer health contract
+
+## Explicit non-claims
+
+This packet does not claim any of the following:
+
+- public browser simulator parity with the native Unreal runtime
+- live production pricing values
+- live production download URLs
+- completed public corresponding-source hosting
+
+Those are deployment/runtime configuration tasks, not missing ownership of the
+public website lane itself.
diff --git a/docs/ops/HYPERTWIST_REVERSE_SSH_WINDOWS_BUILD_LANE_VERIFICATION_2026-06-01.md b/docs/ops/HYPERTWIST_REVERSE_SSH_WINDOWS_BUILD_LANE_VERIFICATION_2026-06-01.md
index 8ed6430..41865c2 100644
--- a/docs/ops/HYPERTWIST_REVERSE_SSH_WINDOWS_BUILD_LANE_VERIFICATION_2026-06-01.md
+++ b/docs/ops/HYPERTWIST_REVERSE_SSH_WINDOWS_BUILD_LANE_VERIFICATION_2026-06-01.md
@@ -391,6 +391,49 @@ Live follow-up on `2026-06-18` established these additional facts:
`Ignoring very large delta of 499.13 seconds`, so the quiet interval is now
known-good on this lane rather than a default corruption indicator
+## Addendum - 2026-06-22 (higher-dimensional structured package-report proof)
+
+Live follow-up on `2026-06-22` established these additional facts:
+
+- the primary `localhost:22022` lane remained healthy for the current
+ higher-dimensional package-helper proof
+- the validated route again used the isolated Windows tree
+ `C:\HyperTwist_worktrees\phase10validate`
+- the maintained helper pair
+ `scripts\Invoke-HyperTwistHigherDimensionalPackage.ps1` and
+ `scripts\Launch-HyperTwistHigherDimensionalPackage.ps1` was narrow-synced
+ into that isolated worktree without forcing a broad reverse-sync
+- the packaged-game target receipt was already present there, so the helper was
+ validated in `-SkipBuild` mode rather than spending time on an unrelated full
+ game rebuild for this script-only slice
+- before `BuildCookRun`, the helper verified that the
+ `Magic120Cell` / `MagicCube5D` dedicated-family `.umap` files still matched
+ the owned hashes recorded in
+ `docs\generated\higher_dimensional_training_maps\phase6c_dedicated_family_map_manifest.json`
+- `BuildCookRun` then succeeded from that same worktree with `ExitCode=0` and
+ `BuildCookRun time: 118.53 s`
+- archive output was written to
+ `C:\HyperTwist_worktrees\phase10validate_packaged_phase6c_higherdim`
+- packaged smoke launch succeeded for
+ `/Game/HyperTwistTraining/Maps/L_HyperTwist_Magic120CellTraining`
+- packaged smoke launch also succeeded for
+ `/Game/HyperTwistTraining/Maps/L_HyperTwist_MagicCube5DTraining`
+- the maintained helper wrote aggregate report JSON to
+ `C:\HyperTwist_worktrees\phase10validate_packaged_phase6c_higherdim\validation\higher-dimensional-package-validation-report.json`
+- the same aggregate proof was then pulled back into the tracked repo at
+ `docs/generated/higher_dimensional_training_maps/phase6c_dedicated_family_package_validation_report.json`
+
+Operational rules reinforced by this proof:
+
+- for a script-only packaging helper slice on this lane, prefer a narrow file
+ sync plus `-SkipBuild` when the packaged-game target receipt already exists
+- when a package helper validates manifest-backed map freshness before cook,
+ treat that manifest gate as part of the proof rather than as incidental log
+ noise
+- when a remote packaged-validation archive becomes relied-on source-backed
+ evidence, pull the aggregate report back into the tracked repo before calling
+ the lane closed
+
## Addendum - 2026-06-13 (replay, leaderboard, and structured package-report proof)
Live follow-up on `2026-06-13` established these additional facts:
diff --git a/docs/ops/HYPERTWIST_UNREAL_BUILD_VALIDATION_REQUIREMENT_2026-06-01.md b/docs/ops/HYPERTWIST_UNREAL_BUILD_VALIDATION_REQUIREMENT_2026-06-01.md
index e4f2671..1cdffcf 100644
--- a/docs/ops/HYPERTWIST_UNREAL_BUILD_VALIDATION_REQUIREMENT_2026-06-01.md
+++ b/docs/ops/HYPERTWIST_UNREAL_BUILD_VALIDATION_REQUIREMENT_2026-06-01.md
@@ -193,6 +193,24 @@ can legitimately trigger controller output such as
healthy, so that quiet interval is now an expected operational characteristic
of this slice rather than a default corruption signal.
+Additional live proof on `2026-06-22` then closed the current maintained
+higher-dimensional package-helper lane on that same primary reverse-SSH path:
+the isolated Windows worktree `C:\HyperTwist_worktrees\phase10validate`
+already had the packaged-game target receipt, so the new helper
+`scripts\Invoke-HyperTwistHigherDimensionalPackage.ps1` was validated in
+`-SkipBuild` mode against the existing receipt, insisted on manifest-backed
+`Magic120Cell` / `MagicCube5D` dedicated-family map hash parity before cook,
+completed `BuildCookRun` with `ExitCode=0` and `BuildCookRun time: 118.53 s`,
+wrote archive output to
+`C:\HyperTwist_worktrees\phase10validate_packaged_phase6c_higherdim`,
+smoke-launched both higher-dimensional dedicated-family training maps through
+`scripts\Launch-HyperTwistHigherDimensionalPackage.ps1`, and pulled aggregate
+proof into
+`docs/generated/higher_dimensional_training_maps/phase6c_dedicated_family_package_validation_report.json`.
+This extends the doctrine from higher-dimensional activation/ownership proof
+into current structured package/archive/launch proof on the same primary
+reverse-SSH lane.
+
Further `2026-06-13` continuation proof on that same primary lane recovered
the classic-cube replay/leaderboard/package slice after a corrupted reverse
sync incident: a prior aborted broad tar sync left remote
diff --git a/docs/v6_5_deep_manual_pack/HyperTwist/FEATURE_REGISTRY.md b/docs/v6_5_deep_manual_pack/HyperTwist/FEATURE_REGISTRY.md
index 7dfe294..7acf2b1 100644
--- a/docs/v6_5_deep_manual_pack/HyperTwist/FEATURE_REGISTRY.md
+++ b/docs/v6_5_deep_manual_pack/HyperTwist/FEATURE_REGISTRY.md
@@ -259,7 +259,17 @@ repo.
| Local social challenge bundle | Implemented now | landed `kash/cubedesk` `Bound 5` | Live bounded slice. |
| Broader admin/report lane | Deep-source grounded retained | repo-local justification required | `Bound 6` is deferred and not currently justified for implementation. |
-### 6. Hyper puzzle topology and non-Euclidean runtime
+### 6. Public website, distribution, and account surfaces
+
+| Feature | Status | Primary authority | Notes |
+|---|---|---|---|
+| Public `hypertwist.app` marketing shell | Implemented now | first-party `website/` app + feature registry/roadmap authority | HyperTwist now has a dedicated first-party public web surface for homepage, about, resources, pricing, download, support, and legal routes. This lane is separate from the embedded Unreal browser runtime under `Content/Browser/` and does not claim browser-simulator parity. |
+| Browser-based operator/account dashboard | Implemented now | first-party `website/` app + shared auth/dashboard packet | A protected browser dashboard is now live for operator access, account state, download posture, browser-access boundary explanation, notices review, and bounded billing/entitlement status. It reuses the shared SuperTokens auth posture proven in FamiliarOS and ScriptoriumAI while remaining HyperTwist-specific in product content and boundary claims, and the current auth-health surface now truthfully distinguishes configured versus reachable or ready shared-core posture while exposing fallback-active reason instead of hardcoding readiness. |
+| Desktop download posture and browser-to-desktop pairing | Implemented now | first-party `website/` app + `website/server` desktop-link endpoints | Public download targets, dashboard-side release posture, and short-lived desktop-link token generation/verification are now first-party owned. The current server posture now enforces exact website-origin matching, bounded per-user issuance, one-time token consumption, and billing-backed plan/download entitlement resolution with focused `website/server` tests green on `2026-06-22`, and the verify handshake now returns the same resolved download-entitlement posture the dashboard sees instead of only identity plus plan/role. The public `/download` page now keeps raw download URLs behind the protected dashboard instead of exposing them directly. Actual release URLs remain deployment configuration rather than hardcoded product truth. |
+| Paddle-ready pricing and billing webhook seam | Implemented now | first-party `website/` app + `website/server` billing endpoint | The public pricing surface now exists with plan structure, checkout-link configuration seams, and the same `/api/billing/paddle/webhook` endpoint family used by the broader product website lane. The current server now verifies `Paddle-Signature` against `PADDLE_WEBHOOK_SECRET` using the documented raw-body HMAC flow, persists a bounded first-party billing state file, and applies verified Paddle events into account/download entitlement state that the browser dashboard consumes, with focused `website/server` tests green on `2026-06-22`. Production checkout URLs, secret management, and broader operator/admin billing workflows remain deployment/application tasks, not shipped-code omissions. |
+| Public open-source notices and corresponding-source surface | Implemented now | first-party `website/` app + `HYPERTWIST_MPL_DISTRIBUTION_PLACEMENT_CHECKLIST_2026-05-25.md` | HyperTwist now has a stable public `Open Source Notices` route linked from pricing, download, and footer surfaces, satisfying the requirement that public distribution surfaces expose notice and corresponding-source guidance when shipped builds contain `MPL`-covered material. The exact public corresponding-source URL still must be configured before external launch. |
+
+### 7. Hyper puzzle topology and non-Euclidean runtime
| Feature | Status | Primary authority | Notes |
|---|---|---|---|
@@ -279,10 +289,10 @@ repo.
| Higher-dimensional initial shared-map launch and view-context execution bridge | Implemented now | landed `Phase 6C` continuation packet | First-party current code first bundled higher-dimensional launch surfaces and view-context surfaces for `Magic120Cell` and `MagicCube5D`, resolved those surfaces through the training runtime library plus the live training panel/session-actor caches, and let the training subsystem start the shared-map seed run, apply default selector posture, persist the generated-mode launch request, and start the owned generated run without widening into external-process ownership. After recovering an interrupted follow-up, the primary reverse-SSH `localhost:22022` Windows lane rebuilt that cleaned slice on `2026-06-18` with `Result: Succeeded`, UnrealBuildTool `Total execution time: 124.81 seconds`, and passed all `8` `HyperTwist.FirstParty.HigherDimensional.Phase6C` tests, including `LaunchCatalog`, `ViewContextCatalog`, `LaunchExecution`, and `RunStateActivationResolution`; that initial bridge is now superseded by the later dedicated-family map ownership continuation. |
| Higher-dimensional explicit dedicated-host seam | Implemented now | landed `Phase 6C` host-surface continuation packet | First-party current code then recorded the preferred dedicated-family `Magic120Cell` / `MagicCube5D` host-map targets in an explicit higher-dimensional host-surface catalog while the slice still kept the shared training map as the interim effective runtime fallback, mirrored that resolved host seam through the training runtime library plus the panel/session caches, and threaded the host-surface id into the launch/view-context surfaces and generated-mode lineage. The primary reverse-SSH `localhost:22022` Windows lane rebuilt this widened slice on `2026-06-18` with `Result: Succeeded`, UnrealBuildTool `Total execution time: 2858.02 seconds`, and passed all `9` `HyperTwist.FirstParty.HigherDimensional.Phase6C` tests, including the new `HostCatalog`; that interim fallback is now superseded by the later dedicated-family map ownership continuation. |
| Higher-dimensional executed runtime session surface | Implemented now | landed `Phase 6C` session-surface continuation packet | First-party current code now merges the higher-dimensional launch, host, and view-context seams into an explicit runtime-session catalog for `Magic120Cell` and `MagicCube5D`, mirrors that session surface through the training runtime library plus the panel/session caches, upgrades generated-mode deck lineage to record the resolved session surface, and applies the merged launch-plus-view selector posture at start time instead of only the narrower launch defaults. The primary reverse-SSH `localhost:22022` Windows lane rebuilt this widened slice on `2026-06-18` with `Result: Succeeded`, UnrealBuildTool `Total execution time: 3541.98 seconds`, and passed all `10` `HyperTwist.FirstParty.HigherDimensional.Phase6C` tests, including the new `SessionCatalog`; the longer `LaunchExecution` quiet interval of `573.84 seconds` remained known-good. |
-| Higher-dimensional dedicated-family interactive scene ownership | Implemented now | landed `Phase 6C` interactive-scene and dedicated-host continuation packet | First-party current code now promotes the higher-dimensional runtime-session seams into explicit `Magic120Cell` and `MagicCube5D` interactive-scene surfaces with family-owned runtime-state, projection, and persistence envelopes, replaces the shared-map bridge with dedicated-family training-map assets plus dedicated host/launch/view-context/session surfaces, exposes explicit scene-envelope decoders through the runtime library, batches default selector application so generated-mode launch execution no longer rebuilds repository views once per selector, and then defers repository-view projection across the internal generated-mode handoff itself so only the final launch state forces a view refresh. The primary reverse-SSH `localhost:22022` Windows lane rebuilt the dedicated-family ownership slice on `2026-06-18` with `Result: Succeeded`, UnrealBuildTool `Total execution time: 1648.33 seconds`; the later projection-deferral hardening rebuild completed in `400.77 seconds`, and the exported automation report passed all `11` `HyperTwist.FirstParty.HigherDimensional.Phase6C` tests with `totalDuration` `41.88494873046875`, `LaunchExecution` duration `41.53509521484375`, and the controller quiet interval reduced to `41.52 seconds`. The current recovery-proof continuation now also deterministically reauthors the dedicated-family maps through `scripts/hypertwist_author_higher_dimensional_training_maps.py`, records manifest-backed owned hashes in `docs/generated/higher_dimensional_training_maps/phase6c_dedicated_family_map_manifest.json`, preserves the optional `AHyperTwistHigherDimensionalTrainingShellActor` for manual/editor authoring while intentionally skipping it on the headless commandlet lane because that spawn path still crashes `UnrealEditor-Cmd`, and passes all `13` `HyperTwist.FirstParty.HigherDimensional.Phase6C` tests through pulled proof in `docs/generated/higher_dimensional_training_maps/phase6c_dedicated_map_ownership_automation_report.json`, including `DedicatedMapAuthoringManifest` and `DedicatedMapOwnedShell`. |
+| Higher-dimensional dedicated-family interactive scene ownership | Implemented now | landed `Phase 6C` interactive-scene and dedicated-host continuation packet | First-party current code now promotes the higher-dimensional runtime-session seams into explicit `Magic120Cell` and `MagicCube5D` interactive-scene surfaces with family-owned runtime-state, projection, and persistence envelopes, replaces the shared-map bridge with dedicated-family training-map assets plus dedicated host/launch/view-context/session surfaces, exposes explicit scene-envelope decoders through the runtime library, batches default selector application so generated-mode launch execution no longer rebuilds repository views once per selector, and then defers repository-view projection across the internal generated-mode handoff itself so only the final launch state forces a view refresh. The primary reverse-SSH `localhost:22022` Windows lane rebuilt the dedicated-family ownership slice on `2026-06-18` with `Result: Succeeded`, UnrealBuildTool `Total execution time: 1648.33 seconds`; the later projection-deferral hardening rebuild completed in `400.77 seconds`, and the exported automation report passed all `11` `HyperTwist.FirstParty.HigherDimensional.Phase6C` tests with `totalDuration` `41.88494873046875`, `LaunchExecution` duration `41.53509521484375`, and the controller quiet interval reduced to `41.52 seconds`. The current recovery-proof continuation now also deterministically reauthors the dedicated-family maps through `scripts/hypertwist_author_higher_dimensional_training_maps.py`, records manifest-backed owned hashes in `docs/generated/higher_dimensional_training_maps/phase6c_dedicated_family_map_manifest.json`, preserves the optional `AHyperTwistHigherDimensionalTrainingShellActor` for manual/editor authoring while intentionally skipping it on the headless commandlet lane because that spawn path still crashes `UnrealEditor-Cmd`, passes all `13` `HyperTwist.FirstParty.HigherDimensional.Phase6C` tests through pulled proof in `docs/generated/higher_dimensional_training_maps/phase6c_dedicated_map_ownership_automation_report.json`, including `DedicatedMapAuthoringManifest` and `DedicatedMapOwnedShell`, and now has a maintained packaged-validation seam through `scripts/Invoke-HyperTwistHigherDimensionalPackage.ps1` plus `scripts/Launch-HyperTwistHigherDimensionalPackage.ps1`. That helper was then live-validated on `2026-06-22` against isolated worktree `C:\HyperTwist_worktrees\phase10validate` in `-SkipBuild` mode, with `BuildCookRun time: 118.53 s`, archive output in `C:\HyperTwist_worktrees\phase10validate_packaged_phase6c_higherdim`, both dedicated-family packaged smoke maps green, and pulled aggregate proof in `docs/generated/higher_dimensional_training_maps/phase6c_dedicated_family_package_validation_report.json`. |
| Broad non-Euclidean interaction shell and host ownership | Deep-source grounded retained | `MagicTile` retained remainder | Broad interaction-shell, WinForms/OpenTK host ownership, native spherical/hyperbolic renderer ownership beyond the landed first-party native behavior proof, and generic runtime replacement remain deferred after the landed `Phase 6R-T`, `Phase 7A`, `Phase 7B`, and `Phase 7C` slices, with later native renderer reopening now governed by the separate spec-only `Phase 7D` decision gate. |
-### 7. Speech input and voice sidecars
+### 8. Speech input and voice sidecars
| Feature | Status | Primary authority | Notes |
|---|---|---|---|
@@ -303,7 +313,7 @@ repo.
| Broad voice output / narration sidecars | Deep-source grounded retained | `piper`, `coqui-ai/TTS` retained remainder | Keep actual voice-asset shipping, playback/runtime ownership, and broader assistant-platform scope separate from the landed local review and narration packets. |
| Actual downloadable model and payload shipping | Deep-source grounded retained | `whisper.cpp` retained remainder | Keep real download/shipping ownership separate from the landed bounded custody boundary and from the code-license judgment. |
-### 8. Provider-neutral AI/provider routing
+### 9. Provider-neutral AI/provider routing
| Feature | Status | Primary authority | Notes |
|---|---|---|---|
@@ -319,7 +329,7 @@ repo.
| First-party provider-neutral custom-endpoint runtime routing | Implemented now | landed first-party `Phase 6R-AI` packet | Current bounded per-session provider-profile endpoint selection, runtime routing, fallback-health reflection, and provider-backed transport-failure posture above the landed provider-profile/BYOK and provider-routing seams. OpenAI-compatible custom endpoints are no longer custody-only doctrine targets. |
| Provider-specific overlays | Shallow placeholder | future provider-family work only | Keep internal until source-grounded and normalized. |
-### 9. Memory, continuity, notes, and provenance
+### 10. Memory, continuity, notes, and provenance
| Feature | Status | Primary authority | Notes |
|---|---|---|---|
@@ -337,7 +347,7 @@ repo.
| User-authored note lane | Deep-source grounded retained | memory doctrine, owner unresolved | Explicit note-lane posture/gating is live through `Phase 6R-M5`, but active user-authored note capture still must not be described as shipped until ownership is justified. |
| First-party derived memory and optional adjunct | Implemented now | landed first-party `Phase 6R-M6` packet | Current bounded compact summaries, reduced context packets, and optional digest views are live in explicit derived-only removable form. `Economic-Retention Mode` proves all-features-off correctness by keeping the lane empty and valid, while `Max-Retention Mode` exposes the optional derived adjunct surfaces without promoting them to authoritative truth. |
-### 10. Skills and optional assistive layer
+### 11. Skills and optional assistive layer
| Feature | Status | Primary authority | Notes |
|---|---|---|---|
diff --git a/docs/v6_5_deep_manual_pack/HyperTwist/ROADMAP.md b/docs/v6_5_deep_manual_pack/HyperTwist/ROADMAP.md
index 6699c32..a4c6074 100644
--- a/docs/v6_5_deep_manual_pack/HyperTwist/ROADMAP.md
+++ b/docs/v6_5_deep_manual_pack/HyperTwist/ROADMAP.md
@@ -78,6 +78,21 @@ Current consolidated milestone snapshot:
- the current packaged validation bridge for that lane is source-controlled via
`C:\HyperTwist\scripts\Invoke-HyperTwistClassicCubePackage.ps1` and
`C:\HyperTwist\scripts\Launch-HyperTwistClassicCubePackage.ps1`
+- the higher-dimensional dedicated-family lane now also has a maintained
+ packaged validation bridge via
+ `C:\HyperTwist\scripts\Invoke-HyperTwistHigherDimensionalPackage.ps1` and
+ `C:\HyperTwist\scripts\Launch-HyperTwistHigherDimensionalPackage.ps1`,
+ which validate the manifest-backed `Magic120Cell` / `MagicCube5D`
+ dedicated-family map hashes before `BuildCookRun` and emit aggregate plus
+ per-map smoke JSON under the packaged archive `validation` tree
+- that higher-dimensional package lane was then live-validated on `2026-06-22`
+ through the primary reverse-SSH `localhost:22022` lane against isolated
+ Windows worktree `C:\HyperTwist_worktrees\phase10validate`, using
+ `-SkipBuild` on the already-present game receipt, archive output in
+ `C:\HyperTwist_worktrees\phase10validate_packaged_phase6c_higherdim`,
+ `BuildCookRun time: 118.53 s`, both dedicated-family packaged smoke maps
+ green, and pulled aggregate proof in
+ `docs/generated/higher_dimensional_training_maps/phase6c_dedicated_family_package_validation_report.json`
- the earlier dedicated-map package proof used the verified fallback reverse-SSH
lane on `localhost:22023`, an isolated Windows worktree at
`C:\HyperTwist_worktrees\phase3to5`, authored dedicated classic/follow-along
@@ -171,6 +186,37 @@ Current consolidated milestone snapshot:
including `CoachDashboard.RuntimeInspectSurface`,
`TrainingPanel.RuntimeInspectSurface`, and
`Widget.OperatorStatusSurfaceLive`
+- the public HyperTwist website/distribution lane is now also live through a
+ first-party `website/` app on `2026-06-22`, with rebranded
+ home/about/resources/pricing/download/legal pages, a protected browser
+ operator dashboard, shared SuperTokens auth posture, a browser-to-desktop
+ token handoff seam, a Paddle-ready pricing/check-out structure, and a public
+ `Open Source Notices` page linked from footer/pricing/download surfaces so
+ the current MPL distribution doctrine is not left undocumented on public
+ release surfaces; this lane remains honest that the embedded browser shell is
+ shipping while the optional full-browser simulator path stays spec-only
+- that same website lane also now has a first-party `website/server`
+ auth/billing backend with `/api/auth/health`, `/api/auth/me`,
+ `/api/auth/logout`, `/api/auth/desktop-link`,
+ `/api/auth/desktop-link/verify`, and `/api/billing/paddle/webhook`, while
+ the browser-to-desktop token lane now also enforces exact website-origin
+ matching, bounded per-user issuance, and one-time verification-token
+ consumption with green `website/server` type-check plus focused tests on
+ `2026-06-22`, and the billing webhook now verifies `Paddle-Signature`
+ against `PADDLE_WEBHOOK_SECRET` through the documented raw-body HMAC flow,
+ and the bounded auth-health probe now truthfully distinguishes configured
+ versus reachable or ready shared SuperTokens core posture while reflecting
+ fallback-active reason back into the protected dashboard rather than
+ hardcoding readiness,
+ persists a bounded first-party billing-state file, applies verified Paddle
+ events into account/download entitlement state, and surfaces that resolved
+ billing/download posture back through `/api/auth/me`, the protected browser
+ dashboard, and the browser-to-desktop verify handshake; the public
+ `/download` page now routes authenticated users
+ into that protected release surface instead of exposing raw download URLs on
+ the marketing page itself; production checkout URLs, broader operator/admin
+ billing workflows, and the exact public corresponding-source URL remain
+ deployment/application configuration rather than hardcoded product truth
- classic-cube `Phase 9A` replay recording is now closed through first-party
runtime capture, `.json` replay persistence, local playback reconstruction,
schema-light replay normalization across save/load/viewer import, and live
@@ -327,6 +373,22 @@ Current consolidated milestone snapshot:
the same `localhost:22022` lane passed all `13`
`HyperTwist.FirstParty.HigherDimensional.Phase6C` tests, including
`DedicatedMapAuthoringManifest` and `DedicatedMapOwnedShell`
+- the same `Phase 6C` lane now also has a maintained higher-dimensional
+ package-validation helper pair,
+ `scripts/Invoke-HyperTwistHigherDimensionalPackage.ps1` and
+ `scripts/Launch-HyperTwistHigherDimensionalPackage.ps1`, which insist on
+ manifest-backed dedicated-family map freshness before cooking
+ `L_HyperTwist_Magic120CellTraining` and
+ `L_HyperTwist_MagicCube5DTraining` and then emit aggregate plus per-map
+ smoke JSON under the packaged archive `validation` tree
+- that same higher-dimensional package lane was then live-validated on
+ `2026-06-22` through the primary reverse-SSH `localhost:22022` lane against
+ isolated Windows worktree `C:\HyperTwist_worktrees\phase10validate`, using
+ `-SkipBuild` on the already-present game receipt, archive output in
+ `C:\HyperTwist_worktrees\phase10validate_packaged_phase6c_higherdim`,
+ `BuildCookRun time: 118.53 s`, both dedicated-family packaged smoke maps
+ green, and pulled aggregate proof in
+ `docs/generated/higher_dimensional_training_maps/phase6c_dedicated_family_package_validation_report.json`
- the functional `Phase 6C` ownership gap is now closed; the remaining work
in this lane is optional further micro-profiling and richer non-headless
decorative/manual-authored family map dressing, not missing activation,
diff --git a/scripts/Invoke-HyperTwistHigherDimensionalPackage.ps1 b/scripts/Invoke-HyperTwistHigherDimensionalPackage.ps1
new file mode 100644
index 0000000..4a9ec86
--- /dev/null
+++ b/scripts/Invoke-HyperTwistHigherDimensionalPackage.ps1
@@ -0,0 +1,359 @@
+param(
+ [string]$ProjectRoot = 'C:\HyperTwist',
+ [string]$ArchiveDirectory = 'C:\HyperTwist\packaged\higher-dimensional',
+ [ValidateSet('Development', 'Shipping')]
+ [string]$Configuration = 'Development',
+ [string]$CookMap = '/Game/HyperTwistTraining/Maps/L_HyperTwist_Magic120CellTraining',
+ [string[]]$AdditionalCookMaps = @('/Game/HyperTwistTraining/Maps/L_HyperTwist_MagicCube5DTraining'),
+ [string[]]$SmokeMaps = @(),
+ [string[]]$AdditionalCookerOptions = @(
+ '-DisablePlugins=MovieRenderPipeline',
+ '-SkipCookingEditorContent'
+ ),
+ [string]$AuthoringManifestPath = '',
+ [string]$ValidationReportPath = '',
+ [switch]$CleanArchive,
+ [switch]$SkipBuild,
+ [switch]$SkipLaunch
+)
+
+$ErrorActionPreference = 'Stop'
+
+$RunUatPath = 'C:\Program Files\Epic Games\UE_5.7\Engine\Build\BatchFiles\RunUAT.bat'
+$UProjectPath = Join-Path $ProjectRoot 'UnrealHyperTwist\UnrealHyperTwist.uproject'
+$LaunchScriptPath = Join-Path $ProjectRoot 'scripts\Launch-HyperTwistHigherDimensionalPackage.ps1'
+$GameTargetReceiptPath = Join-Path $ProjectRoot 'UnrealHyperTwist\Binaries\Win64\UnrealHyperTwist.target'
+$UnrealBuildToolSavedPath = Join-Path $ProjectRoot 'UnrealHyperTwist\Saved\UnrealBuildTool'
+$CookMaps = @($CookMap) + $AdditionalCookMaps | Where-Object { -not [string]::IsNullOrWhiteSpace($_) } | Select-Object -Unique
+$ResolvedSmokeMaps = @(
+ if ($SmokeMaps.Count -gt 0)
+ {
+ $SmokeMaps
+ }
+ else
+ {
+ $CookMaps
+ }
+) | Where-Object { -not [string]::IsNullOrWhiteSpace($_) } | Select-Object -Unique
+$ResolvedAdditionalCookerOptions = @($AdditionalCookerOptions) | Where-Object { -not [string]::IsNullOrWhiteSpace($_) } | Select-Object -Unique
+$ValidationRootPath = Join-Path $ArchiveDirectory 'validation'
+$SmokeReportDirectory = Join-Path $ValidationRootPath 'smoke'
+
+function Write-Utf8JsonFile {
+ param(
+ [Parameter(Mandatory = $true)]
+ [string]$Path,
+ [Parameter(Mandatory = $true)]
+ [object]$Value
+ )
+
+ $ParentPath = Split-Path -Parent $Path
+ if (-not [string]::IsNullOrWhiteSpace($ParentPath))
+ {
+ New-Item -ItemType Directory -Force -Path $ParentPath | Out-Null
+ }
+
+ $Json = $Value | ConvertTo-Json -Depth 10
+ $Utf8NoBom = New-Object System.Text.UTF8Encoding($false)
+ [System.IO.File]::WriteAllText($Path, $Json, $Utf8NoBom)
+}
+
+function Convert-PathToken {
+ param(
+ [string]$Value
+ )
+
+ if ([string]::IsNullOrWhiteSpace($Value))
+ {
+ return 'unknown'
+ }
+
+ return ($Value -replace '[\\/:*?"<>| ]', '_')
+}
+
+function Read-JsonFile {
+ param(
+ [Parameter(Mandatory = $true)]
+ [string]$Path
+ )
+
+ return Get-Content -LiteralPath $Path -Raw | ConvertFrom-Json
+}
+
+function Resolve-PackagedExecutablePath {
+ param(
+ [string]$PackageRoot
+ )
+
+ $CandidateExecutablePaths = @(
+ (Join-Path $PackageRoot 'Windows\UnrealHyperTwist.exe'),
+ (Join-Path $PackageRoot 'WindowsNoEditor\UnrealHyperTwist.exe'),
+ (Join-Path $PackageRoot 'UnrealHyperTwist.exe')
+ )
+
+ return $CandidateExecutablePaths | Where-Object { Test-Path $_ } | Select-Object -First 1
+}
+
+function Convert-GameMapPathToContentPath {
+ param(
+ [string]$RootPath,
+ [string]$GameMapPath
+ )
+
+ if (-not $GameMapPath.StartsWith('/Game/'))
+ {
+ throw "Cook map '$GameMapPath' is not a supported /Game asset path."
+ }
+
+ $RelativeMapPath = $GameMapPath.Substring('/Game/'.Length).Replace('/', '\')
+ return Join-Path $RootPath ("UnrealHyperTwist\Content\{0}.umap" -f $RelativeMapPath)
+}
+
+function Assert-CookMapExists {
+ param(
+ [string]$RootPath,
+ [string]$GameMapPath
+ )
+
+ $ExpectedMapPath = Convert-GameMapPathToContentPath -RootPath $RootPath -GameMapPath $GameMapPath
+ if (-not (Test-Path $ExpectedMapPath))
+ {
+ throw "Expected higher-dimensional cook map '$GameMapPath' was not found at '$ExpectedMapPath'. Run 'scripts\Invoke-HyperTwistHigherDimensionalMapAuthoring.ps1' first."
+ }
+}
+
+if ([string]::IsNullOrWhiteSpace($AuthoringManifestPath))
+{
+ $AuthoringManifestPath = Join-Path $ProjectRoot 'docs\generated\higher_dimensional_training_maps\phase6c_dedicated_family_map_manifest.json'
+}
+
+if (-not (Test-Path $RunUatPath))
+{
+ throw "RunUAT was not found at '$RunUatPath'."
+}
+
+if (-not (Test-Path $UProjectPath))
+{
+ throw "UnrealHyperTwist project file was not found at '$UProjectPath'."
+}
+
+if (-not (Test-Path $AuthoringManifestPath))
+{
+ throw "Higher-dimensional authoring manifest was not found at '$AuthoringManifestPath'. Run 'scripts\Invoke-HyperTwistHigherDimensionalMapAuthoring.ps1' first."
+}
+
+$AuthoringManifest = Read-JsonFile -Path $AuthoringManifestPath
+if ($null -eq $AuthoringManifest)
+{
+ throw "Higher-dimensional authoring manifest '$AuthoringManifestPath' could not be parsed."
+}
+
+if ($null -eq $AuthoringManifest.entries -or $AuthoringManifest.entries.Count -lt 2)
+{
+ throw "Higher-dimensional authoring manifest '$AuthoringManifestPath' does not contain the expected dedicated-family entries."
+}
+
+$ManifestEntriesByMapPath = @{}
+foreach ($ManifestEntry in $AuthoringManifest.entries)
+{
+ if ([string]::IsNullOrWhiteSpace($ManifestEntry.mapAssetPath))
+ {
+ throw "Higher-dimensional authoring manifest '$AuthoringManifestPath' contains an entry without mapAssetPath."
+ }
+
+ $ManifestEntriesByMapPath[$ManifestEntry.mapAssetPath] = $ManifestEntry
+}
+
+$ValidatedManifestEntries = @()
+foreach ($TargetMap in ($CookMaps + $ResolvedSmokeMaps | Select-Object -Unique))
+{
+ Assert-CookMapExists -RootPath $ProjectRoot -GameMapPath $TargetMap
+
+ if (-not $ManifestEntriesByMapPath.ContainsKey($TargetMap))
+ {
+ throw "Higher-dimensional cook map '$TargetMap' is not present in '$AuthoringManifestPath'. Keep this helper scoped to the manifest-backed dedicated-family maps."
+ }
+
+ $ManifestEntry = $ManifestEntriesByMapPath[$TargetMap]
+ $ExpectedMapPath = Convert-GameMapPathToContentPath -RootPath $ProjectRoot -GameMapPath $TargetMap
+ $ManifestRelativeMapPath = Join-Path $ProjectRoot ($ManifestEntry.mapFileRelativePath -replace '/', '\')
+ if ($ExpectedMapPath -ne $ManifestRelativeMapPath)
+ {
+ throw "Higher-dimensional manifest entry '$TargetMap' points at '$ManifestRelativeMapPath', but the expected content path resolved to '$ExpectedMapPath'. Re-run dedicated-family map authoring before packaging."
+ }
+
+ if (-not (Test-Path $ManifestRelativeMapPath))
+ {
+ throw "Higher-dimensional manifest-backed map file '$ManifestRelativeMapPath' was not found. Run 'scripts\Invoke-HyperTwistHigherDimensionalMapAuthoring.ps1' first."
+ }
+
+ $CurrentHash = (Get-FileHash $ManifestRelativeMapPath -Algorithm MD5).Hash.ToLowerInvariant()
+ $ExpectedHash = [string]$ManifestEntry.mapHashMd5
+ if ([string]::IsNullOrWhiteSpace($ExpectedHash))
+ {
+ throw "Higher-dimensional manifest entry '$TargetMap' does not record mapHashMd5."
+ }
+
+ if ($CurrentHash -ne $ExpectedHash.ToLowerInvariant())
+ {
+ throw "Higher-dimensional map '$TargetMap' hash drifted from manifest '$AuthoringManifestPath'. Expected '$ExpectedHash', found '$CurrentHash'. Re-run 'scripts\Invoke-HyperTwistHigherDimensionalMapAuthoring.ps1' before packaging."
+ }
+
+ $ValidatedManifestEntries += [ordered]@{
+ mapKind = [string]$ManifestEntry.mapKind
+ familyKey = [string]$ManifestEntry.familyKey
+ mapAssetPath = [string]$ManifestEntry.mapAssetPath
+ mapFileRelativePath = [string]$ManifestEntry.mapFileRelativePath
+ mapHashMd5 = $CurrentHash
+ activationProfileId = [string]$ManifestEntry.activationProfileId
+ runtimeModeId = [string]$ManifestEntry.runtimeModeId
+ projectionProfileId = [string]$ManifestEntry.projectionProfileId
+ primaryPersistenceBoundaryId = [string]$ManifestEntry.primaryPersistenceBoundaryId
+ }
+}
+
+if ($SkipBuild -and -not (Test-Path $GameTargetReceiptPath))
+{
+ throw "SkipBuild was requested, but the packaged-game target receipt was not found at '$GameTargetReceiptPath'. Re-run without -SkipBuild so RunUAT can build the Win64 game target."
+}
+
+if ($CleanArchive -and (Test-Path $ArchiveDirectory))
+{
+ Remove-Item -LiteralPath $ArchiveDirectory -Recurse -Force
+}
+
+New-Item -ItemType Directory -Force -Path $UnrealBuildToolSavedPath | Out-Null
+New-Item -ItemType Directory -Force -Path $ArchiveDirectory | Out-Null
+New-Item -ItemType Directory -Force -Path $ValidationRootPath | Out-Null
+New-Item -ItemType Directory -Force -Path $SmokeReportDirectory | Out-Null
+
+if ([string]::IsNullOrWhiteSpace($ValidationReportPath))
+{
+ $ValidationReportPath = Join-Path $ValidationRootPath 'higher-dimensional-package-validation-report.json'
+}
+
+$RunUatArguments = @(
+ 'BuildCookRun',
+ "-project=$UProjectPath",
+ '-noP4',
+ '-platform=Win64',
+ "-clientconfig=$Configuration",
+ '-cook',
+ '-stage',
+ '-package',
+ '-pak',
+ '-archive',
+ "-archivedirectory=$ArchiveDirectory",
+ "-map=$($CookMaps -join '+')",
+ '-unattended',
+ '-utf8output'
+)
+
+if (-not $SkipBuild)
+{
+ $RunUatArguments += '-build'
+}
+
+if ($ResolvedAdditionalCookerOptions.Count -gt 0)
+{
+ # Keep the dedicated-family runtime lane insulated from editor-only plugin/content bleed.
+ $RunUatArguments += "-AdditionalCookerOptions=$($ResolvedAdditionalCookerOptions -join ' ')"
+}
+
+$ValidationReport = [ordered]@{
+ reportVersion = 'ht-higher-dimensional-package-validation/v1'
+ generatedAtUtc = [DateTime]::UtcNow.ToString('o')
+ projectRoot = $ProjectRoot
+ archiveDirectory = $ArchiveDirectory
+ configuration = $Configuration
+ cookMaps = @($CookMaps)
+ smokeMaps = @($ResolvedSmokeMaps)
+ additionalCookerOptions = @($ResolvedAdditionalCookerOptions)
+ cleanArchive = [bool]$CleanArchive
+ skipBuild = [bool]$SkipBuild
+ skipLaunch = [bool]$SkipLaunch
+ authoringManifest = [ordered]@{
+ path = $AuthoringManifestPath
+ manifestId = [string]$AuthoringManifest.manifestId
+ manifestVersion = [string]$AuthoringManifest.manifestVersion
+ authoredThroughGameModeClassPath = [string]$AuthoringManifest.authoredThroughGameModeClassPath
+ validatedEntries = @($ValidatedManifestEntries)
+ }
+ result = 'failed'
+ packagedExecutablePath = $null
+ smokeReports = @()
+ error = $null
+}
+
+try
+{
+ Write-Host "Packaging HyperTwist higher-dimensional validation lane to '$ArchiveDirectory'..."
+ & $RunUatPath @RunUatArguments
+
+ if ($LASTEXITCODE -ne 0)
+ {
+ throw "RunUAT packaging failed with exit code $LASTEXITCODE."
+ }
+
+ $PackagedExecutablePath = Resolve-PackagedExecutablePath -PackageRoot $ArchiveDirectory
+ if ($null -eq $PackagedExecutablePath)
+ {
+ throw "No packaged UnrealHyperTwist executable was found beneath '$ArchiveDirectory' after packaging."
+ }
+
+ $ValidationReport.packagedExecutablePath = $PackagedExecutablePath
+
+ if (-not $SkipLaunch)
+ {
+ if (-not (Test-Path $LaunchScriptPath))
+ {
+ throw "Launch script was not found at '$LaunchScriptPath'."
+ }
+
+ foreach ($SmokeMap in $ResolvedSmokeMaps)
+ {
+ $SmokeReportPath = Join-Path $SmokeReportDirectory (
+ '{0}.json' -f (Convert-PathToken -Value $SmokeMap)
+ )
+ Write-Host "Smoke validating packaged higher-dimensional map '$SmokeMap'..."
+ & $LaunchScriptPath -PackageRoot $ArchiveDirectory -MapUrl $SmokeMap -ReportPath $SmokeReportPath
+ if ($LASTEXITCODE -ne 0)
+ {
+ throw "Packaged higher-dimensional smoke launch failed for '$SmokeMap' with exit code $LASTEXITCODE."
+ }
+
+ if (-not (Test-Path $SmokeReportPath))
+ {
+ throw "Packaged higher-dimensional smoke launch for '$SmokeMap' completed without writing the expected report '$SmokeReportPath'."
+ }
+
+ $SmokeReport = Read-JsonFile -Path $SmokeReportPath
+ if ($null -eq $SmokeReport)
+ {
+ throw "Packaged higher-dimensional smoke report '$SmokeReportPath' could not be parsed."
+ }
+
+ if ($SmokeReport.result -ne 'passed')
+ {
+ throw "Packaged higher-dimensional smoke report '$SmokeReportPath' did not record a passed result."
+ }
+
+ if ($SmokeReport.mapUrl -ne $SmokeMap)
+ {
+ throw "Packaged higher-dimensional smoke report '$SmokeReportPath' targeted '$($SmokeReport.mapUrl)' instead of '$SmokeMap'."
+ }
+
+ $ValidationReport.smokeReports += @($SmokeReport)
+ }
+ }
+
+ $ValidationReport.result = 'passed'
+}
+catch
+{
+ $ValidationReport.error = $_.Exception.Message
+ Write-Utf8JsonFile -Path $ValidationReportPath -Value $ValidationReport
+ throw
+}
+
+Write-Utf8JsonFile -Path $ValidationReportPath -Value $ValidationReport
diff --git a/scripts/Launch-HyperTwistHigherDimensionalPackage.ps1 b/scripts/Launch-HyperTwistHigherDimensionalPackage.ps1
new file mode 100644
index 0000000..dfbdd1d
--- /dev/null
+++ b/scripts/Launch-HyperTwistHigherDimensionalPackage.ps1
@@ -0,0 +1,126 @@
+param(
+ [string]$PackageRoot = 'C:\HyperTwist\packaged\higher-dimensional',
+ [string]$MapUrl = '/Game/HyperTwistTraining/Maps/L_HyperTwist_Magic120CellTraining',
+ [int]$SmokeSeconds = 10,
+ [int]$ResX = 1600,
+ [int]$ResY = 900,
+ [string]$ReportPath = '',
+ [switch]$KeepRunning
+)
+
+$ErrorActionPreference = 'Stop'
+
+function Write-Utf8JsonFile {
+ param(
+ [Parameter(Mandatory = $true)]
+ [string]$Path,
+ [Parameter(Mandatory = $true)]
+ [object]$Value
+ )
+
+ $ParentPath = Split-Path -Parent $Path
+ if (-not [string]::IsNullOrWhiteSpace($ParentPath))
+ {
+ New-Item -ItemType Directory -Force -Path $ParentPath | Out-Null
+ }
+
+ $Json = $Value | ConvertTo-Json -Depth 8
+ $Utf8NoBom = New-Object System.Text.UTF8Encoding($false)
+ [System.IO.File]::WriteAllText($Path, $Json, $Utf8NoBom)
+}
+
+$CandidateExecutablePaths = @(
+ (Join-Path $PackageRoot 'Windows\UnrealHyperTwist.exe'),
+ (Join-Path $PackageRoot 'WindowsNoEditor\UnrealHyperTwist.exe'),
+ (Join-Path $PackageRoot 'UnrealHyperTwist.exe')
+)
+
+$ExecutablePath = $CandidateExecutablePaths | Where-Object { Test-Path $_ } | Select-Object -First 1
+if ($null -eq $ExecutablePath)
+{
+ throw "No packaged UnrealHyperTwist executable was found beneath '$PackageRoot'."
+}
+
+$ArgumentList = @(
+ $MapUrl,
+ "-ResX=$ResX",
+ "-ResY=$ResY",
+ '-windowed',
+ '-log'
+)
+
+Write-Host "Launching packaged higher-dimensional validation lane from '$ExecutablePath'..."
+$ResolvedPackageRoot = (Resolve-Path -LiteralPath $PackageRoot).Path
+$GeneratedAtUtc = [DateTime]::UtcNow.ToString('o')
+$Process = $null
+$Report = [ordered]@{
+ reportVersion = 'ht-higher-dimensional-package-smoke/v1'
+ generatedAtUtc = $GeneratedAtUtc
+ packageRoot = $ResolvedPackageRoot
+ executablePath = $ExecutablePath
+ mapUrl = $MapUrl
+ smokeSeconds = $SmokeSeconds
+ resolution = [ordered]@{
+ width = $ResX
+ height = $ResY
+ }
+ keepRunning = [bool]$KeepRunning
+ result = 'failed'
+ processId = $null
+ processStopped = $false
+ exitCode = $null
+ error = $null
+}
+
+try
+{
+ $Process = Start-Process -FilePath $ExecutablePath -ArgumentList $ArgumentList -PassThru
+ Start-Sleep -Seconds $SmokeSeconds
+
+ $Process.Refresh()
+ $Report.processId = $Process.Id
+ if ($Process.HasExited)
+ {
+ $Report.exitCode = $Process.ExitCode
+ throw "Packaged higher-dimensional executable exited early with code $($Process.ExitCode)."
+ }
+
+ $Report.result = 'passed'
+}
+catch
+{
+ $Report.error = $_.Exception.Message
+ if ($null -ne $Process)
+ {
+ $Process.Refresh()
+ if ($Process.HasExited)
+ {
+ $Report.exitCode = $Process.ExitCode
+ }
+ elseif (-not $KeepRunning)
+ {
+ Stop-Process -Id $Process.Id -Force
+ $Report.processStopped = $true
+ }
+ }
+
+ if (-not [string]::IsNullOrWhiteSpace($ReportPath))
+ {
+ Write-Utf8JsonFile -Path $ReportPath -Value $Report
+ }
+
+ throw
+}
+
+Write-Host "Packaged higher-dimensional smoke launch succeeded (PID $($Process.Id))."
+if (-not $KeepRunning)
+{
+ Stop-Process -Id $Process.Id -Force
+ $Report.processStopped = $true
+ Write-Host 'Stopped packaged higher-dimensional smoke process after successful launch validation.'
+}
+
+if (-not [string]::IsNullOrWhiteSpace($ReportPath))
+{
+ Write-Utf8JsonFile -Path $ReportPath -Value $Report
+}
diff --git a/website/.env.example b/website/.env.example
new file mode 100644
index 0000000..b868be0
--- /dev/null
+++ b/website/.env.example
@@ -0,0 +1,20 @@
+VITE_SUPERTOKENS_API_DOMAIN=http://localhost:3001
+VITE_SUPERTOKENS_WEBSITE_DOMAIN=http://localhost:4273
+VITE_SUPERTOKENS_API_BASE_PATH=/auth
+VITE_SUPERTOKENS_WEBSITE_BASE_PATH=/auth
+VITE_AUTH_API_BASE_URL=http://localhost:3001
+VITE_GITHUB_OAUTH_ENABLED=false
+VITE_GOOGLE_OAUTH_ENABLED=false
+VITE_ORCID_OAUTH_ENABLED=false
+VITE_PUBLIC_DOCS_URL=
+VITE_RELEASE_NOTES_URL=
+VITE_SUPPORT_EMAIL=hello@hypertwist.app
+VITE_WINDOWS_DOWNLOAD_URL=
+VITE_MAC_DOWNLOAD_URL=
+VITE_LINUX_DOWNLOAD_URL=
+VITE_PADDLE_CHECKOUT_URL_OPERATOR=
+VITE_PADDLE_CHECKOUT_URL_STUDIO=
+VITE_PLAN_PRICE_OPERATOR=Launch pricing via Paddle
+VITE_PLAN_PRICE_STUDIO=Contact for launch readiness
+VITE_MPL_SOURCE_URL=
+VITE_OPEN_SOURCE_REPO_URL=
diff --git a/website/README.md b/website/README.md
new file mode 100644
index 0000000..62659c1
--- /dev/null
+++ b/website/README.md
@@ -0,0 +1,66 @@
+# HyperTwist Website
+
+First-party `hypertwist.app` surface for HyperTwist:
+
+- public homepage, about, resources, pricing, support, and legal pages
+- browser-facing operator/account dashboard
+- shared SuperTokens auth posture reused from the FamiliarOS and ScriptoriumAI website lane
+- desktop download posture and desktop-link handshake endpoints
+- Paddle-ready pricing/check-out wiring
+- public open-source notices surface required by HyperTwist's MPL distribution doctrine
+
+## Why this app exists
+
+HyperTwist already ships an embedded browser runtime inside Unreal under
+`Content/Browser/`. That runtime is not the same thing as a public website,
+checkout surface, or browser account shell.
+
+This `website/` directory is the dedicated public and operator-facing web
+surface for:
+
+- marketing and product positioning
+- account/authentication
+- billing/pricing posture
+- browser dashboard access
+- desktop distribution
+- public legal and open-source notices
+
+## Local development
+
+```bash
+cd /home/dev/src/HyperTwist/website
+npm install
+npm run dev
+```
+
+Frontend default URL:
+
+- `http://localhost:4273`
+
+## Validation
+
+```bash
+npm run type-check
+npm run test
+npm run build
+```
+
+## Related surfaces
+
+- frontend app: `website/src/`
+- auth server: `website/server/`
+- embedded Unreal browser runtime: `Content/Browser/`
+- HyperTwist feature authority: `docs/v6_5_deep_manual_pack/HyperTwist/FEATURE_REGISTRY.md`
+- HyperTwist roadmap authority: `docs/v6_5_deep_manual_pack/HyperTwist/ROADMAP.md`
+
+## Deployment note
+
+Before public launch, configure:
+
+- SuperTokens frontend/backend env vars
+- production download URLs
+- production Paddle checkout URLs
+- the public corresponding-source URL for MPL-covered shipped material
+
+Do not launch the public pricing/download pages without a valid open-source
+notices and corresponding-source destination.
diff --git a/website/index.html b/website/index.html
new file mode 100644
index 0000000..1a99843
--- /dev/null
+++ b/website/index.html
@@ -0,0 +1,23 @@
+
+
+
+
+
+
+
+
+
+
+ HyperTwist
+
+
+
+
+
+
diff --git a/website/package-lock.json b/website/package-lock.json
new file mode 100644
index 0000000..355713f
--- /dev/null
+++ b/website/package-lock.json
@@ -0,0 +1,2839 @@
+{
+ "name": "hypertwist-website",
+ "version": "1.0.0",
+ "lockfileVersion": 3,
+ "requires": true,
+ "packages": {
+ "": {
+ "name": "hypertwist-website",
+ "version": "1.0.0",
+ "dependencies": {
+ "@tanstack/react-query": "^5.83.0",
+ "lucide-react": "^0.525.0",
+ "react": "^18.3.1",
+ "react-dom": "^18.3.1",
+ "react-router-dom": "^6.30.1",
+ "supertokens-auth-react": "^0.51.2"
+ },
+ "devDependencies": {
+ "@testing-library/jest-dom": "^6.6.3",
+ "@testing-library/react": "^16.3.0",
+ "@testing-library/user-event": "^14.6.1",
+ "@types/node": "^24.0.14",
+ "@types/react": "^18.3.23",
+ "@types/react-dom": "^18.3.7",
+ "@vitejs/plugin-react-swc": "^3.11.0",
+ "jsdom": "^26.1.0",
+ "typescript": "^5.8.3",
+ "vite": "^5.4.19",
+ "vitest": "^2.1.8"
+ }
+ },
+ "node_modules/@adobe/css-tools": {
+ "version": "4.5.0",
+ "resolved": "https://registry.npmjs.org/@adobe/css-tools/-/css-tools-4.5.0.tgz",
+ "integrity": "sha512-6OzddxPio9UiWTCemp4N8cYLV2ZN1ncRnV1cVGtve7dhPOtRkleRyx32GQCYSwDYgaHU3USMm84tNsvKzRCa1Q==",
+ "dev": true,
+ "license": "MIT"
+ },
+ "node_modules/@asamuzakjp/css-color": {
+ "version": "3.2.0",
+ "resolved": "https://registry.npmjs.org/@asamuzakjp/css-color/-/css-color-3.2.0.tgz",
+ "integrity": "sha512-K1A6z8tS3XsmCMM86xoWdn7Fkdn9m6RSVtocUrJYIwZnFVkng/PvkEoWtOWmP+Scc6saYWHWZYbndEEXxl24jw==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "@csstools/css-calc": "^2.1.3",
+ "@csstools/css-color-parser": "^3.0.9",
+ "@csstools/css-parser-algorithms": "^3.0.4",
+ "@csstools/css-tokenizer": "^3.0.3",
+ "lru-cache": "^10.4.3"
+ }
+ },
+ "node_modules/@babel/code-frame": {
+ "version": "7.29.7",
+ "resolved": "https://registry.npmjs.org/@babel/code-frame/-/code-frame-7.29.7.tgz",
+ "integrity": "sha512-Aup7aUOfpbAUg2ROOJN6Iw5f9DMBlzu0mIkm/malLQFN/YQgO48wCj0Kxa3sEHJvPVFg7siR+qRInwXd2qhQKw==",
+ "dev": true,
+ "license": "MIT",
+ "peer": true,
+ "dependencies": {
+ "@babel/helper-validator-identifier": "^7.29.7",
+ "js-tokens": "^4.0.0",
+ "picocolors": "^1.1.1"
+ },
+ "engines": {
+ "node": ">=6.9.0"
+ }
+ },
+ "node_modules/@babel/helper-validator-identifier": {
+ "version": "7.29.7",
+ "resolved": "https://registry.npmjs.org/@babel/helper-validator-identifier/-/helper-validator-identifier-7.29.7.tgz",
+ "integrity": "sha512-qehxGkRj55h/ff8EMaJ+cYhyaKlHIxqYDn682wQD7RNp9UujOQsHog2uS0r2vzr4pW+sXf90NeeayjcNaX3fFg==",
+ "dev": true,
+ "license": "MIT",
+ "peer": true,
+ "engines": {
+ "node": ">=6.9.0"
+ }
+ },
+ "node_modules/@babel/runtime": {
+ "version": "7.29.7",
+ "resolved": "https://registry.npmjs.org/@babel/runtime/-/runtime-7.29.7.tgz",
+ "integrity": "sha512-Nq8OhGWiZIZGV6hLHoyAKLLcJihP/xFeBMGJoUrxTX2psI8dCifzLhZISFb+VWS3wFMRDmCGw5R+dOySCqPLhw==",
+ "dev": true,
+ "license": "MIT",
+ "engines": {
+ "node": ">=6.9.0"
+ }
+ },
+ "node_modules/@csstools/color-helpers": {
+ "version": "5.1.0",
+ "resolved": "https://registry.npmjs.org/@csstools/color-helpers/-/color-helpers-5.1.0.tgz",
+ "integrity": "sha512-S11EXWJyy0Mz5SYvRmY8nJYTFFd1LCNV+7cXyAgQtOOuzb4EsgfqDufL+9esx72/eLhsRdGZwaldu/h+E4t4BA==",
+ "dev": true,
+ "funding": [
+ {
+ "type": "github",
+ "url": "https://github.com/sponsors/csstools"
+ },
+ {
+ "type": "opencollective",
+ "url": "https://opencollective.com/csstools"
+ }
+ ],
+ "license": "MIT-0",
+ "engines": {
+ "node": ">=18"
+ }
+ },
+ "node_modules/@csstools/css-calc": {
+ "version": "2.1.4",
+ "resolved": "https://registry.npmjs.org/@csstools/css-calc/-/css-calc-2.1.4.tgz",
+ "integrity": "sha512-3N8oaj+0juUw/1H3YwmDDJXCgTB1gKU6Hc/bB502u9zR0q2vd786XJH9QfrKIEgFlZmhZiq6epXl4rHqhzsIgQ==",
+ "dev": true,
+ "funding": [
+ {
+ "type": "github",
+ "url": "https://github.com/sponsors/csstools"
+ },
+ {
+ "type": "opencollective",
+ "url": "https://opencollective.com/csstools"
+ }
+ ],
+ "license": "MIT",
+ "engines": {
+ "node": ">=18"
+ },
+ "peerDependencies": {
+ "@csstools/css-parser-algorithms": "^3.0.5",
+ "@csstools/css-tokenizer": "^3.0.4"
+ }
+ },
+ "node_modules/@csstools/css-color-parser": {
+ "version": "3.1.0",
+ "resolved": "https://registry.npmjs.org/@csstools/css-color-parser/-/css-color-parser-3.1.0.tgz",
+ "integrity": "sha512-nbtKwh3a6xNVIp/VRuXV64yTKnb1IjTAEEh3irzS+HkKjAOYLTGNb9pmVNntZ8iVBHcWDA2Dof0QtPgFI1BaTA==",
+ "dev": true,
+ "funding": [
+ {
+ "type": "github",
+ "url": "https://github.com/sponsors/csstools"
+ },
+ {
+ "type": "opencollective",
+ "url": "https://opencollective.com/csstools"
+ }
+ ],
+ "license": "MIT",
+ "dependencies": {
+ "@csstools/color-helpers": "^5.1.0",
+ "@csstools/css-calc": "^2.1.4"
+ },
+ "engines": {
+ "node": ">=18"
+ },
+ "peerDependencies": {
+ "@csstools/css-parser-algorithms": "^3.0.5",
+ "@csstools/css-tokenizer": "^3.0.4"
+ }
+ },
+ "node_modules/@csstools/css-parser-algorithms": {
+ "version": "3.0.5",
+ "resolved": "https://registry.npmjs.org/@csstools/css-parser-algorithms/-/css-parser-algorithms-3.0.5.tgz",
+ "integrity": "sha512-DaDeUkXZKjdGhgYaHNJTV9pV7Y9B3b644jCLs9Upc3VeNGg6LWARAT6O+Q+/COo+2gg/bM5rhpMAtf70WqfBdQ==",
+ "dev": true,
+ "funding": [
+ {
+ "type": "github",
+ "url": "https://github.com/sponsors/csstools"
+ },
+ {
+ "type": "opencollective",
+ "url": "https://opencollective.com/csstools"
+ }
+ ],
+ "license": "MIT",
+ "engines": {
+ "node": ">=18"
+ },
+ "peerDependencies": {
+ "@csstools/css-tokenizer": "^3.0.4"
+ }
+ },
+ "node_modules/@csstools/css-tokenizer": {
+ "version": "3.0.4",
+ "resolved": "https://registry.npmjs.org/@csstools/css-tokenizer/-/css-tokenizer-3.0.4.tgz",
+ "integrity": "sha512-Vd/9EVDiu6PPJt9yAh6roZP6El1xHrdvIVGjyBsHR0RYwNHgL7FJPyIIW4fANJNG6FtyZfvlRPpFI4ZM/lubvw==",
+ "dev": true,
+ "funding": [
+ {
+ "type": "github",
+ "url": "https://github.com/sponsors/csstools"
+ },
+ {
+ "type": "opencollective",
+ "url": "https://opencollective.com/csstools"
+ }
+ ],
+ "license": "MIT",
+ "engines": {
+ "node": ">=18"
+ }
+ },
+ "node_modules/@esbuild/aix-ppc64": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/aix-ppc64/-/aix-ppc64-0.21.5.tgz",
+ "integrity": "sha512-1SDgH6ZSPTlggy1yI6+Dbkiz8xzpHJEVAlF/AM1tHPLsf5STom9rwtjE4hKAF20FfXXNTFqEYXyJNWh1GiZedQ==",
+ "cpu": [
+ "ppc64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "aix"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/@esbuild/android-arm": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/android-arm/-/android-arm-0.21.5.tgz",
+ "integrity": "sha512-vCPvzSjpPHEi1siZdlvAlsPxXl7WbOVUBBAowWug4rJHb68Ox8KualB+1ocNvT5fjv6wpkX6o/iEpbDrf68zcg==",
+ "cpu": [
+ "arm"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "android"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/@esbuild/android-arm64": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/android-arm64/-/android-arm64-0.21.5.tgz",
+ "integrity": "sha512-c0uX9VAUBQ7dTDCjq+wdyGLowMdtR/GoC2U5IYk/7D1H1JYC0qseD7+11iMP2mRLN9RcCMRcjC4YMclCzGwS/A==",
+ "cpu": [
+ "arm64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "android"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/@esbuild/android-x64": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/android-x64/-/android-x64-0.21.5.tgz",
+ "integrity": "sha512-D7aPRUUNHRBwHxzxRvp856rjUHRFW1SdQATKXH2hqA0kAZb1hKmi02OpYRacl0TxIGz/ZmXWlbZgjwWYaCakTA==",
+ "cpu": [
+ "x64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "android"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/@esbuild/darwin-arm64": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/darwin-arm64/-/darwin-arm64-0.21.5.tgz",
+ "integrity": "sha512-DwqXqZyuk5AiWWf3UfLiRDJ5EDd49zg6O9wclZ7kUMv2WRFr4HKjXp/5t8JZ11QbQfUS6/cRCKGwYhtNAY88kQ==",
+ "cpu": [
+ "arm64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "darwin"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/@esbuild/darwin-x64": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/darwin-x64/-/darwin-x64-0.21.5.tgz",
+ "integrity": "sha512-se/JjF8NlmKVG4kNIuyWMV/22ZaerB+qaSi5MdrXtd6R08kvs2qCN4C09miupktDitvh8jRFflwGFBQcxZRjbw==",
+ "cpu": [
+ "x64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "darwin"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/@esbuild/freebsd-arm64": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/freebsd-arm64/-/freebsd-arm64-0.21.5.tgz",
+ "integrity": "sha512-5JcRxxRDUJLX8JXp/wcBCy3pENnCgBR9bN6JsY4OmhfUtIHe3ZW0mawA7+RDAcMLrMIZaf03NlQiX9DGyB8h4g==",
+ "cpu": [
+ "arm64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "freebsd"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/@esbuild/freebsd-x64": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/freebsd-x64/-/freebsd-x64-0.21.5.tgz",
+ "integrity": "sha512-J95kNBj1zkbMXtHVH29bBriQygMXqoVQOQYA+ISs0/2l3T9/kj42ow2mpqerRBxDJnmkUDCaQT/dfNXWX/ZZCQ==",
+ "cpu": [
+ "x64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "freebsd"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/@esbuild/linux-arm": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/linux-arm/-/linux-arm-0.21.5.tgz",
+ "integrity": "sha512-bPb5AHZtbeNGjCKVZ9UGqGwo8EUu4cLq68E95A53KlxAPRmUyYv2D6F0uUI65XisGOL1hBP5mTronbgo+0bFcA==",
+ "cpu": [
+ "arm"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/@esbuild/linux-arm64": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/linux-arm64/-/linux-arm64-0.21.5.tgz",
+ "integrity": "sha512-ibKvmyYzKsBeX8d8I7MH/TMfWDXBF3db4qM6sy+7re0YXya+K1cem3on9XgdT2EQGMu4hQyZhan7TeQ8XkGp4Q==",
+ "cpu": [
+ "arm64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/@esbuild/linux-ia32": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/linux-ia32/-/linux-ia32-0.21.5.tgz",
+ "integrity": "sha512-YvjXDqLRqPDl2dvRODYmmhz4rPeVKYvppfGYKSNGdyZkA01046pLWyRKKI3ax8fbJoK5QbxblURkwK/MWY18Tg==",
+ "cpu": [
+ "ia32"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/@esbuild/linux-loong64": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/linux-loong64/-/linux-loong64-0.21.5.tgz",
+ "integrity": "sha512-uHf1BmMG8qEvzdrzAqg2SIG/02+4/DHB6a9Kbya0XDvwDEKCoC8ZRWI5JJvNdUjtciBGFQ5PuBlpEOXQj+JQSg==",
+ "cpu": [
+ "loong64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/@esbuild/linux-mips64el": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/linux-mips64el/-/linux-mips64el-0.21.5.tgz",
+ "integrity": "sha512-IajOmO+KJK23bj52dFSNCMsz1QP1DqM6cwLUv3W1QwyxkyIWecfafnI555fvSGqEKwjMXVLokcV5ygHW5b3Jbg==",
+ "cpu": [
+ "mips64el"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/@esbuild/linux-ppc64": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/linux-ppc64/-/linux-ppc64-0.21.5.tgz",
+ "integrity": "sha512-1hHV/Z4OEfMwpLO8rp7CvlhBDnjsC3CttJXIhBi+5Aj5r+MBvy4egg7wCbe//hSsT+RvDAG7s81tAvpL2XAE4w==",
+ "cpu": [
+ "ppc64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/@esbuild/linux-riscv64": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/linux-riscv64/-/linux-riscv64-0.21.5.tgz",
+ "integrity": "sha512-2HdXDMd9GMgTGrPWnJzP2ALSokE/0O5HhTUvWIbD3YdjME8JwvSCnNGBnTThKGEB91OZhzrJ4qIIxk/SBmyDDA==",
+ "cpu": [
+ "riscv64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/@esbuild/linux-s390x": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/linux-s390x/-/linux-s390x-0.21.5.tgz",
+ "integrity": "sha512-zus5sxzqBJD3eXxwvjN1yQkRepANgxE9lgOW2qLnmr8ikMTphkjgXu1HR01K4FJg8h1kEEDAqDcZQtbrRnB41A==",
+ "cpu": [
+ "s390x"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/@esbuild/linux-x64": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/linux-x64/-/linux-x64-0.21.5.tgz",
+ "integrity": "sha512-1rYdTpyv03iycF1+BhzrzQJCdOuAOtaqHTWJZCWvijKD2N5Xu0TtVC8/+1faWqcP9iBCWOmjmhoH94dH82BxPQ==",
+ "cpu": [
+ "x64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/@esbuild/netbsd-x64": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/netbsd-x64/-/netbsd-x64-0.21.5.tgz",
+ "integrity": "sha512-Woi2MXzXjMULccIwMnLciyZH4nCIMpWQAs049KEeMvOcNADVxo0UBIQPfSmxB3CWKedngg7sWZdLvLczpe0tLg==",
+ "cpu": [
+ "x64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "netbsd"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/@esbuild/openbsd-x64": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/openbsd-x64/-/openbsd-x64-0.21.5.tgz",
+ "integrity": "sha512-HLNNw99xsvx12lFBUwoT8EVCsSvRNDVxNpjZ7bPn947b8gJPzeHWyNVhFsaerc0n3TsbOINvRP2byTZ5LKezow==",
+ "cpu": [
+ "x64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "openbsd"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/@esbuild/sunos-x64": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/sunos-x64/-/sunos-x64-0.21.5.tgz",
+ "integrity": "sha512-6+gjmFpfy0BHU5Tpptkuh8+uw3mnrvgs+dSPQXQOv3ekbordwnzTVEb4qnIvQcYXq6gzkyTnoZ9dZG+D4garKg==",
+ "cpu": [
+ "x64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "sunos"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/@esbuild/win32-arm64": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/win32-arm64/-/win32-arm64-0.21.5.tgz",
+ "integrity": "sha512-Z0gOTd75VvXqyq7nsl93zwahcTROgqvuAcYDUr+vOv8uHhNSKROyU961kgtCD1e95IqPKSQKH7tBTslnS3tA8A==",
+ "cpu": [
+ "arm64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "win32"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/@esbuild/win32-ia32": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/win32-ia32/-/win32-ia32-0.21.5.tgz",
+ "integrity": "sha512-SWXFF1CL2RVNMaVs+BBClwtfZSvDgtL//G/smwAc5oVK/UPu2Gu9tIaRgFmYFFKrmg3SyAjSrElf0TiJ1v8fYA==",
+ "cpu": [
+ "ia32"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "win32"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/@esbuild/win32-x64": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/win32-x64/-/win32-x64-0.21.5.tgz",
+ "integrity": "sha512-tQd/1efJuzPC6rCFwEvLtci/xNFcTZknmXs98FYDfGE4wP9ClFV98nyKrzJKVPMhdDnjzLhdUyMX4PsQAPjwIw==",
+ "cpu": [
+ "x64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "win32"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/@jridgewell/sourcemap-codec": {
+ "version": "1.5.5",
+ "resolved": "https://registry.npmjs.org/@jridgewell/sourcemap-codec/-/sourcemap-codec-1.5.5.tgz",
+ "integrity": "sha512-cYQ9310grqxueWbl+WuIUIaiUaDcj7WOq5fVhEljNVgRfOUhY9fy2zTvfoqWsnebh8Sl70VScFbICvJnLKB0Og==",
+ "dev": true,
+ "license": "MIT"
+ },
+ "node_modules/@remix-run/router": {
+ "version": "1.23.3",
+ "resolved": "https://registry.npmjs.org/@remix-run/router/-/router-1.23.3.tgz",
+ "integrity": "sha512-4An71tdz9X8+3sI4Qqqd2LWd9vS39J7sqd9EU4Scw7TJE/qB10Flv/UuqbPVgfQV9XoK8Np6jNquZitnZq5i+Q==",
+ "license": "MIT",
+ "engines": {
+ "node": ">=14.0.0"
+ }
+ },
+ "node_modules/@rolldown/pluginutils": {
+ "version": "1.0.0-beta.27",
+ "resolved": "https://registry.npmjs.org/@rolldown/pluginutils/-/pluginutils-1.0.0-beta.27.tgz",
+ "integrity": "sha512-+d0F4MKMCbeVUJwG96uQ4SgAznZNSq93I3V+9NHA4OpvqG8mRCpGdKmK8l/dl02h2CCDHwW2FqilnTyDcAnqjA==",
+ "dev": true,
+ "license": "MIT"
+ },
+ "node_modules/@rollup/rollup-android-arm-eabi": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-android-arm-eabi/-/rollup-android-arm-eabi-4.62.2.tgz",
+ "integrity": "sha512-6o7ZLZK+BeenkZCFNDXqpbjw9bD6nuWonvS/lwQJp7NoVVxm6p3qE7qQ5jGuBjiFsgvqjD8mZAU5oWxTmbOeOg==",
+ "cpu": [
+ "arm"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "android"
+ ]
+ },
+ "node_modules/@rollup/rollup-android-arm64": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-android-arm64/-/rollup-android-arm64-4.62.2.tgz",
+ "integrity": "sha512-BaH7BllCACHoH1LguOU56UItGfUWjujlO65kS9LAodViaN4bwIKd7oeW/ZHJ/4ljr/7MIiENnNy3HJ0zXv8Zkw==",
+ "cpu": [
+ "arm64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "android"
+ ]
+ },
+ "node_modules/@rollup/rollup-darwin-arm64": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-darwin-arm64/-/rollup-darwin-arm64-4.62.2.tgz",
+ "integrity": "sha512-v39RCCvj4He82I9sFmk+M1VZ0PLM9sfsLVikjfx2hYBNALhrrOR2D3JjQA6AhlaSOgcR+RzrKY7e1+bT6SUO/A==",
+ "cpu": [
+ "arm64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "darwin"
+ ]
+ },
+ "node_modules/@rollup/rollup-darwin-x64": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-darwin-x64/-/rollup-darwin-x64-4.62.2.tgz",
+ "integrity": "sha512-yl0y2vq3S3lHeuXhEdss6TWfKW8vkujImO12tn4ZkG/4oghr09LvdYm2RElVjokTQiUvDUGXLGsYeLqUMCKpGA==",
+ "cpu": [
+ "x64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "darwin"
+ ]
+ },
+ "node_modules/@rollup/rollup-freebsd-arm64": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-freebsd-arm64/-/rollup-freebsd-arm64-4.62.2.tgz",
+ "integrity": "sha512-tT4pvt4qXD+vEoezupCWi+a1F0vvDiksiHc+PxRlYTOH1I6/X4id9jPxTP+Fg+545euaFT1jJVs4CEdHZAU1vw==",
+ "cpu": [
+ "arm64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "freebsd"
+ ]
+ },
+ "node_modules/@rollup/rollup-freebsd-x64": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-freebsd-x64/-/rollup-freebsd-x64-4.62.2.tgz",
+ "integrity": "sha512-6nU5F2wCW+qvCBhTn1pdIU3bzsIoF7EUwsCDRxilWGprQR6yd508YnH9+OKFCwpfS8pjZqDUmnCAr7exax0XCg==",
+ "cpu": [
+ "x64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "freebsd"
+ ]
+ },
+ "node_modules/@rollup/rollup-linux-arm-gnueabihf": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-linux-arm-gnueabihf/-/rollup-linux-arm-gnueabihf-4.62.2.tgz",
+ "integrity": "sha512-n1GJHPOvpIfhi3TmrCeh6S6URt9BFCt0KQE3qvexyGCTAKpR4Lg+eWvNZEqu7epxwus/8ElT3hacYEucm49SZg==",
+ "cpu": [
+ "arm"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ]
+ },
+ "node_modules/@rollup/rollup-linux-arm-musleabihf": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-linux-arm-musleabihf/-/rollup-linux-arm-musleabihf-4.62.2.tgz",
+ "integrity": "sha512-JqgflS8wEB+UXV/vS1RpRbifGBeN4D5lz8D8oOFbFZw4vedvdOgCFAjfBmIMdW3yL10XpQQ0Ambepw6MXrhOnA==",
+ "cpu": [
+ "arm"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ]
+ },
+ "node_modules/@rollup/rollup-linux-arm64-gnu": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-linux-arm64-gnu/-/rollup-linux-arm64-gnu-4.62.2.tgz",
+ "integrity": "sha512-wnFJkogWvN4jm/hQRF2UBaeUmk20j5+DmHvoyWii2b8HJDyvz1MF2OU/6ynXt2KR63rbZLWkFpoytpdc/yBuSA==",
+ "cpu": [
+ "arm64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ]
+ },
+ "node_modules/@rollup/rollup-linux-arm64-musl": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-linux-arm64-musl/-/rollup-linux-arm64-musl-4.62.2.tgz",
+ "integrity": "sha512-HVu2bp0zhvJ8xHEV9+UUs7S90VadmBSY3LcIMvozbPo4AuMGDWlz3ymHLHZPX4hR67TKTt8Qp5PJ5RBg/i+RMQ==",
+ "cpu": [
+ "arm64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ]
+ },
+ "node_modules/@rollup/rollup-linux-loong64-gnu": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-linux-loong64-gnu/-/rollup-linux-loong64-gnu-4.62.2.tgz",
+ "integrity": "sha512-mQqqAV8QaoSgr9I2fKDLY2BAVvmKjWoGiu/cSYQonsLvtqwEn1E4QYfnCOcp5zoEqNhsDYin1s6jx/VJmrxlZg==",
+ "cpu": [
+ "loong64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ]
+ },
+ "node_modules/@rollup/rollup-linux-loong64-musl": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-linux-loong64-musl/-/rollup-linux-loong64-musl-4.62.2.tgz",
+ "integrity": "sha512-IxKLoxCQ2IWi6bT2akyDUBGsOImDKB+sPp4EsTmwFQ/fMwpCKm8uLSSgP/Kx/QYUgKis6SEZ5/Nlhup0DIA0PQ==",
+ "cpu": [
+ "loong64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ]
+ },
+ "node_modules/@rollup/rollup-linux-ppc64-gnu": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-linux-ppc64-gnu/-/rollup-linux-ppc64-gnu-4.62.2.tgz",
+ "integrity": "sha512-Mk5ha2RQSgyFfmYYLkBpPnUk8D8FriBxesO1u9O75X0mHgXL1UQcH5Itl2lurWL2tj0RxV9b9tJgipac0hRY9A==",
+ "cpu": [
+ "ppc64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ]
+ },
+ "node_modules/@rollup/rollup-linux-ppc64-musl": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-linux-ppc64-musl/-/rollup-linux-ppc64-musl-4.62.2.tgz",
+ "integrity": "sha512-CjvEnqJL/0/TQ3TXX3OPIJ/kmBellrWd4heXUmHeJlTnmwjKpSJzoehLaL6Xk0ZnMHBu9dZuFADNOrtjF4v+2w==",
+ "cpu": [
+ "ppc64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ]
+ },
+ "node_modules/@rollup/rollup-linux-riscv64-gnu": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-linux-riscv64-gnu/-/rollup-linux-riscv64-gnu-4.62.2.tgz",
+ "integrity": "sha512-1SiZbzwdkaDURsew/tSOrooKiYy7EQGT6m8ufavAi9NEyQb/6VuIxFXAL1fqa4iZe3g4NbNk4P7J32z2tw5Mgg==",
+ "cpu": [
+ "riscv64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ]
+ },
+ "node_modules/@rollup/rollup-linux-riscv64-musl": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-linux-riscv64-musl/-/rollup-linux-riscv64-musl-4.62.2.tgz",
+ "integrity": "sha512-nQts12zJ3NQRoE6uYljOH89v7szzLDvG2JD/vsX+vGXU8w/At1GowTZ5/7qeFQ8m7L55rpR8Okugnuo5bgjy2Q==",
+ "cpu": [
+ "riscv64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ]
+ },
+ "node_modules/@rollup/rollup-linux-s390x-gnu": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-linux-s390x-gnu/-/rollup-linux-s390x-gnu-4.62.2.tgz",
+ "integrity": "sha512-E9/ll019jhPIJgpzfZoIkBGhcz+kKNgVWYRY0zr9srBdPPFVpvOKW8VaJKUbeK+eZXyQF9ltME+Kk6affeaPgg==",
+ "cpu": [
+ "s390x"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ]
+ },
+ "node_modules/@rollup/rollup-linux-x64-gnu": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-linux-x64-gnu/-/rollup-linux-x64-gnu-4.62.2.tgz",
+ "integrity": "sha512-5BqxR/pshjey51iliyzTD5Xi3EN0aLmQ2lZ3lvefVV9c82BvrLo2/6OT55iifpWBufs6kdwWbuOKS841DrmK9A==",
+ "cpu": [
+ "x64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ]
+ },
+ "node_modules/@rollup/rollup-linux-x64-musl": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-linux-x64-musl/-/rollup-linux-x64-musl-4.62.2.tgz",
+ "integrity": "sha512-uNN83XxQrRAh/w0/pmAfibcwyb6YWt4gP+dpnQKPVJshAloQ785ii8CT8ZCIxkGg9opVsvAlGhFitSm6D1Jjpg==",
+ "cpu": [
+ "x64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ]
+ },
+ "node_modules/@rollup/rollup-openbsd-x64": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-openbsd-x64/-/rollup-openbsd-x64-4.62.2.tgz",
+ "integrity": "sha512-srjEIxSH3LRnJN6THczDHWQplqEMFiAJrTab0msUryh9kwNpkICf3Ea6q6MN/2cZwRFUNx5w+h6Hpi4QuHS6Zg==",
+ "cpu": [
+ "x64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "openbsd"
+ ]
+ },
+ "node_modules/@rollup/rollup-openharmony-arm64": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-openharmony-arm64/-/rollup-openharmony-arm64-4.62.2.tgz",
+ "integrity": "sha512-8hOJnxgbyObnCm5AlRA3A931xX19xq80RjVTKgJOvEKWqJruP/Uf12IbAOaDjjEXYRewwHLfmF0YRIdK3OwKWA==",
+ "cpu": [
+ "arm64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "openharmony"
+ ]
+ },
+ "node_modules/@rollup/rollup-win32-arm64-msvc": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-win32-arm64-msvc/-/rollup-win32-arm64-msvc-4.62.2.tgz",
+ "integrity": "sha512-mmF4AY1i0hG/bLWUctUq59gtmgaSIRa3cu/A3JFRp/sCNEme2bgDEiDS22P9FbnJB8NJNF4jPJiSP5RHQpUTDg==",
+ "cpu": [
+ "arm64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "win32"
+ ]
+ },
+ "node_modules/@rollup/rollup-win32-ia32-msvc": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-win32-ia32-msvc/-/rollup-win32-ia32-msvc-4.62.2.tgz",
+ "integrity": "sha512-DZgkknc6jhHrk46V25vbAM0zZkyP0nSDkJB8/dRkLTxv470dOmWDqGoEJl/9A0dFfS7yE3REOwNDxpHwSLSt0Q==",
+ "cpu": [
+ "ia32"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "win32"
+ ]
+ },
+ "node_modules/@rollup/rollup-win32-x64-gnu": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-win32-x64-gnu/-/rollup-win32-x64-gnu-4.62.2.tgz",
+ "integrity": "sha512-T6xr6ucWSFto+VGajA8YH26LdpHRuP4YLHEKAtCWvJDOlnmWcDZVCI2Jmjr+IFHDlt2zRaTAKE4tfjTaWLgJBg==",
+ "cpu": [
+ "x64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "win32"
+ ]
+ },
+ "node_modules/@rollup/rollup-win32-x64-msvc": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-win32-x64-msvc/-/rollup-win32-x64-msvc-4.62.2.tgz",
+ "integrity": "sha512-BfzEnDJOt9T8M989/lA37EcJgat01wLRnoi5dQf3QzOH7jzpqTAzdDbVfRljVr5r+jzKqpbHeyOfAaXxAd0PAA==",
+ "cpu": [
+ "x64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "win32"
+ ]
+ },
+ "node_modules/@simplewebauthn/browser": {
+ "version": "13.3.0",
+ "resolved": "https://registry.npmjs.org/@simplewebauthn/browser/-/browser-13.3.0.tgz",
+ "integrity": "sha512-BE/UWv6FOToAdVk0EokzkqQQDOWtNydYlY6+OrmiZ5SCNmb41VehttboTetUM3T/fr6EAFYVXjz4My2wg230rQ==",
+ "license": "MIT",
+ "peer": true
+ },
+ "node_modules/@simplewebauthn/types": {
+ "version": "12.0.0",
+ "resolved": "https://registry.npmjs.org/@simplewebauthn/types/-/types-12.0.0.tgz",
+ "integrity": "sha512-q6y8MkoV8V8jB4zzp18Uyj2I7oFp2/ONL8c3j8uT06AOWu3cIChc1au71QYHrP2b+xDapkGTiv+9lX7xkTlAsA==",
+ "deprecated": "Package no longer supported. Contact Support at https://www.npmjs.com/support for more info.",
+ "license": "MIT"
+ },
+ "node_modules/@swc/core": {
+ "version": "1.15.41",
+ "resolved": "https://registry.npmjs.org/@swc/core/-/core-1.15.41.tgz",
+ "integrity": "sha512-03nQq/082QRJJiOvp3FGbgxTGyyxMxohPTjhk/W9bD2J0tk4ukITI7goOhOO2WbaHn/lsPmo/zf8+DIXhwpgYQ==",
+ "dev": true,
+ "hasInstallScript": true,
+ "license": "Apache-2.0",
+ "dependencies": {
+ "@swc/counter": "^0.1.3",
+ "@swc/types": "^0.1.26"
+ },
+ "engines": {
+ "node": ">=10"
+ },
+ "funding": {
+ "type": "opencollective",
+ "url": "https://opencollective.com/swc"
+ },
+ "optionalDependencies": {
+ "@swc/core-darwin-arm64": "1.15.41",
+ "@swc/core-darwin-x64": "1.15.41",
+ "@swc/core-linux-arm-gnueabihf": "1.15.41",
+ "@swc/core-linux-arm64-gnu": "1.15.41",
+ "@swc/core-linux-arm64-musl": "1.15.41",
+ "@swc/core-linux-ppc64-gnu": "1.15.41",
+ "@swc/core-linux-s390x-gnu": "1.15.41",
+ "@swc/core-linux-x64-gnu": "1.15.41",
+ "@swc/core-linux-x64-musl": "1.15.41",
+ "@swc/core-win32-arm64-msvc": "1.15.41",
+ "@swc/core-win32-ia32-msvc": "1.15.41",
+ "@swc/core-win32-x64-msvc": "1.15.41"
+ },
+ "peerDependencies": {
+ "@swc/helpers": ">=0.5.17"
+ },
+ "peerDependenciesMeta": {
+ "@swc/helpers": {
+ "optional": true
+ }
+ }
+ },
+ "node_modules/@swc/core-darwin-arm64": {
+ "version": "1.15.41",
+ "resolved": "https://registry.npmjs.org/@swc/core-darwin-arm64/-/core-darwin-arm64-1.15.41.tgz",
+ "integrity": "sha512-kREh6J5paQFvP3i7f/4FbqRNOJREutVFVOkder4GVyCBQ39YmER55cW/y1NNjwrchzFqgYswFn0mMDCqbqKzrw==",
+ "cpu": [
+ "arm64"
+ ],
+ "dev": true,
+ "license": "Apache-2.0 AND MIT",
+ "optional": true,
+ "os": [
+ "darwin"
+ ],
+ "engines": {
+ "node": ">=10"
+ }
+ },
+ "node_modules/@swc/core-darwin-x64": {
+ "version": "1.15.41",
+ "resolved": "https://registry.npmjs.org/@swc/core-darwin-x64/-/core-darwin-x64-1.15.41.tgz",
+ "integrity": "sha512-N8B56ESFazZAWZyIkecADSPCwlLEinW7QLMEeotCpv4J7VXwfH+OLkmRL8o96UZ+1355fwHxDTS6/wK7yucvkA==",
+ "cpu": [
+ "x64"
+ ],
+ "dev": true,
+ "license": "Apache-2.0 AND MIT",
+ "optional": true,
+ "os": [
+ "darwin"
+ ],
+ "engines": {
+ "node": ">=10"
+ }
+ },
+ "node_modules/@swc/core-linux-arm-gnueabihf": {
+ "version": "1.15.41",
+ "resolved": "https://registry.npmjs.org/@swc/core-linux-arm-gnueabihf/-/core-linux-arm-gnueabihf-1.15.41.tgz",
+ "integrity": "sha512-6XrId2fyle0mS5xxON8rU84mPd2Cq1kDJRj+4BnQKTd7u+2kSA6Ww+JkOP0iTNqOqt9OXhPOEAjBHAuonWcdCg==",
+ "cpu": [
+ "arm"
+ ],
+ "dev": true,
+ "license": "Apache-2.0",
+ "optional": true,
+ "os": [
+ "linux"
+ ],
+ "engines": {
+ "node": ">=10"
+ }
+ },
+ "node_modules/@swc/core-linux-arm64-gnu": {
+ "version": "1.15.41",
+ "resolved": "https://registry.npmjs.org/@swc/core-linux-arm64-gnu/-/core-linux-arm64-gnu-1.15.41.tgz",
+ "integrity": "sha512-ynLIarxlkVnqHn1D0fKOVht6mNU5ks6lrH+MY3kkS+XFaGGgDxFZVjWKJlkYTKm3RCvBTfA8Ng5fLufXheMRKQ==",
+ "cpu": [
+ "arm64"
+ ],
+ "dev": true,
+ "license": "Apache-2.0 AND MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ],
+ "engines": {
+ "node": ">=10"
+ }
+ },
+ "node_modules/@swc/core-linux-arm64-musl": {
+ "version": "1.15.41",
+ "resolved": "https://registry.npmjs.org/@swc/core-linux-arm64-musl/-/core-linux-arm64-musl-1.15.41.tgz",
+ "integrity": "sha512-dXu/5vd4gh8symyhRF+4G7gOPkjmb4pONhh7sl+6GSiW0LOKZlfu5kXmyFbTz9smOT7jgr002qY9b1nujjXt2A==",
+ "cpu": [
+ "arm64"
+ ],
+ "dev": true,
+ "license": "Apache-2.0 AND MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ],
+ "engines": {
+ "node": ">=10"
+ }
+ },
+ "node_modules/@swc/core-linux-ppc64-gnu": {
+ "version": "1.15.41",
+ "resolved": "https://registry.npmjs.org/@swc/core-linux-ppc64-gnu/-/core-linux-ppc64-gnu-1.15.41.tgz",
+ "integrity": "sha512-XGO6zVPXoPE0gf/XnI4jBbafNT13AYgoh6ns0JCSdOetI/kqVf0vhpz7NuNgAzZrMVCsmieqjPoTwViDgh4mOQ==",
+ "cpu": [
+ "ppc64"
+ ],
+ "dev": true,
+ "license": "Apache-2.0 AND MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ],
+ "engines": {
+ "node": ">=10"
+ }
+ },
+ "node_modules/@swc/core-linux-s390x-gnu": {
+ "version": "1.15.41",
+ "resolved": "https://registry.npmjs.org/@swc/core-linux-s390x-gnu/-/core-linux-s390x-gnu-1.15.41.tgz",
+ "integrity": "sha512-0WUglRwyZtW+iMi7J3iFdrCxreZZIKf4egTwEQfIYRsqFax69A0OrFj+NIoFSE03xBT/IFRrg+S8K6f9Ky+4hA==",
+ "cpu": [
+ "s390x"
+ ],
+ "dev": true,
+ "license": "Apache-2.0 AND MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ],
+ "engines": {
+ "node": ">=10"
+ }
+ },
+ "node_modules/@swc/core-linux-x64-gnu": {
+ "version": "1.15.41",
+ "resolved": "https://registry.npmjs.org/@swc/core-linux-x64-gnu/-/core-linux-x64-gnu-1.15.41.tgz",
+ "integrity": "sha512-VxkuQK59c0tHm6uJZCUrS3cyA2JhGGfdU6e41SZz0x/JS+4Sm7C1mIc97In14vkZJopEt7yXA2TouCqZDSygEA==",
+ "cpu": [
+ "x64"
+ ],
+ "dev": true,
+ "license": "Apache-2.0 AND MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ],
+ "engines": {
+ "node": ">=10"
+ }
+ },
+ "node_modules/@swc/core-linux-x64-musl": {
+ "version": "1.15.41",
+ "resolved": "https://registry.npmjs.org/@swc/core-linux-x64-musl/-/core-linux-x64-musl-1.15.41.tgz",
+ "integrity": "sha512-/0qXIu1ZxggLuovLb22vFfKHq2AA4n6Whw5UwmVCHk4pkw7KWnPIQpMCEqUMPsNkFJig7PPp/TSYFu8ZEb2rtQ==",
+ "cpu": [
+ "x64"
+ ],
+ "dev": true,
+ "license": "Apache-2.0 AND MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ],
+ "engines": {
+ "node": ">=10"
+ }
+ },
+ "node_modules/@swc/core-win32-arm64-msvc": {
+ "version": "1.15.41",
+ "resolved": "https://registry.npmjs.org/@swc/core-win32-arm64-msvc/-/core-win32-arm64-msvc-1.15.41.tgz",
+ "integrity": "sha512-Y481sMNZM6rECh9VO4+y26N1lWEDAyxnBZskUf37fl90uHE946VHfmiVQWT0uMFOhyJJFovGTRuF4W82dwewUg==",
+ "cpu": [
+ "arm64"
+ ],
+ "dev": true,
+ "license": "Apache-2.0 AND MIT",
+ "optional": true,
+ "os": [
+ "win32"
+ ],
+ "engines": {
+ "node": ">=10"
+ }
+ },
+ "node_modules/@swc/core-win32-ia32-msvc": {
+ "version": "1.15.41",
+ "resolved": "https://registry.npmjs.org/@swc/core-win32-ia32-msvc/-/core-win32-ia32-msvc-1.15.41.tgz",
+ "integrity": "sha512-BAchBD5qeUzy3hiPSLJtaaoSm4blCLyYffOF1bGE4ETcV+OisqjUAwDQMJj++4bTpvMCDzwC+Bj3PmQyBCtscw==",
+ "cpu": [
+ "ia32"
+ ],
+ "dev": true,
+ "license": "Apache-2.0 AND MIT",
+ "optional": true,
+ "os": [
+ "win32"
+ ],
+ "engines": {
+ "node": ">=10"
+ }
+ },
+ "node_modules/@swc/core-win32-x64-msvc": {
+ "version": "1.15.41",
+ "resolved": "https://registry.npmjs.org/@swc/core-win32-x64-msvc/-/core-win32-x64-msvc-1.15.41.tgz",
+ "integrity": "sha512-WOkA+fJ/ViVBQDsSV9JC52NACTe5PhlurA6viASDZGb7HR3KS01ZG7RZ+Bg6SVQFIoq3gSbTsskQVe6EbHFAYw==",
+ "cpu": [
+ "x64"
+ ],
+ "dev": true,
+ "license": "Apache-2.0 AND MIT",
+ "optional": true,
+ "os": [
+ "win32"
+ ],
+ "engines": {
+ "node": ">=10"
+ }
+ },
+ "node_modules/@swc/counter": {
+ "version": "0.1.3",
+ "resolved": "https://registry.npmjs.org/@swc/counter/-/counter-0.1.3.tgz",
+ "integrity": "sha512-e2BR4lsJkkRlKZ/qCHPw9ZaSxc0MVUd7gtbtaB7aMvHeJVYe8sOB8DBZkP2DtISHGSku9sCK6T6cnY0CtXrOCQ==",
+ "dev": true,
+ "license": "Apache-2.0"
+ },
+ "node_modules/@swc/types": {
+ "version": "0.1.27",
+ "resolved": "https://registry.npmjs.org/@swc/types/-/types-0.1.27.tgz",
+ "integrity": "sha512-K6h3iUlqeM946U4sXFYeahefR1YBbXJvko+hv8WS8/0BNJ4OHiHRywMnQUJCqkR7Y9+hqQ1TvEpiKqUhz7NEFg==",
+ "dev": true,
+ "license": "Apache-2.0",
+ "dependencies": {
+ "@swc/counter": "^0.1.3"
+ }
+ },
+ "node_modules/@tanstack/query-core": {
+ "version": "5.101.0",
+ "resolved": "https://registry.npmjs.org/@tanstack/query-core/-/query-core-5.101.0.tgz",
+ "integrity": "sha512-cQetA74EB+seWySv1TTKr828TnP0u39m6LykwDXIo84SNortpDkp30TMEjkqtYCNP9c40uT/iwl6MLiufEt0Ow==",
+ "license": "MIT",
+ "funding": {
+ "type": "github",
+ "url": "https://github.com/sponsors/tannerlinsley"
+ }
+ },
+ "node_modules/@tanstack/react-query": {
+ "version": "5.101.0",
+ "resolved": "https://registry.npmjs.org/@tanstack/react-query/-/react-query-5.101.0.tgz",
+ "integrity": "sha512-rLlJXSpkqfizLWgkR5+eLeIk0MvTx/meEIR7LRjxic+qxiQP8zVjq7BqQkiCMNLQBlLfuOLqqr6KO5GtrDlmSg==",
+ "license": "MIT",
+ "dependencies": {
+ "@tanstack/query-core": "5.101.0"
+ },
+ "funding": {
+ "type": "github",
+ "url": "https://github.com/sponsors/tannerlinsley"
+ },
+ "peerDependencies": {
+ "react": "^18 || ^19"
+ }
+ },
+ "node_modules/@testing-library/dom": {
+ "version": "10.4.1",
+ "resolved": "https://registry.npmjs.org/@testing-library/dom/-/dom-10.4.1.tgz",
+ "integrity": "sha512-o4PXJQidqJl82ckFaXUeoAW+XysPLauYI43Abki5hABd853iMhitooc6znOnczgbTYmEP6U6/y1ZyKAIsvMKGg==",
+ "dev": true,
+ "license": "MIT",
+ "peer": true,
+ "dependencies": {
+ "@babel/code-frame": "^7.10.4",
+ "@babel/runtime": "^7.12.5",
+ "@types/aria-query": "^5.0.1",
+ "aria-query": "5.3.0",
+ "dom-accessibility-api": "^0.5.9",
+ "lz-string": "^1.5.0",
+ "picocolors": "1.1.1",
+ "pretty-format": "^27.0.2"
+ },
+ "engines": {
+ "node": ">=18"
+ }
+ },
+ "node_modules/@testing-library/jest-dom": {
+ "version": "6.9.1",
+ "resolved": "https://registry.npmjs.org/@testing-library/jest-dom/-/jest-dom-6.9.1.tgz",
+ "integrity": "sha512-zIcONa+hVtVSSep9UT3jZ5rizo2BsxgyDYU7WFD5eICBE7no3881HGeb/QkGfsJs6JTkY1aQhT7rIPC7e+0nnA==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "@adobe/css-tools": "^4.4.0",
+ "aria-query": "^5.0.0",
+ "css.escape": "^1.5.1",
+ "dom-accessibility-api": "^0.6.3",
+ "picocolors": "^1.1.1",
+ "redent": "^3.0.0"
+ },
+ "engines": {
+ "node": ">=14",
+ "npm": ">=6",
+ "yarn": ">=1"
+ }
+ },
+ "node_modules/@testing-library/jest-dom/node_modules/dom-accessibility-api": {
+ "version": "0.6.3",
+ "resolved": "https://registry.npmjs.org/dom-accessibility-api/-/dom-accessibility-api-0.6.3.tgz",
+ "integrity": "sha512-7ZgogeTnjuHbo+ct10G9Ffp0mif17idi0IyWNVA/wcwcm7NPOD/WEHVP3n7n3MhXqxoIYm8d6MuZohYWIZ4T3w==",
+ "dev": true,
+ "license": "MIT"
+ },
+ "node_modules/@testing-library/react": {
+ "version": "16.3.2",
+ "resolved": "https://registry.npmjs.org/@testing-library/react/-/react-16.3.2.tgz",
+ "integrity": "sha512-XU5/SytQM+ykqMnAnvB2umaJNIOsLF3PVv//1Ew4CTcpz0/BRyy/af40qqrt7SjKpDdT1saBMc42CUok5gaw+g==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "@babel/runtime": "^7.12.5"
+ },
+ "engines": {
+ "node": ">=18"
+ },
+ "peerDependencies": {
+ "@testing-library/dom": "^10.0.0",
+ "@types/react": "^18.0.0 || ^19.0.0",
+ "@types/react-dom": "^18.0.0 || ^19.0.0",
+ "react": "^18.0.0 || ^19.0.0",
+ "react-dom": "^18.0.0 || ^19.0.0"
+ },
+ "peerDependenciesMeta": {
+ "@types/react": {
+ "optional": true
+ },
+ "@types/react-dom": {
+ "optional": true
+ }
+ }
+ },
+ "node_modules/@testing-library/user-event": {
+ "version": "14.6.1",
+ "resolved": "https://registry.npmjs.org/@testing-library/user-event/-/user-event-14.6.1.tgz",
+ "integrity": "sha512-vq7fv0rnt+QTXgPxr5Hjc210p6YKq2kmdziLgnsZGgLJ9e6VAShx1pACLuRjd/AS/sr7phAR58OIIpf0LlmQNw==",
+ "dev": true,
+ "license": "MIT",
+ "engines": {
+ "node": ">=12",
+ "npm": ">=6"
+ },
+ "peerDependencies": {
+ "@testing-library/dom": ">=7.21.4"
+ }
+ },
+ "node_modules/@types/aria-query": {
+ "version": "5.0.4",
+ "resolved": "https://registry.npmjs.org/@types/aria-query/-/aria-query-5.0.4.tgz",
+ "integrity": "sha512-rfT93uj5s0PRL7EzccGMs3brplhcrghnDoV26NqKhCAS1hVo+WdNsPvE/yb6ilfr5hi2MEk6d5EWJTKdxg8jVw==",
+ "dev": true,
+ "license": "MIT",
+ "peer": true
+ },
+ "node_modules/@types/estree": {
+ "version": "1.0.9",
+ "resolved": "https://registry.npmjs.org/@types/estree/-/estree-1.0.9.tgz",
+ "integrity": "sha512-GhdPgy1el4/ImP05X05Uw4cw2/M93BCUmnEvWZNStlCzEKME4Fkk+YpoA5OiHNQmoS7Cafb8Xa3Pya8m1Qrzeg==",
+ "dev": true,
+ "license": "MIT"
+ },
+ "node_modules/@types/node": {
+ "version": "24.13.2",
+ "resolved": "https://registry.npmjs.org/@types/node/-/node-24.13.2.tgz",
+ "integrity": "sha512-fRa09kZTgu8o71KFcDjUFuc7F+dEbZYZmkI0mg5YBTRs0yMKjYHsq/c0urDKeDb+D5qVgXOdFcuu+DZPKOITwA==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "undici-types": "~7.18.0"
+ }
+ },
+ "node_modules/@types/prop-types": {
+ "version": "15.7.15",
+ "resolved": "https://registry.npmjs.org/@types/prop-types/-/prop-types-15.7.15.tgz",
+ "integrity": "sha512-F6bEyamV9jKGAFBEmlQnesRPGOQqS2+Uwi0Em15xenOxHaf2hv6L8YCVn3rPdPJOiJfPiCnLIRyvwVaqMY3MIw==",
+ "dev": true,
+ "license": "MIT"
+ },
+ "node_modules/@types/react": {
+ "version": "18.3.31",
+ "resolved": "https://registry.npmjs.org/@types/react/-/react-18.3.31.tgz",
+ "integrity": "sha512-vfEqpXTvwT91yhmwdfouStN2hSKwTvyRs8qpLfADyrq/kxDw0hZM7Wk9Ug1FELj8hIby+S/+kQCSRFF32nv2Qw==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "@types/prop-types": "*",
+ "csstype": "^3.2.2"
+ }
+ },
+ "node_modules/@types/react-dom": {
+ "version": "18.3.7",
+ "resolved": "https://registry.npmjs.org/@types/react-dom/-/react-dom-18.3.7.tgz",
+ "integrity": "sha512-MEe3UeoENYVFXzoXEWsvcpg6ZvlrFNlOQ7EOsvhI3CfAXwzPfO8Qwuxd40nepsYKqyyVQnTdEfv68q91yLcKrQ==",
+ "dev": true,
+ "license": "MIT",
+ "peerDependencies": {
+ "@types/react": "^18.0.0"
+ }
+ },
+ "node_modules/@vitejs/plugin-react-swc": {
+ "version": "3.11.0",
+ "resolved": "https://registry.npmjs.org/@vitejs/plugin-react-swc/-/plugin-react-swc-3.11.0.tgz",
+ "integrity": "sha512-YTJCGFdNMHCMfjODYtxRNVAYmTWQ1Lb8PulP/2/f/oEEtglw8oKxKIZmmRkyXrVrHfsKOaVkAc3NT9/dMutO5w==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "@rolldown/pluginutils": "1.0.0-beta.27",
+ "@swc/core": "^1.12.11"
+ },
+ "peerDependencies": {
+ "vite": "^4 || ^5 || ^6 || ^7"
+ }
+ },
+ "node_modules/@vitest/expect": {
+ "version": "2.1.9",
+ "resolved": "https://registry.npmjs.org/@vitest/expect/-/expect-2.1.9.tgz",
+ "integrity": "sha512-UJCIkTBenHeKT1TTlKMJWy1laZewsRIzYighyYiJKZreqtdxSos/S1t+ktRMQWu2CKqaarrkeszJx1cgC5tGZw==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "@vitest/spy": "2.1.9",
+ "@vitest/utils": "2.1.9",
+ "chai": "^5.1.2",
+ "tinyrainbow": "^1.2.0"
+ },
+ "funding": {
+ "url": "https://opencollective.com/vitest"
+ }
+ },
+ "node_modules/@vitest/mocker": {
+ "version": "2.1.9",
+ "resolved": "https://registry.npmjs.org/@vitest/mocker/-/mocker-2.1.9.tgz",
+ "integrity": "sha512-tVL6uJgoUdi6icpxmdrn5YNo3g3Dxv+IHJBr0GXHaEdTcw3F+cPKnsXFhli6nO+f/6SDKPHEK1UN+k+TQv0Ehg==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "@vitest/spy": "2.1.9",
+ "estree-walker": "^3.0.3",
+ "magic-string": "^0.30.12"
+ },
+ "funding": {
+ "url": "https://opencollective.com/vitest"
+ },
+ "peerDependencies": {
+ "msw": "^2.4.9",
+ "vite": "^5.0.0"
+ },
+ "peerDependenciesMeta": {
+ "msw": {
+ "optional": true
+ },
+ "vite": {
+ "optional": true
+ }
+ }
+ },
+ "node_modules/@vitest/pretty-format": {
+ "version": "2.1.9",
+ "resolved": "https://registry.npmjs.org/@vitest/pretty-format/-/pretty-format-2.1.9.tgz",
+ "integrity": "sha512-KhRIdGV2U9HOUzxfiHmY8IFHTdqtOhIzCpd8WRdJiE7D/HUcZVD0EgQCVjm+Q9gkUXWgBvMmTtZgIG48wq7sOQ==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "tinyrainbow": "^1.2.0"
+ },
+ "funding": {
+ "url": "https://opencollective.com/vitest"
+ }
+ },
+ "node_modules/@vitest/runner": {
+ "version": "2.1.9",
+ "resolved": "https://registry.npmjs.org/@vitest/runner/-/runner-2.1.9.tgz",
+ "integrity": "sha512-ZXSSqTFIrzduD63btIfEyOmNcBmQvgOVsPNPe0jYtESiXkhd8u2erDLnMxmGrDCwHCCHE7hxwRDCT3pt0esT4g==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "@vitest/utils": "2.1.9",
+ "pathe": "^1.1.2"
+ },
+ "funding": {
+ "url": "https://opencollective.com/vitest"
+ }
+ },
+ "node_modules/@vitest/snapshot": {
+ "version": "2.1.9",
+ "resolved": "https://registry.npmjs.org/@vitest/snapshot/-/snapshot-2.1.9.tgz",
+ "integrity": "sha512-oBO82rEjsxLNJincVhLhaxxZdEtV0EFHMK5Kmx5sJ6H9L183dHECjiefOAdnqpIgT5eZwT04PoggUnW88vOBNQ==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "@vitest/pretty-format": "2.1.9",
+ "magic-string": "^0.30.12",
+ "pathe": "^1.1.2"
+ },
+ "funding": {
+ "url": "https://opencollective.com/vitest"
+ }
+ },
+ "node_modules/@vitest/spy": {
+ "version": "2.1.9",
+ "resolved": "https://registry.npmjs.org/@vitest/spy/-/spy-2.1.9.tgz",
+ "integrity": "sha512-E1B35FwzXXTs9FHNK6bDszs7mtydNi5MIfUWpceJ8Xbfb1gBMscAnwLbEu+B44ed6W3XjL9/ehLPHR1fkf1KLQ==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "tinyspy": "^3.0.2"
+ },
+ "funding": {
+ "url": "https://opencollective.com/vitest"
+ }
+ },
+ "node_modules/@vitest/utils": {
+ "version": "2.1.9",
+ "resolved": "https://registry.npmjs.org/@vitest/utils/-/utils-2.1.9.tgz",
+ "integrity": "sha512-v0psaMSkNJ3A2NMrUEHFRzJtDPFn+/VWZ5WxImB21T9fjucJRmS7xCS3ppEnARb9y11OAzaD+P2Ps+b+BGX5iQ==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "@vitest/pretty-format": "2.1.9",
+ "loupe": "^3.1.2",
+ "tinyrainbow": "^1.2.0"
+ },
+ "funding": {
+ "url": "https://opencollective.com/vitest"
+ }
+ },
+ "node_modules/agent-base": {
+ "version": "7.1.4",
+ "resolved": "https://registry.npmjs.org/agent-base/-/agent-base-7.1.4.tgz",
+ "integrity": "sha512-MnA+YT8fwfJPgBx3m60MNqakm30XOkyIoH1y6huTQvC0PwZG7ki8NacLBcrPbNoo8vEZy7Jpuk7+jMO+CUovTQ==",
+ "dev": true,
+ "license": "MIT",
+ "engines": {
+ "node": ">= 14"
+ }
+ },
+ "node_modules/ansi-regex": {
+ "version": "5.0.1",
+ "resolved": "https://registry.npmjs.org/ansi-regex/-/ansi-regex-5.0.1.tgz",
+ "integrity": "sha512-quJQXlTSUGL2LH9SUXo8VwsY4soanhgo6LNSm84E1LBcE8s3O0wpdiRzyR9z/ZZJMlMWv37qOOb9pdJlMUEKFQ==",
+ "dev": true,
+ "license": "MIT",
+ "peer": true,
+ "engines": {
+ "node": ">=8"
+ }
+ },
+ "node_modules/ansi-styles": {
+ "version": "5.2.0",
+ "resolved": "https://registry.npmjs.org/ansi-styles/-/ansi-styles-5.2.0.tgz",
+ "integrity": "sha512-Cxwpt2SfTzTtXcfOlzGEee8O+c+MmUgGrNiBcXnuWxuFJHe6a5Hz7qwhwe5OgaSYI0IJvkLqWX1ASG+cJOkEiA==",
+ "dev": true,
+ "license": "MIT",
+ "peer": true,
+ "engines": {
+ "node": ">=10"
+ },
+ "funding": {
+ "url": "https://github.com/chalk/ansi-styles?sponsor=1"
+ }
+ },
+ "node_modules/aria-query": {
+ "version": "5.3.0",
+ "resolved": "https://registry.npmjs.org/aria-query/-/aria-query-5.3.0.tgz",
+ "integrity": "sha512-b0P0sZPKtyu8HkeRAfCq0IfURZK+SuwMjY1UXGBU27wpAiTwQAIlq56IbIO+ytk/JjS1fMR14ee5WBBfKi5J6A==",
+ "dev": true,
+ "license": "Apache-2.0",
+ "dependencies": {
+ "dequal": "^2.0.3"
+ }
+ },
+ "node_modules/assertion-error": {
+ "version": "2.0.1",
+ "resolved": "https://registry.npmjs.org/assertion-error/-/assertion-error-2.0.1.tgz",
+ "integrity": "sha512-Izi8RQcffqCeNVgFigKli1ssklIbpHnCYc6AknXGYoB6grJqyeby7jv12JUQgmTAnIDnbck1uxksT4dzN3PWBA==",
+ "dev": true,
+ "license": "MIT",
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/browser-tabs-lock": {
+ "version": "1.3.0",
+ "resolved": "https://registry.npmjs.org/browser-tabs-lock/-/browser-tabs-lock-1.3.0.tgz",
+ "integrity": "sha512-g6nHaobTiT0eMZ7jh16YpD2kcjAp+PInbiVq3M1x6KKaEIVhT4v9oURNIpZLOZ3LQbQ3XYfNhMAb/9hzNLIWrw==",
+ "hasInstallScript": true,
+ "license": "MIT",
+ "peer": true,
+ "dependencies": {
+ "lodash": ">=4.17.21"
+ }
+ },
+ "node_modules/cac": {
+ "version": "6.7.14",
+ "resolved": "https://registry.npmjs.org/cac/-/cac-6.7.14.tgz",
+ "integrity": "sha512-b6Ilus+c3RrdDk+JhLKUAQfzzgLEPy6wcXqS7f/xe1EETvsDP6GORG7SFuOs6cID5YkqchW/LXZbX5bc8j7ZcQ==",
+ "dev": true,
+ "license": "MIT",
+ "engines": {
+ "node": ">=8"
+ }
+ },
+ "node_modules/chai": {
+ "version": "5.3.3",
+ "resolved": "https://registry.npmjs.org/chai/-/chai-5.3.3.tgz",
+ "integrity": "sha512-4zNhdJD/iOjSH0A05ea+Ke6MU5mmpQcbQsSOkgdaUMJ9zTlDTD/GYlwohmIE2u0gaxHYiVHEn1Fw9mZ/ktJWgw==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "assertion-error": "^2.0.1",
+ "check-error": "^2.1.1",
+ "deep-eql": "^5.0.1",
+ "loupe": "^3.1.0",
+ "pathval": "^2.0.0"
+ },
+ "engines": {
+ "node": ">=18"
+ }
+ },
+ "node_modules/check-error": {
+ "version": "2.1.3",
+ "resolved": "https://registry.npmjs.org/check-error/-/check-error-2.1.3.tgz",
+ "integrity": "sha512-PAJdDJusoxnwm1VwW07VWwUN1sl7smmC3OKggvndJFadxxDRyFJBX/ggnu/KE4kQAB7a3Dp8f/YXC1FlUprWmA==",
+ "dev": true,
+ "license": "MIT",
+ "engines": {
+ "node": ">= 16"
+ }
+ },
+ "node_modules/css.escape": {
+ "version": "1.5.1",
+ "resolved": "https://registry.npmjs.org/css.escape/-/css.escape-1.5.1.tgz",
+ "integrity": "sha512-YUifsXXuknHlUsmlgyY0PKzgPOr7/FjCePfHNt0jxm83wHZi44VDMQ7/fGNkjY3/jV1MC+1CmZbaHzugyeRtpg==",
+ "dev": true,
+ "license": "MIT"
+ },
+ "node_modules/cssstyle": {
+ "version": "4.6.0",
+ "resolved": "https://registry.npmjs.org/cssstyle/-/cssstyle-4.6.0.tgz",
+ "integrity": "sha512-2z+rWdzbbSZv6/rhtvzvqeZQHrBaqgogqt85sqFNbabZOuFbCVFb8kPeEtZjiKkbrm395irpNKiYeFeLiQnFPg==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "@asamuzakjp/css-color": "^3.2.0",
+ "rrweb-cssom": "^0.8.0"
+ },
+ "engines": {
+ "node": ">=18"
+ }
+ },
+ "node_modules/csstype": {
+ "version": "3.2.3",
+ "resolved": "https://registry.npmjs.org/csstype/-/csstype-3.2.3.tgz",
+ "integrity": "sha512-z1HGKcYy2xA8AGQfwrn0PAy+PB7X/GSj3UVJW9qKyn43xWa+gl5nXmU4qqLMRzWVLFC8KusUX8T/0kCiOYpAIQ==",
+ "dev": true,
+ "license": "MIT"
+ },
+ "node_modules/data-urls": {
+ "version": "5.0.0",
+ "resolved": "https://registry.npmjs.org/data-urls/-/data-urls-5.0.0.tgz",
+ "integrity": "sha512-ZYP5VBHshaDAiVZxjbRVcFJpc+4xGgT0bK3vzy1HLN8jTO975HEbuYzZJcHoQEY5K1a0z8YayJkyVETa08eNTg==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "whatwg-mimetype": "^4.0.0",
+ "whatwg-url": "^14.0.0"
+ },
+ "engines": {
+ "node": ">=18"
+ }
+ },
+ "node_modules/debug": {
+ "version": "4.4.3",
+ "resolved": "https://registry.npmjs.org/debug/-/debug-4.4.3.tgz",
+ "integrity": "sha512-RGwwWnwQvkVfavKVt22FGLw+xYSdzARwm0ru6DhTVA3umU5hZc28V3kO4stgYryrTlLpuvgI9GiijltAjNbcqA==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "ms": "^2.1.3"
+ },
+ "engines": {
+ "node": ">=6.0"
+ },
+ "peerDependenciesMeta": {
+ "supports-color": {
+ "optional": true
+ }
+ }
+ },
+ "node_modules/decimal.js": {
+ "version": "10.6.0",
+ "resolved": "https://registry.npmjs.org/decimal.js/-/decimal.js-10.6.0.tgz",
+ "integrity": "sha512-YpgQiITW3JXGntzdUmyUR1V812Hn8T1YVXhCu+wO3OpS4eU9l4YdD3qjyiKdV6mvV29zapkMeD390UVEf2lkUg==",
+ "dev": true,
+ "license": "MIT"
+ },
+ "node_modules/deep-eql": {
+ "version": "5.0.2",
+ "resolved": "https://registry.npmjs.org/deep-eql/-/deep-eql-5.0.2.tgz",
+ "integrity": "sha512-h5k/5U50IJJFpzfL6nO9jaaumfjO/f2NjK/oYB2Djzm4p9L+3T9qWpZqZ2hAbLPuuYq9wrU08WQyBTL5GbPk5Q==",
+ "dev": true,
+ "license": "MIT",
+ "engines": {
+ "node": ">=6"
+ }
+ },
+ "node_modules/dequal": {
+ "version": "2.0.3",
+ "resolved": "https://registry.npmjs.org/dequal/-/dequal-2.0.3.tgz",
+ "integrity": "sha512-0je+qPKHEMohvfRTCEo3CrPG6cAzAYgmzKyxRiYSSDkS6eGJdyVJm7WaYA5ECaAD9wLB2T4EEeymA5aFVcYXCA==",
+ "dev": true,
+ "license": "MIT",
+ "engines": {
+ "node": ">=6"
+ }
+ },
+ "node_modules/dom-accessibility-api": {
+ "version": "0.5.16",
+ "resolved": "https://registry.npmjs.org/dom-accessibility-api/-/dom-accessibility-api-0.5.16.tgz",
+ "integrity": "sha512-X7BJ2yElsnOJ30pZF4uIIDfBEVgF4XEBxL9Bxhy6dnrm5hkzqmsWHGTiHqRiITNhMyFLyAiWndIJP7Z1NTteDg==",
+ "dev": true,
+ "license": "MIT",
+ "peer": true
+ },
+ "node_modules/entities": {
+ "version": "6.0.1",
+ "resolved": "https://registry.npmjs.org/entities/-/entities-6.0.1.tgz",
+ "integrity": "sha512-aN97NXWF6AWBTahfVOIrB/NShkzi5H7F9r1s9mD3cDj4Ko5f2qhhVoYMibXF7GlLveb/D2ioWay8lxI97Ven3g==",
+ "dev": true,
+ "license": "BSD-2-Clause",
+ "engines": {
+ "node": ">=0.12"
+ },
+ "funding": {
+ "url": "https://github.com/fb55/entities?sponsor=1"
+ }
+ },
+ "node_modules/es-module-lexer": {
+ "version": "1.7.0",
+ "resolved": "https://registry.npmjs.org/es-module-lexer/-/es-module-lexer-1.7.0.tgz",
+ "integrity": "sha512-jEQoCwk8hyb2AZziIOLhDqpm5+2ww5uIE6lkO/6jcOCusfk6LhMHpXXfBLXTZ7Ydyt0j4VoUQv6uGNYbdW+kBA==",
+ "dev": true,
+ "license": "MIT"
+ },
+ "node_modules/esbuild": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/esbuild/-/esbuild-0.21.5.tgz",
+ "integrity": "sha512-mg3OPMV4hXywwpoDxu3Qda5xCKQi+vCTZq8S9J/EpkhB2HzKXq4SNFZE3+NK93JYxc8VMSep+lOUSC/RVKaBqw==",
+ "dev": true,
+ "hasInstallScript": true,
+ "license": "MIT",
+ "bin": {
+ "esbuild": "bin/esbuild"
+ },
+ "engines": {
+ "node": ">=12"
+ },
+ "optionalDependencies": {
+ "@esbuild/aix-ppc64": "0.21.5",
+ "@esbuild/android-arm": "0.21.5",
+ "@esbuild/android-arm64": "0.21.5",
+ "@esbuild/android-x64": "0.21.5",
+ "@esbuild/darwin-arm64": "0.21.5",
+ "@esbuild/darwin-x64": "0.21.5",
+ "@esbuild/freebsd-arm64": "0.21.5",
+ "@esbuild/freebsd-x64": "0.21.5",
+ "@esbuild/linux-arm": "0.21.5",
+ "@esbuild/linux-arm64": "0.21.5",
+ "@esbuild/linux-ia32": "0.21.5",
+ "@esbuild/linux-loong64": "0.21.5",
+ "@esbuild/linux-mips64el": "0.21.5",
+ "@esbuild/linux-ppc64": "0.21.5",
+ "@esbuild/linux-riscv64": "0.21.5",
+ "@esbuild/linux-s390x": "0.21.5",
+ "@esbuild/linux-x64": "0.21.5",
+ "@esbuild/netbsd-x64": "0.21.5",
+ "@esbuild/openbsd-x64": "0.21.5",
+ "@esbuild/sunos-x64": "0.21.5",
+ "@esbuild/win32-arm64": "0.21.5",
+ "@esbuild/win32-ia32": "0.21.5",
+ "@esbuild/win32-x64": "0.21.5"
+ }
+ },
+ "node_modules/estree-walker": {
+ "version": "3.0.3",
+ "resolved": "https://registry.npmjs.org/estree-walker/-/estree-walker-3.0.3.tgz",
+ "integrity": "sha512-7RUKfXgSMMkzt6ZuXmqapOurLGPPfgj6l9uRZ7lRGolvk0y2yocc35LdcxKC5PQZdn2DMqioAQ2NoWcrTKmm6g==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "@types/estree": "^1.0.0"
+ }
+ },
+ "node_modules/expect-type": {
+ "version": "1.3.0",
+ "resolved": "https://registry.npmjs.org/expect-type/-/expect-type-1.3.0.tgz",
+ "integrity": "sha512-knvyeauYhqjOYvQ66MznSMs83wmHrCycNEN6Ao+2AeYEfxUIkuiVxdEa1qlGEPK+We3n0THiDciYSsCcgW/DoA==",
+ "dev": true,
+ "license": "Apache-2.0",
+ "engines": {
+ "node": ">=12.0.0"
+ }
+ },
+ "node_modules/fsevents": {
+ "version": "2.3.3",
+ "resolved": "https://registry.npmjs.org/fsevents/-/fsevents-2.3.3.tgz",
+ "integrity": "sha512-5xoDfX+fL7faATnagmWPpbFtwh/R77WmMMqqHGS65C3vvB0YHrgF+B1YmZ3441tMj5n63k0212XNoJwzlhffQw==",
+ "dev": true,
+ "hasInstallScript": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "darwin"
+ ],
+ "engines": {
+ "node": "^8.16.0 || ^10.6.0 || >=11.0.0"
+ }
+ },
+ "node_modules/html-encoding-sniffer": {
+ "version": "4.0.0",
+ "resolved": "https://registry.npmjs.org/html-encoding-sniffer/-/html-encoding-sniffer-4.0.0.tgz",
+ "integrity": "sha512-Y22oTqIU4uuPgEemfz7NDJz6OeKf12Lsu+QC+s3BVpda64lTiMYCyGwg5ki4vFxkMwQdeZDl2adZoqUgdFuTgQ==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "whatwg-encoding": "^3.1.1"
+ },
+ "engines": {
+ "node": ">=18"
+ }
+ },
+ "node_modules/http-proxy-agent": {
+ "version": "7.0.2",
+ "resolved": "https://registry.npmjs.org/http-proxy-agent/-/http-proxy-agent-7.0.2.tgz",
+ "integrity": "sha512-T1gkAiYYDWYx3V5Bmyu7HcfcvL7mUrTWiM6yOfa3PIphViJ/gFPbvidQ+veqSOHci/PxBcDabeUNCzpOODJZig==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "agent-base": "^7.1.0",
+ "debug": "^4.3.4"
+ },
+ "engines": {
+ "node": ">= 14"
+ }
+ },
+ "node_modules/https-proxy-agent": {
+ "version": "7.0.6",
+ "resolved": "https://registry.npmjs.org/https-proxy-agent/-/https-proxy-agent-7.0.6.tgz",
+ "integrity": "sha512-vK9P5/iUfdl95AI+JVyUuIcVtd4ofvtrOr3HNtM2yxC9bnMbEdp3x01OhQNnjb8IJYi38VlTE3mBXwcfvywuSw==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "agent-base": "^7.1.2",
+ "debug": "4"
+ },
+ "engines": {
+ "node": ">= 14"
+ }
+ },
+ "node_modules/iconv-lite": {
+ "version": "0.6.3",
+ "resolved": "https://registry.npmjs.org/iconv-lite/-/iconv-lite-0.6.3.tgz",
+ "integrity": "sha512-4fCk79wshMdzMp2rH06qWrJE4iolqLhCUH+OiuIgU++RB0+94NlDL81atO7GX55uUKueo0txHNtvEyI6D7WdMw==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "safer-buffer": ">= 2.1.2 < 3.0.0"
+ },
+ "engines": {
+ "node": ">=0.10.0"
+ }
+ },
+ "node_modules/indent-string": {
+ "version": "4.0.0",
+ "resolved": "https://registry.npmjs.org/indent-string/-/indent-string-4.0.0.tgz",
+ "integrity": "sha512-EdDDZu4A2OyIK7Lr/2zG+w5jmbuk1DVBnEwREQvBzspBJkCEbRa8GxU1lghYcaGJCnRWibjDXlq779X1/y5xwg==",
+ "dev": true,
+ "license": "MIT",
+ "engines": {
+ "node": ">=8"
+ }
+ },
+ "node_modules/intl-tel-input": {
+ "version": "17.0.21",
+ "resolved": "https://registry.npmjs.org/intl-tel-input/-/intl-tel-input-17.0.21.tgz",
+ "integrity": "sha512-TfyPxLe41QZPOf6RqBxRE2dpQ0FThB/PBD/gRbxVhGW7IuYg30QD90x/vjmEo4vkZw7j8etxpVcjIZVRcG+Otw==",
+ "license": "MIT"
+ },
+ "node_modules/is-potential-custom-element-name": {
+ "version": "1.0.1",
+ "resolved": "https://registry.npmjs.org/is-potential-custom-element-name/-/is-potential-custom-element-name-1.0.1.tgz",
+ "integrity": "sha512-bCYeRA2rVibKZd+s2625gGnGF/t7DSqDs4dP7CrLA1m7jKWz6pps0LpYLJN8Q64HtmPKJ1hrN3nzPNKFEKOUiQ==",
+ "dev": true,
+ "license": "MIT"
+ },
+ "node_modules/js-tokens": {
+ "version": "4.0.0",
+ "resolved": "https://registry.npmjs.org/js-tokens/-/js-tokens-4.0.0.tgz",
+ "integrity": "sha512-RdJUflcE3cUzKiMqQgsCu06FPu9UdIJO0beYbPhHN4k6apgJtifcoCtT9bcxOpYBtpD2kCM6Sbzg4CausW/PKQ==",
+ "license": "MIT"
+ },
+ "node_modules/jsdom": {
+ "version": "26.1.0",
+ "resolved": "https://registry.npmjs.org/jsdom/-/jsdom-26.1.0.tgz",
+ "integrity": "sha512-Cvc9WUhxSMEo4McES3P7oK3QaXldCfNWp7pl2NNeiIFlCoLr3kfq9kb1fxftiwk1FLV7CvpvDfonxtzUDeSOPg==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "cssstyle": "^4.2.1",
+ "data-urls": "^5.0.0",
+ "decimal.js": "^10.5.0",
+ "html-encoding-sniffer": "^4.0.0",
+ "http-proxy-agent": "^7.0.2",
+ "https-proxy-agent": "^7.0.6",
+ "is-potential-custom-element-name": "^1.0.1",
+ "nwsapi": "^2.2.16",
+ "parse5": "^7.2.1",
+ "rrweb-cssom": "^0.8.0",
+ "saxes": "^6.0.0",
+ "symbol-tree": "^3.2.4",
+ "tough-cookie": "^5.1.1",
+ "w3c-xmlserializer": "^5.0.0",
+ "webidl-conversions": "^7.0.0",
+ "whatwg-encoding": "^3.1.1",
+ "whatwg-mimetype": "^4.0.0",
+ "whatwg-url": "^14.1.1",
+ "ws": "^8.18.0",
+ "xml-name-validator": "^5.0.0"
+ },
+ "engines": {
+ "node": ">=18"
+ },
+ "peerDependencies": {
+ "canvas": "^3.0.0"
+ },
+ "peerDependenciesMeta": {
+ "canvas": {
+ "optional": true
+ }
+ }
+ },
+ "node_modules/lodash": {
+ "version": "4.18.1",
+ "resolved": "https://registry.npmjs.org/lodash/-/lodash-4.18.1.tgz",
+ "integrity": "sha512-dMInicTPVE8d1e5otfwmmjlxkZoUpiVLwyeTdUsi/Caj/gfzzblBcCE5sRHV/AsjuCmxWrte2TNGSYuCeCq+0Q==",
+ "license": "MIT",
+ "peer": true
+ },
+ "node_modules/loose-envify": {
+ "version": "1.4.0",
+ "resolved": "https://registry.npmjs.org/loose-envify/-/loose-envify-1.4.0.tgz",
+ "integrity": "sha512-lyuxPGr/Wfhrlem2CL/UcnUc1zcqKAImBDzukY7Y5F/yQiNdko6+fRLevlw1HgMySw7f611UIY408EtxRSoK3Q==",
+ "license": "MIT",
+ "dependencies": {
+ "js-tokens": "^3.0.0 || ^4.0.0"
+ },
+ "bin": {
+ "loose-envify": "cli.js"
+ }
+ },
+ "node_modules/loupe": {
+ "version": "3.2.1",
+ "resolved": "https://registry.npmjs.org/loupe/-/loupe-3.2.1.tgz",
+ "integrity": "sha512-CdzqowRJCeLU72bHvWqwRBBlLcMEtIvGrlvef74kMnV2AolS9Y8xUv1I0U/MNAWMhBlKIoyuEgoJ0t/bbwHbLQ==",
+ "dev": true,
+ "license": "MIT"
+ },
+ "node_modules/lru-cache": {
+ "version": "10.4.3",
+ "resolved": "https://registry.npmjs.org/lru-cache/-/lru-cache-10.4.3.tgz",
+ "integrity": "sha512-JNAzZcXrCt42VGLuYz0zfAzDfAvJWW6AfYlDBQyDV5DClI2m5sAmK+OIO7s59XfsRsWHp02jAJrRadPRGTt6SQ==",
+ "dev": true,
+ "license": "ISC"
+ },
+ "node_modules/lucide-react": {
+ "version": "0.525.0",
+ "resolved": "https://registry.npmjs.org/lucide-react/-/lucide-react-0.525.0.tgz",
+ "integrity": "sha512-Tm1txJ2OkymCGkvwoHt33Y2JpN5xucVq1slHcgE6Lk0WjDfjgKWor5CdVER8U6DvcfMwh4M8XxmpTiyzfmfDYQ==",
+ "license": "ISC",
+ "peerDependencies": {
+ "react": "^16.5.1 || ^17.0.0 || ^18.0.0 || ^19.0.0"
+ }
+ },
+ "node_modules/lz-string": {
+ "version": "1.5.0",
+ "resolved": "https://registry.npmjs.org/lz-string/-/lz-string-1.5.0.tgz",
+ "integrity": "sha512-h5bgJWpxJNswbU7qCrV0tIKQCaS3blPDrqKWx+QxzuzL1zGUzij9XCWLrSLsJPu5t+eWA/ycetzYAO5IOMcWAQ==",
+ "dev": true,
+ "license": "MIT",
+ "peer": true,
+ "bin": {
+ "lz-string": "bin/bin.js"
+ }
+ },
+ "node_modules/magic-string": {
+ "version": "0.30.21",
+ "resolved": "https://registry.npmjs.org/magic-string/-/magic-string-0.30.21.tgz",
+ "integrity": "sha512-vd2F4YUyEXKGcLHoq+TEyCjxueSeHnFxyyjNp80yg0XV4vUhnDer/lvvlqM/arB5bXQN5K2/3oinyCRyx8T2CQ==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "@jridgewell/sourcemap-codec": "^1.5.5"
+ }
+ },
+ "node_modules/min-indent": {
+ "version": "1.0.1",
+ "resolved": "https://registry.npmjs.org/min-indent/-/min-indent-1.0.1.tgz",
+ "integrity": "sha512-I9jwMn07Sy/IwOj3zVkVik2JTvgpaykDZEigL6Rx6N9LbMywwUSMtxET+7lVoDLLd3O3IXwJwvuuns8UB/HeAg==",
+ "dev": true,
+ "license": "MIT",
+ "engines": {
+ "node": ">=4"
+ }
+ },
+ "node_modules/ms": {
+ "version": "2.1.3",
+ "resolved": "https://registry.npmjs.org/ms/-/ms-2.1.3.tgz",
+ "integrity": "sha512-6FlzubTLZG3J2a/NVCAleEhjzq5oxgHyaCU9yYXvcLsvoVaHJq/s5xXI6/XXP6tz7R9xAOtHnSO/tXtF3WRTlA==",
+ "dev": true,
+ "license": "MIT"
+ },
+ "node_modules/nanoid": {
+ "version": "3.3.15",
+ "resolved": "https://registry.npmjs.org/nanoid/-/nanoid-3.3.15.tgz",
+ "integrity": "sha512-y7Wygv/7mEOvxTuEQDB8StXdMRBWf1kR/tlhAzBRUFkB2jfcLOAxO/SHmOO2zgz1pVgK29/kyupn059/bCHdjA==",
+ "dev": true,
+ "funding": [
+ {
+ "type": "github",
+ "url": "https://github.com/sponsors/ai"
+ }
+ ],
+ "license": "MIT",
+ "bin": {
+ "nanoid": "bin/nanoid.cjs"
+ },
+ "engines": {
+ "node": "^10 || ^12 || ^13.7 || ^14 || >=15.0.1"
+ }
+ },
+ "node_modules/nwsapi": {
+ "version": "2.2.24",
+ "resolved": "https://registry.npmjs.org/nwsapi/-/nwsapi-2.2.24.tgz",
+ "integrity": "sha512-7YRhZ3jS45LwmSCT4b2sVFHt/WuovaktDU07QrtOBY2PXskss5a9jfmR9jptyumwXST+rFjrmppMY1KT/yn35A==",
+ "dev": true,
+ "license": "MIT"
+ },
+ "node_modules/object-assign": {
+ "version": "4.1.1",
+ "resolved": "https://registry.npmjs.org/object-assign/-/object-assign-4.1.1.tgz",
+ "integrity": "sha512-rJgTQnkUnH1sFw8yT6VSU3zD3sWmu6sZhIseY8VX+GRu3P6F7Fu+JNDoXfklElbLJSnc3FUQHVe4cU5hj+BcUg==",
+ "license": "MIT",
+ "engines": {
+ "node": ">=0.10.0"
+ }
+ },
+ "node_modules/parse5": {
+ "version": "7.3.0",
+ "resolved": "https://registry.npmjs.org/parse5/-/parse5-7.3.0.tgz",
+ "integrity": "sha512-IInvU7fabl34qmi9gY8XOVxhYyMyuH2xUNpb2q8/Y+7552KlejkRvqvD19nMoUW/uQGGbqNpA6Tufu5FL5BZgw==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "entities": "^6.0.0"
+ },
+ "funding": {
+ "url": "https://github.com/inikulin/parse5?sponsor=1"
+ }
+ },
+ "node_modules/pathe": {
+ "version": "1.1.2",
+ "resolved": "https://registry.npmjs.org/pathe/-/pathe-1.1.2.tgz",
+ "integrity": "sha512-whLdWMYL2TwI08hn8/ZqAbrVemu0LNaNNJZX73O6qaIdCTfXutsLhMkjdENX0qhsQ9uIimo4/aQOmXkoon2nDQ==",
+ "dev": true,
+ "license": "MIT"
+ },
+ "node_modules/pathval": {
+ "version": "2.0.1",
+ "resolved": "https://registry.npmjs.org/pathval/-/pathval-2.0.1.tgz",
+ "integrity": "sha512-//nshmD55c46FuFw26xV/xFAaB5HF9Xdap7HJBBnrKdAd6/GxDBaNA1870O79+9ueg61cZLSVc+OaFlfmObYVQ==",
+ "dev": true,
+ "license": "MIT",
+ "engines": {
+ "node": ">= 14.16"
+ }
+ },
+ "node_modules/picocolors": {
+ "version": "1.1.1",
+ "resolved": "https://registry.npmjs.org/picocolors/-/picocolors-1.1.1.tgz",
+ "integrity": "sha512-xceH2snhtb5M9liqDsmEw56le376mTZkEX/jEb/RxNFyegNul7eNslCXP9FDj/Lcu0X8KEyMceP2ntpaHrDEVA==",
+ "dev": true,
+ "license": "ISC"
+ },
+ "node_modules/postcss": {
+ "version": "8.5.15",
+ "resolved": "https://registry.npmjs.org/postcss/-/postcss-8.5.15.tgz",
+ "integrity": "sha512-FfR8sjd4em2T6fb3I2MwAJU7HWVMr9zba+enmQeeWFfCbm+UOC/0X4DS8XtpUTMwWMGbjKYP7xjfNekzyGmB3A==",
+ "dev": true,
+ "funding": [
+ {
+ "type": "opencollective",
+ "url": "https://opencollective.com/postcss/"
+ },
+ {
+ "type": "tidelift",
+ "url": "https://tidelift.com/funding/github/npm/postcss"
+ },
+ {
+ "type": "github",
+ "url": "https://github.com/sponsors/ai"
+ }
+ ],
+ "license": "MIT",
+ "dependencies": {
+ "nanoid": "^3.3.12",
+ "picocolors": "^1.1.1",
+ "source-map-js": "^1.2.1"
+ },
+ "engines": {
+ "node": "^10 || ^12 || >=14"
+ }
+ },
+ "node_modules/pretty-format": {
+ "version": "27.5.1",
+ "resolved": "https://registry.npmjs.org/pretty-format/-/pretty-format-27.5.1.tgz",
+ "integrity": "sha512-Qb1gy5OrP5+zDf2Bvnzdl3jsTf1qXVMazbvCoKhtKqVs4/YK4ozX4gKQJJVyNe+cajNPn0KoC0MC3FUmaHWEmQ==",
+ "dev": true,
+ "license": "MIT",
+ "peer": true,
+ "dependencies": {
+ "ansi-regex": "^5.0.1",
+ "ansi-styles": "^5.0.0",
+ "react-is": "^17.0.1"
+ },
+ "engines": {
+ "node": "^10.13.0 || ^12.13.0 || ^14.15.0 || >=15.0.0"
+ }
+ },
+ "node_modules/prop-types": {
+ "version": "15.8.1",
+ "resolved": "https://registry.npmjs.org/prop-types/-/prop-types-15.8.1.tgz",
+ "integrity": "sha512-oj87CgZICdulUohogVAR7AjlC0327U4el4L6eAvOqCeudMDVU0NThNaV+b9Df4dXgSP1gXMTnPdhfe/2qDH5cg==",
+ "license": "MIT",
+ "dependencies": {
+ "loose-envify": "^1.4.0",
+ "object-assign": "^4.1.1",
+ "react-is": "^16.13.1"
+ }
+ },
+ "node_modules/prop-types/node_modules/react-is": {
+ "version": "16.13.1",
+ "resolved": "https://registry.npmjs.org/react-is/-/react-is-16.13.1.tgz",
+ "integrity": "sha512-24e6ynE2H+OKt4kqsOvNd8kBpV65zoxbA4BVsEOB3ARVWQki/DHzaUoC5KuON/BiccDaCCTZBuOcfZs70kR8bQ==",
+ "license": "MIT"
+ },
+ "node_modules/punycode": {
+ "version": "2.3.1",
+ "resolved": "https://registry.npmjs.org/punycode/-/punycode-2.3.1.tgz",
+ "integrity": "sha512-vYt7UD1U9Wg6138shLtLOvdAu+8DsC/ilFtEVHcH+wydcSpNE20AfSOduf6MkRFahL5FY7X1oU7nKVZFtfq8Fg==",
+ "dev": true,
+ "license": "MIT",
+ "engines": {
+ "node": ">=6"
+ }
+ },
+ "node_modules/qrcode-generator": {
+ "version": "2.0.4",
+ "resolved": "https://registry.npmjs.org/qrcode-generator/-/qrcode-generator-2.0.4.tgz",
+ "integrity": "sha512-mZSiP6RnbHl4xL2Ap5HfkjLnmxfKcPWpWe/c+5XxCuetEenqmNFf1FH/ftXPCtFG5/TDobjsjz6sSNL0Sr8Z9g==",
+ "license": "MIT"
+ },
+ "node_modules/react": {
+ "version": "18.3.1",
+ "resolved": "https://registry.npmjs.org/react/-/react-18.3.1.tgz",
+ "integrity": "sha512-wS+hAgJShR0KhEvPJArfuPVN1+Hz1t0Y6n5jLrGQbkb4urgPE/0Rve+1kMB1v/oWgHgm4WIcV+i7F2pTVj+2iQ==",
+ "license": "MIT",
+ "dependencies": {
+ "loose-envify": "^1.1.0"
+ },
+ "engines": {
+ "node": ">=0.10.0"
+ }
+ },
+ "node_modules/react-dom": {
+ "version": "18.3.1",
+ "resolved": "https://registry.npmjs.org/react-dom/-/react-dom-18.3.1.tgz",
+ "integrity": "sha512-5m4nQKp+rZRb09LNH59GM4BxTh9251/ylbKIbpe7TpGxfJ+9kv6BLkLBXIjjspbgbnIBNqlI23tRnTWT0snUIw==",
+ "license": "MIT",
+ "dependencies": {
+ "loose-envify": "^1.1.0",
+ "scheduler": "^0.23.2"
+ },
+ "peerDependencies": {
+ "react": "^18.3.1"
+ }
+ },
+ "node_modules/react-is": {
+ "version": "17.0.2",
+ "resolved": "https://registry.npmjs.org/react-is/-/react-is-17.0.2.tgz",
+ "integrity": "sha512-w2GsyukL62IJnlaff/nRegPQR94C/XXamvMWmSHRJ4y7Ts/4ocGRmTHvOs8PSE6pB3dWOrD/nueuU5sduBsQ4w==",
+ "dev": true,
+ "license": "MIT",
+ "peer": true
+ },
+ "node_modules/react-qr-code": {
+ "version": "2.2.0",
+ "resolved": "https://registry.npmjs.org/react-qr-code/-/react-qr-code-2.2.0.tgz",
+ "integrity": "sha512-e5nS0UUN22K3Nf8KBRUzemfdJ6OmnN5w+kbnj1lvJaol9RyVRFeGl05bCkxSN2ZegbLxjjYjX1+mmAoX9+fAhw==",
+ "license": "MIT",
+ "dependencies": {
+ "prop-types": "^15.8.1",
+ "qrcode-generator": "^2.0.4"
+ },
+ "peerDependencies": {
+ "react": "*"
+ }
+ },
+ "node_modules/react-router": {
+ "version": "6.30.4",
+ "resolved": "https://registry.npmjs.org/react-router/-/react-router-6.30.4.tgz",
+ "integrity": "sha512-SVUsDe+DybHM/WmYKIVYhZh1o5Dcuf16yM6WjG02Q9XVFMZIJyHYhwrr6bFBXZkVP6z69kNkMyBCujt8FaFLJA==",
+ "license": "MIT",
+ "dependencies": {
+ "@remix-run/router": "1.23.3"
+ },
+ "engines": {
+ "node": ">=14.0.0"
+ },
+ "peerDependencies": {
+ "react": ">=16.8"
+ }
+ },
+ "node_modules/react-router-dom": {
+ "version": "6.30.4",
+ "resolved": "https://registry.npmjs.org/react-router-dom/-/react-router-dom-6.30.4.tgz",
+ "integrity": "sha512-q4HvNl+mmDdkS0g+MqiBZNteQJCuimWoOyHMy4T/RQLAn9Z29+E91QXRaxOujeMl2HTzRSS0KFPd7lxX3PjV0Q==",
+ "license": "MIT",
+ "dependencies": {
+ "@remix-run/router": "1.23.3",
+ "react-router": "6.30.4"
+ },
+ "engines": {
+ "node": ">=14.0.0"
+ },
+ "peerDependencies": {
+ "react": ">=16.8",
+ "react-dom": ">=16.8"
+ }
+ },
+ "node_modules/redent": {
+ "version": "3.0.0",
+ "resolved": "https://registry.npmjs.org/redent/-/redent-3.0.0.tgz",
+ "integrity": "sha512-6tDA8g98We0zd0GvVeMT9arEOnTw9qM03L9cJXaCjrip1OO764RDBLBfrB4cwzNGDj5OA5ioymC9GkizgWJDUg==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "indent-string": "^4.0.0",
+ "strip-indent": "^3.0.0"
+ },
+ "engines": {
+ "node": ">=8"
+ }
+ },
+ "node_modules/rollup": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/rollup/-/rollup-4.62.2.tgz",
+ "integrity": "sha512-RFnrW4lhXA3s3eqHDZvN654g8OTjzRfqpIRJYczCGB6HzphckVAi/Qh4tbPUbRuDi7s1Llv8g/NspLkttY3gTA==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "@types/estree": "1.0.9"
+ },
+ "bin": {
+ "rollup": "dist/bin/rollup"
+ },
+ "engines": {
+ "node": ">=18.0.0",
+ "npm": ">=8.0.0"
+ },
+ "optionalDependencies": {
+ "@rollup/rollup-android-arm-eabi": "4.62.2",
+ "@rollup/rollup-android-arm64": "4.62.2",
+ "@rollup/rollup-darwin-arm64": "4.62.2",
+ "@rollup/rollup-darwin-x64": "4.62.2",
+ "@rollup/rollup-freebsd-arm64": "4.62.2",
+ "@rollup/rollup-freebsd-x64": "4.62.2",
+ "@rollup/rollup-linux-arm-gnueabihf": "4.62.2",
+ "@rollup/rollup-linux-arm-musleabihf": "4.62.2",
+ "@rollup/rollup-linux-arm64-gnu": "4.62.2",
+ "@rollup/rollup-linux-arm64-musl": "4.62.2",
+ "@rollup/rollup-linux-loong64-gnu": "4.62.2",
+ "@rollup/rollup-linux-loong64-musl": "4.62.2",
+ "@rollup/rollup-linux-ppc64-gnu": "4.62.2",
+ "@rollup/rollup-linux-ppc64-musl": "4.62.2",
+ "@rollup/rollup-linux-riscv64-gnu": "4.62.2",
+ "@rollup/rollup-linux-riscv64-musl": "4.62.2",
+ "@rollup/rollup-linux-s390x-gnu": "4.62.2",
+ "@rollup/rollup-linux-x64-gnu": "4.62.2",
+ "@rollup/rollup-linux-x64-musl": "4.62.2",
+ "@rollup/rollup-openbsd-x64": "4.62.2",
+ "@rollup/rollup-openharmony-arm64": "4.62.2",
+ "@rollup/rollup-win32-arm64-msvc": "4.62.2",
+ "@rollup/rollup-win32-ia32-msvc": "4.62.2",
+ "@rollup/rollup-win32-x64-gnu": "4.62.2",
+ "@rollup/rollup-win32-x64-msvc": "4.62.2",
+ "fsevents": "~2.3.2"
+ }
+ },
+ "node_modules/rrweb-cssom": {
+ "version": "0.8.0",
+ "resolved": "https://registry.npmjs.org/rrweb-cssom/-/rrweb-cssom-0.8.0.tgz",
+ "integrity": "sha512-guoltQEx+9aMf2gDZ0s62EcV8lsXR+0w8915TC3ITdn2YueuNjdAYh/levpU9nFaoChh9RUS5ZdQMrKfVEN9tw==",
+ "dev": true,
+ "license": "MIT"
+ },
+ "node_modules/safer-buffer": {
+ "version": "2.1.2",
+ "resolved": "https://registry.npmjs.org/safer-buffer/-/safer-buffer-2.1.2.tgz",
+ "integrity": "sha512-YZo3K82SD7Riyi0E1EQPojLz7kpepnSQI9IyPbHHg1XXXevb5dJI7tpyN2ADxGcQbHG7vcyRHk0cbwqcQriUtg==",
+ "dev": true,
+ "license": "MIT"
+ },
+ "node_modules/saxes": {
+ "version": "6.0.0",
+ "resolved": "https://registry.npmjs.org/saxes/-/saxes-6.0.0.tgz",
+ "integrity": "sha512-xAg7SOnEhrm5zI3puOOKyy1OMcMlIJZYNJY7xLBwSze0UjhPLnWfj2GF2EpT0jmzaJKIWKHLsaSSajf35bcYnA==",
+ "dev": true,
+ "license": "ISC",
+ "dependencies": {
+ "xmlchars": "^2.2.0"
+ },
+ "engines": {
+ "node": ">=v12.22.7"
+ }
+ },
+ "node_modules/scheduler": {
+ "version": "0.23.2",
+ "resolved": "https://registry.npmjs.org/scheduler/-/scheduler-0.23.2.tgz",
+ "integrity": "sha512-UOShsPwz7NrMUqhR6t0hWjFduvOzbtv7toDH1/hIrfRNIDBnnBWd0CwJTGvTpngVlmwGCdP9/Zl/tVrDqcuYzQ==",
+ "license": "MIT",
+ "dependencies": {
+ "loose-envify": "^1.1.0"
+ }
+ },
+ "node_modules/siginfo": {
+ "version": "2.0.0",
+ "resolved": "https://registry.npmjs.org/siginfo/-/siginfo-2.0.0.tgz",
+ "integrity": "sha512-ybx0WO1/8bSBLEWXZvEd7gMW3Sn3JFlW3TvX1nREbDLRNQNaeNN8WK0meBwPdAaOI7TtRRRJn/Es1zhrrCHu7g==",
+ "dev": true,
+ "license": "ISC"
+ },
+ "node_modules/source-map-js": {
+ "version": "1.2.1",
+ "resolved": "https://registry.npmjs.org/source-map-js/-/source-map-js-1.2.1.tgz",
+ "integrity": "sha512-UXWMKhLOwVKb728IUtQPXxfYU+usdybtUrK/8uGE8CQMvrhOpwvzDBwj0QhSL7MQc7vIsISBG8VQ8+IDQxpfQA==",
+ "dev": true,
+ "license": "BSD-3-Clause",
+ "engines": {
+ "node": ">=0.10.0"
+ }
+ },
+ "node_modules/stackback": {
+ "version": "0.0.2",
+ "resolved": "https://registry.npmjs.org/stackback/-/stackback-0.0.2.tgz",
+ "integrity": "sha512-1XMJE5fQo1jGH6Y/7ebnwPOBEkIEnT4QF32d5R1+VXdXveM0IBMJt8zfaxX1P3QhVwrYe+576+jkANtSS2mBbw==",
+ "dev": true,
+ "license": "MIT"
+ },
+ "node_modules/std-env": {
+ "version": "3.10.0",
+ "resolved": "https://registry.npmjs.org/std-env/-/std-env-3.10.0.tgz",
+ "integrity": "sha512-5GS12FdOZNliM5mAOxFRg7Ir0pWz8MdpYm6AY6VPkGpbA7ZzmbzNcBJQ0GPvvyWgcY7QAhCgf9Uy89I03faLkg==",
+ "dev": true,
+ "license": "MIT"
+ },
+ "node_modules/strip-indent": {
+ "version": "3.0.0",
+ "resolved": "https://registry.npmjs.org/strip-indent/-/strip-indent-3.0.0.tgz",
+ "integrity": "sha512-laJTa3Jb+VQpaC6DseHhF7dXVqHTfJPCRDaEbid/drOhgitgYku/letMUqOXFoWV0zIIUbjpdH2t+tYj4bQMRQ==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "min-indent": "^1.0.0"
+ },
+ "engines": {
+ "node": ">=8"
+ }
+ },
+ "node_modules/supertokens-auth-react": {
+ "version": "0.51.2",
+ "resolved": "https://registry.npmjs.org/supertokens-auth-react/-/supertokens-auth-react-0.51.2.tgz",
+ "integrity": "sha512-nOFPqY2OHTZ0CaKDc88V7GxA780jmmu1jJ+KoNk1WW4KOiPMVPXSbJIbAnME9KByXeUkO1ZsEBk2c1xmDZUFzQ==",
+ "license": "Apache-2.0",
+ "dependencies": {
+ "@simplewebauthn/types": "^12.0.0",
+ "intl-tel-input": "^17.0.19",
+ "prop-types": "*",
+ "react-qr-code": "^2.0.18",
+ "supertokens-js-override": "^0.0.4"
+ },
+ "engines": {
+ "node": ">=16.0.0",
+ "npm": ">=8"
+ },
+ "peerDependencies": {
+ "react": ">=16.8.0",
+ "react-dom": ">=16.8.0",
+ "supertokens-web-js": "^0.16.0"
+ }
+ },
+ "node_modules/supertokens-js-override": {
+ "version": "0.0.4",
+ "resolved": "https://registry.npmjs.org/supertokens-js-override/-/supertokens-js-override-0.0.4.tgz",
+ "integrity": "sha512-r0JFBjkMIdep3Lbk3JA+MpnpuOtw4RSyrlRAbrzMcxwiYco3GFWl/daimQZ5b1forOiUODpOlXbSOljP/oyurg==",
+ "license": "Apache-2.0"
+ },
+ "node_modules/supertokens-web-js": {
+ "version": "0.16.0",
+ "resolved": "https://registry.npmjs.org/supertokens-web-js/-/supertokens-web-js-0.16.0.tgz",
+ "integrity": "sha512-wuIdlVJtOsx4ZX0kCyl8lxmmAodXLlMAniZEHyVhsH2fhersh7bMrHpvgN9WoC470HYNC22qpHdlJngvyh/cSA==",
+ "license": "Apache-2.0",
+ "peer": true,
+ "dependencies": {
+ "@simplewebauthn/browser": "^13.0.0",
+ "supertokens-js-override": "0.0.4",
+ "supertokens-website": "^20.1.5"
+ }
+ },
+ "node_modules/supertokens-website": {
+ "version": "20.1.6",
+ "resolved": "https://registry.npmjs.org/supertokens-website/-/supertokens-website-20.1.6.tgz",
+ "integrity": "sha512-WSehco2PsrFp4WY7h6tDutYyi2nPgJS8lahUadcL/cpBqgEuZ3pjnvN1NDASSNSTfXeO1smm3HrvvLZG5C7qHA==",
+ "license": "Apache-2.0",
+ "peer": true,
+ "dependencies": {
+ "browser-tabs-lock": "^1.3.0",
+ "supertokens-js-override": "^0.0.4"
+ }
+ },
+ "node_modules/symbol-tree": {
+ "version": "3.2.4",
+ "resolved": "https://registry.npmjs.org/symbol-tree/-/symbol-tree-3.2.4.tgz",
+ "integrity": "sha512-9QNk5KwDF+Bvz+PyObkmSYjI5ksVUYtjW7AU22r2NKcfLJcXp96hkDWU3+XndOsUb+AQ9QhfzfCT2O+CNWT5Tw==",
+ "dev": true,
+ "license": "MIT"
+ },
+ "node_modules/tinybench": {
+ "version": "2.9.0",
+ "resolved": "https://registry.npmjs.org/tinybench/-/tinybench-2.9.0.tgz",
+ "integrity": "sha512-0+DUvqWMValLmha6lr4kD8iAMK1HzV0/aKnCtWb9v9641TnP/MFb7Pc2bxoxQjTXAErryXVgUOfv2YqNllqGeg==",
+ "dev": true,
+ "license": "MIT"
+ },
+ "node_modules/tinyexec": {
+ "version": "0.3.2",
+ "resolved": "https://registry.npmjs.org/tinyexec/-/tinyexec-0.3.2.tgz",
+ "integrity": "sha512-KQQR9yN7R5+OSwaK0XQoj22pwHoTlgYqmUscPYoknOoWCWfj/5/ABTMRi69FrKU5ffPVh5QcFikpWJI/P1ocHA==",
+ "dev": true,
+ "license": "MIT"
+ },
+ "node_modules/tinypool": {
+ "version": "1.1.1",
+ "resolved": "https://registry.npmjs.org/tinypool/-/tinypool-1.1.1.tgz",
+ "integrity": "sha512-Zba82s87IFq9A9XmjiX5uZA/ARWDrB03OHlq+Vw1fSdt0I+4/Kutwy8BP4Y/y/aORMo61FQ0vIb5j44vSo5Pkg==",
+ "dev": true,
+ "license": "MIT",
+ "engines": {
+ "node": "^18.0.0 || >=20.0.0"
+ }
+ },
+ "node_modules/tinyrainbow": {
+ "version": "1.2.0",
+ "resolved": "https://registry.npmjs.org/tinyrainbow/-/tinyrainbow-1.2.0.tgz",
+ "integrity": "sha512-weEDEq7Z5eTHPDh4xjX789+fHfF+P8boiFB+0vbWzpbnbsEr/GRaohi/uMKxg8RZMXnl1ItAi/IUHWMsjDV7kQ==",
+ "dev": true,
+ "license": "MIT",
+ "engines": {
+ "node": ">=14.0.0"
+ }
+ },
+ "node_modules/tinyspy": {
+ "version": "3.0.2",
+ "resolved": "https://registry.npmjs.org/tinyspy/-/tinyspy-3.0.2.tgz",
+ "integrity": "sha512-n1cw8k1k0x4pgA2+9XrOkFydTerNcJ1zWCO5Nn9scWHTD+5tp8dghT2x1uduQePZTZgd3Tupf+x9BxJjeJi77Q==",
+ "dev": true,
+ "license": "MIT",
+ "engines": {
+ "node": ">=14.0.0"
+ }
+ },
+ "node_modules/tldts": {
+ "version": "6.1.86",
+ "resolved": "https://registry.npmjs.org/tldts/-/tldts-6.1.86.tgz",
+ "integrity": "sha512-WMi/OQ2axVTf/ykqCQgXiIct+mSQDFdH2fkwhPwgEwvJ1kSzZRiinb0zF2Xb8u4+OqPChmyI6MEu4EezNJz+FQ==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "tldts-core": "^6.1.86"
+ },
+ "bin": {
+ "tldts": "bin/cli.js"
+ }
+ },
+ "node_modules/tldts-core": {
+ "version": "6.1.86",
+ "resolved": "https://registry.npmjs.org/tldts-core/-/tldts-core-6.1.86.tgz",
+ "integrity": "sha512-Je6p7pkk+KMzMv2XXKmAE3McmolOQFdxkKw0R8EYNr7sELW46JqnNeTX8ybPiQgvg1ymCoF8LXs5fzFaZvJPTA==",
+ "dev": true,
+ "license": "MIT"
+ },
+ "node_modules/tough-cookie": {
+ "version": "5.1.2",
+ "resolved": "https://registry.npmjs.org/tough-cookie/-/tough-cookie-5.1.2.tgz",
+ "integrity": "sha512-FVDYdxtnj0G6Qm/DhNPSb8Ju59ULcup3tuJxkFb5K8Bv2pUXILbf0xZWU8PX8Ov19OXljbUyveOFwRMwkXzO+A==",
+ "dev": true,
+ "license": "BSD-3-Clause",
+ "dependencies": {
+ "tldts": "^6.1.32"
+ },
+ "engines": {
+ "node": ">=16"
+ }
+ },
+ "node_modules/tr46": {
+ "version": "5.1.1",
+ "resolved": "https://registry.npmjs.org/tr46/-/tr46-5.1.1.tgz",
+ "integrity": "sha512-hdF5ZgjTqgAntKkklYw0R03MG2x/bSzTtkxmIRw/sTNV8YXsCJ1tfLAX23lhxhHJlEf3CRCOCGGWw3vI3GaSPw==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "punycode": "^2.3.1"
+ },
+ "engines": {
+ "node": ">=18"
+ }
+ },
+ "node_modules/typescript": {
+ "version": "5.9.3",
+ "resolved": "https://registry.npmjs.org/typescript/-/typescript-5.9.3.tgz",
+ "integrity": "sha512-jl1vZzPDinLr9eUt3J/t7V6FgNEw9QjvBPdysz9KfQDD41fQrC2Y4vKQdiaUpFT4bXlb1RHhLpp8wtm6M5TgSw==",
+ "dev": true,
+ "license": "Apache-2.0",
+ "bin": {
+ "tsc": "bin/tsc",
+ "tsserver": "bin/tsserver"
+ },
+ "engines": {
+ "node": ">=14.17"
+ }
+ },
+ "node_modules/undici-types": {
+ "version": "7.18.2",
+ "resolved": "https://registry.npmjs.org/undici-types/-/undici-types-7.18.2.tgz",
+ "integrity": "sha512-AsuCzffGHJybSaRrmr5eHr81mwJU3kjw6M+uprWvCXiNeN9SOGwQ3Jn8jb8m3Z6izVgknn1R0FTCEAP2QrLY/w==",
+ "dev": true,
+ "license": "MIT"
+ },
+ "node_modules/vite": {
+ "version": "5.4.21",
+ "resolved": "https://registry.npmjs.org/vite/-/vite-5.4.21.tgz",
+ "integrity": "sha512-o5a9xKjbtuhY6Bi5S3+HvbRERmouabWbyUcpXXUA1u+GNUKoROi9byOJ8M0nHbHYHkYICiMlqxkg1KkYmm25Sw==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "esbuild": "^0.21.3",
+ "postcss": "^8.4.43",
+ "rollup": "^4.20.0"
+ },
+ "bin": {
+ "vite": "bin/vite.js"
+ },
+ "engines": {
+ "node": "^18.0.0 || >=20.0.0"
+ },
+ "funding": {
+ "url": "https://github.com/vitejs/vite?sponsor=1"
+ },
+ "optionalDependencies": {
+ "fsevents": "~2.3.3"
+ },
+ "peerDependencies": {
+ "@types/node": "^18.0.0 || >=20.0.0",
+ "less": "*",
+ "lightningcss": "^1.21.0",
+ "sass": "*",
+ "sass-embedded": "*",
+ "stylus": "*",
+ "sugarss": "*",
+ "terser": "^5.4.0"
+ },
+ "peerDependenciesMeta": {
+ "@types/node": {
+ "optional": true
+ },
+ "less": {
+ "optional": true
+ },
+ "lightningcss": {
+ "optional": true
+ },
+ "sass": {
+ "optional": true
+ },
+ "sass-embedded": {
+ "optional": true
+ },
+ "stylus": {
+ "optional": true
+ },
+ "sugarss": {
+ "optional": true
+ },
+ "terser": {
+ "optional": true
+ }
+ }
+ },
+ "node_modules/vite-node": {
+ "version": "2.1.9",
+ "resolved": "https://registry.npmjs.org/vite-node/-/vite-node-2.1.9.tgz",
+ "integrity": "sha512-AM9aQ/IPrW/6ENLQg3AGY4K1N2TGZdR5e4gu/MmmR2xR3Ll1+dib+nook92g4TV3PXVyeyxdWwtaCAiUL0hMxA==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "cac": "^6.7.14",
+ "debug": "^4.3.7",
+ "es-module-lexer": "^1.5.4",
+ "pathe": "^1.1.2",
+ "vite": "^5.0.0"
+ },
+ "bin": {
+ "vite-node": "vite-node.mjs"
+ },
+ "engines": {
+ "node": "^18.0.0 || >=20.0.0"
+ },
+ "funding": {
+ "url": "https://opencollective.com/vitest"
+ }
+ },
+ "node_modules/vitest": {
+ "version": "2.1.9",
+ "resolved": "https://registry.npmjs.org/vitest/-/vitest-2.1.9.tgz",
+ "integrity": "sha512-MSmPM9REYqDGBI8439mA4mWhV5sKmDlBKWIYbA3lRb2PTHACE0mgKwA8yQ2xq9vxDTuk4iPrECBAEW2aoFXY0Q==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "@vitest/expect": "2.1.9",
+ "@vitest/mocker": "2.1.9",
+ "@vitest/pretty-format": "^2.1.9",
+ "@vitest/runner": "2.1.9",
+ "@vitest/snapshot": "2.1.9",
+ "@vitest/spy": "2.1.9",
+ "@vitest/utils": "2.1.9",
+ "chai": "^5.1.2",
+ "debug": "^4.3.7",
+ "expect-type": "^1.1.0",
+ "magic-string": "^0.30.12",
+ "pathe": "^1.1.2",
+ "std-env": "^3.8.0",
+ "tinybench": "^2.9.0",
+ "tinyexec": "^0.3.1",
+ "tinypool": "^1.0.1",
+ "tinyrainbow": "^1.2.0",
+ "vite": "^5.0.0",
+ "vite-node": "2.1.9",
+ "why-is-node-running": "^2.3.0"
+ },
+ "bin": {
+ "vitest": "vitest.mjs"
+ },
+ "engines": {
+ "node": "^18.0.0 || >=20.0.0"
+ },
+ "funding": {
+ "url": "https://opencollective.com/vitest"
+ },
+ "peerDependencies": {
+ "@edge-runtime/vm": "*",
+ "@types/node": "^18.0.0 || >=20.0.0",
+ "@vitest/browser": "2.1.9",
+ "@vitest/ui": "2.1.9",
+ "happy-dom": "*",
+ "jsdom": "*"
+ },
+ "peerDependenciesMeta": {
+ "@edge-runtime/vm": {
+ "optional": true
+ },
+ "@types/node": {
+ "optional": true
+ },
+ "@vitest/browser": {
+ "optional": true
+ },
+ "@vitest/ui": {
+ "optional": true
+ },
+ "happy-dom": {
+ "optional": true
+ },
+ "jsdom": {
+ "optional": true
+ }
+ }
+ },
+ "node_modules/w3c-xmlserializer": {
+ "version": "5.0.0",
+ "resolved": "https://registry.npmjs.org/w3c-xmlserializer/-/w3c-xmlserializer-5.0.0.tgz",
+ "integrity": "sha512-o8qghlI8NZHU1lLPrpi2+Uq7abh4GGPpYANlalzWxyWteJOCsr/P+oPBA49TOLu5FTZO4d3F9MnWJfiMo4BkmA==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "xml-name-validator": "^5.0.0"
+ },
+ "engines": {
+ "node": ">=18"
+ }
+ },
+ "node_modules/webidl-conversions": {
+ "version": "7.0.0",
+ "resolved": "https://registry.npmjs.org/webidl-conversions/-/webidl-conversions-7.0.0.tgz",
+ "integrity": "sha512-VwddBukDzu71offAQR975unBIGqfKZpM+8ZX6ySk8nYhVoo5CYaZyzt3YBvYtRtO+aoGlqxPg/B87NGVZ/fu6g==",
+ "dev": true,
+ "license": "BSD-2-Clause",
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/whatwg-encoding": {
+ "version": "3.1.1",
+ "resolved": "https://registry.npmjs.org/whatwg-encoding/-/whatwg-encoding-3.1.1.tgz",
+ "integrity": "sha512-6qN4hJdMwfYBtE3YBTTHhoeuUrDBPZmbQaxWAqSALV/MeEnR5z1xd8UKud2RAkFoPkmB+hli1TZSnyi84xz1vQ==",
+ "deprecated": "Use @exodus/bytes instead for a more spec-conformant and faster implementation",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "iconv-lite": "0.6.3"
+ },
+ "engines": {
+ "node": ">=18"
+ }
+ },
+ "node_modules/whatwg-mimetype": {
+ "version": "4.0.0",
+ "resolved": "https://registry.npmjs.org/whatwg-mimetype/-/whatwg-mimetype-4.0.0.tgz",
+ "integrity": "sha512-QaKxh0eNIi2mE9p2vEdzfagOKHCcj1pJ56EEHGQOVxp8r9/iszLUUV7v89x9O1p/T+NlTM5W7jW6+cz4Fq1YVg==",
+ "dev": true,
+ "license": "MIT",
+ "engines": {
+ "node": ">=18"
+ }
+ },
+ "node_modules/whatwg-url": {
+ "version": "14.2.0",
+ "resolved": "https://registry.npmjs.org/whatwg-url/-/whatwg-url-14.2.0.tgz",
+ "integrity": "sha512-De72GdQZzNTUBBChsXueQUnPKDkg/5A5zp7pFDuQAj5UFoENpiACU0wlCvzpAGnTkj++ihpKwKyYewn/XNUbKw==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "tr46": "^5.1.0",
+ "webidl-conversions": "^7.0.0"
+ },
+ "engines": {
+ "node": ">=18"
+ }
+ },
+ "node_modules/why-is-node-running": {
+ "version": "2.3.0",
+ "resolved": "https://registry.npmjs.org/why-is-node-running/-/why-is-node-running-2.3.0.tgz",
+ "integrity": "sha512-hUrmaWBdVDcxvYqnyh09zunKzROWjbZTiNy8dBEjkS7ehEDQibXJ7XvlmtbwuTclUiIyN+CyXQD4Vmko8fNm8w==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "siginfo": "^2.0.0",
+ "stackback": "0.0.2"
+ },
+ "bin": {
+ "why-is-node-running": "cli.js"
+ },
+ "engines": {
+ "node": ">=8"
+ }
+ },
+ "node_modules/ws": {
+ "version": "8.21.0",
+ "resolved": "https://registry.npmjs.org/ws/-/ws-8.21.0.tgz",
+ "integrity": "sha512-Vsp28b7DRcimFQvrqu2Wek3z1iYxDCWqHYB8Qsnk/S4RfaCQzPGPyBNuVjJV3cd6UiKtUtp6sNM77gWvzcCH+g==",
+ "dev": true,
+ "license": "MIT",
+ "engines": {
+ "node": ">=10.0.0"
+ },
+ "peerDependencies": {
+ "bufferutil": "^4.0.1",
+ "utf-8-validate": ">=5.0.2"
+ },
+ "peerDependenciesMeta": {
+ "bufferutil": {
+ "optional": true
+ },
+ "utf-8-validate": {
+ "optional": true
+ }
+ }
+ },
+ "node_modules/xml-name-validator": {
+ "version": "5.0.0",
+ "resolved": "https://registry.npmjs.org/xml-name-validator/-/xml-name-validator-5.0.0.tgz",
+ "integrity": "sha512-EvGK8EJ3DhaHfbRlETOWAS5pO9MZITeauHKJyb8wyajUfQUenkIg2MvLDTZ4T/TgIcm3HU0TFBgWWboAZ30UHg==",
+ "dev": true,
+ "license": "Apache-2.0",
+ "engines": {
+ "node": ">=18"
+ }
+ },
+ "node_modules/xmlchars": {
+ "version": "2.2.0",
+ "resolved": "https://registry.npmjs.org/xmlchars/-/xmlchars-2.2.0.tgz",
+ "integrity": "sha512-JZnDKK8B0RCDw84FNdDAIpZK+JuJw+s7Lz8nksI7SIuU3UXJJslUthsi+uWBUYOwPFwW7W7PRLRfUKpxjtjFCw==",
+ "dev": true,
+ "license": "MIT"
+ }
+ }
+}
diff --git a/website/package.json b/website/package.json
new file mode 100644
index 0000000..7c89cd0
--- /dev/null
+++ b/website/package.json
@@ -0,0 +1,35 @@
+{
+ "name": "hypertwist-website",
+ "version": "1.0.0",
+ "description": "HyperTwist public website, auth, dashboard, pricing, and download surface.",
+ "private": true,
+ "type": "module",
+ "scripts": {
+ "dev": "vite",
+ "build": "tsc && vite build",
+ "preview": "vite preview",
+ "type-check": "tsc --noEmit",
+ "test": "vitest run"
+ },
+ "dependencies": {
+ "@tanstack/react-query": "^5.83.0",
+ "lucide-react": "^0.525.0",
+ "react": "^18.3.1",
+ "react-dom": "^18.3.1",
+ "react-router-dom": "^6.30.1",
+ "supertokens-auth-react": "^0.51.2"
+ },
+ "devDependencies": {
+ "@testing-library/jest-dom": "^6.6.3",
+ "@testing-library/react": "^16.3.0",
+ "@testing-library/user-event": "^14.6.1",
+ "@types/node": "^24.0.14",
+ "@types/react": "^18.3.23",
+ "@types/react-dom": "^18.3.7",
+ "@vitejs/plugin-react-swc": "^3.11.0",
+ "jsdom": "^26.1.0",
+ "typescript": "^5.8.3",
+ "vite": "^5.4.19",
+ "vitest": "^2.1.8"
+ }
+}
diff --git a/website/public/branding/hypertwist-3d-symbol.png b/website/public/branding/hypertwist-3d-symbol.png
new file mode 100644
index 0000000..79ee3aa
Binary files /dev/null and b/website/public/branding/hypertwist-3d-symbol.png differ
diff --git a/website/server/.env.example b/website/server/.env.example
new file mode 100644
index 0000000..9ef8620
--- /dev/null
+++ b/website/server/.env.example
@@ -0,0 +1,21 @@
+PORT=3001
+SUPERTOKENS_CORE_URI=http://localhost:3567
+API_DOMAIN=http://localhost:3001
+WEBSITE_DOMAIN=http://localhost:4273
+API_BASE_PATH=/auth
+WEBSITE_BASE_PATH=/auth
+COOKIE_SECURE=false
+GITHUB_CLIENT_ID=
+GITHUB_CLIENT_SECRET=
+GOOGLE_CLIENT_ID=
+GOOGLE_CLIENT_SECRET=
+DEFAULT_PLAN=free
+DEFAULT_ROLE=operator
+SUPERTOKENS_HEALTH_TIMEOUT_MS=2000
+DESKTOP_LINK_RATE_LIMIT_MAX=5
+DESKTOP_LINK_RATE_LIMIT_WINDOW_MS=900000
+PADDLE_WEBHOOK_SECRET=
+PADDLE_WEBHOOK_TOLERANCE_MS=5000
+BILLING_STATE_PATH=
+PADDLE_PRODUCT_PLAN_MAP=
+PADDLE_PRICE_PLAN_MAP=
diff --git a/website/server/README.md b/website/server/README.md
new file mode 100644
index 0000000..0cede81
--- /dev/null
+++ b/website/server/README.md
@@ -0,0 +1,63 @@
+# HyperTwist Auth Server
+
+Self-hosted SuperTokens auth backend for the HyperTwist website.
+
+Responsibilities:
+
+- email/password sign-up and sign-in
+- optional GitHub and Google OAuth
+- session bootstrap for the browser dashboard
+- browser-to-desktop token handoff with exact-origin checks, bounded issuance, and one-time verification tokens
+- Paddle webhook endpoint with raw-body signature verification
+- verified billing-event application into first-party account/download entitlement state
+- public auth-health probe for the website with configured vs reachable core truth
+
+## Quick start
+
+```bash
+cd /home/dev/src/HyperTwist/website/server
+npm install
+cp .env.example .env
+npm run dev
+```
+
+The website frontend should point at this backend through:
+
+```bash
+VITE_SUPERTOKENS_API_DOMAIN=http://localhost:3001
+VITE_SUPERTOKENS_WEBSITE_DOMAIN=http://localhost:4273
+VITE_AUTH_API_BASE_URL=http://localhost:3001
+```
+
+## Important note
+
+`/api/billing/paddle/webhook` now verifies the `Paddle-Signature` header
+against `PADDLE_WEBHOOK_SECRET` using the documented raw-body `ts:h1`
+HMAC-SHA256 flow before it accepts the event.
+
+The desktop-link lane is intentionally stricter than a generic session helper:
+
+- request origin must match the configured website origin exactly
+- token issuance is rate-limited per user
+- verification consumes the token on first successful use
+- verification now returns resolved download-entitlement posture alongside identity, plan, and role
+
+The remaining Paddle deployment work is now configuration, not missing server
+ownership:
+
+- real production checkout URLs
+- live notification-destination secret management
+- event-specific async processing after verification
+
+The server now also supports a small first-party entitlement store:
+
+- `BILLING_STATE_PATH` optionally relocates the persisted billing state file
+- `PADDLE_PRODUCT_PLAN_MAP` can map Paddle product IDs to `free` / `operator` / `studio` / `enterprise`
+- `PADDLE_PRICE_PLAN_MAP` can map Paddle price IDs to the same plan codes
+- if neither map is present, the verified webhook lane can still derive plan from `custom_data.plan`
+
+The auth-health route now probes the configured SuperTokens core non-mutatively:
+
+- `SUPERTOKENS_HEALTH_TIMEOUT_MS` bounds the probe duration
+- `/api/auth/health` now distinguishes configured, reachable, and ready state
+- the protected dashboard can now show when browser fallback posture is active because the shared auth core is unreachable
diff --git a/website/server/package-lock.json b/website/server/package-lock.json
new file mode 100644
index 0000000..8e08112
--- /dev/null
+++ b/website/server/package-lock.json
@@ -0,0 +1,3595 @@
+{
+ "name": "hypertwist-auth-server",
+ "version": "1.0.0",
+ "lockfileVersion": 3,
+ "requires": true,
+ "packages": {
+ "": {
+ "name": "hypertwist-auth-server",
+ "version": "1.0.0",
+ "dependencies": {
+ "cookie-parser": "^1.4.7",
+ "cors": "^2.8.5",
+ "dotenv": "^16.4.7",
+ "express": "^4.21.2",
+ "supertokens-node": "^21.1.0"
+ },
+ "devDependencies": {
+ "@types/cookie-parser": "^1.4.8",
+ "@types/cors": "^2.8.17",
+ "@types/express": "^4.17.21",
+ "@types/node": "^24.0.14",
+ "tsx": "^4.19.2",
+ "typescript": "^5.8.3",
+ "vitest": "^2.1.8"
+ }
+ },
+ "node_modules/@esbuild/aix-ppc64": {
+ "version": "0.28.1",
+ "resolved": "https://registry.npmjs.org/@esbuild/aix-ppc64/-/aix-ppc64-0.28.1.tgz",
+ "integrity": "sha512-Svl7tq8k/08+p6CXPpRjQ1fKX+1odH/BQbb48fV6fj3CWHhsoIOoY87w1oHXm0qEpkIK3ZfVgp0hed3XBXzXMQ==",
+ "cpu": [
+ "ppc64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "aix"
+ ],
+ "engines": {
+ "node": ">=18"
+ }
+ },
+ "node_modules/@esbuild/android-arm": {
+ "version": "0.28.1",
+ "resolved": "https://registry.npmjs.org/@esbuild/android-arm/-/android-arm-0.28.1.tgz",
+ "integrity": "sha512-0k2F129Xdio1TdJfzJ8sy1Q47vUD2NnwdhiAf7drUN1EBTfPf4hsFCtmMgu/6m8JSzsBrlmVjudMBQqOfG8usQ==",
+ "cpu": [
+ "arm"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "android"
+ ],
+ "engines": {
+ "node": ">=18"
+ }
+ },
+ "node_modules/@esbuild/android-arm64": {
+ "version": "0.28.1",
+ "resolved": "https://registry.npmjs.org/@esbuild/android-arm64/-/android-arm64-0.28.1.tgz",
+ "integrity": "sha512-34EGEbCIAgosYz6goLcopX6Mo7NyGv9tfwEM2/7Ce2VcVRk568iSvniGWcUXIy7wEDR1wzolcxcriFVrWYcwBg==",
+ "cpu": [
+ "arm64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "android"
+ ],
+ "engines": {
+ "node": ">=18"
+ }
+ },
+ "node_modules/@esbuild/android-x64": {
+ "version": "0.28.1",
+ "resolved": "https://registry.npmjs.org/@esbuild/android-x64/-/android-x64-0.28.1.tgz",
+ "integrity": "sha512-dbwY7ltSMDWsRatcRpCnES4F+im88OCUgGZjy52shC7GqHRE/cYlxNbB4Z4UpJswpcc4Qxd2oE/ufM0p61IKng==",
+ "cpu": [
+ "x64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "android"
+ ],
+ "engines": {
+ "node": ">=18"
+ }
+ },
+ "node_modules/@esbuild/darwin-arm64": {
+ "version": "0.28.1",
+ "resolved": "https://registry.npmjs.org/@esbuild/darwin-arm64/-/darwin-arm64-0.28.1.tgz",
+ "integrity": "sha512-TZbWkQY7kvTAXbXUT7uVACR5cMHsDiSz9z7ZKAX/RTq/WJEk3QyRr0wZpNhBDX+/0CtdqUIJlOiodQcta6tY3Q==",
+ "cpu": [
+ "arm64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "darwin"
+ ],
+ "engines": {
+ "node": ">=18"
+ }
+ },
+ "node_modules/@esbuild/darwin-x64": {
+ "version": "0.28.1",
+ "resolved": "https://registry.npmjs.org/@esbuild/darwin-x64/-/darwin-x64-0.28.1.tgz",
+ "integrity": "sha512-zfdzgK9ACBNZLI/CyHTOx81SyNbM6YXn7rxSgX97VjyiPl9W1i4Ka4fgKECEoFCKGpvBj5qArWIGgQjOwkgskQ==",
+ "cpu": [
+ "x64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "darwin"
+ ],
+ "engines": {
+ "node": ">=18"
+ }
+ },
+ "node_modules/@esbuild/freebsd-arm64": {
+ "version": "0.28.1",
+ "resolved": "https://registry.npmjs.org/@esbuild/freebsd-arm64/-/freebsd-arm64-0.28.1.tgz",
+ "integrity": "sha512-wG2EA8ENdEI0qhkSZMjfqrdY+ziCYCPMmtZjjIwOmXFjmyzEHn+UUxk5of+SYsjtfs3VpnlC7QLzSI5hY/rOAw==",
+ "cpu": [
+ "arm64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "freebsd"
+ ],
+ "engines": {
+ "node": ">=18"
+ }
+ },
+ "node_modules/@esbuild/freebsd-x64": {
+ "version": "0.28.1",
+ "resolved": "https://registry.npmjs.org/@esbuild/freebsd-x64/-/freebsd-x64-0.28.1.tgz",
+ "integrity": "sha512-i7dZ9vQgnvSCzi/rYCXNgtF/U+eKZNJBzu3eTQbRgHnM7tNSizLOkRFAl3qzVc/Op/u5YkHHa4pf/3DOYHthLQ==",
+ "cpu": [
+ "x64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "freebsd"
+ ],
+ "engines": {
+ "node": ">=18"
+ }
+ },
+ "node_modules/@esbuild/linux-arm": {
+ "version": "0.28.1",
+ "resolved": "https://registry.npmjs.org/@esbuild/linux-arm/-/linux-arm-0.28.1.tgz",
+ "integrity": "sha512-qVXBOHQS+d5Y722GwJzJUtOLlX7km3CraOaGormF1pDtPd2C/l1SHRPgjLunLGe51Sh5YYWKMFDyV4SxgMQYTQ==",
+ "cpu": [
+ "arm"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ],
+ "engines": {
+ "node": ">=18"
+ }
+ },
+ "node_modules/@esbuild/linux-arm64": {
+ "version": "0.28.1",
+ "resolved": "https://registry.npmjs.org/@esbuild/linux-arm64/-/linux-arm64-0.28.1.tgz",
+ "integrity": "sha512-yHs+0uc8+nvEAfAfxrWQKK5peSNzBc4PegcMO0EJ2hT71uA7vB8Ihg2e77R2P7SG5uYjPbHlLLmve4LLLRCf0g==",
+ "cpu": [
+ "arm64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ],
+ "engines": {
+ "node": ">=18"
+ }
+ },
+ "node_modules/@esbuild/linux-ia32": {
+ "version": "0.28.1",
+ "resolved": "https://registry.npmjs.org/@esbuild/linux-ia32/-/linux-ia32-0.28.1.tgz",
+ "integrity": "sha512-d1z4ZuP0ajrfz/FhGT4vv278rX8KnPPJx8i5+AtK7TYbx9Le9F1hyzurZpkEyjkGa9dUGhQow4C1NmeGvqxN2w==",
+ "cpu": [
+ "ia32"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ],
+ "engines": {
+ "node": ">=18"
+ }
+ },
+ "node_modules/@esbuild/linux-loong64": {
+ "version": "0.28.1",
+ "resolved": "https://registry.npmjs.org/@esbuild/linux-loong64/-/linux-loong64-0.28.1.tgz",
+ "integrity": "sha512-M5sRjUVZrkm1OAPR3dlOYzNmN+loZKGVi1VUQGrwuqLcbR6qeAz+famMhjASeH3YVKvZz+zT1jlh/keC3Rj/lg==",
+ "cpu": [
+ "loong64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ],
+ "engines": {
+ "node": ">=18"
+ }
+ },
+ "node_modules/@esbuild/linux-mips64el": {
+ "version": "0.28.1",
+ "resolved": "https://registry.npmjs.org/@esbuild/linux-mips64el/-/linux-mips64el-0.28.1.tgz",
+ "integrity": "sha512-mRObBZeHh2OxcBFPWE/FjylkRgZdYuiTR3vaTozquCGOH14iP9oN4x4Ge81CoIDYQrXmIxpFumJBu5MtZpnQJQ==",
+ "cpu": [
+ "mips64el"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ],
+ "engines": {
+ "node": ">=18"
+ }
+ },
+ "node_modules/@esbuild/linux-ppc64": {
+ "version": "0.28.1",
+ "resolved": "https://registry.npmjs.org/@esbuild/linux-ppc64/-/linux-ppc64-0.28.1.tgz",
+ "integrity": "sha512-slScBsMAb3GFDcdrCgLwZtPYRoH2H/youv10QiZyRjmsP48fznoveWytSgCI/R0ZcUgpc0ZhIUEx6LHts8yrfQ==",
+ "cpu": [
+ "ppc64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ],
+ "engines": {
+ "node": ">=18"
+ }
+ },
+ "node_modules/@esbuild/linux-riscv64": {
+ "version": "0.28.1",
+ "resolved": "https://registry.npmjs.org/@esbuild/linux-riscv64/-/linux-riscv64-0.28.1.tgz",
+ "integrity": "sha512-kw0owk1o0GFETUJyW0jc0G4Yzs0BHZn0JDZ8JRT088vjJYX777BAs1fDGxAC+q831qOs2DTC96mNsG2opdfyyQ==",
+ "cpu": [
+ "riscv64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ],
+ "engines": {
+ "node": ">=18"
+ }
+ },
+ "node_modules/@esbuild/linux-s390x": {
+ "version": "0.28.1",
+ "resolved": "https://registry.npmjs.org/@esbuild/linux-s390x/-/linux-s390x-0.28.1.tgz",
+ "integrity": "sha512-/lAIjX8aYFRByhh6L5rYtPEDRqa9de/4V/juOXcta5frjvzXO4/sqEtyytse0g3zZFuWu5cDN0MkLz2qRDD2Ag==",
+ "cpu": [
+ "s390x"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ],
+ "engines": {
+ "node": ">=18"
+ }
+ },
+ "node_modules/@esbuild/linux-x64": {
+ "version": "0.28.1",
+ "resolved": "https://registry.npmjs.org/@esbuild/linux-x64/-/linux-x64-0.28.1.tgz",
+ "integrity": "sha512-u/anNYF2mmVOEDwLtnQ1wOr3EZ9sTNGLWrsYGYwHWzGA3Si84IOkHXlbWTD1NB+9/1lcnweYKO54uhxZydNzfA==",
+ "cpu": [
+ "x64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ],
+ "engines": {
+ "node": ">=18"
+ }
+ },
+ "node_modules/@esbuild/netbsd-arm64": {
+ "version": "0.28.1",
+ "resolved": "https://registry.npmjs.org/@esbuild/netbsd-arm64/-/netbsd-arm64-0.28.1.tgz",
+ "integrity": "sha512-oks0DYbLwWMmaakTsCb+zL4E+aHRVLom9IJZOAthMQEPiQmydXHkziYEsGYRx0uNV/IjEKGAV941JzH02pflqw==",
+ "cpu": [
+ "arm64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "netbsd"
+ ],
+ "engines": {
+ "node": ">=18"
+ }
+ },
+ "node_modules/@esbuild/netbsd-x64": {
+ "version": "0.28.1",
+ "resolved": "https://registry.npmjs.org/@esbuild/netbsd-x64/-/netbsd-x64-0.28.1.tgz",
+ "integrity": "sha512-aeL6lAnN89Hz43Mlh1G8ARasbuoYvSITDEx0tHh5b7jJnHcssqgjy9Yx430GDpmCa6OyrKoS0aNRjKundRizGg==",
+ "cpu": [
+ "x64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "netbsd"
+ ],
+ "engines": {
+ "node": ">=18"
+ }
+ },
+ "node_modules/@esbuild/openbsd-arm64": {
+ "version": "0.28.1",
+ "resolved": "https://registry.npmjs.org/@esbuild/openbsd-arm64/-/openbsd-arm64-0.28.1.tgz",
+ "integrity": "sha512-MEFJe5C3R8pwXdZ5Y21oo6m7ePiS0d9pWucn99O/wvyJZChoIQKrQDxKrGeW8F5+T0okTHesAmDeiHDTIq0V/Q==",
+ "cpu": [
+ "arm64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "openbsd"
+ ],
+ "engines": {
+ "node": ">=18"
+ }
+ },
+ "node_modules/@esbuild/openbsd-x64": {
+ "version": "0.28.1",
+ "resolved": "https://registry.npmjs.org/@esbuild/openbsd-x64/-/openbsd-x64-0.28.1.tgz",
+ "integrity": "sha512-i/ZLIOafE0Z8cI/XANJAixoJL/uRAoS2xOA3rb0xN+KK0K177cMAsQYkzHtBrtMXAKuAc7HGgcWiZ/sRC1Nxgw==",
+ "cpu": [
+ "x64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "openbsd"
+ ],
+ "engines": {
+ "node": ">=18"
+ }
+ },
+ "node_modules/@esbuild/openharmony-arm64": {
+ "version": "0.28.1",
+ "resolved": "https://registry.npmjs.org/@esbuild/openharmony-arm64/-/openharmony-arm64-0.28.1.tgz",
+ "integrity": "sha512-ge+Z7EXFNt2BO1oAMsVpiQ8EwndV9i1xXerAeTIK7AtPs3bKFXQM7nlRxDSIUIMeueR1CNXxqztLzdNeReKBJg==",
+ "cpu": [
+ "arm64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "openharmony"
+ ],
+ "engines": {
+ "node": ">=18"
+ }
+ },
+ "node_modules/@esbuild/sunos-x64": {
+ "version": "0.28.1",
+ "resolved": "https://registry.npmjs.org/@esbuild/sunos-x64/-/sunos-x64-0.28.1.tgz",
+ "integrity": "sha512-BEjgtECkL3vY+SaSQ6nzVfiALUeFxpawyp8Jmf5PtYhf1Ug40N1h/hxlhts+f1FvSvarEigdxS3BlSMI2PJLcQ==",
+ "cpu": [
+ "x64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "sunos"
+ ],
+ "engines": {
+ "node": ">=18"
+ }
+ },
+ "node_modules/@esbuild/win32-arm64": {
+ "version": "0.28.1",
+ "resolved": "https://registry.npmjs.org/@esbuild/win32-arm64/-/win32-arm64-0.28.1.tgz",
+ "integrity": "sha512-lCv9eK/H6ZJWbE7bh2nw54CZ9M2nupBxJcTsdk/QQnWkdSjKGuxmmH8/GWrlT1eMmZfn4dGcCjRte397WqfQXA==",
+ "cpu": [
+ "arm64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "win32"
+ ],
+ "engines": {
+ "node": ">=18"
+ }
+ },
+ "node_modules/@esbuild/win32-ia32": {
+ "version": "0.28.1",
+ "resolved": "https://registry.npmjs.org/@esbuild/win32-ia32/-/win32-ia32-0.28.1.tgz",
+ "integrity": "sha512-zvb/mB2bSCoJOpoCBgYKKpX6YM6mJBlBUVUtVj41DlZJVEB6/0CKlRYxP5wWl1C1ILiCoAU5wZZ4q1P3qeS6Eg==",
+ "cpu": [
+ "ia32"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "win32"
+ ],
+ "engines": {
+ "node": ">=18"
+ }
+ },
+ "node_modules/@esbuild/win32-x64": {
+ "version": "0.28.1",
+ "resolved": "https://registry.npmjs.org/@esbuild/win32-x64/-/win32-x64-0.28.1.tgz",
+ "integrity": "sha512-bm4Mowrv+GXMlpWX++EcXw/iLyd1o3+bJkC2DkWXYVvgZCqD/bSj9ctZeAMC3cIxgjRVR2Dufaiu4YPxr5gW1A==",
+ "cpu": [
+ "x64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "win32"
+ ],
+ "engines": {
+ "node": ">=18"
+ }
+ },
+ "node_modules/@jridgewell/sourcemap-codec": {
+ "version": "1.5.5",
+ "resolved": "https://registry.npmjs.org/@jridgewell/sourcemap-codec/-/sourcemap-codec-1.5.5.tgz",
+ "integrity": "sha512-cYQ9310grqxueWbl+WuIUIaiUaDcj7WOq5fVhEljNVgRfOUhY9fy2zTvfoqWsnebh8Sl70VScFbICvJnLKB0Og==",
+ "dev": true,
+ "license": "MIT"
+ },
+ "node_modules/@rollup/rollup-android-arm-eabi": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-android-arm-eabi/-/rollup-android-arm-eabi-4.62.2.tgz",
+ "integrity": "sha512-6o7ZLZK+BeenkZCFNDXqpbjw9bD6nuWonvS/lwQJp7NoVVxm6p3qE7qQ5jGuBjiFsgvqjD8mZAU5oWxTmbOeOg==",
+ "cpu": [
+ "arm"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "android"
+ ]
+ },
+ "node_modules/@rollup/rollup-android-arm64": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-android-arm64/-/rollup-android-arm64-4.62.2.tgz",
+ "integrity": "sha512-BaH7BllCACHoH1LguOU56UItGfUWjujlO65kS9LAodViaN4bwIKd7oeW/ZHJ/4ljr/7MIiENnNy3HJ0zXv8Zkw==",
+ "cpu": [
+ "arm64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "android"
+ ]
+ },
+ "node_modules/@rollup/rollup-darwin-arm64": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-darwin-arm64/-/rollup-darwin-arm64-4.62.2.tgz",
+ "integrity": "sha512-v39RCCvj4He82I9sFmk+M1VZ0PLM9sfsLVikjfx2hYBNALhrrOR2D3JjQA6AhlaSOgcR+RzrKY7e1+bT6SUO/A==",
+ "cpu": [
+ "arm64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "darwin"
+ ]
+ },
+ "node_modules/@rollup/rollup-darwin-x64": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-darwin-x64/-/rollup-darwin-x64-4.62.2.tgz",
+ "integrity": "sha512-yl0y2vq3S3lHeuXhEdss6TWfKW8vkujImO12tn4ZkG/4oghr09LvdYm2RElVjokTQiUvDUGXLGsYeLqUMCKpGA==",
+ "cpu": [
+ "x64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "darwin"
+ ]
+ },
+ "node_modules/@rollup/rollup-freebsd-arm64": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-freebsd-arm64/-/rollup-freebsd-arm64-4.62.2.tgz",
+ "integrity": "sha512-tT4pvt4qXD+vEoezupCWi+a1F0vvDiksiHc+PxRlYTOH1I6/X4id9jPxTP+Fg+545euaFT1jJVs4CEdHZAU1vw==",
+ "cpu": [
+ "arm64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "freebsd"
+ ]
+ },
+ "node_modules/@rollup/rollup-freebsd-x64": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-freebsd-x64/-/rollup-freebsd-x64-4.62.2.tgz",
+ "integrity": "sha512-6nU5F2wCW+qvCBhTn1pdIU3bzsIoF7EUwsCDRxilWGprQR6yd508YnH9+OKFCwpfS8pjZqDUmnCAr7exax0XCg==",
+ "cpu": [
+ "x64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "freebsd"
+ ]
+ },
+ "node_modules/@rollup/rollup-linux-arm-gnueabihf": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-linux-arm-gnueabihf/-/rollup-linux-arm-gnueabihf-4.62.2.tgz",
+ "integrity": "sha512-n1GJHPOvpIfhi3TmrCeh6S6URt9BFCt0KQE3qvexyGCTAKpR4Lg+eWvNZEqu7epxwus/8ElT3hacYEucm49SZg==",
+ "cpu": [
+ "arm"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ]
+ },
+ "node_modules/@rollup/rollup-linux-arm-musleabihf": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-linux-arm-musleabihf/-/rollup-linux-arm-musleabihf-4.62.2.tgz",
+ "integrity": "sha512-JqgflS8wEB+UXV/vS1RpRbifGBeN4D5lz8D8oOFbFZw4vedvdOgCFAjfBmIMdW3yL10XpQQ0Ambepw6MXrhOnA==",
+ "cpu": [
+ "arm"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ]
+ },
+ "node_modules/@rollup/rollup-linux-arm64-gnu": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-linux-arm64-gnu/-/rollup-linux-arm64-gnu-4.62.2.tgz",
+ "integrity": "sha512-wnFJkogWvN4jm/hQRF2UBaeUmk20j5+DmHvoyWii2b8HJDyvz1MF2OU/6ynXt2KR63rbZLWkFpoytpdc/yBuSA==",
+ "cpu": [
+ "arm64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ]
+ },
+ "node_modules/@rollup/rollup-linux-arm64-musl": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-linux-arm64-musl/-/rollup-linux-arm64-musl-4.62.2.tgz",
+ "integrity": "sha512-HVu2bp0zhvJ8xHEV9+UUs7S90VadmBSY3LcIMvozbPo4AuMGDWlz3ymHLHZPX4hR67TKTt8Qp5PJ5RBg/i+RMQ==",
+ "cpu": [
+ "arm64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ]
+ },
+ "node_modules/@rollup/rollup-linux-loong64-gnu": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-linux-loong64-gnu/-/rollup-linux-loong64-gnu-4.62.2.tgz",
+ "integrity": "sha512-mQqqAV8QaoSgr9I2fKDLY2BAVvmKjWoGiu/cSYQonsLvtqwEn1E4QYfnCOcp5zoEqNhsDYin1s6jx/VJmrxlZg==",
+ "cpu": [
+ "loong64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ]
+ },
+ "node_modules/@rollup/rollup-linux-loong64-musl": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-linux-loong64-musl/-/rollup-linux-loong64-musl-4.62.2.tgz",
+ "integrity": "sha512-IxKLoxCQ2IWi6bT2akyDUBGsOImDKB+sPp4EsTmwFQ/fMwpCKm8uLSSgP/Kx/QYUgKis6SEZ5/Nlhup0DIA0PQ==",
+ "cpu": [
+ "loong64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ]
+ },
+ "node_modules/@rollup/rollup-linux-ppc64-gnu": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-linux-ppc64-gnu/-/rollup-linux-ppc64-gnu-4.62.2.tgz",
+ "integrity": "sha512-Mk5ha2RQSgyFfmYYLkBpPnUk8D8FriBxesO1u9O75X0mHgXL1UQcH5Itl2lurWL2tj0RxV9b9tJgipac0hRY9A==",
+ "cpu": [
+ "ppc64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ]
+ },
+ "node_modules/@rollup/rollup-linux-ppc64-musl": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-linux-ppc64-musl/-/rollup-linux-ppc64-musl-4.62.2.tgz",
+ "integrity": "sha512-CjvEnqJL/0/TQ3TXX3OPIJ/kmBellrWd4heXUmHeJlTnmwjKpSJzoehLaL6Xk0ZnMHBu9dZuFADNOrtjF4v+2w==",
+ "cpu": [
+ "ppc64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ]
+ },
+ "node_modules/@rollup/rollup-linux-riscv64-gnu": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-linux-riscv64-gnu/-/rollup-linux-riscv64-gnu-4.62.2.tgz",
+ "integrity": "sha512-1SiZbzwdkaDURsew/tSOrooKiYy7EQGT6m8ufavAi9NEyQb/6VuIxFXAL1fqa4iZe3g4NbNk4P7J32z2tw5Mgg==",
+ "cpu": [
+ "riscv64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ]
+ },
+ "node_modules/@rollup/rollup-linux-riscv64-musl": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-linux-riscv64-musl/-/rollup-linux-riscv64-musl-4.62.2.tgz",
+ "integrity": "sha512-nQts12zJ3NQRoE6uYljOH89v7szzLDvG2JD/vsX+vGXU8w/At1GowTZ5/7qeFQ8m7L55rpR8Okugnuo5bgjy2Q==",
+ "cpu": [
+ "riscv64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ]
+ },
+ "node_modules/@rollup/rollup-linux-s390x-gnu": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-linux-s390x-gnu/-/rollup-linux-s390x-gnu-4.62.2.tgz",
+ "integrity": "sha512-E9/ll019jhPIJgpzfZoIkBGhcz+kKNgVWYRY0zr9srBdPPFVpvOKW8VaJKUbeK+eZXyQF9ltME+Kk6affeaPgg==",
+ "cpu": [
+ "s390x"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ]
+ },
+ "node_modules/@rollup/rollup-linux-x64-gnu": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-linux-x64-gnu/-/rollup-linux-x64-gnu-4.62.2.tgz",
+ "integrity": "sha512-5BqxR/pshjey51iliyzTD5Xi3EN0aLmQ2lZ3lvefVV9c82BvrLo2/6OT55iifpWBufs6kdwWbuOKS841DrmK9A==",
+ "cpu": [
+ "x64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ]
+ },
+ "node_modules/@rollup/rollup-linux-x64-musl": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-linux-x64-musl/-/rollup-linux-x64-musl-4.62.2.tgz",
+ "integrity": "sha512-uNN83XxQrRAh/w0/pmAfibcwyb6YWt4gP+dpnQKPVJshAloQ785ii8CT8ZCIxkGg9opVsvAlGhFitSm6D1Jjpg==",
+ "cpu": [
+ "x64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ]
+ },
+ "node_modules/@rollup/rollup-openbsd-x64": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-openbsd-x64/-/rollup-openbsd-x64-4.62.2.tgz",
+ "integrity": "sha512-srjEIxSH3LRnJN6THczDHWQplqEMFiAJrTab0msUryh9kwNpkICf3Ea6q6MN/2cZwRFUNx5w+h6Hpi4QuHS6Zg==",
+ "cpu": [
+ "x64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "openbsd"
+ ]
+ },
+ "node_modules/@rollup/rollup-openharmony-arm64": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-openharmony-arm64/-/rollup-openharmony-arm64-4.62.2.tgz",
+ "integrity": "sha512-8hOJnxgbyObnCm5AlRA3A931xX19xq80RjVTKgJOvEKWqJruP/Uf12IbAOaDjjEXYRewwHLfmF0YRIdK3OwKWA==",
+ "cpu": [
+ "arm64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "openharmony"
+ ]
+ },
+ "node_modules/@rollup/rollup-win32-arm64-msvc": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-win32-arm64-msvc/-/rollup-win32-arm64-msvc-4.62.2.tgz",
+ "integrity": "sha512-mmF4AY1i0hG/bLWUctUq59gtmgaSIRa3cu/A3JFRp/sCNEme2bgDEiDS22P9FbnJB8NJNF4jPJiSP5RHQpUTDg==",
+ "cpu": [
+ "arm64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "win32"
+ ]
+ },
+ "node_modules/@rollup/rollup-win32-ia32-msvc": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-win32-ia32-msvc/-/rollup-win32-ia32-msvc-4.62.2.tgz",
+ "integrity": "sha512-DZgkknc6jhHrk46V25vbAM0zZkyP0nSDkJB8/dRkLTxv470dOmWDqGoEJl/9A0dFfS7yE3REOwNDxpHwSLSt0Q==",
+ "cpu": [
+ "ia32"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "win32"
+ ]
+ },
+ "node_modules/@rollup/rollup-win32-x64-gnu": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-win32-x64-gnu/-/rollup-win32-x64-gnu-4.62.2.tgz",
+ "integrity": "sha512-T6xr6ucWSFto+VGajA8YH26LdpHRuP4YLHEKAtCWvJDOlnmWcDZVCI2Jmjr+IFHDlt2zRaTAKE4tfjTaWLgJBg==",
+ "cpu": [
+ "x64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "win32"
+ ]
+ },
+ "node_modules/@rollup/rollup-win32-x64-msvc": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/@rollup/rollup-win32-x64-msvc/-/rollup-win32-x64-msvc-4.62.2.tgz",
+ "integrity": "sha512-BfzEnDJOt9T8M989/lA37EcJgat01wLRnoi5dQf3QzOH7jzpqTAzdDbVfRljVr5r+jzKqpbHeyOfAaXxAd0PAA==",
+ "cpu": [
+ "x64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "win32"
+ ]
+ },
+ "node_modules/@types/body-parser": {
+ "version": "1.19.6",
+ "resolved": "https://registry.npmjs.org/@types/body-parser/-/body-parser-1.19.6.tgz",
+ "integrity": "sha512-HLFeCYgz89uk22N5Qg3dvGvsv46B8GLvKKo1zKG4NybA8U2DiEO3w9lqGg29t/tfLRJpJ6iQxnVw4OnB7MoM9g==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "@types/connect": "*",
+ "@types/node": "*"
+ }
+ },
+ "node_modules/@types/connect": {
+ "version": "3.4.38",
+ "resolved": "https://registry.npmjs.org/@types/connect/-/connect-3.4.38.tgz",
+ "integrity": "sha512-K6uROf1LD88uDQqJCktA4yzL1YYAK6NgfsI0v/mTgyPKWsX1CnJ0XPSDhViejru1GcRkLWb8RlzFYJRqGUbaug==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "@types/node": "*"
+ }
+ },
+ "node_modules/@types/cookie-parser": {
+ "version": "1.4.10",
+ "resolved": "https://registry.npmjs.org/@types/cookie-parser/-/cookie-parser-1.4.10.tgz",
+ "integrity": "sha512-B4xqkqfZ8Wek+rCOeRxsjMS9OgvzebEzzLYw7NHYuvzb7IdxOkI0ZHGgeEBX4PUM7QGVvNSK60T3OvWj3YfBRg==",
+ "dev": true,
+ "license": "MIT",
+ "peerDependencies": {
+ "@types/express": "*"
+ }
+ },
+ "node_modules/@types/cors": {
+ "version": "2.8.19",
+ "resolved": "https://registry.npmjs.org/@types/cors/-/cors-2.8.19.tgz",
+ "integrity": "sha512-mFNylyeyqN93lfe/9CSxOGREz8cpzAhH+E93xJ4xWQf62V8sQ/24reV2nyzUWM6H6Xji+GGHpkbLe7pVoUEskg==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "@types/node": "*"
+ }
+ },
+ "node_modules/@types/estree": {
+ "version": "1.0.9",
+ "resolved": "https://registry.npmjs.org/@types/estree/-/estree-1.0.9.tgz",
+ "integrity": "sha512-GhdPgy1el4/ImP05X05Uw4cw2/M93BCUmnEvWZNStlCzEKME4Fkk+YpoA5OiHNQmoS7Cafb8Xa3Pya8m1Qrzeg==",
+ "dev": true,
+ "license": "MIT"
+ },
+ "node_modules/@types/express": {
+ "version": "4.17.25",
+ "resolved": "https://registry.npmjs.org/@types/express/-/express-4.17.25.tgz",
+ "integrity": "sha512-dVd04UKsfpINUnK0yBoYHDF3xu7xVH4BuDotC/xGuycx4CgbP48X/KF/586bcObxT0HENHXEU8Nqtu6NR+eKhw==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "@types/body-parser": "*",
+ "@types/express-serve-static-core": "^4.17.33",
+ "@types/qs": "*",
+ "@types/serve-static": "^1"
+ }
+ },
+ "node_modules/@types/express-serve-static-core": {
+ "version": "4.19.8",
+ "resolved": "https://registry.npmjs.org/@types/express-serve-static-core/-/express-serve-static-core-4.19.8.tgz",
+ "integrity": "sha512-02S5fmqeoKzVZCHPZid4b8JH2eM5HzQLZWN2FohQEy/0eXTq8VXZfSN6Pcr3F6N9R/vNrj7cpgbhjie6m/1tCA==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "@types/node": "*",
+ "@types/qs": "*",
+ "@types/range-parser": "*",
+ "@types/send": "*"
+ }
+ },
+ "node_modules/@types/http-errors": {
+ "version": "2.0.5",
+ "resolved": "https://registry.npmjs.org/@types/http-errors/-/http-errors-2.0.5.tgz",
+ "integrity": "sha512-r8Tayk8HJnX0FztbZN7oVqGccWgw98T/0neJphO91KkmOzug1KkofZURD4UaD5uH8AqcFLfdPErnBod0u71/qg==",
+ "dev": true,
+ "license": "MIT"
+ },
+ "node_modules/@types/mime": {
+ "version": "1.3.5",
+ "resolved": "https://registry.npmjs.org/@types/mime/-/mime-1.3.5.tgz",
+ "integrity": "sha512-/pyBZWSLD2n0dcHE3hq8s8ZvcETHtEuF+3E7XVt0Ig2nvsVQXdghHVcEkIWjy9A0wKfTn97a/PSDYohKIlnP/w==",
+ "dev": true,
+ "license": "MIT"
+ },
+ "node_modules/@types/node": {
+ "version": "24.13.2",
+ "resolved": "https://registry.npmjs.org/@types/node/-/node-24.13.2.tgz",
+ "integrity": "sha512-fRa09kZTgu8o71KFcDjUFuc7F+dEbZYZmkI0mg5YBTRs0yMKjYHsq/c0urDKeDb+D5qVgXOdFcuu+DZPKOITwA==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "undici-types": "~7.18.0"
+ }
+ },
+ "node_modules/@types/qs": {
+ "version": "6.15.1",
+ "resolved": "https://registry.npmjs.org/@types/qs/-/qs-6.15.1.tgz",
+ "integrity": "sha512-GZHUBZR9hckSUhrxmp1nG6NwdpM9fCunJwyThLW1X3AyHgd9IlHb6VANpQQqDr2o/qQp6McZ3y/IA2rVzKzSbw==",
+ "dev": true,
+ "license": "MIT"
+ },
+ "node_modules/@types/range-parser": {
+ "version": "1.2.7",
+ "resolved": "https://registry.npmjs.org/@types/range-parser/-/range-parser-1.2.7.tgz",
+ "integrity": "sha512-hKormJbkJqzQGhziax5PItDUTMAM9uE2XXQmM37dyd4hVM+5aVl7oVxMVUiVQn2oCQFN/LKCZdvSM0pFRqbSmQ==",
+ "dev": true,
+ "license": "MIT"
+ },
+ "node_modules/@types/send": {
+ "version": "1.2.1",
+ "resolved": "https://registry.npmjs.org/@types/send/-/send-1.2.1.tgz",
+ "integrity": "sha512-arsCikDvlU99zl1g69TcAB3mzZPpxgw0UQnaHeC1Nwb015xp8bknZv5rIfri9xTOcMuaVgvabfIRA7PSZVuZIQ==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "@types/node": "*"
+ }
+ },
+ "node_modules/@types/serve-static": {
+ "version": "1.15.10",
+ "resolved": "https://registry.npmjs.org/@types/serve-static/-/serve-static-1.15.10.tgz",
+ "integrity": "sha512-tRs1dB+g8Itk72rlSI2ZrW6vZg0YrLI81iQSTkMmOqnqCaNr/8Ek4VwWcN5vZgCYWbg/JJSGBlUaYGAOP73qBw==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "@types/http-errors": "*",
+ "@types/node": "*",
+ "@types/send": "<1"
+ }
+ },
+ "node_modules/@types/serve-static/node_modules/@types/send": {
+ "version": "0.17.6",
+ "resolved": "https://registry.npmjs.org/@types/send/-/send-0.17.6.tgz",
+ "integrity": "sha512-Uqt8rPBE8SY0RK8JB1EzVOIZ32uqy8HwdxCnoCOsYrvnswqmFZ/k+9Ikidlk/ImhsdvBsloHbAlewb2IEBV/Og==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "@types/mime": "^1",
+ "@types/node": "*"
+ }
+ },
+ "node_modules/@vitest/expect": {
+ "version": "2.1.9",
+ "resolved": "https://registry.npmjs.org/@vitest/expect/-/expect-2.1.9.tgz",
+ "integrity": "sha512-UJCIkTBenHeKT1TTlKMJWy1laZewsRIzYighyYiJKZreqtdxSos/S1t+ktRMQWu2CKqaarrkeszJx1cgC5tGZw==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "@vitest/spy": "2.1.9",
+ "@vitest/utils": "2.1.9",
+ "chai": "^5.1.2",
+ "tinyrainbow": "^1.2.0"
+ },
+ "funding": {
+ "url": "https://opencollective.com/vitest"
+ }
+ },
+ "node_modules/@vitest/mocker": {
+ "version": "2.1.9",
+ "resolved": "https://registry.npmjs.org/@vitest/mocker/-/mocker-2.1.9.tgz",
+ "integrity": "sha512-tVL6uJgoUdi6icpxmdrn5YNo3g3Dxv+IHJBr0GXHaEdTcw3F+cPKnsXFhli6nO+f/6SDKPHEK1UN+k+TQv0Ehg==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "@vitest/spy": "2.1.9",
+ "estree-walker": "^3.0.3",
+ "magic-string": "^0.30.12"
+ },
+ "funding": {
+ "url": "https://opencollective.com/vitest"
+ },
+ "peerDependencies": {
+ "msw": "^2.4.9",
+ "vite": "^5.0.0"
+ },
+ "peerDependenciesMeta": {
+ "msw": {
+ "optional": true
+ },
+ "vite": {
+ "optional": true
+ }
+ }
+ },
+ "node_modules/@vitest/pretty-format": {
+ "version": "2.1.9",
+ "resolved": "https://registry.npmjs.org/@vitest/pretty-format/-/pretty-format-2.1.9.tgz",
+ "integrity": "sha512-KhRIdGV2U9HOUzxfiHmY8IFHTdqtOhIzCpd8WRdJiE7D/HUcZVD0EgQCVjm+Q9gkUXWgBvMmTtZgIG48wq7sOQ==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "tinyrainbow": "^1.2.0"
+ },
+ "funding": {
+ "url": "https://opencollective.com/vitest"
+ }
+ },
+ "node_modules/@vitest/runner": {
+ "version": "2.1.9",
+ "resolved": "https://registry.npmjs.org/@vitest/runner/-/runner-2.1.9.tgz",
+ "integrity": "sha512-ZXSSqTFIrzduD63btIfEyOmNcBmQvgOVsPNPe0jYtESiXkhd8u2erDLnMxmGrDCwHCCHE7hxwRDCT3pt0esT4g==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "@vitest/utils": "2.1.9",
+ "pathe": "^1.1.2"
+ },
+ "funding": {
+ "url": "https://opencollective.com/vitest"
+ }
+ },
+ "node_modules/@vitest/snapshot": {
+ "version": "2.1.9",
+ "resolved": "https://registry.npmjs.org/@vitest/snapshot/-/snapshot-2.1.9.tgz",
+ "integrity": "sha512-oBO82rEjsxLNJincVhLhaxxZdEtV0EFHMK5Kmx5sJ6H9L183dHECjiefOAdnqpIgT5eZwT04PoggUnW88vOBNQ==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "@vitest/pretty-format": "2.1.9",
+ "magic-string": "^0.30.12",
+ "pathe": "^1.1.2"
+ },
+ "funding": {
+ "url": "https://opencollective.com/vitest"
+ }
+ },
+ "node_modules/@vitest/spy": {
+ "version": "2.1.9",
+ "resolved": "https://registry.npmjs.org/@vitest/spy/-/spy-2.1.9.tgz",
+ "integrity": "sha512-E1B35FwzXXTs9FHNK6bDszs7mtydNi5MIfUWpceJ8Xbfb1gBMscAnwLbEu+B44ed6W3XjL9/ehLPHR1fkf1KLQ==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "tinyspy": "^3.0.2"
+ },
+ "funding": {
+ "url": "https://opencollective.com/vitest"
+ }
+ },
+ "node_modules/@vitest/utils": {
+ "version": "2.1.9",
+ "resolved": "https://registry.npmjs.org/@vitest/utils/-/utils-2.1.9.tgz",
+ "integrity": "sha512-v0psaMSkNJ3A2NMrUEHFRzJtDPFn+/VWZ5WxImB21T9fjucJRmS7xCS3ppEnARb9y11OAzaD+P2Ps+b+BGX5iQ==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "@vitest/pretty-format": "2.1.9",
+ "loupe": "^3.1.2",
+ "tinyrainbow": "^1.2.0"
+ },
+ "funding": {
+ "url": "https://opencollective.com/vitest"
+ }
+ },
+ "node_modules/accepts": {
+ "version": "1.3.8",
+ "resolved": "https://registry.npmjs.org/accepts/-/accepts-1.3.8.tgz",
+ "integrity": "sha512-PYAthTa2m2VKxuvSD3DPC/Gy+U+sOA1LAuT8mkmRuvw+NACSaeXEQ+NHcVF7rONl6qcaxV3Uuemwawk+7+SJLw==",
+ "license": "MIT",
+ "dependencies": {
+ "mime-types": "~2.1.34",
+ "negotiator": "0.6.3"
+ },
+ "engines": {
+ "node": ">= 0.6"
+ }
+ },
+ "node_modules/agent-base": {
+ "version": "6.0.2",
+ "resolved": "https://registry.npmjs.org/agent-base/-/agent-base-6.0.2.tgz",
+ "integrity": "sha512-RZNwNclF7+MS/8bDg70amg32dyeZGZxiDuQmZxKLAlQjr3jGyLx+4Kkk58UO7D2QdgFIQCovuSuZESne6RG6XQ==",
+ "license": "MIT",
+ "dependencies": {
+ "debug": "4"
+ },
+ "engines": {
+ "node": ">= 6.0.0"
+ }
+ },
+ "node_modules/agent-base/node_modules/debug": {
+ "version": "4.4.3",
+ "resolved": "https://registry.npmjs.org/debug/-/debug-4.4.3.tgz",
+ "integrity": "sha512-RGwwWnwQvkVfavKVt22FGLw+xYSdzARwm0ru6DhTVA3umU5hZc28V3kO4stgYryrTlLpuvgI9GiijltAjNbcqA==",
+ "license": "MIT",
+ "dependencies": {
+ "ms": "^2.1.3"
+ },
+ "engines": {
+ "node": ">=6.0"
+ },
+ "peerDependenciesMeta": {
+ "supports-color": {
+ "optional": true
+ }
+ }
+ },
+ "node_modules/agent-base/node_modules/ms": {
+ "version": "2.1.3",
+ "resolved": "https://registry.npmjs.org/ms/-/ms-2.1.3.tgz",
+ "integrity": "sha512-6FlzubTLZG3J2a/NVCAleEhjzq5oxgHyaCU9yYXvcLsvoVaHJq/s5xXI6/XXP6tz7R9xAOtHnSO/tXtF3WRTlA==",
+ "license": "MIT"
+ },
+ "node_modules/array-flatten": {
+ "version": "1.1.1",
+ "resolved": "https://registry.npmjs.org/array-flatten/-/array-flatten-1.1.1.tgz",
+ "integrity": "sha512-PCVAQswWemu6UdxsDFFX/+gVeYqKAod3D3UVm91jHwynguOwAvYPhx8nNlM++NqRcK6CxxpUafjmhIdKiHibqg==",
+ "license": "MIT"
+ },
+ "node_modules/assertion-error": {
+ "version": "2.0.1",
+ "resolved": "https://registry.npmjs.org/assertion-error/-/assertion-error-2.0.1.tgz",
+ "integrity": "sha512-Izi8RQcffqCeNVgFigKli1ssklIbpHnCYc6AknXGYoB6grJqyeby7jv12JUQgmTAnIDnbck1uxksT4dzN3PWBA==",
+ "dev": true,
+ "license": "MIT",
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/asynckit": {
+ "version": "0.4.0",
+ "resolved": "https://registry.npmjs.org/asynckit/-/asynckit-0.4.0.tgz",
+ "integrity": "sha512-Oei9OH4tRh0YqU3GxhX79dM/mwVgvbZJaSNaRk+bshkj0S5cfHcgYakreBjrHwatXKbz+IoIdYLxrKim2MjW0Q==",
+ "license": "MIT"
+ },
+ "node_modules/axios": {
+ "version": "1.18.0",
+ "resolved": "https://registry.npmjs.org/axios/-/axios-1.18.0.tgz",
+ "integrity": "sha512-E32NzpYKp++W7XRe52rHiXV2ehxmh3wbdgO7MHeFM+vqxLBYHzt0ElkiImtOBxtOmyp0yoC8C6uESVV84Y2/hw==",
+ "license": "MIT",
+ "dependencies": {
+ "follow-redirects": "^1.16.0",
+ "form-data": "^4.0.5",
+ "https-proxy-agent": "^5.0.1",
+ "proxy-from-env": "^2.1.0"
+ }
+ },
+ "node_modules/base64-js": {
+ "version": "1.5.1",
+ "resolved": "https://registry.npmjs.org/base64-js/-/base64-js-1.5.1.tgz",
+ "integrity": "sha512-AKpaYlHn8t4SVbOHCy+b5+KKgvR4vrsD8vbvrbiQJps7fKDTkjkDry6ji0rUJjC0kzbNePLwzxq8iypo41qeWA==",
+ "funding": [
+ {
+ "type": "github",
+ "url": "https://github.com/sponsors/feross"
+ },
+ {
+ "type": "patreon",
+ "url": "https://www.patreon.com/feross"
+ },
+ {
+ "type": "consulting",
+ "url": "https://feross.org/support"
+ }
+ ],
+ "license": "MIT"
+ },
+ "node_modules/body-parser": {
+ "version": "1.20.5",
+ "resolved": "https://registry.npmjs.org/body-parser/-/body-parser-1.20.5.tgz",
+ "integrity": "sha512-3grm+/2tUOvu2cjJkvsIxrv/wVpfXQW4PsQHYm7yk4vfpu7Ekl6nEsYBoJUL6qDwZUx8wUhQ8tR2qz+ad9c9OA==",
+ "license": "MIT",
+ "dependencies": {
+ "bytes": "~3.1.2",
+ "content-type": "~1.0.5",
+ "debug": "2.6.9",
+ "depd": "2.0.0",
+ "destroy": "~1.2.0",
+ "http-errors": "~2.0.1",
+ "iconv-lite": "~0.4.24",
+ "on-finished": "~2.4.1",
+ "qs": "~6.15.1",
+ "raw-body": "~2.5.3",
+ "type-is": "~1.6.18",
+ "unpipe": "~1.0.0"
+ },
+ "engines": {
+ "node": ">= 0.8",
+ "npm": "1.2.8000 || >= 1.4.16"
+ }
+ },
+ "node_modules/buffer": {
+ "version": "6.0.3",
+ "resolved": "https://registry.npmjs.org/buffer/-/buffer-6.0.3.tgz",
+ "integrity": "sha512-FTiCpNxtwiZZHEZbcbTIcZjERVICn9yq/pDFkTl95/AxzD1naBctN7YO68riM/gLSDY7sdrMby8hofADYuuqOA==",
+ "funding": [
+ {
+ "type": "github",
+ "url": "https://github.com/sponsors/feross"
+ },
+ {
+ "type": "patreon",
+ "url": "https://www.patreon.com/feross"
+ },
+ {
+ "type": "consulting",
+ "url": "https://feross.org/support"
+ }
+ ],
+ "license": "MIT",
+ "dependencies": {
+ "base64-js": "^1.3.1",
+ "ieee754": "^1.2.1"
+ }
+ },
+ "node_modules/buffer-equal-constant-time": {
+ "version": "1.0.1",
+ "resolved": "https://registry.npmjs.org/buffer-equal-constant-time/-/buffer-equal-constant-time-1.0.1.tgz",
+ "integrity": "sha512-zRpUiDwd/xk6ADqPMATG8vc9VPrkck7T07OIx0gnjmJAnHnTVXNQG3vfvWNuiZIkwu9KrKdA1iJKfsfTVxE6NA==",
+ "license": "BSD-3-Clause"
+ },
+ "node_modules/bytes": {
+ "version": "3.1.2",
+ "resolved": "https://registry.npmjs.org/bytes/-/bytes-3.1.2.tgz",
+ "integrity": "sha512-/Nf7TyzTx6S3yRJObOAV7956r8cr2+Oj8AC5dt8wSP3BQAoeX58NoHyCU8P8zGkNXStjTSi6fzO6F0pBdcYbEg==",
+ "license": "MIT",
+ "engines": {
+ "node": ">= 0.8"
+ }
+ },
+ "node_modules/cac": {
+ "version": "6.7.14",
+ "resolved": "https://registry.npmjs.org/cac/-/cac-6.7.14.tgz",
+ "integrity": "sha512-b6Ilus+c3RrdDk+JhLKUAQfzzgLEPy6wcXqS7f/xe1EETvsDP6GORG7SFuOs6cID5YkqchW/LXZbX5bc8j7ZcQ==",
+ "dev": true,
+ "license": "MIT",
+ "engines": {
+ "node": ">=8"
+ }
+ },
+ "node_modules/call-bind-apply-helpers": {
+ "version": "1.0.2",
+ "resolved": "https://registry.npmjs.org/call-bind-apply-helpers/-/call-bind-apply-helpers-1.0.2.tgz",
+ "integrity": "sha512-Sp1ablJ0ivDkSzjcaJdxEunN5/XvksFJ2sMBFfq6x0ryhQV/2b/KwFe21cMpmHtPOSij8K99/wSfoEuTObmuMQ==",
+ "license": "MIT",
+ "dependencies": {
+ "es-errors": "^1.3.0",
+ "function-bind": "^1.1.2"
+ },
+ "engines": {
+ "node": ">= 0.4"
+ }
+ },
+ "node_modules/call-bound": {
+ "version": "1.0.4",
+ "resolved": "https://registry.npmjs.org/call-bound/-/call-bound-1.0.4.tgz",
+ "integrity": "sha512-+ys997U96po4Kx/ABpBCqhA9EuxJaQWDQg7295H4hBphv3IZg0boBKuwYpt4YXp6MZ5AmZQnU/tyMTlRpaSejg==",
+ "license": "MIT",
+ "dependencies": {
+ "call-bind-apply-helpers": "^1.0.2",
+ "get-intrinsic": "^1.3.0"
+ },
+ "engines": {
+ "node": ">= 0.4"
+ },
+ "funding": {
+ "url": "https://github.com/sponsors/ljharb"
+ }
+ },
+ "node_modules/chai": {
+ "version": "5.3.3",
+ "resolved": "https://registry.npmjs.org/chai/-/chai-5.3.3.tgz",
+ "integrity": "sha512-4zNhdJD/iOjSH0A05ea+Ke6MU5mmpQcbQsSOkgdaUMJ9zTlDTD/GYlwohmIE2u0gaxHYiVHEn1Fw9mZ/ktJWgw==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "assertion-error": "^2.0.1",
+ "check-error": "^2.1.1",
+ "deep-eql": "^5.0.1",
+ "loupe": "^3.1.0",
+ "pathval": "^2.0.0"
+ },
+ "engines": {
+ "node": ">=18"
+ }
+ },
+ "node_modules/check-error": {
+ "version": "2.1.3",
+ "resolved": "https://registry.npmjs.org/check-error/-/check-error-2.1.3.tgz",
+ "integrity": "sha512-PAJdDJusoxnwm1VwW07VWwUN1sl7smmC3OKggvndJFadxxDRyFJBX/ggnu/KE4kQAB7a3Dp8f/YXC1FlUprWmA==",
+ "dev": true,
+ "license": "MIT",
+ "engines": {
+ "node": ">= 16"
+ }
+ },
+ "node_modules/combined-stream": {
+ "version": "1.0.8",
+ "resolved": "https://registry.npmjs.org/combined-stream/-/combined-stream-1.0.8.tgz",
+ "integrity": "sha512-FQN4MRfuJeHf7cBbBMJFXhKSDq+2kAArBlmRBvcvFE5BB1HZKXtSFASDhdlz9zOYwxh8lDdnvmMOe/+5cdoEdg==",
+ "license": "MIT",
+ "dependencies": {
+ "delayed-stream": "~1.0.0"
+ },
+ "engines": {
+ "node": ">= 0.8"
+ }
+ },
+ "node_modules/content-disposition": {
+ "version": "0.5.4",
+ "resolved": "https://registry.npmjs.org/content-disposition/-/content-disposition-0.5.4.tgz",
+ "integrity": "sha512-FveZTNuGw04cxlAiWbzi6zTAL/lhehaWbTtgluJh4/E95DqMwTmha3KZN1aAWA8cFIhHzMZUvLevkw5Rqk+tSQ==",
+ "license": "MIT",
+ "dependencies": {
+ "safe-buffer": "5.2.1"
+ },
+ "engines": {
+ "node": ">= 0.6"
+ }
+ },
+ "node_modules/content-type": {
+ "version": "1.0.5",
+ "resolved": "https://registry.npmjs.org/content-type/-/content-type-1.0.5.tgz",
+ "integrity": "sha512-nTjqfcBFEipKdXCv4YDQWCfmcLZKm81ldF0pAopTvyrFGVbcR6P/VAAd5G7N+0tTr8QqiU0tFadD6FK4NtJwOA==",
+ "license": "MIT",
+ "engines": {
+ "node": ">= 0.6"
+ }
+ },
+ "node_modules/cookie": {
+ "version": "0.7.2",
+ "resolved": "https://registry.npmjs.org/cookie/-/cookie-0.7.2.tgz",
+ "integrity": "sha512-yki5XnKuf750l50uGTllt6kKILY4nQ1eNIQatoXEByZ5dWgnKqbnqmTrBE5B4N7lrMJKQ2ytWMiTO2o0v6Ew/w==",
+ "license": "MIT",
+ "engines": {
+ "node": ">= 0.6"
+ }
+ },
+ "node_modules/cookie-parser": {
+ "version": "1.4.7",
+ "resolved": "https://registry.npmjs.org/cookie-parser/-/cookie-parser-1.4.7.tgz",
+ "integrity": "sha512-nGUvgXnotP3BsjiLX2ypbQnWoGUPIIfHQNZkkC668ntrzGWEZVW70HDEB1qnNGMicPje6EttlIgzo51YSwNQGw==",
+ "license": "MIT",
+ "dependencies": {
+ "cookie": "0.7.2",
+ "cookie-signature": "1.0.6"
+ },
+ "engines": {
+ "node": ">= 0.8.0"
+ }
+ },
+ "node_modules/cookie-signature": {
+ "version": "1.0.6",
+ "resolved": "https://registry.npmjs.org/cookie-signature/-/cookie-signature-1.0.6.tgz",
+ "integrity": "sha512-QADzlaHc8icV8I7vbaJXJwod9HWYp8uCqf1xa4OfNu1T7JVxQIrUgOWtHdNDtPiywmFbiS12VjotIXLrKM3orQ==",
+ "license": "MIT"
+ },
+ "node_modules/cors": {
+ "version": "2.8.6",
+ "resolved": "https://registry.npmjs.org/cors/-/cors-2.8.6.tgz",
+ "integrity": "sha512-tJtZBBHA6vjIAaF6EnIaq6laBBP9aq/Y3ouVJjEfoHbRBcHBAHYcMh/w8LDrk2PvIMMq8gmopa5D4V8RmbrxGw==",
+ "license": "MIT",
+ "dependencies": {
+ "object-assign": "^4",
+ "vary": "^1"
+ },
+ "engines": {
+ "node": ">= 0.10"
+ },
+ "funding": {
+ "type": "opencollective",
+ "url": "https://opencollective.com/express"
+ }
+ },
+ "node_modules/cross-fetch": {
+ "version": "3.2.0",
+ "resolved": "https://registry.npmjs.org/cross-fetch/-/cross-fetch-3.2.0.tgz",
+ "integrity": "sha512-Q+xVJLoGOeIMXZmbUK4HYk+69cQH6LudR0Vu/pRm2YlU/hDV9CiS0gKUMaWY5f2NeUH9C1nV3bsTlCo0FsTV1Q==",
+ "license": "MIT",
+ "dependencies": {
+ "node-fetch": "^2.7.0"
+ }
+ },
+ "node_modules/crypto-js": {
+ "version": "4.2.0",
+ "resolved": "https://registry.npmjs.org/crypto-js/-/crypto-js-4.2.0.tgz",
+ "integrity": "sha512-KALDyEYgpY+Rlob/iriUtjV6d5Eq+Y191A5g4UqLAi8CyGP9N1+FdVbkc1SxKc2r4YAYqG8JzO2KGL+AizD70Q==",
+ "license": "MIT"
+ },
+ "node_modules/dayjs": {
+ "version": "1.11.21",
+ "resolved": "https://registry.npmjs.org/dayjs/-/dayjs-1.11.21.tgz",
+ "integrity": "sha512-98IT+HOahAisibz/yjKbzuOBwYcjJ7BCLPzARyHiyEBmRz4fatF+KPJszEHXsGYjUG234aH/cOjW1wwTbKUZlA==",
+ "license": "MIT"
+ },
+ "node_modules/debug": {
+ "version": "2.6.9",
+ "resolved": "https://registry.npmjs.org/debug/-/debug-2.6.9.tgz",
+ "integrity": "sha512-bC7ElrdJaJnPbAP+1EotYvqZsb3ecl5wi6Bfi6BJTUcNowp6cvspg0jXznRTKDjm/E7AdgFBVeAPVMNcKGsHMA==",
+ "license": "MIT",
+ "dependencies": {
+ "ms": "2.0.0"
+ }
+ },
+ "node_modules/deep-eql": {
+ "version": "5.0.2",
+ "resolved": "https://registry.npmjs.org/deep-eql/-/deep-eql-5.0.2.tgz",
+ "integrity": "sha512-h5k/5U50IJJFpzfL6nO9jaaumfjO/f2NjK/oYB2Djzm4p9L+3T9qWpZqZ2hAbLPuuYq9wrU08WQyBTL5GbPk5Q==",
+ "dev": true,
+ "license": "MIT",
+ "engines": {
+ "node": ">=6"
+ }
+ },
+ "node_modules/delayed-stream": {
+ "version": "1.0.0",
+ "resolved": "https://registry.npmjs.org/delayed-stream/-/delayed-stream-1.0.0.tgz",
+ "integrity": "sha512-ZySD7Nf91aLB0RxL4KGrKHBXl7Eds1DAmEdcoVawXnLD7SDhpNgtuII2aAkg7a7QS41jxPSZ17p4VdGnMHk3MQ==",
+ "license": "MIT",
+ "engines": {
+ "node": ">=0.4.0"
+ }
+ },
+ "node_modules/depd": {
+ "version": "2.0.0",
+ "resolved": "https://registry.npmjs.org/depd/-/depd-2.0.0.tgz",
+ "integrity": "sha512-g7nH6P6dyDioJogAAGprGpCtVImJhpPk/roCzdb3fIh61/s/nPsfR6onyMwkCAR/OlC3yBC0lESvUoQEAssIrw==",
+ "license": "MIT",
+ "engines": {
+ "node": ">= 0.8"
+ }
+ },
+ "node_modules/destroy": {
+ "version": "1.2.0",
+ "resolved": "https://registry.npmjs.org/destroy/-/destroy-1.2.0.tgz",
+ "integrity": "sha512-2sJGJTaXIIaR1w4iJSNoN0hnMY7Gpc/n8D4qSCJw8QqFWXf7cuAgnEHxBpweaVcPevC2l3KpjYCx3NypQQgaJg==",
+ "license": "MIT",
+ "engines": {
+ "node": ">= 0.8",
+ "npm": "1.2.8000 || >= 1.4.16"
+ }
+ },
+ "node_modules/dotenv": {
+ "version": "16.6.1",
+ "resolved": "https://registry.npmjs.org/dotenv/-/dotenv-16.6.1.tgz",
+ "integrity": "sha512-uBq4egWHTcTt33a72vpSG0z3HnPuIl6NqYcTrKEg2azoEyl2hpW0zqlxysq2pK9HlDIHyHyakeYaYnSAwd8bow==",
+ "license": "BSD-2-Clause",
+ "engines": {
+ "node": ">=12"
+ },
+ "funding": {
+ "url": "https://dotenvx.com"
+ }
+ },
+ "node_modules/dunder-proto": {
+ "version": "1.0.1",
+ "resolved": "https://registry.npmjs.org/dunder-proto/-/dunder-proto-1.0.1.tgz",
+ "integrity": "sha512-KIN/nDJBQRcXw0MLVhZE9iQHmG68qAVIBg9CqmUYjmQIhgij9U5MFvrqkUL5FbtyyzZuOeOt0zdeRe4UY7ct+A==",
+ "license": "MIT",
+ "dependencies": {
+ "call-bind-apply-helpers": "^1.0.1",
+ "es-errors": "^1.3.0",
+ "gopd": "^1.2.0"
+ },
+ "engines": {
+ "node": ">= 0.4"
+ }
+ },
+ "node_modules/ecdsa-sig-formatter": {
+ "version": "1.0.11",
+ "resolved": "https://registry.npmjs.org/ecdsa-sig-formatter/-/ecdsa-sig-formatter-1.0.11.tgz",
+ "integrity": "sha512-nagl3RYrbNv6kQkeJIpt6NJZy8twLB/2vtz6yN9Z4vRKHN4/QZJIEbqohALSgwKdnksuY3k5Addp5lg8sVoVcQ==",
+ "license": "Apache-2.0",
+ "dependencies": {
+ "safe-buffer": "^5.0.1"
+ }
+ },
+ "node_modules/ee-first": {
+ "version": "1.1.1",
+ "resolved": "https://registry.npmjs.org/ee-first/-/ee-first-1.1.1.tgz",
+ "integrity": "sha512-WMwm9LhRUo+WUaRN+vRuETqG89IgZphVSNkdFgeb6sS/E4OrDIN7t48CAewSHXc6C8lefD8KKfr5vY61brQlow==",
+ "license": "MIT"
+ },
+ "node_modules/encodeurl": {
+ "version": "2.0.0",
+ "resolved": "https://registry.npmjs.org/encodeurl/-/encodeurl-2.0.0.tgz",
+ "integrity": "sha512-Q0n9HRi4m6JuGIV1eFlmvJB7ZEVxu93IrMyiMsGC0lrMJMWzRgx6WGquyfQgZVb31vhGgXnfmPNNXmxnOkRBrg==",
+ "license": "MIT",
+ "engines": {
+ "node": ">= 0.8"
+ }
+ },
+ "node_modules/es-define-property": {
+ "version": "1.0.1",
+ "resolved": "https://registry.npmjs.org/es-define-property/-/es-define-property-1.0.1.tgz",
+ "integrity": "sha512-e3nRfgfUZ4rNGL232gUgX06QNyyez04KdjFrF+LTRoOXmrOgFKDg4BCdsjW8EnT69eqdYGmRpJwiPVYNrCaW3g==",
+ "license": "MIT",
+ "engines": {
+ "node": ">= 0.4"
+ }
+ },
+ "node_modules/es-errors": {
+ "version": "1.3.0",
+ "resolved": "https://registry.npmjs.org/es-errors/-/es-errors-1.3.0.tgz",
+ "integrity": "sha512-Zf5H2Kxt2xjTvbJvP2ZWLEICxA6j+hAmMzIlypy4xcBg1vKVnx89Wy0GbS+kf5cwCVFFzdCFh2XSCFNULS6csw==",
+ "license": "MIT",
+ "engines": {
+ "node": ">= 0.4"
+ }
+ },
+ "node_modules/es-module-lexer": {
+ "version": "1.7.0",
+ "resolved": "https://registry.npmjs.org/es-module-lexer/-/es-module-lexer-1.7.0.tgz",
+ "integrity": "sha512-jEQoCwk8hyb2AZziIOLhDqpm5+2ww5uIE6lkO/6jcOCusfk6LhMHpXXfBLXTZ7Ydyt0j4VoUQv6uGNYbdW+kBA==",
+ "dev": true,
+ "license": "MIT"
+ },
+ "node_modules/es-object-atoms": {
+ "version": "1.1.2",
+ "resolved": "https://registry.npmjs.org/es-object-atoms/-/es-object-atoms-1.1.2.tgz",
+ "integrity": "sha512-HWcBoN6NileqtSydK2FqHbS/LoDd2pqrnQHLyJzBj4kOp/ky2MWMN694xOfkK8/SnUsW2DH7EfyVlydKCsm1Zw==",
+ "license": "MIT",
+ "dependencies": {
+ "es-errors": "^1.3.0"
+ },
+ "engines": {
+ "node": ">= 0.4"
+ }
+ },
+ "node_modules/es-set-tostringtag": {
+ "version": "2.1.0",
+ "resolved": "https://registry.npmjs.org/es-set-tostringtag/-/es-set-tostringtag-2.1.0.tgz",
+ "integrity": "sha512-j6vWzfrGVfyXxge+O0x5sh6cvxAog0a/4Rdd2K36zCMV5eJ+/+tOAngRO8cODMNWbVRdVlmGZQL2YS3yR8bIUA==",
+ "license": "MIT",
+ "dependencies": {
+ "es-errors": "^1.3.0",
+ "get-intrinsic": "^1.2.6",
+ "has-tostringtag": "^1.0.2",
+ "hasown": "^2.0.2"
+ },
+ "engines": {
+ "node": ">= 0.4"
+ }
+ },
+ "node_modules/esbuild": {
+ "version": "0.28.1",
+ "resolved": "https://registry.npmjs.org/esbuild/-/esbuild-0.28.1.tgz",
+ "integrity": "sha512-HrJrvZv5ayxBzPfwphOoNzkzOIIlifzk0KJrGK2c8R4+LKpMtpYLQeUdjnwjWv/LZlkH2laZk+4w78pi99D4Vw==",
+ "dev": true,
+ "hasInstallScript": true,
+ "license": "MIT",
+ "bin": {
+ "esbuild": "bin/esbuild"
+ },
+ "engines": {
+ "node": ">=18"
+ },
+ "optionalDependencies": {
+ "@esbuild/aix-ppc64": "0.28.1",
+ "@esbuild/android-arm": "0.28.1",
+ "@esbuild/android-arm64": "0.28.1",
+ "@esbuild/android-x64": "0.28.1",
+ "@esbuild/darwin-arm64": "0.28.1",
+ "@esbuild/darwin-x64": "0.28.1",
+ "@esbuild/freebsd-arm64": "0.28.1",
+ "@esbuild/freebsd-x64": "0.28.1",
+ "@esbuild/linux-arm": "0.28.1",
+ "@esbuild/linux-arm64": "0.28.1",
+ "@esbuild/linux-ia32": "0.28.1",
+ "@esbuild/linux-loong64": "0.28.1",
+ "@esbuild/linux-mips64el": "0.28.1",
+ "@esbuild/linux-ppc64": "0.28.1",
+ "@esbuild/linux-riscv64": "0.28.1",
+ "@esbuild/linux-s390x": "0.28.1",
+ "@esbuild/linux-x64": "0.28.1",
+ "@esbuild/netbsd-arm64": "0.28.1",
+ "@esbuild/netbsd-x64": "0.28.1",
+ "@esbuild/openbsd-arm64": "0.28.1",
+ "@esbuild/openbsd-x64": "0.28.1",
+ "@esbuild/openharmony-arm64": "0.28.1",
+ "@esbuild/sunos-x64": "0.28.1",
+ "@esbuild/win32-arm64": "0.28.1",
+ "@esbuild/win32-ia32": "0.28.1",
+ "@esbuild/win32-x64": "0.28.1"
+ }
+ },
+ "node_modules/escape-html": {
+ "version": "1.0.3",
+ "resolved": "https://registry.npmjs.org/escape-html/-/escape-html-1.0.3.tgz",
+ "integrity": "sha512-NiSupZ4OeuGwr68lGIeym/ksIZMJodUGOSCZ/FSnTxcrekbvqrgdUxlJOMpijaKZVjAJrWrGs/6Jy8OMuyj9ow==",
+ "license": "MIT"
+ },
+ "node_modules/estree-walker": {
+ "version": "3.0.3",
+ "resolved": "https://registry.npmjs.org/estree-walker/-/estree-walker-3.0.3.tgz",
+ "integrity": "sha512-7RUKfXgSMMkzt6ZuXmqapOurLGPPfgj6l9uRZ7lRGolvk0y2yocc35LdcxKC5PQZdn2DMqioAQ2NoWcrTKmm6g==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "@types/estree": "^1.0.0"
+ }
+ },
+ "node_modules/etag": {
+ "version": "1.8.1",
+ "resolved": "https://registry.npmjs.org/etag/-/etag-1.8.1.tgz",
+ "integrity": "sha512-aIL5Fx7mawVa300al2BnEE4iNvo1qETxLrPI/o05L7z6go7fCw1J6EQmbK4FmJ2AS7kgVF/KEZWufBfdClMcPg==",
+ "license": "MIT",
+ "engines": {
+ "node": ">= 0.6"
+ }
+ },
+ "node_modules/expect-type": {
+ "version": "1.3.0",
+ "resolved": "https://registry.npmjs.org/expect-type/-/expect-type-1.3.0.tgz",
+ "integrity": "sha512-knvyeauYhqjOYvQ66MznSMs83wmHrCycNEN6Ao+2AeYEfxUIkuiVxdEa1qlGEPK+We3n0THiDciYSsCcgW/DoA==",
+ "dev": true,
+ "license": "Apache-2.0",
+ "engines": {
+ "node": ">=12.0.0"
+ }
+ },
+ "node_modules/express": {
+ "version": "4.22.2",
+ "resolved": "https://registry.npmjs.org/express/-/express-4.22.2.tgz",
+ "integrity": "sha512-IuL+Elrou2ZvCFHs18/CIzy2Nzvo25nZ1/D2eIZlz7c+QUayAcYoiM2BthCjs+EBHVpjYjcuLDAiCWgeIX3X1Q==",
+ "license": "MIT",
+ "dependencies": {
+ "accepts": "~1.3.8",
+ "array-flatten": "1.1.1",
+ "body-parser": "~1.20.5",
+ "content-disposition": "~0.5.4",
+ "content-type": "~1.0.4",
+ "cookie": "~0.7.1",
+ "cookie-signature": "~1.0.6",
+ "debug": "2.6.9",
+ "depd": "2.0.0",
+ "encodeurl": "~2.0.0",
+ "escape-html": "~1.0.3",
+ "etag": "~1.8.1",
+ "finalhandler": "~1.3.1",
+ "fresh": "~0.5.2",
+ "http-errors": "~2.0.0",
+ "merge-descriptors": "1.0.3",
+ "methods": "~1.1.2",
+ "on-finished": "~2.4.1",
+ "parseurl": "~1.3.3",
+ "path-to-regexp": "~0.1.12",
+ "proxy-addr": "~2.0.7",
+ "qs": "~6.15.1",
+ "range-parser": "~1.2.1",
+ "safe-buffer": "5.2.1",
+ "send": "~0.19.0",
+ "serve-static": "~1.16.2",
+ "setprototypeof": "1.2.0",
+ "statuses": "~2.0.1",
+ "type-is": "~1.6.18",
+ "utils-merge": "1.0.1",
+ "vary": "~1.1.2"
+ },
+ "engines": {
+ "node": ">= 0.10.0"
+ },
+ "funding": {
+ "type": "opencollective",
+ "url": "https://opencollective.com/express"
+ }
+ },
+ "node_modules/finalhandler": {
+ "version": "1.3.2",
+ "resolved": "https://registry.npmjs.org/finalhandler/-/finalhandler-1.3.2.tgz",
+ "integrity": "sha512-aA4RyPcd3badbdABGDuTXCMTtOneUCAYH/gxoYRTZlIJdF0YPWuGqiAsIrhNnnqdXGswYk6dGujem4w80UJFhg==",
+ "license": "MIT",
+ "dependencies": {
+ "debug": "2.6.9",
+ "encodeurl": "~2.0.0",
+ "escape-html": "~1.0.3",
+ "on-finished": "~2.4.1",
+ "parseurl": "~1.3.3",
+ "statuses": "~2.0.2",
+ "unpipe": "~1.0.0"
+ },
+ "engines": {
+ "node": ">= 0.8"
+ }
+ },
+ "node_modules/follow-redirects": {
+ "version": "1.16.0",
+ "resolved": "https://registry.npmjs.org/follow-redirects/-/follow-redirects-1.16.0.tgz",
+ "integrity": "sha512-y5rN/uOsadFT/JfYwhxRS5R7Qce+g3zG97+JrtFZlC9klX/W5hD7iiLzScI4nZqUS7DNUdhPgw4xI8W2LuXlUw==",
+ "funding": [
+ {
+ "type": "individual",
+ "url": "https://github.com/sponsors/RubenVerborgh"
+ }
+ ],
+ "license": "MIT",
+ "engines": {
+ "node": ">=4.0"
+ },
+ "peerDependenciesMeta": {
+ "debug": {
+ "optional": true
+ }
+ }
+ },
+ "node_modules/form-data": {
+ "version": "4.0.6",
+ "resolved": "https://registry.npmjs.org/form-data/-/form-data-4.0.6.tgz",
+ "integrity": "sha512-vKatAh4SlVfgbv+YtmhiRjhEMJsYpsG1Y2rMQtR+SVSbytsSD1YGzDIcrAJmdFec88u/+VoGmxnl+80gL1tRCQ==",
+ "license": "MIT",
+ "dependencies": {
+ "asynckit": "^0.4.0",
+ "combined-stream": "^1.0.8",
+ "es-set-tostringtag": "^2.1.0",
+ "hasown": "^2.0.4",
+ "mime-types": "^2.1.35"
+ },
+ "engines": {
+ "node": ">= 6"
+ }
+ },
+ "node_modules/forwarded": {
+ "version": "0.2.0",
+ "resolved": "https://registry.npmjs.org/forwarded/-/forwarded-0.2.0.tgz",
+ "integrity": "sha512-buRG0fpBtRHSTCOASe6hD258tEubFoRLb4ZNA6NxMVHNw2gOcwHo9wyablzMzOA5z9xA9L1KNjk/Nt6MT9aYow==",
+ "license": "MIT",
+ "engines": {
+ "node": ">= 0.6"
+ }
+ },
+ "node_modules/fresh": {
+ "version": "0.5.2",
+ "resolved": "https://registry.npmjs.org/fresh/-/fresh-0.5.2.tgz",
+ "integrity": "sha512-zJ2mQYM18rEFOudeV4GShTGIQ7RbzA7ozbU9I/XBpm7kqgMywgmylMwXHxZJmkVoYkna9d2pVXVXPdYTP9ej8Q==",
+ "license": "MIT",
+ "engines": {
+ "node": ">= 0.6"
+ }
+ },
+ "node_modules/fsevents": {
+ "version": "2.3.3",
+ "resolved": "https://registry.npmjs.org/fsevents/-/fsevents-2.3.3.tgz",
+ "integrity": "sha512-5xoDfX+fL7faATnagmWPpbFtwh/R77WmMMqqHGS65C3vvB0YHrgF+B1YmZ3441tMj5n63k0212XNoJwzlhffQw==",
+ "dev": true,
+ "hasInstallScript": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "darwin"
+ ],
+ "engines": {
+ "node": "^8.16.0 || ^10.6.0 || >=11.0.0"
+ }
+ },
+ "node_modules/function-bind": {
+ "version": "1.1.2",
+ "resolved": "https://registry.npmjs.org/function-bind/-/function-bind-1.1.2.tgz",
+ "integrity": "sha512-7XHNxH7qX9xG5mIwxkhumTox/MIRNcOgDrxWsMt2pAr23WHp6MrRlN7FBSFpCpr+oVO0F744iUgR82nJMfG2SA==",
+ "license": "MIT",
+ "funding": {
+ "url": "https://github.com/sponsors/ljharb"
+ }
+ },
+ "node_modules/get-intrinsic": {
+ "version": "1.3.0",
+ "resolved": "https://registry.npmjs.org/get-intrinsic/-/get-intrinsic-1.3.0.tgz",
+ "integrity": "sha512-9fSjSaos/fRIVIp+xSJlE6lfwhES7LNtKaCBIamHsjr2na1BiABJPo0mOjjz8GJDURarmCPGqaiVg5mfjb98CQ==",
+ "license": "MIT",
+ "dependencies": {
+ "call-bind-apply-helpers": "^1.0.2",
+ "es-define-property": "^1.0.1",
+ "es-errors": "^1.3.0",
+ "es-object-atoms": "^1.1.1",
+ "function-bind": "^1.1.2",
+ "get-proto": "^1.0.1",
+ "gopd": "^1.2.0",
+ "has-symbols": "^1.1.0",
+ "hasown": "^2.0.2",
+ "math-intrinsics": "^1.1.0"
+ },
+ "engines": {
+ "node": ">= 0.4"
+ },
+ "funding": {
+ "url": "https://github.com/sponsors/ljharb"
+ }
+ },
+ "node_modules/get-proto": {
+ "version": "1.0.1",
+ "resolved": "https://registry.npmjs.org/get-proto/-/get-proto-1.0.1.tgz",
+ "integrity": "sha512-sTSfBjoXBp89JvIKIefqw7U2CCebsc74kiY6awiGogKtoSGbgjYE/G/+l9sF3MWFPNc9IcoOC4ODfKHfxFmp0g==",
+ "license": "MIT",
+ "dependencies": {
+ "dunder-proto": "^1.0.1",
+ "es-object-atoms": "^1.0.0"
+ },
+ "engines": {
+ "node": ">= 0.4"
+ }
+ },
+ "node_modules/gopd": {
+ "version": "1.2.0",
+ "resolved": "https://registry.npmjs.org/gopd/-/gopd-1.2.0.tgz",
+ "integrity": "sha512-ZUKRh6/kUFoAiTAtTYPZJ3hw9wNxx+BIBOijnlG9PnrJsCcSjs1wyyD6vJpaYtgnzDrKYRSqf3OO6Rfa93xsRg==",
+ "license": "MIT",
+ "engines": {
+ "node": ">= 0.4"
+ },
+ "funding": {
+ "url": "https://github.com/sponsors/ljharb"
+ }
+ },
+ "node_modules/has-symbols": {
+ "version": "1.1.0",
+ "resolved": "https://registry.npmjs.org/has-symbols/-/has-symbols-1.1.0.tgz",
+ "integrity": "sha512-1cDNdwJ2Jaohmb3sg4OmKaMBwuC48sYni5HUw2DvsC8LjGTLK9h+eb1X6RyuOHe4hT0ULCW68iomhjUoKUqlPQ==",
+ "license": "MIT",
+ "engines": {
+ "node": ">= 0.4"
+ },
+ "funding": {
+ "url": "https://github.com/sponsors/ljharb"
+ }
+ },
+ "node_modules/has-tostringtag": {
+ "version": "1.0.2",
+ "resolved": "https://registry.npmjs.org/has-tostringtag/-/has-tostringtag-1.0.2.tgz",
+ "integrity": "sha512-NqADB8VjPFLM2V0VvHUewwwsw0ZWBaIdgo+ieHtK3hasLz4qeCRjYcqfB6AQrBggRKppKF8L52/VqdVsO47Dlw==",
+ "license": "MIT",
+ "dependencies": {
+ "has-symbols": "^1.0.3"
+ },
+ "engines": {
+ "node": ">= 0.4"
+ },
+ "funding": {
+ "url": "https://github.com/sponsors/ljharb"
+ }
+ },
+ "node_modules/hasown": {
+ "version": "2.0.4",
+ "resolved": "https://registry.npmjs.org/hasown/-/hasown-2.0.4.tgz",
+ "integrity": "sha512-T2UbfbBEF32wiepXIsMlTW9+dDYC6wMh/t/vYA4tuOMKqWz/n3vr1NFSxQiyP+zk2mXsoMA/i/7qV6LKut1t1A==",
+ "license": "MIT",
+ "dependencies": {
+ "function-bind": "^1.1.2"
+ },
+ "engines": {
+ "node": ">= 0.4"
+ }
+ },
+ "node_modules/http-errors": {
+ "version": "2.0.1",
+ "resolved": "https://registry.npmjs.org/http-errors/-/http-errors-2.0.1.tgz",
+ "integrity": "sha512-4FbRdAX+bSdmo4AUFuS0WNiPz8NgFt+r8ThgNWmlrjQjt1Q7ZR9+zTlce2859x4KSXrwIsaeTqDoKQmtP8pLmQ==",
+ "license": "MIT",
+ "dependencies": {
+ "depd": "~2.0.0",
+ "inherits": "~2.0.4",
+ "setprototypeof": "~1.2.0",
+ "statuses": "~2.0.2",
+ "toidentifier": "~1.0.1"
+ },
+ "engines": {
+ "node": ">= 0.8"
+ },
+ "funding": {
+ "type": "opencollective",
+ "url": "https://opencollective.com/express"
+ }
+ },
+ "node_modules/https-proxy-agent": {
+ "version": "5.0.1",
+ "resolved": "https://registry.npmjs.org/https-proxy-agent/-/https-proxy-agent-5.0.1.tgz",
+ "integrity": "sha512-dFcAjpTQFgoLMzC2VwU+C/CbS7uRL0lWmxDITmqm7C+7F0Odmj6s9l6alZc6AELXhrnggM2CeWSXHGOdX2YtwA==",
+ "license": "MIT",
+ "dependencies": {
+ "agent-base": "6",
+ "debug": "4"
+ },
+ "engines": {
+ "node": ">= 6"
+ }
+ },
+ "node_modules/https-proxy-agent/node_modules/debug": {
+ "version": "4.4.3",
+ "resolved": "https://registry.npmjs.org/debug/-/debug-4.4.3.tgz",
+ "integrity": "sha512-RGwwWnwQvkVfavKVt22FGLw+xYSdzARwm0ru6DhTVA3umU5hZc28V3kO4stgYryrTlLpuvgI9GiijltAjNbcqA==",
+ "license": "MIT",
+ "dependencies": {
+ "ms": "^2.1.3"
+ },
+ "engines": {
+ "node": ">=6.0"
+ },
+ "peerDependenciesMeta": {
+ "supports-color": {
+ "optional": true
+ }
+ }
+ },
+ "node_modules/https-proxy-agent/node_modules/ms": {
+ "version": "2.1.3",
+ "resolved": "https://registry.npmjs.org/ms/-/ms-2.1.3.tgz",
+ "integrity": "sha512-6FlzubTLZG3J2a/NVCAleEhjzq5oxgHyaCU9yYXvcLsvoVaHJq/s5xXI6/XXP6tz7R9xAOtHnSO/tXtF3WRTlA==",
+ "license": "MIT"
+ },
+ "node_modules/iconv-lite": {
+ "version": "0.4.24",
+ "resolved": "https://registry.npmjs.org/iconv-lite/-/iconv-lite-0.4.24.tgz",
+ "integrity": "sha512-v3MXnZAcvnywkTUEZomIActle7RXXeedOR31wwl7VlyoXO4Qi9arvSenNQWne1TcRwhCL1HwLI21bEqdpj8/rA==",
+ "license": "MIT",
+ "dependencies": {
+ "safer-buffer": ">= 2.1.2 < 3"
+ },
+ "engines": {
+ "node": ">=0.10.0"
+ }
+ },
+ "node_modules/ieee754": {
+ "version": "1.2.1",
+ "resolved": "https://registry.npmjs.org/ieee754/-/ieee754-1.2.1.tgz",
+ "integrity": "sha512-dcyqhDvX1C46lXZcVqCpK+FtMRQVdIMN6/Df5js2zouUsqG7I6sFxitIC+7KYK29KdXOLHdu9zL4sFnoVQnqaA==",
+ "funding": [
+ {
+ "type": "github",
+ "url": "https://github.com/sponsors/feross"
+ },
+ {
+ "type": "patreon",
+ "url": "https://www.patreon.com/feross"
+ },
+ {
+ "type": "consulting",
+ "url": "https://feross.org/support"
+ }
+ ],
+ "license": "BSD-3-Clause"
+ },
+ "node_modules/inherits": {
+ "version": "2.0.4",
+ "resolved": "https://registry.npmjs.org/inherits/-/inherits-2.0.4.tgz",
+ "integrity": "sha512-k/vGaX4/Yla3WzyMCvTQOXYeIHvqOKtnqBduzTHpzpQZzAskKMhZ2K+EnBiSM9zGSoIFeMpXKxa4dYeZIQqewQ==",
+ "license": "ISC"
+ },
+ "node_modules/ipaddr.js": {
+ "version": "1.9.1",
+ "resolved": "https://registry.npmjs.org/ipaddr.js/-/ipaddr.js-1.9.1.tgz",
+ "integrity": "sha512-0KI/607xoxSToH7GjN1FfSbLoU0+btTicjsQSWQlh/hZykN8KpmMf7uYwPW3R+akZ6R/w18ZlXSHBYXiYUPO3g==",
+ "license": "MIT",
+ "engines": {
+ "node": ">= 0.10"
+ }
+ },
+ "node_modules/jose": {
+ "version": "4.15.9",
+ "resolved": "https://registry.npmjs.org/jose/-/jose-4.15.9.tgz",
+ "integrity": "sha512-1vUQX+IdDMVPj4k8kOxgUqlcK518yluMuGZwqlr44FS1ppZB/5GWh4rZG89erpOBOJjU/OBsnCVFfapsRz6nEA==",
+ "license": "MIT",
+ "funding": {
+ "url": "https://github.com/sponsors/panva"
+ }
+ },
+ "node_modules/jsonwebtoken": {
+ "version": "9.0.3",
+ "resolved": "https://registry.npmjs.org/jsonwebtoken/-/jsonwebtoken-9.0.3.tgz",
+ "integrity": "sha512-MT/xP0CrubFRNLNKvxJ2BYfy53Zkm++5bX9dtuPbqAeQpTVe0MQTFhao8+Cp//EmJp244xt6Drw/GVEGCUj40g==",
+ "license": "MIT",
+ "dependencies": {
+ "jws": "^4.0.1",
+ "lodash.includes": "^4.3.0",
+ "lodash.isboolean": "^3.0.3",
+ "lodash.isinteger": "^4.0.4",
+ "lodash.isnumber": "^3.0.3",
+ "lodash.isplainobject": "^4.0.6",
+ "lodash.isstring": "^4.0.1",
+ "lodash.once": "^4.0.0",
+ "ms": "^2.1.1",
+ "semver": "^7.5.4"
+ },
+ "engines": {
+ "node": ">=12",
+ "npm": ">=6"
+ }
+ },
+ "node_modules/jsonwebtoken/node_modules/ms": {
+ "version": "2.1.3",
+ "resolved": "https://registry.npmjs.org/ms/-/ms-2.1.3.tgz",
+ "integrity": "sha512-6FlzubTLZG3J2a/NVCAleEhjzq5oxgHyaCU9yYXvcLsvoVaHJq/s5xXI6/XXP6tz7R9xAOtHnSO/tXtF3WRTlA==",
+ "license": "MIT"
+ },
+ "node_modules/jwa": {
+ "version": "2.0.1",
+ "resolved": "https://registry.npmjs.org/jwa/-/jwa-2.0.1.tgz",
+ "integrity": "sha512-hRF04fqJIP8Abbkq5NKGN0Bbr3JxlQ+qhZufXVr0DvujKy93ZCbXZMHDL4EOtodSbCWxOqR8MS1tXA5hwqCXDg==",
+ "license": "MIT",
+ "dependencies": {
+ "buffer-equal-constant-time": "^1.0.1",
+ "ecdsa-sig-formatter": "1.0.11",
+ "safe-buffer": "^5.0.1"
+ }
+ },
+ "node_modules/jws": {
+ "version": "4.0.1",
+ "resolved": "https://registry.npmjs.org/jws/-/jws-4.0.1.tgz",
+ "integrity": "sha512-EKI/M/yqPncGUUh44xz0PxSidXFr/+r0pA70+gIYhjv+et7yxM+s29Y+VGDkovRofQem0fs7Uvf4+YmAdyRduA==",
+ "license": "MIT",
+ "dependencies": {
+ "jwa": "^2.0.1",
+ "safe-buffer": "^5.0.1"
+ }
+ },
+ "node_modules/libphonenumber-js": {
+ "version": "1.13.7",
+ "resolved": "https://registry.npmjs.org/libphonenumber-js/-/libphonenumber-js-1.13.7.tgz",
+ "integrity": "sha512-rvr3HIMdOgzhz1RFGjftji+wjoAFlzhqCNqJOU/MKTZQ8d9NZxAR/tI+0weDicyoucqVR0U1GCniqHJ0f8aM2A==",
+ "license": "MIT"
+ },
+ "node_modules/lodash.includes": {
+ "version": "4.3.0",
+ "resolved": "https://registry.npmjs.org/lodash.includes/-/lodash.includes-4.3.0.tgz",
+ "integrity": "sha512-W3Bx6mdkRTGtlJISOvVD/lbqjTlPPUDTMnlXZFnVwi9NKJ6tiAk6LVdlhZMm17VZisqhKcgzpO5Wz91PCt5b0w==",
+ "license": "MIT"
+ },
+ "node_modules/lodash.isboolean": {
+ "version": "3.0.3",
+ "resolved": "https://registry.npmjs.org/lodash.isboolean/-/lodash.isboolean-3.0.3.tgz",
+ "integrity": "sha512-Bz5mupy2SVbPHURB98VAcw+aHh4vRV5IPNhILUCsOzRmsTmSQ17jIuqopAentWoehktxGd9e/hbIXq980/1QJg==",
+ "license": "MIT"
+ },
+ "node_modules/lodash.isinteger": {
+ "version": "4.0.4",
+ "resolved": "https://registry.npmjs.org/lodash.isinteger/-/lodash.isinteger-4.0.4.tgz",
+ "integrity": "sha512-DBwtEWN2caHQ9/imiNeEA5ys1JoRtRfY3d7V9wkqtbycnAmTvRRmbHKDV4a0EYc678/dia0jrte4tjYwVBaZUA==",
+ "license": "MIT"
+ },
+ "node_modules/lodash.isnumber": {
+ "version": "3.0.3",
+ "resolved": "https://registry.npmjs.org/lodash.isnumber/-/lodash.isnumber-3.0.3.tgz",
+ "integrity": "sha512-QYqzpfwO3/CWf3XP+Z+tkQsfaLL/EnUlXWVkIk5FUPc4sBdTehEqZONuyRt2P67PXAk+NXmTBcc97zw9t1FQrw==",
+ "license": "MIT"
+ },
+ "node_modules/lodash.isplainobject": {
+ "version": "4.0.6",
+ "resolved": "https://registry.npmjs.org/lodash.isplainobject/-/lodash.isplainobject-4.0.6.tgz",
+ "integrity": "sha512-oSXzaWypCMHkPC3NvBEaPHf0KsA5mvPrOPgQWDsbg8n7orZ290M0BmC/jgRZ4vcJ6DTAhjrsSYgdsW/F+MFOBA==",
+ "license": "MIT"
+ },
+ "node_modules/lodash.isstring": {
+ "version": "4.0.1",
+ "resolved": "https://registry.npmjs.org/lodash.isstring/-/lodash.isstring-4.0.1.tgz",
+ "integrity": "sha512-0wJxfxH1wgO3GrbuP+dTTk7op+6L41QCXbGINEmD+ny/G/eCqGzxyCsh7159S+mgDDcoarnBw6PC1PS5+wUGgw==",
+ "license": "MIT"
+ },
+ "node_modules/lodash.once": {
+ "version": "4.1.1",
+ "resolved": "https://registry.npmjs.org/lodash.once/-/lodash.once-4.1.1.tgz",
+ "integrity": "sha512-Sb487aTOCr9drQVL8pIxOzVhafOjZN9UU54hiN8PU3uAiSV7lx1yYNpbNmex2PK6dSJoNTSJUUswT651yww3Mg==",
+ "license": "MIT"
+ },
+ "node_modules/loupe": {
+ "version": "3.2.1",
+ "resolved": "https://registry.npmjs.org/loupe/-/loupe-3.2.1.tgz",
+ "integrity": "sha512-CdzqowRJCeLU72bHvWqwRBBlLcMEtIvGrlvef74kMnV2AolS9Y8xUv1I0U/MNAWMhBlKIoyuEgoJ0t/bbwHbLQ==",
+ "dev": true,
+ "license": "MIT"
+ },
+ "node_modules/magic-string": {
+ "version": "0.30.21",
+ "resolved": "https://registry.npmjs.org/magic-string/-/magic-string-0.30.21.tgz",
+ "integrity": "sha512-vd2F4YUyEXKGcLHoq+TEyCjxueSeHnFxyyjNp80yg0XV4vUhnDer/lvvlqM/arB5bXQN5K2/3oinyCRyx8T2CQ==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "@jridgewell/sourcemap-codec": "^1.5.5"
+ }
+ },
+ "node_modules/math-intrinsics": {
+ "version": "1.1.0",
+ "resolved": "https://registry.npmjs.org/math-intrinsics/-/math-intrinsics-1.1.0.tgz",
+ "integrity": "sha512-/IXtbwEk5HTPyEwyKX6hGkYXxM9nbj64B+ilVJnC/R6B0pH5G4V3b0pVbL7DBj4tkhBAppbQUlf6F6Xl9LHu1g==",
+ "license": "MIT",
+ "engines": {
+ "node": ">= 0.4"
+ }
+ },
+ "node_modules/media-typer": {
+ "version": "0.3.0",
+ "resolved": "https://registry.npmjs.org/media-typer/-/media-typer-0.3.0.tgz",
+ "integrity": "sha512-dq+qelQ9akHpcOl/gUVRTxVIOkAJ1wR3QAvb4RsVjS8oVoFjDGTc679wJYmUmknUF5HwMLOgb5O+a3KxfWapPQ==",
+ "license": "MIT",
+ "engines": {
+ "node": ">= 0.6"
+ }
+ },
+ "node_modules/merge-descriptors": {
+ "version": "1.0.3",
+ "resolved": "https://registry.npmjs.org/merge-descriptors/-/merge-descriptors-1.0.3.tgz",
+ "integrity": "sha512-gaNvAS7TZ897/rVaZ0nMtAyxNyi/pdbjbAwUpFQpN70GqnVfOiXpeUUMKRBmzXaSQ8DdTX4/0ms62r2K+hE6mQ==",
+ "license": "MIT",
+ "funding": {
+ "url": "https://github.com/sponsors/sindresorhus"
+ }
+ },
+ "node_modules/methods": {
+ "version": "1.1.2",
+ "resolved": "https://registry.npmjs.org/methods/-/methods-1.1.2.tgz",
+ "integrity": "sha512-iclAHeNqNm68zFtnZ0e+1L2yUIdvzNoauKU4WBA3VvH/vPFieF7qfRlwUZU+DA9P9bPXIS90ulxoUoCH23sV2w==",
+ "license": "MIT",
+ "engines": {
+ "node": ">= 0.6"
+ }
+ },
+ "node_modules/mime": {
+ "version": "1.6.0",
+ "resolved": "https://registry.npmjs.org/mime/-/mime-1.6.0.tgz",
+ "integrity": "sha512-x0Vn8spI+wuJ1O6S7gnbaQg8Pxh4NNHb7KSINmEWKiPE4RKOplvijn+NkmYmmRgP68mc70j2EbeTFRsrswaQeg==",
+ "license": "MIT",
+ "bin": {
+ "mime": "cli.js"
+ },
+ "engines": {
+ "node": ">=4"
+ }
+ },
+ "node_modules/mime-db": {
+ "version": "1.52.0",
+ "resolved": "https://registry.npmjs.org/mime-db/-/mime-db-1.52.0.tgz",
+ "integrity": "sha512-sPU4uV7dYlvtWJxwwxHD0PuihVNiE7TyAbQ5SWxDCB9mUYvOgroQOwYQQOKPJ8CIbE+1ETVlOoK1UC2nU3gYvg==",
+ "license": "MIT",
+ "engines": {
+ "node": ">= 0.6"
+ }
+ },
+ "node_modules/mime-types": {
+ "version": "2.1.35",
+ "resolved": "https://registry.npmjs.org/mime-types/-/mime-types-2.1.35.tgz",
+ "integrity": "sha512-ZDY+bPm5zTTF+YpCrAU9nK0UgICYPT0QtT1NZWFv4s++TNkcgVaT0g6+4R2uI4MjQjzysHB1zxuWL50hzaeXiw==",
+ "license": "MIT",
+ "dependencies": {
+ "mime-db": "1.52.0"
+ },
+ "engines": {
+ "node": ">= 0.6"
+ }
+ },
+ "node_modules/ms": {
+ "version": "2.0.0",
+ "resolved": "https://registry.npmjs.org/ms/-/ms-2.0.0.tgz",
+ "integrity": "sha512-Tpp60P6IUJDTuOq/5Z8cdskzJujfwqfOTkrwIwj7IRISpnkJnT6SyJ4PCPnGMoFjC9ddhal5KVIYtAt97ix05A==",
+ "license": "MIT"
+ },
+ "node_modules/nanoid": {
+ "version": "3.3.15",
+ "resolved": "https://registry.npmjs.org/nanoid/-/nanoid-3.3.15.tgz",
+ "integrity": "sha512-y7Wygv/7mEOvxTuEQDB8StXdMRBWf1kR/tlhAzBRUFkB2jfcLOAxO/SHmOO2zgz1pVgK29/kyupn059/bCHdjA==",
+ "dev": true,
+ "funding": [
+ {
+ "type": "github",
+ "url": "https://github.com/sponsors/ai"
+ }
+ ],
+ "license": "MIT",
+ "bin": {
+ "nanoid": "bin/nanoid.cjs"
+ },
+ "engines": {
+ "node": "^10 || ^12 || ^13.7 || ^14 || >=15.0.1"
+ }
+ },
+ "node_modules/negotiator": {
+ "version": "0.6.3",
+ "resolved": "https://registry.npmjs.org/negotiator/-/negotiator-0.6.3.tgz",
+ "integrity": "sha512-+EUsqGPLsM+j/zdChZjsnX51g4XrHFOIXwfnCVPGlQk/k5giakcKsuxCObBRu6DSm9opw/O6slWbJdghQM4bBg==",
+ "license": "MIT",
+ "engines": {
+ "node": ">= 0.6"
+ }
+ },
+ "node_modules/node-fetch": {
+ "version": "2.7.0",
+ "resolved": "https://registry.npmjs.org/node-fetch/-/node-fetch-2.7.0.tgz",
+ "integrity": "sha512-c4FRfUm/dbcWZ7U+1Wq0AwCyFL+3nt2bEw05wfxSz+DWpWsitgmSgYmy2dQdWyKC1694ELPqMs/YzUSNozLt8A==",
+ "license": "MIT",
+ "dependencies": {
+ "whatwg-url": "^5.0.0"
+ },
+ "engines": {
+ "node": "4.x || >=6.0.0"
+ },
+ "peerDependencies": {
+ "encoding": "^0.1.0"
+ },
+ "peerDependenciesMeta": {
+ "encoding": {
+ "optional": true
+ }
+ }
+ },
+ "node_modules/nodemailer": {
+ "version": "6.10.1",
+ "resolved": "https://registry.npmjs.org/nodemailer/-/nodemailer-6.10.1.tgz",
+ "integrity": "sha512-Z+iLaBGVaSjbIzQ4pX6XV41HrooLsQ10ZWPUehGmuantvzWoDVBnmsdUcOIDM1t+yPor5pDhVlDESgOMEGxhHA==",
+ "license": "MIT-0",
+ "engines": {
+ "node": ">=6.0.0"
+ }
+ },
+ "node_modules/object-assign": {
+ "version": "4.1.1",
+ "resolved": "https://registry.npmjs.org/object-assign/-/object-assign-4.1.1.tgz",
+ "integrity": "sha512-rJgTQnkUnH1sFw8yT6VSU3zD3sWmu6sZhIseY8VX+GRu3P6F7Fu+JNDoXfklElbLJSnc3FUQHVe4cU5hj+BcUg==",
+ "license": "MIT",
+ "engines": {
+ "node": ">=0.10.0"
+ }
+ },
+ "node_modules/object-inspect": {
+ "version": "1.13.4",
+ "resolved": "https://registry.npmjs.org/object-inspect/-/object-inspect-1.13.4.tgz",
+ "integrity": "sha512-W67iLl4J2EXEGTbfeHCffrjDfitvLANg0UlX3wFUUSTx92KXRFegMHUVgSqE+wvhAbi4WqjGg9czysTV2Epbew==",
+ "license": "MIT",
+ "engines": {
+ "node": ">= 0.4"
+ },
+ "funding": {
+ "url": "https://github.com/sponsors/ljharb"
+ }
+ },
+ "node_modules/on-finished": {
+ "version": "2.4.1",
+ "resolved": "https://registry.npmjs.org/on-finished/-/on-finished-2.4.1.tgz",
+ "integrity": "sha512-oVlzkg3ENAhCk2zdv7IJwd/QUD4z2RxRwpkcGY8psCVcCYZNq4wYnVWALHM+brtuJjePWiYF/ClmuDr8Ch5+kg==",
+ "license": "MIT",
+ "dependencies": {
+ "ee-first": "1.1.1"
+ },
+ "engines": {
+ "node": ">= 0.8"
+ }
+ },
+ "node_modules/pako": {
+ "version": "2.1.0",
+ "resolved": "https://registry.npmjs.org/pako/-/pako-2.1.0.tgz",
+ "integrity": "sha512-w+eufiZ1WuJYgPXbV/PO3NCMEc3xqylkKHzp8bxp1uW4qaSNQUkwmLLEc3kKsfz8lpV1F8Ht3U1Cm+9Srog2ug==",
+ "license": "(MIT AND Zlib)"
+ },
+ "node_modules/parseurl": {
+ "version": "1.3.3",
+ "resolved": "https://registry.npmjs.org/parseurl/-/parseurl-1.3.3.tgz",
+ "integrity": "sha512-CiyeOxFT/JZyN5m0z9PfXw4SCBJ6Sygz1Dpl0wqjlhDEGGBP1GnsUVEL0p63hoG1fcj3fHynXi9NYO4nWOL+qQ==",
+ "license": "MIT",
+ "engines": {
+ "node": ">= 0.8"
+ }
+ },
+ "node_modules/path-to-regexp": {
+ "version": "0.1.13",
+ "resolved": "https://registry.npmjs.org/path-to-regexp/-/path-to-regexp-0.1.13.tgz",
+ "integrity": "sha512-A/AGNMFN3c8bOlvV9RreMdrv7jsmF9XIfDeCd87+I8RNg6s78BhJxMu69NEMHBSJFxKidViTEdruRwEk/WIKqA==",
+ "license": "MIT"
+ },
+ "node_modules/pathe": {
+ "version": "1.1.2",
+ "resolved": "https://registry.npmjs.org/pathe/-/pathe-1.1.2.tgz",
+ "integrity": "sha512-whLdWMYL2TwI08hn8/ZqAbrVemu0LNaNNJZX73O6qaIdCTfXutsLhMkjdENX0qhsQ9uIimo4/aQOmXkoon2nDQ==",
+ "dev": true,
+ "license": "MIT"
+ },
+ "node_modules/pathval": {
+ "version": "2.0.1",
+ "resolved": "https://registry.npmjs.org/pathval/-/pathval-2.0.1.tgz",
+ "integrity": "sha512-//nshmD55c46FuFw26xV/xFAaB5HF9Xdap7HJBBnrKdAd6/GxDBaNA1870O79+9ueg61cZLSVc+OaFlfmObYVQ==",
+ "dev": true,
+ "license": "MIT",
+ "engines": {
+ "node": ">= 14.16"
+ }
+ },
+ "node_modules/picocolors": {
+ "version": "1.1.1",
+ "resolved": "https://registry.npmjs.org/picocolors/-/picocolors-1.1.1.tgz",
+ "integrity": "sha512-xceH2snhtb5M9liqDsmEw56le376mTZkEX/jEb/RxNFyegNul7eNslCXP9FDj/Lcu0X8KEyMceP2ntpaHrDEVA==",
+ "dev": true,
+ "license": "ISC"
+ },
+ "node_modules/pkce-challenge": {
+ "version": "3.1.0",
+ "resolved": "https://registry.npmjs.org/pkce-challenge/-/pkce-challenge-3.1.0.tgz",
+ "integrity": "sha512-bQ/0XPZZ7eX+cdAkd61uYWpfMhakH3NeteUF1R8GNa+LMqX8QFAkbCLqq+AYAns1/ueACBu/BMWhrlKGrdvGZg==",
+ "license": "MIT",
+ "dependencies": {
+ "crypto-js": "^4.1.1"
+ }
+ },
+ "node_modules/postcss": {
+ "version": "8.5.15",
+ "resolved": "https://registry.npmjs.org/postcss/-/postcss-8.5.15.tgz",
+ "integrity": "sha512-FfR8sjd4em2T6fb3I2MwAJU7HWVMr9zba+enmQeeWFfCbm+UOC/0X4DS8XtpUTMwWMGbjKYP7xjfNekzyGmB3A==",
+ "dev": true,
+ "funding": [
+ {
+ "type": "opencollective",
+ "url": "https://opencollective.com/postcss/"
+ },
+ {
+ "type": "tidelift",
+ "url": "https://tidelift.com/funding/github/npm/postcss"
+ },
+ {
+ "type": "github",
+ "url": "https://github.com/sponsors/ai"
+ }
+ ],
+ "license": "MIT",
+ "dependencies": {
+ "nanoid": "^3.3.12",
+ "picocolors": "^1.1.1",
+ "source-map-js": "^1.2.1"
+ },
+ "engines": {
+ "node": "^10 || ^12 || >=14"
+ }
+ },
+ "node_modules/process": {
+ "version": "0.11.10",
+ "resolved": "https://registry.npmjs.org/process/-/process-0.11.10.tgz",
+ "integrity": "sha512-cdGef/drWFoydD1JsMzuFf8100nZl+GT+yacc2bEced5f9Rjk4z+WtFUTBu9PhOi9j/jfmBPu0mMEY4wIdAF8A==",
+ "license": "MIT",
+ "engines": {
+ "node": ">= 0.6.0"
+ }
+ },
+ "node_modules/proxy-addr": {
+ "version": "2.0.7",
+ "resolved": "https://registry.npmjs.org/proxy-addr/-/proxy-addr-2.0.7.tgz",
+ "integrity": "sha512-llQsMLSUDUPT44jdrU/O37qlnifitDP+ZwrmmZcoSKyLKvtZxpyV0n2/bD/N4tBAAZ/gJEdZU7KMraoK1+XYAg==",
+ "license": "MIT",
+ "dependencies": {
+ "forwarded": "0.2.0",
+ "ipaddr.js": "1.9.1"
+ },
+ "engines": {
+ "node": ">= 0.10"
+ }
+ },
+ "node_modules/proxy-from-env": {
+ "version": "2.1.0",
+ "resolved": "https://registry.npmjs.org/proxy-from-env/-/proxy-from-env-2.1.0.tgz",
+ "integrity": "sha512-cJ+oHTW1VAEa8cJslgmUZrc+sjRKgAKl3Zyse6+PV38hZe/V6Z14TbCuXcan9F9ghlz4QrFr2c92TNF82UkYHA==",
+ "license": "MIT",
+ "engines": {
+ "node": ">=10"
+ }
+ },
+ "node_modules/qs": {
+ "version": "6.15.2",
+ "resolved": "https://registry.npmjs.org/qs/-/qs-6.15.2.tgz",
+ "integrity": "sha512-Rzq0KEyX/w/tEybncDgdkZrJgVUsUMk3xjh3t5bv3S1HTAtg+uOYt72+ZfwiQwKdysThkTBdL/rTi6HDmX9Ddw==",
+ "license": "BSD-3-Clause",
+ "dependencies": {
+ "side-channel": "^1.1.0"
+ },
+ "engines": {
+ "node": ">=0.6"
+ },
+ "funding": {
+ "url": "https://github.com/sponsors/ljharb"
+ }
+ },
+ "node_modules/querystringify": {
+ "version": "2.2.0",
+ "resolved": "https://registry.npmjs.org/querystringify/-/querystringify-2.2.0.tgz",
+ "integrity": "sha512-FIqgj2EUvTa7R50u0rGsyTftzjYmv/a3hO345bZNrqabNqjtgiDMgmo4mkUjd+nzU5oF3dClKqFIPUKybUyqoQ==",
+ "license": "MIT"
+ },
+ "node_modules/range-parser": {
+ "version": "1.2.1",
+ "resolved": "https://registry.npmjs.org/range-parser/-/range-parser-1.2.1.tgz",
+ "integrity": "sha512-Hrgsx+orqoygnmhFbKaHE6c296J+HTAQXoxEF6gNupROmmGJRoyzfG3ccAveqCBrwr/2yxQ5BVd/GTl5agOwSg==",
+ "license": "MIT",
+ "engines": {
+ "node": ">= 0.6"
+ }
+ },
+ "node_modules/raw-body": {
+ "version": "2.5.3",
+ "resolved": "https://registry.npmjs.org/raw-body/-/raw-body-2.5.3.tgz",
+ "integrity": "sha512-s4VSOf6yN0rvbRZGxs8Om5CWj6seneMwK3oDb4lWDH0UPhWcxwOWw5+qk24bxq87szX1ydrwylIOp2uG1ojUpA==",
+ "license": "MIT",
+ "dependencies": {
+ "bytes": "~3.1.2",
+ "http-errors": "~2.0.1",
+ "iconv-lite": "~0.4.24",
+ "unpipe": "~1.0.0"
+ },
+ "engines": {
+ "node": ">= 0.8"
+ }
+ },
+ "node_modules/requires-port": {
+ "version": "1.0.0",
+ "resolved": "https://registry.npmjs.org/requires-port/-/requires-port-1.0.0.tgz",
+ "integrity": "sha512-KigOCHcocU3XODJxsu8i/j8T9tzT4adHiecwORRQ0ZZFcp7ahwXuRU1m+yuO90C5ZUyGeGfocHDI14M3L3yDAQ==",
+ "license": "MIT"
+ },
+ "node_modules/rollup": {
+ "version": "4.62.2",
+ "resolved": "https://registry.npmjs.org/rollup/-/rollup-4.62.2.tgz",
+ "integrity": "sha512-RFnrW4lhXA3s3eqHDZvN654g8OTjzRfqpIRJYczCGB6HzphckVAi/Qh4tbPUbRuDi7s1Llv8g/NspLkttY3gTA==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "@types/estree": "1.0.9"
+ },
+ "bin": {
+ "rollup": "dist/bin/rollup"
+ },
+ "engines": {
+ "node": ">=18.0.0",
+ "npm": ">=8.0.0"
+ },
+ "optionalDependencies": {
+ "@rollup/rollup-android-arm-eabi": "4.62.2",
+ "@rollup/rollup-android-arm64": "4.62.2",
+ "@rollup/rollup-darwin-arm64": "4.62.2",
+ "@rollup/rollup-darwin-x64": "4.62.2",
+ "@rollup/rollup-freebsd-arm64": "4.62.2",
+ "@rollup/rollup-freebsd-x64": "4.62.2",
+ "@rollup/rollup-linux-arm-gnueabihf": "4.62.2",
+ "@rollup/rollup-linux-arm-musleabihf": "4.62.2",
+ "@rollup/rollup-linux-arm64-gnu": "4.62.2",
+ "@rollup/rollup-linux-arm64-musl": "4.62.2",
+ "@rollup/rollup-linux-loong64-gnu": "4.62.2",
+ "@rollup/rollup-linux-loong64-musl": "4.62.2",
+ "@rollup/rollup-linux-ppc64-gnu": "4.62.2",
+ "@rollup/rollup-linux-ppc64-musl": "4.62.2",
+ "@rollup/rollup-linux-riscv64-gnu": "4.62.2",
+ "@rollup/rollup-linux-riscv64-musl": "4.62.2",
+ "@rollup/rollup-linux-s390x-gnu": "4.62.2",
+ "@rollup/rollup-linux-x64-gnu": "4.62.2",
+ "@rollup/rollup-linux-x64-musl": "4.62.2",
+ "@rollup/rollup-openbsd-x64": "4.62.2",
+ "@rollup/rollup-openharmony-arm64": "4.62.2",
+ "@rollup/rollup-win32-arm64-msvc": "4.62.2",
+ "@rollup/rollup-win32-ia32-msvc": "4.62.2",
+ "@rollup/rollup-win32-x64-gnu": "4.62.2",
+ "@rollup/rollup-win32-x64-msvc": "4.62.2",
+ "fsevents": "~2.3.2"
+ }
+ },
+ "node_modules/safe-buffer": {
+ "version": "5.2.1",
+ "resolved": "https://registry.npmjs.org/safe-buffer/-/safe-buffer-5.2.1.tgz",
+ "integrity": "sha512-rp3So07KcdmmKbGvgaNxQSJr7bGVSVk5S9Eq1F+ppbRo70+YeaDxkw5Dd8NPN+GD6bjnYm2VuPuCXmpuYvmCXQ==",
+ "funding": [
+ {
+ "type": "github",
+ "url": "https://github.com/sponsors/feross"
+ },
+ {
+ "type": "patreon",
+ "url": "https://www.patreon.com/feross"
+ },
+ {
+ "type": "consulting",
+ "url": "https://feross.org/support"
+ }
+ ],
+ "license": "MIT"
+ },
+ "node_modules/safer-buffer": {
+ "version": "2.1.2",
+ "resolved": "https://registry.npmjs.org/safer-buffer/-/safer-buffer-2.1.2.tgz",
+ "integrity": "sha512-YZo3K82SD7Riyi0E1EQPojLz7kpepnSQI9IyPbHHg1XXXevb5dJI7tpyN2ADxGcQbHG7vcyRHk0cbwqcQriUtg==",
+ "license": "MIT"
+ },
+ "node_modules/scmp": {
+ "version": "2.1.0",
+ "resolved": "https://registry.npmjs.org/scmp/-/scmp-2.1.0.tgz",
+ "integrity": "sha512-o/mRQGk9Rcer/jEEw/yw4mwo3EU/NvYvp577/Btqrym9Qy5/MdWGBqipbALgd2lrdWTJ5/gqDusxfnQBxOxT2Q==",
+ "deprecated": "Just use Node.js's crypto.timingSafeEqual()",
+ "license": "BSD-3-Clause"
+ },
+ "node_modules/semver": {
+ "version": "7.8.5",
+ "resolved": "https://registry.npmjs.org/semver/-/semver-7.8.5.tgz",
+ "integrity": "sha512-Y7/KDsb8LjooZpwaqGyulO6DQlksgCncchHGk+sZIY4SBvUocMBEFH5Ur1fI4dV+Jvl0w6cjvucaIi40puRioA==",
+ "license": "ISC",
+ "bin": {
+ "semver": "bin/semver.js"
+ },
+ "engines": {
+ "node": ">=10"
+ }
+ },
+ "node_modules/send": {
+ "version": "0.19.2",
+ "resolved": "https://registry.npmjs.org/send/-/send-0.19.2.tgz",
+ "integrity": "sha512-VMbMxbDeehAxpOtWJXlcUS5E8iXh6QmN+BkRX1GARS3wRaXEEgzCcB10gTQazO42tpNIya8xIyNx8fll1OFPrg==",
+ "license": "MIT",
+ "dependencies": {
+ "debug": "2.6.9",
+ "depd": "2.0.0",
+ "destroy": "1.2.0",
+ "encodeurl": "~2.0.0",
+ "escape-html": "~1.0.3",
+ "etag": "~1.8.1",
+ "fresh": "~0.5.2",
+ "http-errors": "~2.0.1",
+ "mime": "1.6.0",
+ "ms": "2.1.3",
+ "on-finished": "~2.4.1",
+ "range-parser": "~1.2.1",
+ "statuses": "~2.0.2"
+ },
+ "engines": {
+ "node": ">= 0.8.0"
+ }
+ },
+ "node_modules/send/node_modules/ms": {
+ "version": "2.1.3",
+ "resolved": "https://registry.npmjs.org/ms/-/ms-2.1.3.tgz",
+ "integrity": "sha512-6FlzubTLZG3J2a/NVCAleEhjzq5oxgHyaCU9yYXvcLsvoVaHJq/s5xXI6/XXP6tz7R9xAOtHnSO/tXtF3WRTlA==",
+ "license": "MIT"
+ },
+ "node_modules/serve-static": {
+ "version": "1.16.3",
+ "resolved": "https://registry.npmjs.org/serve-static/-/serve-static-1.16.3.tgz",
+ "integrity": "sha512-x0RTqQel6g5SY7Lg6ZreMmsOzncHFU7nhnRWkKgWuMTu5NN0DR5oruckMqRvacAN9d5w6ARnRBXl9xhDCgfMeA==",
+ "license": "MIT",
+ "dependencies": {
+ "encodeurl": "~2.0.0",
+ "escape-html": "~1.0.3",
+ "parseurl": "~1.3.3",
+ "send": "~0.19.1"
+ },
+ "engines": {
+ "node": ">= 0.8.0"
+ }
+ },
+ "node_modules/set-cookie-parser": {
+ "version": "2.7.2",
+ "resolved": "https://registry.npmjs.org/set-cookie-parser/-/set-cookie-parser-2.7.2.tgz",
+ "integrity": "sha512-oeM1lpU/UvhTxw+g3cIfxXHyJRc/uidd3yK1P242gzHds0udQBYzs3y8j4gCCW+ZJ7ad0yctld8RYO+bdurlvw==",
+ "license": "MIT"
+ },
+ "node_modules/setprototypeof": {
+ "version": "1.2.0",
+ "resolved": "https://registry.npmjs.org/setprototypeof/-/setprototypeof-1.2.0.tgz",
+ "integrity": "sha512-E5LDX7Wrp85Kil5bhZv46j8jOeboKq5JMmYM3gVGdGH8xFpPWXUMsNrlODCrkoxMEeNi/XZIwuRvY4XNwYMJpw==",
+ "license": "ISC"
+ },
+ "node_modules/side-channel": {
+ "version": "1.1.1",
+ "resolved": "https://registry.npmjs.org/side-channel/-/side-channel-1.1.1.tgz",
+ "integrity": "sha512-6x6dK6zJdpTzF4sQeNYxwtvBzf6Eg4GtlesS94HOvTudUeyK2WXAaIfmDgsyslYrRBeFIlsi54AYsFGUuhmvrQ==",
+ "license": "MIT",
+ "dependencies": {
+ "es-errors": "^1.3.0",
+ "object-inspect": "^1.13.4",
+ "side-channel-list": "^1.0.1",
+ "side-channel-map": "^1.0.1",
+ "side-channel-weakmap": "^1.0.2"
+ },
+ "engines": {
+ "node": ">= 0.4"
+ },
+ "funding": {
+ "url": "https://github.com/sponsors/ljharb"
+ }
+ },
+ "node_modules/side-channel-list": {
+ "version": "1.0.1",
+ "resolved": "https://registry.npmjs.org/side-channel-list/-/side-channel-list-1.0.1.tgz",
+ "integrity": "sha512-mjn/0bi/oUURjc5Xl7IaWi/OJJJumuoJFQJfDDyO46+hBWsfaVM65TBHq2eoZBhzl9EchxOijpkbRC8SVBQU0w==",
+ "license": "MIT",
+ "dependencies": {
+ "es-errors": "^1.3.0",
+ "object-inspect": "^1.13.4"
+ },
+ "engines": {
+ "node": ">= 0.4"
+ },
+ "funding": {
+ "url": "https://github.com/sponsors/ljharb"
+ }
+ },
+ "node_modules/side-channel-map": {
+ "version": "1.0.1",
+ "resolved": "https://registry.npmjs.org/side-channel-map/-/side-channel-map-1.0.1.tgz",
+ "integrity": "sha512-VCjCNfgMsby3tTdo02nbjtM/ewra6jPHmpThenkTYh8pG9ucZ/1P8So4u4FGBek/BjpOVsDCMoLA/iuBKIFXRA==",
+ "license": "MIT",
+ "dependencies": {
+ "call-bound": "^1.0.2",
+ "es-errors": "^1.3.0",
+ "get-intrinsic": "^1.2.5",
+ "object-inspect": "^1.13.3"
+ },
+ "engines": {
+ "node": ">= 0.4"
+ },
+ "funding": {
+ "url": "https://github.com/sponsors/ljharb"
+ }
+ },
+ "node_modules/side-channel-weakmap": {
+ "version": "1.0.2",
+ "resolved": "https://registry.npmjs.org/side-channel-weakmap/-/side-channel-weakmap-1.0.2.tgz",
+ "integrity": "sha512-WPS/HvHQTYnHisLo9McqBHOJk2FkHO/tlpvldyrnem4aeQp4hai3gythswg6p01oSoTl58rcpiFAjF2br2Ak2A==",
+ "license": "MIT",
+ "dependencies": {
+ "call-bound": "^1.0.2",
+ "es-errors": "^1.3.0",
+ "get-intrinsic": "^1.2.5",
+ "object-inspect": "^1.13.3",
+ "side-channel-map": "^1.0.1"
+ },
+ "engines": {
+ "node": ">= 0.4"
+ },
+ "funding": {
+ "url": "https://github.com/sponsors/ljharb"
+ }
+ },
+ "node_modules/siginfo": {
+ "version": "2.0.0",
+ "resolved": "https://registry.npmjs.org/siginfo/-/siginfo-2.0.0.tgz",
+ "integrity": "sha512-ybx0WO1/8bSBLEWXZvEd7gMW3Sn3JFlW3TvX1nREbDLRNQNaeNN8WK0meBwPdAaOI7TtRRRJn/Es1zhrrCHu7g==",
+ "dev": true,
+ "license": "ISC"
+ },
+ "node_modules/source-map-js": {
+ "version": "1.2.1",
+ "resolved": "https://registry.npmjs.org/source-map-js/-/source-map-js-1.2.1.tgz",
+ "integrity": "sha512-UXWMKhLOwVKb728IUtQPXxfYU+usdybtUrK/8uGE8CQMvrhOpwvzDBwj0QhSL7MQc7vIsISBG8VQ8+IDQxpfQA==",
+ "dev": true,
+ "license": "BSD-3-Clause",
+ "engines": {
+ "node": ">=0.10.0"
+ }
+ },
+ "node_modules/stackback": {
+ "version": "0.0.2",
+ "resolved": "https://registry.npmjs.org/stackback/-/stackback-0.0.2.tgz",
+ "integrity": "sha512-1XMJE5fQo1jGH6Y/7ebnwPOBEkIEnT4QF32d5R1+VXdXveM0IBMJt8zfaxX1P3QhVwrYe+576+jkANtSS2mBbw==",
+ "dev": true,
+ "license": "MIT"
+ },
+ "node_modules/statuses": {
+ "version": "2.0.2",
+ "resolved": "https://registry.npmjs.org/statuses/-/statuses-2.0.2.tgz",
+ "integrity": "sha512-DvEy55V3DB7uknRo+4iOGT5fP1slR8wQohVdknigZPMpMstaKJQWhwiYBACJE3Ul2pTnATihhBYnRhZQHGBiRw==",
+ "license": "MIT",
+ "engines": {
+ "node": ">= 0.8"
+ }
+ },
+ "node_modules/std-env": {
+ "version": "3.10.0",
+ "resolved": "https://registry.npmjs.org/std-env/-/std-env-3.10.0.tgz",
+ "integrity": "sha512-5GS12FdOZNliM5mAOxFRg7Ir0pWz8MdpYm6AY6VPkGpbA7ZzmbzNcBJQ0GPvvyWgcY7QAhCgf9Uy89I03faLkg==",
+ "dev": true,
+ "license": "MIT"
+ },
+ "node_modules/supertokens-js-override": {
+ "version": "0.0.4",
+ "resolved": "https://registry.npmjs.org/supertokens-js-override/-/supertokens-js-override-0.0.4.tgz",
+ "integrity": "sha512-r0JFBjkMIdep3Lbk3JA+MpnpuOtw4RSyrlRAbrzMcxwiYco3GFWl/daimQZ5b1forOiUODpOlXbSOljP/oyurg==",
+ "license": "Apache-2.0"
+ },
+ "node_modules/supertokens-node": {
+ "version": "21.1.2",
+ "resolved": "https://registry.npmjs.org/supertokens-node/-/supertokens-node-21.1.2.tgz",
+ "integrity": "sha512-YX5qxT/cP/qsuvsH9j8oSsOdkvJhOk4eM+pGpJ0YToj4LZMa8FIUFnh4SDuAO/AC4SuTeIyhysMG4DdDUJdz8Q==",
+ "license": "Apache-2.0",
+ "dependencies": {
+ "buffer": "^6.0.3",
+ "content-type": "^1.0.5",
+ "cookie": "^0.7.2",
+ "cross-fetch": "^3.1.6",
+ "debug": "^4.3.3",
+ "jose": "^4.13.1",
+ "libphonenumber-js": "^1.9.44",
+ "nodemailer": "^6.7.2",
+ "pako": "^2.1.0",
+ "pkce-challenge": "^3.0.0",
+ "process": "^0.11.10",
+ "set-cookie-parser": "^2.6.0",
+ "supertokens-js-override": "^0.0.4",
+ "tldts": "^6.1.48",
+ "twilio": "^4.19.3"
+ }
+ },
+ "node_modules/supertokens-node/node_modules/debug": {
+ "version": "4.4.3",
+ "resolved": "https://registry.npmjs.org/debug/-/debug-4.4.3.tgz",
+ "integrity": "sha512-RGwwWnwQvkVfavKVt22FGLw+xYSdzARwm0ru6DhTVA3umU5hZc28V3kO4stgYryrTlLpuvgI9GiijltAjNbcqA==",
+ "license": "MIT",
+ "dependencies": {
+ "ms": "^2.1.3"
+ },
+ "engines": {
+ "node": ">=6.0"
+ },
+ "peerDependenciesMeta": {
+ "supports-color": {
+ "optional": true
+ }
+ }
+ },
+ "node_modules/supertokens-node/node_modules/ms": {
+ "version": "2.1.3",
+ "resolved": "https://registry.npmjs.org/ms/-/ms-2.1.3.tgz",
+ "integrity": "sha512-6FlzubTLZG3J2a/NVCAleEhjzq5oxgHyaCU9yYXvcLsvoVaHJq/s5xXI6/XXP6tz7R9xAOtHnSO/tXtF3WRTlA==",
+ "license": "MIT"
+ },
+ "node_modules/tinybench": {
+ "version": "2.9.0",
+ "resolved": "https://registry.npmjs.org/tinybench/-/tinybench-2.9.0.tgz",
+ "integrity": "sha512-0+DUvqWMValLmha6lr4kD8iAMK1HzV0/aKnCtWb9v9641TnP/MFb7Pc2bxoxQjTXAErryXVgUOfv2YqNllqGeg==",
+ "dev": true,
+ "license": "MIT"
+ },
+ "node_modules/tinyexec": {
+ "version": "0.3.2",
+ "resolved": "https://registry.npmjs.org/tinyexec/-/tinyexec-0.3.2.tgz",
+ "integrity": "sha512-KQQR9yN7R5+OSwaK0XQoj22pwHoTlgYqmUscPYoknOoWCWfj/5/ABTMRi69FrKU5ffPVh5QcFikpWJI/P1ocHA==",
+ "dev": true,
+ "license": "MIT"
+ },
+ "node_modules/tinypool": {
+ "version": "1.1.1",
+ "resolved": "https://registry.npmjs.org/tinypool/-/tinypool-1.1.1.tgz",
+ "integrity": "sha512-Zba82s87IFq9A9XmjiX5uZA/ARWDrB03OHlq+Vw1fSdt0I+4/Kutwy8BP4Y/y/aORMo61FQ0vIb5j44vSo5Pkg==",
+ "dev": true,
+ "license": "MIT",
+ "engines": {
+ "node": "^18.0.0 || >=20.0.0"
+ }
+ },
+ "node_modules/tinyrainbow": {
+ "version": "1.2.0",
+ "resolved": "https://registry.npmjs.org/tinyrainbow/-/tinyrainbow-1.2.0.tgz",
+ "integrity": "sha512-weEDEq7Z5eTHPDh4xjX789+fHfF+P8boiFB+0vbWzpbnbsEr/GRaohi/uMKxg8RZMXnl1ItAi/IUHWMsjDV7kQ==",
+ "dev": true,
+ "license": "MIT",
+ "engines": {
+ "node": ">=14.0.0"
+ }
+ },
+ "node_modules/tinyspy": {
+ "version": "3.0.2",
+ "resolved": "https://registry.npmjs.org/tinyspy/-/tinyspy-3.0.2.tgz",
+ "integrity": "sha512-n1cw8k1k0x4pgA2+9XrOkFydTerNcJ1zWCO5Nn9scWHTD+5tp8dghT2x1uduQePZTZgd3Tupf+x9BxJjeJi77Q==",
+ "dev": true,
+ "license": "MIT",
+ "engines": {
+ "node": ">=14.0.0"
+ }
+ },
+ "node_modules/tldts": {
+ "version": "6.1.86",
+ "resolved": "https://registry.npmjs.org/tldts/-/tldts-6.1.86.tgz",
+ "integrity": "sha512-WMi/OQ2axVTf/ykqCQgXiIct+mSQDFdH2fkwhPwgEwvJ1kSzZRiinb0zF2Xb8u4+OqPChmyI6MEu4EezNJz+FQ==",
+ "license": "MIT",
+ "dependencies": {
+ "tldts-core": "^6.1.86"
+ },
+ "bin": {
+ "tldts": "bin/cli.js"
+ }
+ },
+ "node_modules/tldts-core": {
+ "version": "6.1.86",
+ "resolved": "https://registry.npmjs.org/tldts-core/-/tldts-core-6.1.86.tgz",
+ "integrity": "sha512-Je6p7pkk+KMzMv2XXKmAE3McmolOQFdxkKw0R8EYNr7sELW46JqnNeTX8ybPiQgvg1ymCoF8LXs5fzFaZvJPTA==",
+ "license": "MIT"
+ },
+ "node_modules/toidentifier": {
+ "version": "1.0.1",
+ "resolved": "https://registry.npmjs.org/toidentifier/-/toidentifier-1.0.1.tgz",
+ "integrity": "sha512-o5sSPKEkg/DIQNmH43V0/uerLrpzVedkUh8tGNvaeXpfpuwjKenlSox/2O/BTlZUtEe+JG7s5YhEz608PlAHRA==",
+ "license": "MIT",
+ "engines": {
+ "node": ">=0.6"
+ }
+ },
+ "node_modules/tr46": {
+ "version": "0.0.3",
+ "resolved": "https://registry.npmjs.org/tr46/-/tr46-0.0.3.tgz",
+ "integrity": "sha512-N3WMsuqV66lT30CrXNbEjx4GEwlow3v6rr4mCcv6prnfwhS01rkgyFdjPNBYd9br7LpXV1+Emh01fHnq2Gdgrw==",
+ "license": "MIT"
+ },
+ "node_modules/tsx": {
+ "version": "4.22.4",
+ "resolved": "https://registry.npmjs.org/tsx/-/tsx-4.22.4.tgz",
+ "integrity": "sha512-X8EX+XV4QR5xCsrgxaED954zTDfY8KqlDtskKEL0cHhyS/P8b4IFOvGDQpsC9Q1XnLq915wEfwwY/zzskCtmhg==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "esbuild": "~0.28.0"
+ },
+ "bin": {
+ "tsx": "dist/cli.mjs"
+ },
+ "engines": {
+ "node": ">=18.0.0"
+ },
+ "optionalDependencies": {
+ "fsevents": "~2.3.3"
+ }
+ },
+ "node_modules/twilio": {
+ "version": "4.23.0",
+ "resolved": "https://registry.npmjs.org/twilio/-/twilio-4.23.0.tgz",
+ "integrity": "sha512-LdNBQfOe0dY2oJH2sAsrxazpgfFQo5yXGxe96QA8UWB5uu+433PrUbkv8gQ5RmrRCqUTPQ0aOrIyAdBr1aB03Q==",
+ "license": "MIT",
+ "dependencies": {
+ "axios": "^1.6.0",
+ "dayjs": "^1.11.9",
+ "https-proxy-agent": "^5.0.0",
+ "jsonwebtoken": "^9.0.0",
+ "qs": "^6.9.4",
+ "scmp": "^2.1.0",
+ "url-parse": "^1.5.9",
+ "xmlbuilder": "^13.0.2"
+ },
+ "engines": {
+ "node": ">=14.0"
+ }
+ },
+ "node_modules/type-is": {
+ "version": "1.6.18",
+ "resolved": "https://registry.npmjs.org/type-is/-/type-is-1.6.18.tgz",
+ "integrity": "sha512-TkRKr9sUTxEH8MdfuCSP7VizJyzRNMjj2J2do2Jr3Kym598JVdEksuzPQCnlFPW4ky9Q+iA+ma9BGm06XQBy8g==",
+ "license": "MIT",
+ "dependencies": {
+ "media-typer": "0.3.0",
+ "mime-types": "~2.1.24"
+ },
+ "engines": {
+ "node": ">= 0.6"
+ }
+ },
+ "node_modules/typescript": {
+ "version": "5.9.3",
+ "resolved": "https://registry.npmjs.org/typescript/-/typescript-5.9.3.tgz",
+ "integrity": "sha512-jl1vZzPDinLr9eUt3J/t7V6FgNEw9QjvBPdysz9KfQDD41fQrC2Y4vKQdiaUpFT4bXlb1RHhLpp8wtm6M5TgSw==",
+ "dev": true,
+ "license": "Apache-2.0",
+ "bin": {
+ "tsc": "bin/tsc",
+ "tsserver": "bin/tsserver"
+ },
+ "engines": {
+ "node": ">=14.17"
+ }
+ },
+ "node_modules/undici-types": {
+ "version": "7.18.2",
+ "resolved": "https://registry.npmjs.org/undici-types/-/undici-types-7.18.2.tgz",
+ "integrity": "sha512-AsuCzffGHJybSaRrmr5eHr81mwJU3kjw6M+uprWvCXiNeN9SOGwQ3Jn8jb8m3Z6izVgknn1R0FTCEAP2QrLY/w==",
+ "dev": true,
+ "license": "MIT"
+ },
+ "node_modules/unpipe": {
+ "version": "1.0.0",
+ "resolved": "https://registry.npmjs.org/unpipe/-/unpipe-1.0.0.tgz",
+ "integrity": "sha512-pjy2bYhSsufwWlKwPc+l3cN7+wuJlK6uz0YdJEOlQDbl6jo/YlPi4mb8agUkVC8BF7V8NuzeyPNqRksA3hztKQ==",
+ "license": "MIT",
+ "engines": {
+ "node": ">= 0.8"
+ }
+ },
+ "node_modules/url-parse": {
+ "version": "1.5.10",
+ "resolved": "https://registry.npmjs.org/url-parse/-/url-parse-1.5.10.tgz",
+ "integrity": "sha512-WypcfiRhfeUP9vvF0j6rw0J3hrWrw6iZv3+22h6iRMJ/8z1Tj6XfLP4DsUix5MhMPnXpiHDoKyoZ/bdCkwBCiQ==",
+ "license": "MIT",
+ "dependencies": {
+ "querystringify": "^2.1.1",
+ "requires-port": "^1.0.0"
+ }
+ },
+ "node_modules/utils-merge": {
+ "version": "1.0.1",
+ "resolved": "https://registry.npmjs.org/utils-merge/-/utils-merge-1.0.1.tgz",
+ "integrity": "sha512-pMZTvIkT1d+TFGvDOqodOclx0QWkkgi6Tdoa8gC8ffGAAqz9pzPTZWAybbsHHoED/ztMtkv/VoYTYyShUn81hA==",
+ "license": "MIT",
+ "engines": {
+ "node": ">= 0.4.0"
+ }
+ },
+ "node_modules/vary": {
+ "version": "1.1.2",
+ "resolved": "https://registry.npmjs.org/vary/-/vary-1.1.2.tgz",
+ "integrity": "sha512-BNGbWLfd0eUPabhkXUVm0j8uuvREyTh5ovRa/dyow/BqAbZJyC+5fU+IzQOzmAKzYqYRAISoRhdQr3eIZ/PXqg==",
+ "license": "MIT",
+ "engines": {
+ "node": ">= 0.8"
+ }
+ },
+ "node_modules/vite": {
+ "version": "5.4.21",
+ "resolved": "https://registry.npmjs.org/vite/-/vite-5.4.21.tgz",
+ "integrity": "sha512-o5a9xKjbtuhY6Bi5S3+HvbRERmouabWbyUcpXXUA1u+GNUKoROi9byOJ8M0nHbHYHkYICiMlqxkg1KkYmm25Sw==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "esbuild": "^0.21.3",
+ "postcss": "^8.4.43",
+ "rollup": "^4.20.0"
+ },
+ "bin": {
+ "vite": "bin/vite.js"
+ },
+ "engines": {
+ "node": "^18.0.0 || >=20.0.0"
+ },
+ "funding": {
+ "url": "https://github.com/vitejs/vite?sponsor=1"
+ },
+ "optionalDependencies": {
+ "fsevents": "~2.3.3"
+ },
+ "peerDependencies": {
+ "@types/node": "^18.0.0 || >=20.0.0",
+ "less": "*",
+ "lightningcss": "^1.21.0",
+ "sass": "*",
+ "sass-embedded": "*",
+ "stylus": "*",
+ "sugarss": "*",
+ "terser": "^5.4.0"
+ },
+ "peerDependenciesMeta": {
+ "@types/node": {
+ "optional": true
+ },
+ "less": {
+ "optional": true
+ },
+ "lightningcss": {
+ "optional": true
+ },
+ "sass": {
+ "optional": true
+ },
+ "sass-embedded": {
+ "optional": true
+ },
+ "stylus": {
+ "optional": true
+ },
+ "sugarss": {
+ "optional": true
+ },
+ "terser": {
+ "optional": true
+ }
+ }
+ },
+ "node_modules/vite-node": {
+ "version": "2.1.9",
+ "resolved": "https://registry.npmjs.org/vite-node/-/vite-node-2.1.9.tgz",
+ "integrity": "sha512-AM9aQ/IPrW/6ENLQg3AGY4K1N2TGZdR5e4gu/MmmR2xR3Ll1+dib+nook92g4TV3PXVyeyxdWwtaCAiUL0hMxA==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "cac": "^6.7.14",
+ "debug": "^4.3.7",
+ "es-module-lexer": "^1.5.4",
+ "pathe": "^1.1.2",
+ "vite": "^5.0.0"
+ },
+ "bin": {
+ "vite-node": "vite-node.mjs"
+ },
+ "engines": {
+ "node": "^18.0.0 || >=20.0.0"
+ },
+ "funding": {
+ "url": "https://opencollective.com/vitest"
+ }
+ },
+ "node_modules/vite-node/node_modules/debug": {
+ "version": "4.4.3",
+ "resolved": "https://registry.npmjs.org/debug/-/debug-4.4.3.tgz",
+ "integrity": "sha512-RGwwWnwQvkVfavKVt22FGLw+xYSdzARwm0ru6DhTVA3umU5hZc28V3kO4stgYryrTlLpuvgI9GiijltAjNbcqA==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "ms": "^2.1.3"
+ },
+ "engines": {
+ "node": ">=6.0"
+ },
+ "peerDependenciesMeta": {
+ "supports-color": {
+ "optional": true
+ }
+ }
+ },
+ "node_modules/vite-node/node_modules/ms": {
+ "version": "2.1.3",
+ "resolved": "https://registry.npmjs.org/ms/-/ms-2.1.3.tgz",
+ "integrity": "sha512-6FlzubTLZG3J2a/NVCAleEhjzq5oxgHyaCU9yYXvcLsvoVaHJq/s5xXI6/XXP6tz7R9xAOtHnSO/tXtF3WRTlA==",
+ "dev": true,
+ "license": "MIT"
+ },
+ "node_modules/vite/node_modules/@esbuild/aix-ppc64": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/aix-ppc64/-/aix-ppc64-0.21.5.tgz",
+ "integrity": "sha512-1SDgH6ZSPTlggy1yI6+Dbkiz8xzpHJEVAlF/AM1tHPLsf5STom9rwtjE4hKAF20FfXXNTFqEYXyJNWh1GiZedQ==",
+ "cpu": [
+ "ppc64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "aix"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/vite/node_modules/@esbuild/android-arm": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/android-arm/-/android-arm-0.21.5.tgz",
+ "integrity": "sha512-vCPvzSjpPHEi1siZdlvAlsPxXl7WbOVUBBAowWug4rJHb68Ox8KualB+1ocNvT5fjv6wpkX6o/iEpbDrf68zcg==",
+ "cpu": [
+ "arm"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "android"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/vite/node_modules/@esbuild/android-arm64": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/android-arm64/-/android-arm64-0.21.5.tgz",
+ "integrity": "sha512-c0uX9VAUBQ7dTDCjq+wdyGLowMdtR/GoC2U5IYk/7D1H1JYC0qseD7+11iMP2mRLN9RcCMRcjC4YMclCzGwS/A==",
+ "cpu": [
+ "arm64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "android"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/vite/node_modules/@esbuild/android-x64": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/android-x64/-/android-x64-0.21.5.tgz",
+ "integrity": "sha512-D7aPRUUNHRBwHxzxRvp856rjUHRFW1SdQATKXH2hqA0kAZb1hKmi02OpYRacl0TxIGz/ZmXWlbZgjwWYaCakTA==",
+ "cpu": [
+ "x64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "android"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/vite/node_modules/@esbuild/darwin-arm64": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/darwin-arm64/-/darwin-arm64-0.21.5.tgz",
+ "integrity": "sha512-DwqXqZyuk5AiWWf3UfLiRDJ5EDd49zg6O9wclZ7kUMv2WRFr4HKjXp/5t8JZ11QbQfUS6/cRCKGwYhtNAY88kQ==",
+ "cpu": [
+ "arm64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "darwin"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/vite/node_modules/@esbuild/darwin-x64": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/darwin-x64/-/darwin-x64-0.21.5.tgz",
+ "integrity": "sha512-se/JjF8NlmKVG4kNIuyWMV/22ZaerB+qaSi5MdrXtd6R08kvs2qCN4C09miupktDitvh8jRFflwGFBQcxZRjbw==",
+ "cpu": [
+ "x64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "darwin"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/vite/node_modules/@esbuild/freebsd-arm64": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/freebsd-arm64/-/freebsd-arm64-0.21.5.tgz",
+ "integrity": "sha512-5JcRxxRDUJLX8JXp/wcBCy3pENnCgBR9bN6JsY4OmhfUtIHe3ZW0mawA7+RDAcMLrMIZaf03NlQiX9DGyB8h4g==",
+ "cpu": [
+ "arm64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "freebsd"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/vite/node_modules/@esbuild/freebsd-x64": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/freebsd-x64/-/freebsd-x64-0.21.5.tgz",
+ "integrity": "sha512-J95kNBj1zkbMXtHVH29bBriQygMXqoVQOQYA+ISs0/2l3T9/kj42ow2mpqerRBxDJnmkUDCaQT/dfNXWX/ZZCQ==",
+ "cpu": [
+ "x64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "freebsd"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/vite/node_modules/@esbuild/linux-arm": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/linux-arm/-/linux-arm-0.21.5.tgz",
+ "integrity": "sha512-bPb5AHZtbeNGjCKVZ9UGqGwo8EUu4cLq68E95A53KlxAPRmUyYv2D6F0uUI65XisGOL1hBP5mTronbgo+0bFcA==",
+ "cpu": [
+ "arm"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/vite/node_modules/@esbuild/linux-arm64": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/linux-arm64/-/linux-arm64-0.21.5.tgz",
+ "integrity": "sha512-ibKvmyYzKsBeX8d8I7MH/TMfWDXBF3db4qM6sy+7re0YXya+K1cem3on9XgdT2EQGMu4hQyZhan7TeQ8XkGp4Q==",
+ "cpu": [
+ "arm64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/vite/node_modules/@esbuild/linux-ia32": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/linux-ia32/-/linux-ia32-0.21.5.tgz",
+ "integrity": "sha512-YvjXDqLRqPDl2dvRODYmmhz4rPeVKYvppfGYKSNGdyZkA01046pLWyRKKI3ax8fbJoK5QbxblURkwK/MWY18Tg==",
+ "cpu": [
+ "ia32"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/vite/node_modules/@esbuild/linux-loong64": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/linux-loong64/-/linux-loong64-0.21.5.tgz",
+ "integrity": "sha512-uHf1BmMG8qEvzdrzAqg2SIG/02+4/DHB6a9Kbya0XDvwDEKCoC8ZRWI5JJvNdUjtciBGFQ5PuBlpEOXQj+JQSg==",
+ "cpu": [
+ "loong64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/vite/node_modules/@esbuild/linux-mips64el": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/linux-mips64el/-/linux-mips64el-0.21.5.tgz",
+ "integrity": "sha512-IajOmO+KJK23bj52dFSNCMsz1QP1DqM6cwLUv3W1QwyxkyIWecfafnI555fvSGqEKwjMXVLokcV5ygHW5b3Jbg==",
+ "cpu": [
+ "mips64el"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/vite/node_modules/@esbuild/linux-ppc64": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/linux-ppc64/-/linux-ppc64-0.21.5.tgz",
+ "integrity": "sha512-1hHV/Z4OEfMwpLO8rp7CvlhBDnjsC3CttJXIhBi+5Aj5r+MBvy4egg7wCbe//hSsT+RvDAG7s81tAvpL2XAE4w==",
+ "cpu": [
+ "ppc64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/vite/node_modules/@esbuild/linux-riscv64": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/linux-riscv64/-/linux-riscv64-0.21.5.tgz",
+ "integrity": "sha512-2HdXDMd9GMgTGrPWnJzP2ALSokE/0O5HhTUvWIbD3YdjME8JwvSCnNGBnTThKGEB91OZhzrJ4qIIxk/SBmyDDA==",
+ "cpu": [
+ "riscv64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/vite/node_modules/@esbuild/linux-s390x": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/linux-s390x/-/linux-s390x-0.21.5.tgz",
+ "integrity": "sha512-zus5sxzqBJD3eXxwvjN1yQkRepANgxE9lgOW2qLnmr8ikMTphkjgXu1HR01K4FJg8h1kEEDAqDcZQtbrRnB41A==",
+ "cpu": [
+ "s390x"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/vite/node_modules/@esbuild/linux-x64": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/linux-x64/-/linux-x64-0.21.5.tgz",
+ "integrity": "sha512-1rYdTpyv03iycF1+BhzrzQJCdOuAOtaqHTWJZCWvijKD2N5Xu0TtVC8/+1faWqcP9iBCWOmjmhoH94dH82BxPQ==",
+ "cpu": [
+ "x64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "linux"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/vite/node_modules/@esbuild/netbsd-x64": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/netbsd-x64/-/netbsd-x64-0.21.5.tgz",
+ "integrity": "sha512-Woi2MXzXjMULccIwMnLciyZH4nCIMpWQAs049KEeMvOcNADVxo0UBIQPfSmxB3CWKedngg7sWZdLvLczpe0tLg==",
+ "cpu": [
+ "x64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "netbsd"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/vite/node_modules/@esbuild/openbsd-x64": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/openbsd-x64/-/openbsd-x64-0.21.5.tgz",
+ "integrity": "sha512-HLNNw99xsvx12lFBUwoT8EVCsSvRNDVxNpjZ7bPn947b8gJPzeHWyNVhFsaerc0n3TsbOINvRP2byTZ5LKezow==",
+ "cpu": [
+ "x64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "openbsd"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/vite/node_modules/@esbuild/sunos-x64": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/sunos-x64/-/sunos-x64-0.21.5.tgz",
+ "integrity": "sha512-6+gjmFpfy0BHU5Tpptkuh8+uw3mnrvgs+dSPQXQOv3ekbordwnzTVEb4qnIvQcYXq6gzkyTnoZ9dZG+D4garKg==",
+ "cpu": [
+ "x64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "sunos"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/vite/node_modules/@esbuild/win32-arm64": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/win32-arm64/-/win32-arm64-0.21.5.tgz",
+ "integrity": "sha512-Z0gOTd75VvXqyq7nsl93zwahcTROgqvuAcYDUr+vOv8uHhNSKROyU961kgtCD1e95IqPKSQKH7tBTslnS3tA8A==",
+ "cpu": [
+ "arm64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "win32"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/vite/node_modules/@esbuild/win32-ia32": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/win32-ia32/-/win32-ia32-0.21.5.tgz",
+ "integrity": "sha512-SWXFF1CL2RVNMaVs+BBClwtfZSvDgtL//G/smwAc5oVK/UPu2Gu9tIaRgFmYFFKrmg3SyAjSrElf0TiJ1v8fYA==",
+ "cpu": [
+ "ia32"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "win32"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/vite/node_modules/@esbuild/win32-x64": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/@esbuild/win32-x64/-/win32-x64-0.21.5.tgz",
+ "integrity": "sha512-tQd/1efJuzPC6rCFwEvLtci/xNFcTZknmXs98FYDfGE4wP9ClFV98nyKrzJKVPMhdDnjzLhdUyMX4PsQAPjwIw==",
+ "cpu": [
+ "x64"
+ ],
+ "dev": true,
+ "license": "MIT",
+ "optional": true,
+ "os": [
+ "win32"
+ ],
+ "engines": {
+ "node": ">=12"
+ }
+ },
+ "node_modules/vite/node_modules/esbuild": {
+ "version": "0.21.5",
+ "resolved": "https://registry.npmjs.org/esbuild/-/esbuild-0.21.5.tgz",
+ "integrity": "sha512-mg3OPMV4hXywwpoDxu3Qda5xCKQi+vCTZq8S9J/EpkhB2HzKXq4SNFZE3+NK93JYxc8VMSep+lOUSC/RVKaBqw==",
+ "dev": true,
+ "hasInstallScript": true,
+ "license": "MIT",
+ "bin": {
+ "esbuild": "bin/esbuild"
+ },
+ "engines": {
+ "node": ">=12"
+ },
+ "optionalDependencies": {
+ "@esbuild/aix-ppc64": "0.21.5",
+ "@esbuild/android-arm": "0.21.5",
+ "@esbuild/android-arm64": "0.21.5",
+ "@esbuild/android-x64": "0.21.5",
+ "@esbuild/darwin-arm64": "0.21.5",
+ "@esbuild/darwin-x64": "0.21.5",
+ "@esbuild/freebsd-arm64": "0.21.5",
+ "@esbuild/freebsd-x64": "0.21.5",
+ "@esbuild/linux-arm": "0.21.5",
+ "@esbuild/linux-arm64": "0.21.5",
+ "@esbuild/linux-ia32": "0.21.5",
+ "@esbuild/linux-loong64": "0.21.5",
+ "@esbuild/linux-mips64el": "0.21.5",
+ "@esbuild/linux-ppc64": "0.21.5",
+ "@esbuild/linux-riscv64": "0.21.5",
+ "@esbuild/linux-s390x": "0.21.5",
+ "@esbuild/linux-x64": "0.21.5",
+ "@esbuild/netbsd-x64": "0.21.5",
+ "@esbuild/openbsd-x64": "0.21.5",
+ "@esbuild/sunos-x64": "0.21.5",
+ "@esbuild/win32-arm64": "0.21.5",
+ "@esbuild/win32-ia32": "0.21.5",
+ "@esbuild/win32-x64": "0.21.5"
+ }
+ },
+ "node_modules/vitest": {
+ "version": "2.1.9",
+ "resolved": "https://registry.npmjs.org/vitest/-/vitest-2.1.9.tgz",
+ "integrity": "sha512-MSmPM9REYqDGBI8439mA4mWhV5sKmDlBKWIYbA3lRb2PTHACE0mgKwA8yQ2xq9vxDTuk4iPrECBAEW2aoFXY0Q==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "@vitest/expect": "2.1.9",
+ "@vitest/mocker": "2.1.9",
+ "@vitest/pretty-format": "^2.1.9",
+ "@vitest/runner": "2.1.9",
+ "@vitest/snapshot": "2.1.9",
+ "@vitest/spy": "2.1.9",
+ "@vitest/utils": "2.1.9",
+ "chai": "^5.1.2",
+ "debug": "^4.3.7",
+ "expect-type": "^1.1.0",
+ "magic-string": "^0.30.12",
+ "pathe": "^1.1.2",
+ "std-env": "^3.8.0",
+ "tinybench": "^2.9.0",
+ "tinyexec": "^0.3.1",
+ "tinypool": "^1.0.1",
+ "tinyrainbow": "^1.2.0",
+ "vite": "^5.0.0",
+ "vite-node": "2.1.9",
+ "why-is-node-running": "^2.3.0"
+ },
+ "bin": {
+ "vitest": "vitest.mjs"
+ },
+ "engines": {
+ "node": "^18.0.0 || >=20.0.0"
+ },
+ "funding": {
+ "url": "https://opencollective.com/vitest"
+ },
+ "peerDependencies": {
+ "@edge-runtime/vm": "*",
+ "@types/node": "^18.0.0 || >=20.0.0",
+ "@vitest/browser": "2.1.9",
+ "@vitest/ui": "2.1.9",
+ "happy-dom": "*",
+ "jsdom": "*"
+ },
+ "peerDependenciesMeta": {
+ "@edge-runtime/vm": {
+ "optional": true
+ },
+ "@types/node": {
+ "optional": true
+ },
+ "@vitest/browser": {
+ "optional": true
+ },
+ "@vitest/ui": {
+ "optional": true
+ },
+ "happy-dom": {
+ "optional": true
+ },
+ "jsdom": {
+ "optional": true
+ }
+ }
+ },
+ "node_modules/vitest/node_modules/debug": {
+ "version": "4.4.3",
+ "resolved": "https://registry.npmjs.org/debug/-/debug-4.4.3.tgz",
+ "integrity": "sha512-RGwwWnwQvkVfavKVt22FGLw+xYSdzARwm0ru6DhTVA3umU5hZc28V3kO4stgYryrTlLpuvgI9GiijltAjNbcqA==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "ms": "^2.1.3"
+ },
+ "engines": {
+ "node": ">=6.0"
+ },
+ "peerDependenciesMeta": {
+ "supports-color": {
+ "optional": true
+ }
+ }
+ },
+ "node_modules/vitest/node_modules/ms": {
+ "version": "2.1.3",
+ "resolved": "https://registry.npmjs.org/ms/-/ms-2.1.3.tgz",
+ "integrity": "sha512-6FlzubTLZG3J2a/NVCAleEhjzq5oxgHyaCU9yYXvcLsvoVaHJq/s5xXI6/XXP6tz7R9xAOtHnSO/tXtF3WRTlA==",
+ "dev": true,
+ "license": "MIT"
+ },
+ "node_modules/webidl-conversions": {
+ "version": "3.0.1",
+ "resolved": "https://registry.npmjs.org/webidl-conversions/-/webidl-conversions-3.0.1.tgz",
+ "integrity": "sha512-2JAn3z8AR6rjK8Sm8orRC0h/bcl/DqL7tRPdGZ4I1CjdF+EaMLmYxBHyXuKL849eucPFhvBoxMsflfOb8kxaeQ==",
+ "license": "BSD-2-Clause"
+ },
+ "node_modules/whatwg-url": {
+ "version": "5.0.0",
+ "resolved": "https://registry.npmjs.org/whatwg-url/-/whatwg-url-5.0.0.tgz",
+ "integrity": "sha512-saE57nupxk6v3HY35+jzBwYa0rKSy0XR8JSxZPwgLr7ys0IBzhGviA1/TUGJLmSVqs8pb9AnvICXEuOHLprYTw==",
+ "license": "MIT",
+ "dependencies": {
+ "tr46": "~0.0.3",
+ "webidl-conversions": "^3.0.0"
+ }
+ },
+ "node_modules/why-is-node-running": {
+ "version": "2.3.0",
+ "resolved": "https://registry.npmjs.org/why-is-node-running/-/why-is-node-running-2.3.0.tgz",
+ "integrity": "sha512-hUrmaWBdVDcxvYqnyh09zunKzROWjbZTiNy8dBEjkS7ehEDQibXJ7XvlmtbwuTclUiIyN+CyXQD4Vmko8fNm8w==",
+ "dev": true,
+ "license": "MIT",
+ "dependencies": {
+ "siginfo": "^2.0.0",
+ "stackback": "0.0.2"
+ },
+ "bin": {
+ "why-is-node-running": "cli.js"
+ },
+ "engines": {
+ "node": ">=8"
+ }
+ },
+ "node_modules/xmlbuilder": {
+ "version": "13.0.2",
+ "resolved": "https://registry.npmjs.org/xmlbuilder/-/xmlbuilder-13.0.2.tgz",
+ "integrity": "sha512-Eux0i2QdDYKbdbA6AM6xE4m6ZTZr4G4xF9kahI2ukSEMCzwce2eX9WlTI5J3s+NU7hpasFsr8hWIONae7LluAQ==",
+ "license": "MIT",
+ "engines": {
+ "node": ">=6.0"
+ }
+ }
+ }
+}
diff --git a/website/server/package.json b/website/server/package.json
new file mode 100644
index 0000000..798331d
--- /dev/null
+++ b/website/server/package.json
@@ -0,0 +1,29 @@
+{
+ "name": "hypertwist-auth-server",
+ "version": "1.0.0",
+ "description": "Self-hosted SuperTokens auth backend for the HyperTwist website.",
+ "private": true,
+ "type": "module",
+ "scripts": {
+ "dev": "tsx watch src/index.ts",
+ "start": "tsx src/index.ts",
+ "type-check": "tsc --noEmit",
+ "test": "vitest run"
+ },
+ "dependencies": {
+ "cookie-parser": "^1.4.7",
+ "cors": "^2.8.5",
+ "dotenv": "^16.4.7",
+ "express": "^4.21.2",
+ "supertokens-node": "^21.1.0"
+ },
+ "devDependencies": {
+ "@types/cookie-parser": "^1.4.8",
+ "@types/cors": "^2.8.17",
+ "@types/express": "^4.17.21",
+ "@types/node": "^24.0.14",
+ "tsx": "^4.19.2",
+ "typescript": "^5.8.3",
+ "vitest": "^2.1.8"
+ }
+}
diff --git a/website/server/src/__tests__/auth-health.test.ts b/website/server/src/__tests__/auth-health.test.ts
new file mode 100644
index 0000000..95f13e3
--- /dev/null
+++ b/website/server/src/__tests__/auth-health.test.ts
@@ -0,0 +1,84 @@
+import { describe, expect, it, vi } from 'vitest'
+
+import { buildSuperTokensApiVersionUrl, probeSuperTokensCoreHealth } from '../auth-health'
+
+describe('buildSuperTokensApiVersionUrl', () => {
+ it('preserves a configured core path prefix and appends the API-version route', () => {
+ const result = buildSuperTokensApiVersionUrl({
+ connectionUri: 'http://localhost:3567/core',
+ apiDomain: 'http://localhost:3001',
+ websiteDomain: 'http://localhost:4273',
+ })
+
+ expect(result).toBe('http://localhost:3567/core/apiversion?apiDomain=http%3A%2F%2Flocalhost%3A3001&websiteDomain=http%3A%2F%2Flocalhost%3A4273')
+ })
+})
+
+describe('probeSuperTokensCoreHealth', () => {
+ it('reports ready when the core responds with supported versions', async () => {
+ const fetchImpl = vi.fn().mockResolvedValue(
+ new Response(JSON.stringify({
+ versions: ['2.7', '2.21', '5.0'],
+ }), {
+ status: 200,
+ headers: {
+ 'content-type': 'application/json',
+ },
+ }),
+ )
+
+ await expect(probeSuperTokensCoreHealth({
+ connectionUri: 'http://localhost:3567',
+ apiDomain: 'http://localhost:3001',
+ websiteDomain: 'http://localhost:4273',
+ fetchImpl,
+ })).resolves.toEqual({
+ configured: true,
+ reachable: true,
+ ready: true,
+ apiVersion: '5.0',
+ error: null,
+ })
+ })
+
+ it('reports invalid payloads as not ready', async () => {
+ const fetchImpl = vi.fn().mockResolvedValue(
+ new Response(JSON.stringify({ ok: true }), {
+ status: 200,
+ headers: {
+ 'content-type': 'application/json',
+ },
+ }),
+ )
+
+ await expect(probeSuperTokensCoreHealth({
+ connectionUri: 'http://localhost:3567',
+ apiDomain: 'http://localhost:3001',
+ websiteDomain: 'http://localhost:4273',
+ fetchImpl,
+ })).resolves.toEqual({
+ configured: true,
+ reachable: false,
+ ready: false,
+ apiVersion: null,
+ error: 'invalid_payload',
+ })
+ })
+
+ it('reports request failures without throwing', async () => {
+ const fetchImpl = vi.fn().mockRejectedValue(new Error('connect ECONNREFUSED'))
+
+ await expect(probeSuperTokensCoreHealth({
+ connectionUri: 'http://localhost:3567',
+ apiDomain: 'http://localhost:3001',
+ websiteDomain: 'http://localhost:4273',
+ fetchImpl,
+ })).resolves.toEqual({
+ configured: true,
+ reachable: false,
+ ready: false,
+ apiVersion: null,
+ error: 'unreachable',
+ })
+ })
+})
diff --git a/website/server/src/__tests__/billing-state.test.ts b/website/server/src/__tests__/billing-state.test.ts
new file mode 100644
index 0000000..4af4371
--- /dev/null
+++ b/website/server/src/__tests__/billing-state.test.ts
@@ -0,0 +1,210 @@
+import fs from 'node:fs'
+import os from 'node:os'
+import path from 'node:path'
+import { afterEach, describe, expect, it } from 'vitest'
+
+import { createBillingStateStore } from '../billing-state'
+
+const tempDirectories: string[] = []
+
+afterEach(() => {
+ while (tempDirectories.length > 0) {
+ const directory = tempDirectories.pop()
+ if (directory) {
+ fs.rmSync(directory, { recursive: true, force: true })
+ }
+ }
+})
+
+function createTempStatePath() {
+ const directory = fs.mkdtempSync(path.join(os.tmpdir(), 'hypertwist-billing-state-'))
+ tempDirectories.push(directory)
+ return path.join(directory, 'billing-state.json')
+}
+
+describe('createBillingStateStore', () => {
+ it('applies a subscription activation event and resolves download access', () => {
+ const store = createBillingStateStore({
+ statePath: createTempStatePath(),
+ defaultPlan: 'free',
+ defaultRole: 'operator',
+ })
+
+ const result = store.applyVerifiedPaddleEvent(JSON.stringify({
+ event_id: 'evt_activated',
+ event_type: 'subscription.activated',
+ occurred_at: '2026-06-22T02:00:00.000Z',
+ data: {
+ id: 'sub_123',
+ customer_id: 'ctm_123',
+ status: 'active',
+ custom_data: {
+ email: 'operator@hypertwist.app',
+ plan: 'studio',
+ },
+ },
+ }))
+
+ expect(result).toEqual({
+ kind: 'applied',
+ reason: 'processed',
+ eventId: 'evt_activated',
+ eventType: 'subscription.activated',
+ email: 'operator@hypertwist.app',
+ })
+
+ expect(store.getEntitlementByEmail('operator@hypertwist.app')).toMatchObject({
+ plan: 'studio',
+ role: 'operator',
+ canDownload: true,
+ accessStatus: 'active',
+ subscriptionId: 'sub_123',
+ customerId: 'ctm_123',
+ source: 'paddle',
+ })
+ })
+
+ it('deduplicates a previously processed event id', () => {
+ const store = createBillingStateStore({
+ statePath: createTempStatePath(),
+ defaultPlan: 'free',
+ defaultRole: 'operator',
+ })
+
+ const rawEvent = JSON.stringify({
+ event_id: 'evt_dupe',
+ event_type: 'subscription.activated',
+ occurred_at: '2026-06-22T02:00:00.000Z',
+ data: {
+ id: 'sub_dupe',
+ status: 'active',
+ custom_data: {
+ email: 'operator@hypertwist.app',
+ plan: 'operator',
+ },
+ },
+ })
+
+ expect(store.applyVerifiedPaddleEvent(rawEvent).kind).toBe('applied')
+ expect(store.applyVerifiedPaddleEvent(rawEvent)).toEqual({
+ kind: 'duplicate',
+ reason: 'duplicate_event',
+ eventId: 'evt_dupe',
+ eventType: 'subscription.activated',
+ })
+ })
+
+ it('ignores a stale event that arrives after a newer one', () => {
+ const store = createBillingStateStore({
+ statePath: createTempStatePath(),
+ defaultPlan: 'free',
+ defaultRole: 'operator',
+ })
+
+ expect(store.applyVerifiedPaddleEvent(JSON.stringify({
+ event_id: 'evt_newer',
+ event_type: 'subscription.activated',
+ occurred_at: '2026-06-22T03:00:00.000Z',
+ data: {
+ id: 'sub_ordering',
+ customer_id: 'ctm_ordering',
+ status: 'active',
+ custom_data: {
+ email: 'operator@hypertwist.app',
+ plan: 'operator',
+ },
+ },
+ })).kind).toBe('applied')
+
+ const staleResult = store.applyVerifiedPaddleEvent(JSON.stringify({
+ event_id: 'evt_older',
+ event_type: 'subscription.canceled',
+ occurred_at: '2026-06-22T02:00:00.000Z',
+ data: {
+ id: 'sub_ordering',
+ customer_id: 'ctm_ordering',
+ status: 'canceled',
+ },
+ }))
+
+ expect(staleResult).toEqual({
+ kind: 'ignored',
+ reason: 'stale_event',
+ eventId: 'evt_older',
+ eventType: 'subscription.canceled',
+ email: 'operator@hypertwist.app',
+ })
+ expect(store.getEntitlementByEmail('operator@hypertwist.app')?.accessStatus).toBe('active')
+ })
+
+ it('resolves plans from configured price mappings and revokes on cancellation', () => {
+ const store = createBillingStateStore({
+ statePath: createTempStatePath(),
+ defaultPlan: 'free',
+ defaultRole: 'operator',
+ pricePlanMap: {
+ pri_operator: 'operator',
+ },
+ })
+
+ expect(store.applyVerifiedPaddleEvent(JSON.stringify({
+ event_id: 'evt_txn',
+ event_type: 'transaction.completed',
+ occurred_at: '2026-06-22T02:00:00.000Z',
+ data: {
+ id: 'txn_123',
+ customer_id: 'ctm_456',
+ custom_data: {
+ email: 'operator@hypertwist.app',
+ },
+ items: [
+ {
+ price: {
+ id: 'pri_operator',
+ },
+ },
+ ],
+ },
+ })).kind).toBe('applied')
+
+ expect(store.getEntitlementByEmail('operator@hypertwist.app')).toMatchObject({
+ plan: 'operator',
+ canDownload: true,
+ transactionId: 'txn_123',
+ customerId: 'ctm_456',
+ })
+
+ expect(store.applyVerifiedPaddleEvent(JSON.stringify({
+ event_id: 'evt_cancel',
+ event_type: 'subscription.canceled',
+ occurred_at: '2026-06-22T04:00:00.000Z',
+ data: {
+ id: 'sub_789',
+ customer_id: 'ctm_456',
+ status: 'canceled',
+ },
+ })).kind).toBe('applied')
+
+ expect(store.getEntitlementByEmail('operator@hypertwist.app')).toMatchObject({
+ plan: 'operator',
+ canDownload: false,
+ accessStatus: 'canceled',
+ subscriptionId: 'sub_789',
+ })
+ })
+
+ it('records unsupported payloads as noops without throwing', () => {
+ const store = createBillingStateStore({
+ statePath: createTempStatePath(),
+ defaultPlan: 'free',
+ defaultRole: 'operator',
+ })
+
+ expect(store.applyVerifiedPaddleEvent('{"not":"a-paddle-event"}')).toEqual({
+ kind: 'noop',
+ reason: 'unsupported_payload',
+ eventId: 'unknown',
+ eventType: 'unknown',
+ })
+ })
+})
diff --git a/website/server/src/__tests__/paddle-webhook.test.ts b/website/server/src/__tests__/paddle-webhook.test.ts
new file mode 100644
index 0000000..c143c3b
--- /dev/null
+++ b/website/server/src/__tests__/paddle-webhook.test.ts
@@ -0,0 +1,97 @@
+import crypto from 'node:crypto'
+import { describe, expect, it } from 'vitest'
+
+import { verifyPaddleWebhookSignature } from '../paddle-webhook'
+
+function buildSignatureHeader({
+ rawBody,
+ secretKey,
+ timestamp,
+}: {
+ rawBody: string
+ secretKey: string
+ timestamp: string
+}) {
+ const signature = crypto
+ .createHmac('sha256', secretKey)
+ .update(`${timestamp}:${rawBody}`)
+ .digest('hex')
+
+ return `ts=${timestamp};h1=${signature}`
+}
+
+describe('verifyPaddleWebhookSignature', () => {
+ it('accepts a valid signature built from the raw body', () => {
+ const rawBody = JSON.stringify({ event_id: 'evt_123', event_type: 'transaction.completed' })
+ const timestamp = '1719012345'
+ const secretKey = 'pdl_ntfset_test_secret'
+
+ const result = verifyPaddleWebhookSignature({
+ rawBody,
+ signatureHeader: buildSignatureHeader({ rawBody, secretKey, timestamp }),
+ secretKey,
+ toleranceMs: 5_000,
+ now: () => Number(timestamp) * 1_000 + 1_000,
+ })
+
+ expect(result).toEqual({ ok: true, timestamp })
+ })
+
+ it('rejects missing or malformed headers', () => {
+ const rawBody = '{}'
+ const secretKey = 'pdl_ntfset_test_secret'
+
+ expect(verifyPaddleWebhookSignature({
+ rawBody,
+ signatureHeader: '',
+ secretKey,
+ })).toEqual({ ok: false, error: 'missing_signature' })
+
+ expect(verifyPaddleWebhookSignature({
+ rawBody,
+ signatureHeader: 'ts=1719012345',
+ secretKey,
+ })).toEqual({ ok: false, error: 'invalid_signature_header' })
+ })
+
+ it('rejects signatures that are outside the tolerance window', () => {
+ const rawBody = '{}'
+ const timestamp = '1719012345'
+ const secretKey = 'pdl_ntfset_test_secret'
+
+ const result = verifyPaddleWebhookSignature({
+ rawBody,
+ signatureHeader: buildSignatureHeader({ rawBody, secretKey, timestamp }),
+ secretKey,
+ toleranceMs: 5_000,
+ now: () => Number(timestamp) * 1_000 + 6_000,
+ })
+
+ expect(result).toEqual({ ok: false, error: 'expired_signature' })
+ })
+
+ it('rejects mismatched signatures', () => {
+ const rawBody = '{}'
+ const secretKey = 'pdl_ntfset_test_secret'
+
+ const result = verifyPaddleWebhookSignature({
+ rawBody,
+ signatureHeader: 'ts=1719012345;h1=deadbeef',
+ secretKey,
+ toleranceMs: 5_000,
+ now: () => 1719012345_000 + 1_000,
+ })
+
+ expect(result).toEqual({ ok: false, error: 'invalid_signature' })
+ })
+
+ it('fails closed when the secret key is missing', () => {
+ const result = verifyPaddleWebhookSignature({
+ rawBody: '{}',
+ signatureHeader: 'ts=1719012345;h1=deadbeef',
+ secretKey: '',
+ })
+
+ expect(result).toEqual({ ok: false, error: 'missing_secret' })
+ })
+})
diff --git a/website/server/src/__tests__/security.test.ts b/website/server/src/__tests__/security.test.ts
new file mode 100644
index 0000000..6b434ea
--- /dev/null
+++ b/website/server/src/__tests__/security.test.ts
@@ -0,0 +1,138 @@
+import { describe, expect, it } from 'vitest'
+
+import { buildAllowedOriginMatcher, createDesktopLinkStore } from '../security'
+
+describe('buildAllowedOriginMatcher', () => {
+ it('accepts the configured origin and same-origin referrer paths', () => {
+ const matchesAllowedOrigin = buildAllowedOriginMatcher('https://hypertwist.app')
+
+ expect(matchesAllowedOrigin('https://hypertwist.app')).toBe(true)
+ expect(matchesAllowedOrigin('https://hypertwist.app/app/downloads')).toBe(true)
+ })
+
+ it('rejects prefix-spoofed or unrelated origins', () => {
+ const matchesAllowedOrigin = buildAllowedOriginMatcher('https://hypertwist.app')
+
+ expect(matchesAllowedOrigin('https://hypertwist.app.evil.example')).toBe(false)
+ expect(matchesAllowedOrigin('https://evil.example/hypertwist.app')).toBe(false)
+ expect(matchesAllowedOrigin('not-a-url')).toBe(false)
+ })
+})
+
+describe('createDesktopLinkStore', () => {
+ it('issues one-time desktop-link tokens and consumes them on verify', () => {
+ let currentTime = 100
+ let seed = 1
+ const store = createDesktopLinkStore({
+ ttlMs: 60_000,
+ rateLimitMax: 5,
+ rateLimitWindowMs: 60_000,
+ now: () => currentTime,
+ randomBytes: () => Buffer.from((seed++).toString(16).padStart(64, '0'), 'hex'),
+ })
+
+ const issue = store.issueToken({
+ rateLimitKey: 'desktop-link:user-1',
+ userId: 'user-1',
+ email: 'operator@hypertwist.app',
+ plan: 'operator',
+ role: 'operator',
+ canDownload: true,
+ accessStatus: 'active',
+ })
+
+ expect(issue.ok).toBe(true)
+ if (!issue.ok) {
+ return
+ }
+
+ const firstVerify = store.verifyAndConsumeToken(issue.token)
+ expect(firstVerify?.email).toBe('operator@hypertwist.app')
+ expect(firstVerify?.canDownload).toBe(true)
+ expect(firstVerify?.accessStatus).toBe('active')
+ expect(store.verifyAndConsumeToken(issue.token)).toBeNull()
+ expect(store.getTokenCount()).toBe(0)
+ })
+
+ it('rate limits repeated issuance inside the configured window', () => {
+ let currentTime = 1_000
+ let seed = 10
+ const store = createDesktopLinkStore({
+ ttlMs: 60_000,
+ rateLimitMax: 2,
+ rateLimitWindowMs: 5_000,
+ now: () => currentTime,
+ randomBytes: () => Buffer.from((seed++).toString(16).padStart(64, '0'), 'hex'),
+ })
+
+ expect(store.issueToken({
+ rateLimitKey: 'desktop-link:user-2',
+ userId: 'user-2',
+ email: 'operator@hypertwist.app',
+ plan: 'operator',
+ role: 'operator',
+ canDownload: true,
+ accessStatus: 'active',
+ }).ok).toBe(true)
+ expect(store.issueToken({
+ rateLimitKey: 'desktop-link:user-2',
+ userId: 'user-2',
+ email: 'operator@hypertwist.app',
+ plan: 'operator',
+ role: 'operator',
+ canDownload: true,
+ accessStatus: 'active',
+ }).ok).toBe(true)
+ expect(store.issueToken({
+ rateLimitKey: 'desktop-link:user-2',
+ userId: 'user-2',
+ email: 'operator@hypertwist.app',
+ plan: 'operator',
+ role: 'operator',
+ canDownload: true,
+ accessStatus: 'active',
+ })).toEqual({ ok: false, error: 'rate_limited' })
+
+ currentTime += 5_001
+ expect(store.issueToken({
+ rateLimitKey: 'desktop-link:user-2',
+ userId: 'user-2',
+ email: 'operator@hypertwist.app',
+ plan: 'operator',
+ role: 'operator',
+ canDownload: true,
+ accessStatus: 'active',
+ }).ok).toBe(true)
+ })
+
+ it('rejects expired or malformed verification tokens', () => {
+ let currentTime = 5_000
+ const store = createDesktopLinkStore({
+ ttlMs: 500,
+ rateLimitMax: 5,
+ rateLimitWindowMs: 60_000,
+ now: () => currentTime,
+ randomBytes: () => Buffer.from('ab'.repeat(32), 'hex'),
+ })
+
+ const issue = store.issueToken({
+ rateLimitKey: 'desktop-link:user-3',
+ userId: 'user-3',
+ email: 'operator@hypertwist.app',
+ plan: 'operator',
+ role: 'operator',
+ canDownload: false,
+ accessStatus: 'paused',
+ })
+
+ expect(store.verifyAndConsumeToken('bad-token')).toBeNull()
+ expect(issue.ok).toBe(true)
+ if (!issue.ok) {
+ return
+ }
+
+ currentTime += 501
+ expect(store.verifyAndConsumeToken(issue.token)).toBeNull()
+ expect(store.getTokenCount()).toBe(0)
+ })
+})
diff --git a/website/server/src/auth-health.ts b/website/server/src/auth-health.ts
new file mode 100644
index 0000000..e874868
--- /dev/null
+++ b/website/server/src/auth-health.ts
@@ -0,0 +1,157 @@
+interface SuperTokensCoreHealthProbeOptions {
+ connectionUri: string
+ apiDomain: string
+ websiteDomain: string
+ timeoutMs?: number
+ fetchImpl?: typeof fetch
+}
+
+export interface SuperTokensCoreHealthSnapshot {
+ configured: boolean
+ reachable: boolean
+ ready: boolean
+ apiVersion: string | null
+ error: string | null
+}
+
+function normalizeTrimmed(value: string) {
+ return value.trim()
+}
+
+function parseApiVersions(payload: unknown): string[] {
+ if (!payload || typeof payload !== 'object') {
+ return []
+ }
+
+ const rawVersions = (payload as { versions?: unknown }).versions
+ if (!Array.isArray(rawVersions)) {
+ return []
+ }
+
+ return rawVersions
+ .map((value) => String(value || '').trim())
+ .filter(Boolean)
+}
+
+function compareVersionNumbers(left: string, right: string) {
+ const leftParts = left.split('.').map((part) => Number(part))
+ const rightParts = right.split('.').map((part) => Number(part))
+ const maxLength = Math.max(leftParts.length, rightParts.length)
+
+ for (let index = 0; index < maxLength; index += 1) {
+ const leftValue = Number.isFinite(leftParts[index]) ? leftParts[index] : 0
+ const rightValue = Number.isFinite(rightParts[index]) ? rightParts[index] : 0
+ if (leftValue > rightValue) return 1
+ if (leftValue < rightValue) return -1
+ }
+
+ return 0
+}
+
+function pickHighestVersion(versions: string[]) {
+ if (versions.length === 0) {
+ return null
+ }
+
+ return versions.reduce((highest, candidate) => (
+ compareVersionNumbers(candidate, highest) > 0 ? candidate : highest
+ ))
+}
+
+export function buildSuperTokensApiVersionUrl({
+ connectionUri,
+ apiDomain,
+ websiteDomain,
+}: Pick) {
+ const url = new URL(normalizeTrimmed(connectionUri))
+ const nextPath = `${url.pathname.replace(/\/+$/, '')}/apiversion`.replace(/\/{2,}/g, '/')
+ url.pathname = nextPath.startsWith('/') ? nextPath : `/${nextPath}`
+ url.search = ''
+ url.searchParams.set('apiDomain', normalizeTrimmed(apiDomain))
+ url.searchParams.set('websiteDomain', normalizeTrimmed(websiteDomain))
+ return url.toString()
+}
+
+export async function probeSuperTokensCoreHealth({
+ connectionUri,
+ apiDomain,
+ websiteDomain,
+ timeoutMs = 2_000,
+ fetchImpl = fetch,
+}: SuperTokensCoreHealthProbeOptions): Promise {
+ const normalizedConnectionUri = normalizeTrimmed(connectionUri)
+ const normalizedApiDomain = normalizeTrimmed(apiDomain)
+ const normalizedWebsiteDomain = normalizeTrimmed(websiteDomain)
+ const configured = Boolean(normalizedConnectionUri && normalizedApiDomain && normalizedWebsiteDomain)
+
+ if (!configured) {
+ return {
+ configured: false,
+ reachable: false,
+ ready: false,
+ apiVersion: null,
+ error: 'not_configured',
+ }
+ }
+
+ const controller = new AbortController()
+ const timeout = setTimeout(() => controller.abort(), Math.max(250, timeoutMs))
+ timeout.unref?.()
+
+ try {
+ const response = await fetchImpl(
+ buildSuperTokensApiVersionUrl({
+ connectionUri: normalizedConnectionUri,
+ apiDomain: normalizedApiDomain,
+ websiteDomain: normalizedWebsiteDomain,
+ }),
+ {
+ method: 'GET',
+ headers: {
+ accept: 'application/json',
+ },
+ signal: controller.signal,
+ },
+ )
+
+ if (!response.ok) {
+ return {
+ configured: true,
+ reachable: false,
+ ready: false,
+ apiVersion: null,
+ error: `http_${response.status}`,
+ }
+ }
+
+ const versions = parseApiVersions(await response.json())
+ const apiVersion = pickHighestVersion(versions)
+ if (!apiVersion) {
+ return {
+ configured: true,
+ reachable: false,
+ ready: false,
+ apiVersion: null,
+ error: 'invalid_payload',
+ }
+ }
+
+ return {
+ configured: true,
+ reachable: true,
+ ready: true,
+ apiVersion,
+ error: null,
+ }
+ } catch (error) {
+ return {
+ configured: true,
+ reachable: false,
+ ready: false,
+ apiVersion: null,
+ error: error instanceof Error && error.name === 'AbortError' ? 'timeout' : 'unreachable',
+ }
+ } finally {
+ clearTimeout(timeout)
+ }
+}
diff --git a/website/server/src/billing-state.ts b/website/server/src/billing-state.ts
new file mode 100644
index 0000000..fbd6154
--- /dev/null
+++ b/website/server/src/billing-state.ts
@@ -0,0 +1,475 @@
+import fs from 'node:fs'
+import path from 'node:path'
+
+export type BillingPlan = 'free' | 'operator' | 'studio' | 'enterprise'
+export type BillingRole = 'viewer' | 'operator' | 'reviewer' | 'admin'
+
+export interface BillingEntitlementState {
+ email: string
+ plan: BillingPlan
+ role: BillingRole
+ canDownload: boolean
+ accessStatus: string
+ source: 'paddle'
+ customerId: string | null
+ subscriptionId: string | null
+ transactionId: string | null
+ lastEventId: string
+ lastEventType: string
+ lastEventAt: string
+ updatedAt: string
+}
+
+interface BillingStateFile {
+ version: 'ht-billing-state/v1'
+ updatedAt: string
+ processedEvents: Record
+ accounts: Record
+}
+
+interface PaddleEventEnvelope {
+ event_id: string
+ event_type: string
+ occurred_at: string
+ data: Record
+}
+
+interface BillingStateStoreOptions {
+ statePath: string
+ defaultPlan: BillingPlan
+ defaultRole: BillingRole
+ productPlanMap?: Record
+ pricePlanMap?: Record
+ now?: () => Date
+}
+
+export interface BillingEventApplyResult {
+ kind: 'applied' | 'duplicate' | 'ignored' | 'noop'
+ reason:
+ | 'processed'
+ | 'duplicate_event'
+ | 'stale_event'
+ | 'unsupported_payload'
+ | 'unresolved_account'
+ eventId: string
+ eventType: string
+ email?: string
+}
+
+function normalizeEmail(value: unknown): string {
+ return String(value || '').trim().toLowerCase()
+}
+
+function normalizePlan(value: unknown, fallback: BillingPlan): BillingPlan {
+ const plan = String(value || '').trim().toLowerCase()
+ if (plan === 'operator' || plan === 'studio' || plan === 'enterprise' || plan === 'free') {
+ return plan
+ }
+ if (plan === 'explorer') {
+ return 'free'
+ }
+ return fallback
+}
+
+function normalizeRole(value: unknown, fallback: BillingRole): BillingRole {
+ const role = String(value || '').trim().toLowerCase()
+ if (role === 'viewer' || role === 'operator' || role === 'reviewer' || role === 'admin') {
+ return role
+ }
+ return fallback
+}
+
+function ensureParentDirectory(targetPath: string) {
+ fs.mkdirSync(path.dirname(targetPath), { recursive: true })
+}
+
+function readJsonFile(targetPath: string): BillingStateFile | null {
+ if (!fs.existsSync(targetPath)) {
+ return null
+ }
+
+ const raw = fs.readFileSync(targetPath, 'utf8')
+ return JSON.parse(raw) as BillingStateFile
+}
+
+function createEmptyState(nowIso: string): BillingStateFile {
+ return {
+ version: 'ht-billing-state/v1',
+ updatedAt: nowIso,
+ processedEvents: {},
+ accounts: {},
+ }
+}
+
+function writeJsonFile(targetPath: string, data: BillingStateFile) {
+ ensureParentDirectory(targetPath)
+ const tempPath = `${targetPath}.tmp`
+ fs.writeFileSync(tempPath, JSON.stringify(data, null, 2), 'utf8')
+ fs.renameSync(tempPath, targetPath)
+}
+
+function toIsoString(now: Date): string {
+ return now.toISOString()
+}
+
+function isLaterEvent(existingOccurredAt: string, nextOccurredAt: string): boolean {
+ return Date.parse(nextOccurredAt) > Date.parse(existingOccurredAt)
+}
+
+function readStringAtPath(root: unknown, pathSegments: Array): string | null {
+ let current: unknown = root
+ for (const segment of pathSegments) {
+ if (current == null) return null
+ if (typeof segment === 'number') {
+ if (!Array.isArray(current) || current.length <= segment) return null
+ current = current[segment]
+ continue
+ }
+ if (typeof current !== 'object' || !(segment in current)) return null
+ current = (current as Record)[segment]
+ }
+
+ const value = String(current || '').trim()
+ return value ? value : null
+}
+
+function readRecordAtPath(root: unknown, pathSegments: Array): Record | null {
+ let current: unknown = root
+ for (const segment of pathSegments) {
+ if (current == null) return null
+ if (typeof segment === 'number') {
+ if (!Array.isArray(current) || current.length <= segment) return null
+ current = current[segment]
+ continue
+ }
+ if (typeof current !== 'object' || !(segment in current)) return null
+ current = (current as Record)[segment]
+ }
+
+ return current && typeof current === 'object' && !Array.isArray(current)
+ ? current as Record
+ : null
+}
+
+function readEmailFromEventData(data: Record): string {
+ const candidates = [
+ ['customer', 'email'],
+ ['customer', 'email_address'],
+ ['custom_data', 'email'],
+ ['custom_data', 'user_email'],
+ ['custom_data', 'account_email'],
+ ['custom_data', 'operator_email'],
+ ['custom_data', 'hypertwist_account_email'],
+ ['billing_details', 'email'],
+ ]
+
+ for (const candidate of candidates) {
+ const value = readStringAtPath(data, candidate)
+ const email = normalizeEmail(value)
+ if (email) {
+ return email
+ }
+ }
+
+ return ''
+}
+
+function readAllCandidateIds(data: Record, key: 'subscriptionId' | 'transactionId' | 'customerId') {
+ const pathCandidates: Record>> = {
+ subscriptionId: [
+ ['id'],
+ ['subscription_id'],
+ ['data', 'id'],
+ ],
+ transactionId: [
+ ['transaction_id'],
+ ['id'],
+ ['data', 'transaction_id'],
+ ],
+ customerId: [
+ ['customer_id'],
+ ['customer', 'id'],
+ ['data', 'customer_id'],
+ ],
+ }
+
+ const values = new Set()
+ for (const candidate of pathCandidates[key]) {
+ const value = readStringAtPath(data, candidate)
+ if (value) {
+ values.add(value)
+ }
+ }
+ return Array.from(values)
+}
+
+function readPlanFromCustomData(data: Record, fallback: BillingPlan): BillingPlan {
+ const customData = readRecordAtPath(data, ['custom_data'])
+ if (!customData) {
+ return fallback
+ }
+
+ return normalizePlan(
+ customData.plan
+ ?? customData.ht_plan
+ ?? customData.hypertwist_plan
+ ?? customData.account_plan,
+ fallback,
+ )
+}
+
+function readRoleFromCustomData(data: Record, fallback: BillingRole): BillingRole {
+ const customData = readRecordAtPath(data, ['custom_data'])
+ if (!customData) {
+ return fallback
+ }
+
+ return normalizeRole(
+ customData.role
+ ?? customData.ht_role
+ ?? customData.hypertwist_role
+ ?? customData.account_role,
+ fallback,
+ )
+}
+
+function resolvePlanFromItemMaps(
+ data: Record,
+ productPlanMap: Record,
+ pricePlanMap: Record,
+): BillingPlan | null {
+ const items = Array.isArray(data.items) ? data.items : []
+ for (const item of items) {
+ if (!item || typeof item !== 'object') continue
+ const record = item as Record
+ const priceId = readStringAtPath(record, ['price', 'id']) ?? readStringAtPath(record, ['price_id'])
+ if (priceId && pricePlanMap[priceId]) {
+ return pricePlanMap[priceId]
+ }
+
+ const productId =
+ readStringAtPath(record, ['product', 'id'])
+ ?? readStringAtPath(record, ['product_id'])
+ ?? readStringAtPath(record, ['price', 'product_id'])
+ if (productId && productPlanMap[productId]) {
+ return productPlanMap[productId]
+ }
+ }
+
+ return null
+}
+
+function inferAccessStatus(eventType: string, data: Record): string {
+ const explicitStatus = readStringAtPath(data, ['status'])
+ if (explicitStatus) {
+ return explicitStatus
+ }
+
+ if (eventType === 'subscription.trialing') return 'trialing'
+ if (eventType === 'subscription.activated' || eventType === 'subscription.resumed') return 'active'
+ if (eventType === 'subscription.paused') return 'paused'
+ if (eventType === 'subscription.canceled') return 'canceled'
+ if (eventType === 'subscription.past_due' || eventType === 'transaction.past_due' || eventType === 'transaction.payment_failed') return 'past_due'
+ if (eventType === 'transaction.completed' || eventType === 'transaction.paid') return 'completed'
+ if (eventType === 'transaction.canceled') return 'canceled'
+
+ return 'unknown'
+}
+
+function deriveCanDownload(plan: BillingPlan, accessStatus: string): boolean {
+ if (plan === 'free') {
+ return false
+ }
+
+ return accessStatus === 'active'
+ || accessStatus === 'trialing'
+ || accessStatus === 'completed'
+ || accessStatus === 'paid'
+}
+
+function parsePaddleEvent(rawBody: string): PaddleEventEnvelope | null {
+ try {
+ const parsed = JSON.parse(rawBody) as Partial
+ if (
+ !parsed
+ || typeof parsed !== 'object'
+ || typeof parsed.event_id !== 'string'
+ || typeof parsed.event_type !== 'string'
+ || typeof parsed.occurred_at !== 'string'
+ || !parsed.data
+ || typeof parsed.data !== 'object'
+ || Array.isArray(parsed.data)
+ ) {
+ return null
+ }
+
+ return parsed as PaddleEventEnvelope
+ } catch {
+ return null
+ }
+}
+
+export function createBillingStateStore({
+ statePath,
+ defaultPlan,
+ defaultRole,
+ productPlanMap = {},
+ pricePlanMap = {},
+ now = () => new Date(),
+}: BillingStateStoreOptions) {
+ function loadState(): BillingStateFile {
+ const loaded = readJsonFile(statePath)
+ if (!loaded || loaded.version !== 'ht-billing-state/v1') {
+ return createEmptyState(toIsoString(now()))
+ }
+ return loaded
+ }
+
+ function saveState(state: BillingStateFile) {
+ state.updatedAt = toIsoString(now())
+ writeJsonFile(statePath, state)
+ }
+
+ function findExistingAccount(
+ state: BillingStateFile,
+ email: string,
+ ids: {
+ subscriptionIds: string[]
+ transactionIds: string[]
+ customerIds: string[]
+ },
+ ): BillingEntitlementState | null {
+ if (email && state.accounts[email]) {
+ return state.accounts[email]
+ }
+
+ for (const account of Object.values(state.accounts)) {
+ if (
+ (account.subscriptionId && ids.subscriptionIds.includes(account.subscriptionId))
+ || (account.transactionId && ids.transactionIds.includes(account.transactionId))
+ || (account.customerId && ids.customerIds.includes(account.customerId))
+ ) {
+ return account
+ }
+ }
+
+ return null
+ }
+
+ function getEntitlementByEmail(email: string): BillingEntitlementState | null {
+ const normalizedEmail = normalizeEmail(email)
+ if (!normalizedEmail) {
+ return null
+ }
+
+ const state = loadState()
+ return state.accounts[normalizedEmail] || null
+ }
+
+ function applyVerifiedPaddleEvent(rawBody: string): BillingEventApplyResult {
+ const envelope = parsePaddleEvent(rawBody)
+ if (!envelope) {
+ return {
+ kind: 'noop',
+ reason: 'unsupported_payload',
+ eventId: 'unknown',
+ eventType: 'unknown',
+ }
+ }
+
+ const state = loadState()
+ if (state.processedEvents[envelope.event_id]) {
+ return {
+ kind: 'duplicate',
+ reason: 'duplicate_event',
+ eventId: envelope.event_id,
+ eventType: envelope.event_type,
+ }
+ }
+
+ const email = readEmailFromEventData(envelope.data)
+ const ids = {
+ subscriptionIds: [
+ readStringAtPath(envelope.data, ['id']) && envelope.event_type.startsWith('subscription.')
+ ? String(readStringAtPath(envelope.data, ['id']))
+ : '',
+ ...readAllCandidateIds(envelope.data, 'subscriptionId'),
+ ].filter(Boolean),
+ transactionIds: [
+ readStringAtPath(envelope.data, ['id']) && envelope.event_type.startsWith('transaction.')
+ ? String(readStringAtPath(envelope.data, ['id']))
+ : '',
+ ...readAllCandidateIds(envelope.data, 'transactionId'),
+ ].filter(Boolean),
+ customerIds: readAllCandidateIds(envelope.data, 'customerId'),
+ }
+
+ const existingAccount = findExistingAccount(state, email, ids)
+ if (existingAccount && !isLaterEvent(existingAccount.lastEventAt, envelope.occurred_at)) {
+ state.processedEvents[envelope.event_id] = envelope.occurred_at
+ saveState(state)
+ return {
+ kind: 'ignored',
+ reason: 'stale_event',
+ eventId: envelope.event_id,
+ eventType: envelope.event_type,
+ email: existingAccount.email,
+ }
+ }
+
+ const resolvedEmail = email || existingAccount?.email || ''
+ if (!resolvedEmail) {
+ state.processedEvents[envelope.event_id] = envelope.occurred_at
+ saveState(state)
+ return {
+ kind: 'noop',
+ reason: 'unresolved_account',
+ eventId: envelope.event_id,
+ eventType: envelope.event_type,
+ }
+ }
+
+ const planFromItems = resolvePlanFromItemMaps(envelope.data, productPlanMap, pricePlanMap)
+ const nextPlan = planFromItems
+ ?? readPlanFromCustomData(envelope.data, existingAccount?.plan ?? defaultPlan)
+ const nextRole = readRoleFromCustomData(envelope.data, existingAccount?.role ?? defaultRole)
+ const accessStatus = inferAccessStatus(envelope.event_type, envelope.data)
+ const nextState: BillingEntitlementState = {
+ email: resolvedEmail,
+ plan: nextPlan,
+ role: nextRole,
+ canDownload: deriveCanDownload(nextPlan, accessStatus),
+ accessStatus,
+ source: 'paddle',
+ customerId: ids.customerIds[0] || existingAccount?.customerId || null,
+ subscriptionId: ids.subscriptionIds[0] || existingAccount?.subscriptionId || null,
+ transactionId: ids.transactionIds[0] || existingAccount?.transactionId || null,
+ lastEventId: envelope.event_id,
+ lastEventType: envelope.event_type,
+ lastEventAt: envelope.occurred_at,
+ updatedAt: toIsoString(now()),
+ }
+
+ state.accounts[resolvedEmail] = nextState
+ state.processedEvents[envelope.event_id] = envelope.occurred_at
+ saveState(state)
+ return {
+ kind: 'applied',
+ reason: 'processed',
+ eventId: envelope.event_id,
+ eventType: envelope.event_type,
+ email: resolvedEmail,
+ }
+ }
+
+ function getProcessedEventCount() {
+ return Object.keys(loadState().processedEvents).length
+ }
+
+ return {
+ applyVerifiedPaddleEvent,
+ getEntitlementByEmail,
+ getProcessedEventCount,
+ getStatePath: () => statePath,
+ }
+}
diff --git a/website/server/src/index.ts b/website/server/src/index.ts
new file mode 100644
index 0000000..5e04b80
--- /dev/null
+++ b/website/server/src/index.ts
@@ -0,0 +1,409 @@
+import 'dotenv/config'
+import cookieParser from 'cookie-parser'
+import cors from 'cors'
+import express from 'express'
+import path from 'node:path'
+import supertokens from 'supertokens-node'
+import { errorHandler, middleware, type SessionRequest } from 'supertokens-node/framework/express'
+import EmailPassword from 'supertokens-node/recipe/emailpassword'
+import Session from 'supertokens-node/recipe/session'
+import ThirdParty from 'supertokens-node/recipe/thirdparty'
+import GithubProvider from 'supertokens-node/lib/build/recipe/thirdparty/providers/github'
+import GoogleProvider from 'supertokens-node/lib/build/recipe/thirdparty/providers/google'
+import { probeSuperTokensCoreHealth } from './auth-health'
+import { createBillingStateStore, type BillingPlan, type BillingRole } from './billing-state'
+import { verifyPaddleWebhookSignature } from './paddle-webhook'
+import { buildAllowedOriginMatcher, createDesktopLinkStore } from './security'
+
+const Github = GithubProvider as unknown as (options: { clientId: string; clientSecret: string; scope?: string[] }) => ReturnType
+const Google = GoogleProvider as unknown as (options: { clientId: string; clientSecret: string; scope?: string[] }) => ReturnType
+
+const PORT = Number(process.env.PORT || 3001)
+const SUPERTOKENS_CORE_URI = process.env.SUPERTOKENS_CORE_URI || 'http://localhost:3567'
+const API_DOMAIN = process.env.API_DOMAIN || `http://localhost:${PORT}`
+const WEBSITE_DOMAIN = process.env.WEBSITE_DOMAIN || 'http://localhost:4273'
+const API_BASE_PATH = process.env.API_BASE_PATH || '/auth'
+const WEBSITE_BASE_PATH = process.env.WEBSITE_BASE_PATH || '/auth'
+const COOKIE_SECURE = String(process.env.COOKIE_SECURE || '').toLowerCase() === 'true'
+const GITHUB_CLIENT_ID = process.env.GITHUB_CLIENT_ID || ''
+const GITHUB_CLIENT_SECRET = process.env.GITHUB_CLIENT_SECRET || ''
+const GOOGLE_CLIENT_ID = process.env.GOOGLE_CLIENT_ID || ''
+const GOOGLE_CLIENT_SECRET = process.env.GOOGLE_CLIENT_SECRET || ''
+const DEFAULT_PLAN = normalizeBillingPlan(process.env.DEFAULT_PLAN || 'free')
+const DEFAULT_ROLE = normalizeBillingRole(process.env.DEFAULT_ROLE || 'operator')
+const SUPERTOKENS_HEALTH_TIMEOUT_MS = Number(process.env.SUPERTOKENS_HEALTH_TIMEOUT_MS || 2_000)
+
+const DESKTOP_LINK_TTL_MS = 10 * 60 * 1000
+const DESKTOP_LINK_RATE_LIMIT_MAX = Number(process.env.DESKTOP_LINK_RATE_LIMIT_MAX || 5)
+const DESKTOP_LINK_RATE_LIMIT_WINDOW_MS = Number(process.env.DESKTOP_LINK_RATE_LIMIT_WINDOW_MS || 15 * 60 * 1000)
+const PADDLE_WEBHOOK_SECRET = process.env.PADDLE_WEBHOOK_SECRET || ''
+const PADDLE_WEBHOOK_TOLERANCE_MS = Number(process.env.PADDLE_WEBHOOK_TOLERANCE_MS || 5_000)
+const BILLING_STATE_PATH = process.env.BILLING_STATE_PATH || path.join(process.cwd(), 'data', 'hypertwist-billing-state.json')
+const PADDLE_PRODUCT_PLAN_MAP = parseBillingPlanMap(process.env.PADDLE_PRODUCT_PLAN_MAP)
+const PADDLE_PRICE_PLAN_MAP = parseBillingPlanMap(process.env.PADDLE_PRICE_PLAN_MAP)
+
+function normalizeBillingPlan(value: string): BillingPlan {
+ const plan = value.trim().toLowerCase()
+ if (plan === 'operator' || plan === 'studio' || plan === 'enterprise' || plan === 'free') {
+ return plan
+ }
+ if (plan === 'explorer') {
+ return 'free'
+ }
+ return 'free'
+}
+
+function normalizeBillingRole(value: string): BillingRole {
+ const role = value.trim().toLowerCase()
+ if (role === 'viewer' || role === 'operator' || role === 'reviewer' || role === 'admin') {
+ return role
+ }
+ return 'operator'
+}
+
+function parseBillingPlanMap(rawValue: string | undefined): Record {
+ const trimmed = String(rawValue || '').trim()
+ if (!trimmed) {
+ return {}
+ }
+
+ try {
+ const parsed = JSON.parse(trimmed) as Record
+ return Object.fromEntries(
+ Object.entries(parsed)
+ .filter(([key]) => String(key || '').trim().length > 0)
+ .map(([key, value]) => [key, normalizeBillingPlan(String(value || ''))]),
+ )
+ } catch {
+ console.warn('[billing] failed to parse plan map JSON; ignoring configured map')
+ return {}
+ }
+}
+
+function resolveAccountState(email: string, payload: Record) {
+ const entitlement = billingStateStore.getEntitlementByEmail(email)
+ const plan = entitlement?.plan ?? normalizeBillingPlan(String(payload.plan || DEFAULT_PLAN))
+ const role = entitlement?.role ?? normalizeBillingRole(String(payload.role || DEFAULT_ROLE))
+ const canDownload = entitlement ? entitlement.canDownload : plan !== 'free'
+
+ return {
+ plan,
+ role,
+ canDownload,
+ billing: {
+ source: entitlement?.source || 'session',
+ access_status: entitlement?.accessStatus || 'session-default',
+ can_download: canDownload,
+ subscription_id: entitlement?.subscriptionId || null,
+ customer_id: entitlement?.customerId || null,
+ transaction_id: entitlement?.transactionId || null,
+ last_event_id: entitlement?.lastEventId || null,
+ last_event_type: entitlement?.lastEventType || null,
+ last_event_at: entitlement?.lastEventAt || null,
+ updated_at: entitlement?.updatedAt || null,
+ state_path: entitlement ? billingStateStore.getStatePath() : null,
+ },
+ }
+}
+
+const recipeList = [
+ EmailPassword.init({
+ signUpFeature: {
+ formFields: [
+ { id: 'email' },
+ { id: 'password' },
+ ],
+ },
+ override: {
+ apis: (originalImplementation) => ({
+ ...originalImplementation,
+ signUpPOST: async (input) => {
+ const response = await originalImplementation.signUpPOST!(input)
+ if (response.status === 'OK') {
+ await response.session.mergeIntoAccessTokenPayload({
+ email: response.user.emails[0],
+ plan: DEFAULT_PLAN,
+ role: DEFAULT_ROLE,
+ })
+ }
+ return response
+ },
+ }),
+ },
+ }),
+ Session.init({
+ cookieSecure: COOKIE_SECURE,
+ cookieSameSite: COOKIE_SECURE ? 'none' : 'lax',
+ }),
+]
+
+const thirdPartyProviders = []
+if (GITHUB_CLIENT_ID && GITHUB_CLIENT_SECRET) {
+ thirdPartyProviders.push(Github({
+ clientId: GITHUB_CLIENT_ID,
+ clientSecret: GITHUB_CLIENT_SECRET,
+ scope: ['read:user', 'user:email'],
+ }))
+}
+if (GOOGLE_CLIENT_ID && GOOGLE_CLIENT_SECRET) {
+ thirdPartyProviders.push(Google({
+ clientId: GOOGLE_CLIENT_ID,
+ clientSecret: GOOGLE_CLIENT_SECRET,
+ scope: ['openid', 'email', 'profile'],
+ }))
+}
+
+if (thirdPartyProviders.length > 0) {
+ recipeList.splice(1, 0, ThirdParty.init({
+ signInAndUpFeature: {
+ providers: thirdPartyProviders,
+ },
+ override: {
+ apis: (originalImplementation) => ({
+ ...originalImplementation,
+ signInUpPOST: async (input) => {
+ const response = await originalImplementation.signInUpPOST!(input)
+ if (response.status === 'OK') {
+ await response.session.mergeIntoAccessTokenPayload({
+ email: response.user.emails[0] || '',
+ plan: DEFAULT_PLAN,
+ role: DEFAULT_ROLE,
+ })
+ }
+ return response
+ },
+ }),
+ },
+ }))
+}
+
+supertokens.init({
+ framework: 'express',
+ supertokens: {
+ connectionURI: SUPERTOKENS_CORE_URI,
+ },
+ appInfo: {
+ appName: 'HyperTwist',
+ apiDomain: API_DOMAIN,
+ websiteDomain: WEBSITE_DOMAIN,
+ apiBasePath: API_BASE_PATH,
+ websiteBasePath: WEBSITE_BASE_PATH,
+ },
+ recipeList,
+})
+
+const matchesAllowedOrigin = buildAllowedOriginMatcher(WEBSITE_DOMAIN)
+const desktopLinkStore = createDesktopLinkStore({
+ ttlMs: DESKTOP_LINK_TTL_MS,
+ rateLimitMax: DESKTOP_LINK_RATE_LIMIT_MAX,
+ rateLimitWindowMs: DESKTOP_LINK_RATE_LIMIT_WINDOW_MS,
+})
+const billingStateStore = createBillingStateStore({
+ statePath: BILLING_STATE_PATH,
+ defaultPlan: DEFAULT_PLAN,
+ defaultRole: DEFAULT_ROLE,
+ productPlanMap: PADDLE_PRODUCT_PLAN_MAP,
+ pricePlanMap: PADDLE_PRICE_PLAN_MAP,
+})
+
+setInterval(() => {
+ desktopLinkStore.cleanupExpiredTokens()
+}, 60_000).unref()
+
+const app = express()
+
+app.post('/api/billing/paddle/webhook', express.raw({ type: 'application/json' }), (req, res) => {
+ const rawBody = Buffer.isBuffer(req.body) ? req.body.toString() : ''
+ const verificationResult = verifyPaddleWebhookSignature({
+ rawBody,
+ signatureHeader: req.headers['paddle-signature'],
+ secretKey: PADDLE_WEBHOOK_SECRET,
+ toleranceMs: PADDLE_WEBHOOK_TOLERANCE_MS,
+ })
+
+ if (!verificationResult.ok) {
+ const statusCode = verificationResult.error === 'missing_secret'
+ ? 503
+ : verificationResult.error === 'expired_signature'
+ ? 408
+ : 400
+ console.warn('[billing] rejected paddle webhook', {
+ error: verificationResult.error,
+ bodyBytes: Buffer.byteLength(rawBody),
+ })
+ return res.status(statusCode).json({ error: verificationResult.error })
+ }
+
+ const applyResult = billingStateStore.applyVerifiedPaddleEvent(rawBody)
+ console.log('[billing] verified paddle webhook received', {
+ bodyBytes: Buffer.byteLength(rawBody),
+ timestamp: verificationResult.timestamp,
+ applyResult,
+ })
+ return res.json({ received: true, verified: true, apply_result: applyResult })
+})
+
+app.use(cors({
+ origin(origin, callback) {
+ if (!origin || matchesAllowedOrigin(origin)) {
+ callback(null, true)
+ return
+ }
+ callback(new Error('forbidden_origin'))
+ },
+ credentials: true,
+ allowedHeaders: ['content-type', ...supertokens.getAllCORSHeaders()],
+ methods: ['GET', 'POST', 'PUT', 'DELETE', 'OPTIONS'],
+}))
+
+app.use(express.json())
+app.use(cookieParser())
+app.use(middleware())
+
+app.get('/health', (_req, res) => {
+ res.json({ ok: true, service: 'hypertwist-auth-server' })
+})
+
+app.get('/api/auth/health', async (_req, res) => {
+ const superTokensHealth = await probeSuperTokensCoreHealth({
+ connectionUri: SUPERTOKENS_CORE_URI,
+ apiDomain: API_DOMAIN,
+ websiteDomain: WEBSITE_DOMAIN,
+ timeoutMs: SUPERTOKENS_HEALTH_TIMEOUT_MS,
+ })
+
+ res.json({
+ ok: true,
+ service: 'hypertwist-auth-server',
+ supertokens: {
+ configured: superTokensHealth.configured,
+ reachable: superTokensHealth.reachable,
+ ready: superTokensHealth.ready,
+ apiVersion: superTokensHealth.apiVersion,
+ error: superTokensHealth.error,
+ oauth: {
+ github: Boolean(GITHUB_CLIENT_ID && GITHUB_CLIENT_SECRET),
+ google: Boolean(GOOGLE_CLIENT_ID && GOOGLE_CLIENT_SECRET),
+ },
+ },
+ fallback: {
+ enabled: true,
+ active: !superTokensHealth.ready,
+ reason: superTokensHealth.ready ? null : (superTokensHealth.error || 'not_ready'),
+ },
+ billing: {
+ statePath: billingStateStore.getStatePath(),
+ processedEventCount: billingStateStore.getProcessedEventCount(),
+ pricePlanMapConfigured: Object.keys(PADDLE_PRICE_PLAN_MAP).length > 0,
+ productPlanMapConfigured: Object.keys(PADDLE_PRODUCT_PLAN_MAP).length > 0,
+ webhookSecretConfigured: Boolean(PADDLE_WEBHOOK_SECRET),
+ },
+ })
+})
+
+app.get('/api/auth/me', async (req: SessionRequest, res) => {
+ const session = await Session.getSession(req, res, { sessionRequired: false })
+ if (!session) {
+ return res.status(401).json({ error: 'unauthorized' })
+ }
+
+ const payload = session.getAccessTokenPayload()
+ const email = String(payload.email || '')
+ if (!email) {
+ return res.status(401).json({ error: 'session_missing_email' })
+ }
+
+ const resolvedAccount = resolveAccountState(email, payload)
+ if (payload.plan !== resolvedAccount.plan || payload.role !== resolvedAccount.role) {
+ await session.mergeIntoAccessTokenPayload({
+ plan: resolvedAccount.plan,
+ role: resolvedAccount.role,
+ })
+ }
+
+ return res.json({
+ user: {
+ id: session.getUserId(),
+ email,
+ name: payload.name || email.split('@')[0],
+ plan: resolvedAccount.plan,
+ role: resolvedAccount.role,
+ can_download: resolvedAccount.canDownload,
+ billing: resolvedAccount.billing,
+ auth_method: 'supertokens',
+ },
+ mode: 'supertokens',
+ })
+})
+
+app.post('/api/auth/logout', async (req: SessionRequest, res) => {
+ const session = await Session.getSession(req, res, { sessionRequired: false })
+ if (session) {
+ await session.revokeSession()
+ }
+ return res.json({ ok: true })
+})
+
+app.post('/api/auth/desktop-link', async (req: SessionRequest, res) => {
+ const origin = String(req.headers.origin || req.headers.referer || '')
+ if (!matchesAllowedOrigin(origin)) {
+ return res.status(403).json({ error: 'forbidden_origin' })
+ }
+
+ const session = await Session.getSession(req, res, { sessionRequired: false })
+ if (!session) {
+ return res.status(401).json({ error: 'unauthorized' })
+ }
+
+ const payload = session.getAccessTokenPayload()
+ const email = String(payload.email || '')
+ if (!email) {
+ return res.status(401).json({ error: 'session_missing_email' })
+ }
+ const resolvedAccount = resolveAccountState(email, payload)
+
+ const issueResult = desktopLinkStore.issueToken({
+ rateLimitKey: `desktop-link:${session.getUserId()}`,
+ userId: session.getUserId(),
+ email,
+ plan: resolvedAccount.plan,
+ role: resolvedAccount.role,
+ canDownload: resolvedAccount.canDownload,
+ accessStatus: resolvedAccount.billing.access_status,
+ })
+ if (!issueResult.ok) {
+ return res.status(429).json({ error: issueResult.error })
+ }
+
+ return res.json({ ok: true, token: issueResult.token, expires_at: issueResult.expiresAt })
+})
+
+app.get('/api/auth/desktop-link/verify', (req, res) => {
+ const token = String(req.query.token || '')
+ const record = desktopLinkStore.verifyAndConsumeToken(token)
+ if (!record) {
+ return res.status(404).json({ error: 'invalid_token' })
+ }
+
+ return res.json({
+ ok: true,
+ email: record.email,
+ plan: record.plan,
+ role: record.role,
+ can_download: record.canDownload,
+ access_status: record.accessStatus,
+ })
+})
+
+app.use(errorHandler())
+
+app.use((error: unknown, _req: express.Request, res: express.Response, _next: express.NextFunction) => {
+ console.error('[hypertwist-auth-server] unhandled error', error)
+ res.status(500).json({ error: 'internal_server_error' })
+})
+
+app.listen(PORT, () => {
+ console.log(`HyperTwist auth server listening on ${API_DOMAIN}`)
+ console.log(`Frontend origin: ${WEBSITE_DOMAIN}`)
+ console.log(`SuperTokens core: ${SUPERTOKENS_CORE_URI}`)
+})
diff --git a/website/server/src/paddle-webhook.ts b/website/server/src/paddle-webhook.ts
new file mode 100644
index 0000000..130eaa5
--- /dev/null
+++ b/website/server/src/paddle-webhook.ts
@@ -0,0 +1,80 @@
+import crypto from 'node:crypto'
+
+export type PaddleWebhookVerificationResult =
+ | { ok: true; timestamp: string }
+ | {
+ ok: false
+ error: 'missing_secret' | 'missing_signature' | 'invalid_signature_header' | 'expired_signature' | 'invalid_signature'
+ }
+
+interface VerifyPaddleWebhookSignatureInput {
+ rawBody: string
+ signatureHeader: string | string[] | undefined
+ secretKey: string
+ toleranceMs?: number
+ now?: () => number
+}
+
+function normalizeSignatureHeaderValue(signatureHeader: string | string[] | undefined): string {
+ if (Array.isArray(signatureHeader)) {
+ return signatureHeader[0] || ''
+ }
+ return String(signatureHeader || '')
+}
+
+export function verifyPaddleWebhookSignature({
+ rawBody,
+ signatureHeader,
+ secretKey,
+ toleranceMs = 5_000,
+ now = () => Date.now(),
+}: VerifyPaddleWebhookSignatureInput): PaddleWebhookVerificationResult {
+ if (!secretKey.trim()) {
+ return { ok: false, error: 'missing_secret' }
+ }
+
+ const normalizedHeader = normalizeSignatureHeaderValue(signatureHeader).trim()
+ if (!normalizedHeader) {
+ return { ok: false, error: 'missing_signature' }
+ }
+
+ const headerParts = new Map()
+ for (const part of normalizedHeader.split(';')) {
+ const [key, value] = part.split('=', 2).map((entry) => entry.trim())
+ if (key && value) {
+ headerParts.set(key, value)
+ }
+ }
+
+ const timestamp = headerParts.get('ts')
+ const providedSignature = headerParts.get('h1')
+ if (!timestamp || !providedSignature) {
+ return { ok: false, error: 'invalid_signature_header' }
+ }
+
+ const timestampMs = Number(timestamp) * 1_000
+ if (!Number.isFinite(timestampMs) || Math.abs(now() - timestampMs) > toleranceMs) {
+ return { ok: false, error: 'expired_signature' }
+ }
+
+ if (!/^[a-f0-9]+$/i.test(providedSignature) || providedSignature.length % 2 !== 0) {
+ return { ok: false, error: 'invalid_signature' }
+ }
+
+ const expectedSignature = crypto
+ .createHmac('sha256', secretKey)
+ .update(`${timestamp}:${rawBody}`)
+ .digest('hex')
+
+ const expectedBuffer = Buffer.from(expectedSignature, 'hex')
+ const providedBuffer = Buffer.from(providedSignature, 'hex')
+ if (expectedBuffer.length !== providedBuffer.length) {
+ return { ok: false, error: 'invalid_signature' }
+ }
+
+ if (!crypto.timingSafeEqual(expectedBuffer, providedBuffer)) {
+ return { ok: false, error: 'invalid_signature' }
+ }
+
+ return { ok: true, timestamp }
+}
diff --git a/website/server/src/security.ts b/website/server/src/security.ts
new file mode 100644
index 0000000..b140c11
--- /dev/null
+++ b/website/server/src/security.ts
@@ -0,0 +1,158 @@
+import crypto from 'node:crypto'
+
+export interface DesktopLinkRecord {
+ userId: string
+ email: string
+ plan: string
+ role: string
+ canDownload: boolean
+ accessStatus: string
+ createdAt: number
+}
+
+interface DesktopLinkRateLimitBucket {
+ count: number
+ resetAt: number
+}
+
+interface DesktopLinkStoreOptions {
+ ttlMs: number
+ rateLimitMax: number
+ rateLimitWindowMs: number
+ now?: () => number
+ randomBytes?: (size: number) => Buffer
+}
+
+interface DesktopLinkIssueInput {
+ rateLimitKey: string
+ userId: string
+ email: string
+ plan: string
+ role: string
+ canDownload: boolean
+ accessStatus: string
+}
+
+type DesktopLinkIssueResult =
+ | { ok: true; token: string; expiresAt: string }
+ | { ok: false; error: 'rate_limited' }
+
+function normalizeOriginCandidate(candidate: string): string | null {
+ const trimmed = candidate.trim()
+ if (!trimmed) {
+ return null
+ }
+
+ try {
+ return new URL(trimmed).origin.toLowerCase()
+ } catch {
+ return null
+ }
+}
+
+export function buildAllowedOriginMatcher(websiteDomain: string) {
+ const allowedOrigin = normalizeOriginCandidate(websiteDomain)
+ if (!allowedOrigin) {
+ throw new Error(`WEBSITE_DOMAIN '${websiteDomain}' must be an absolute origin.`)
+ }
+
+ return (candidate: string): boolean => normalizeOriginCandidate(candidate) === allowedOrigin
+}
+
+export function createDesktopLinkStore({
+ ttlMs,
+ rateLimitMax,
+ rateLimitWindowMs,
+ now = () => Date.now(),
+ randomBytes = crypto.randomBytes,
+}: DesktopLinkStoreOptions) {
+ const desktopLinkTokens = new Map()
+ const rateLimitBuckets = new Map()
+
+ function cleanupExpiredTokens() {
+ const cutoff = now() - ttlMs
+ for (const [token, record] of desktopLinkTokens) {
+ if (record.createdAt < cutoff) {
+ desktopLinkTokens.delete(token)
+ }
+ }
+
+ for (const [key, bucket] of rateLimitBuckets) {
+ if (bucket.resetAt <= now()) {
+ rateLimitBuckets.delete(key)
+ }
+ }
+ }
+
+ function isRateLimited(rateLimitKey: string) {
+ const currentTime = now()
+ const bucket = rateLimitBuckets.get(rateLimitKey)
+ if (!bucket || currentTime >= bucket.resetAt) {
+ rateLimitBuckets.set(rateLimitKey, {
+ count: 1,
+ resetAt: currentTime + rateLimitWindowMs,
+ })
+ return false
+ }
+
+ bucket.count += 1
+ return bucket.count > rateLimitMax
+ }
+
+ function issueToken({
+ rateLimitKey,
+ userId,
+ email,
+ plan,
+ role,
+ canDownload,
+ accessStatus,
+ }: DesktopLinkIssueInput): DesktopLinkIssueResult {
+ cleanupExpiredTokens()
+ if (isRateLimited(rateLimitKey)) {
+ return { ok: false, error: 'rate_limited' }
+ }
+
+ const createdAt = now()
+ const token = randomBytes(32).toString('hex')
+ desktopLinkTokens.set(token, {
+ userId,
+ email,
+ plan,
+ role,
+ canDownload,
+ accessStatus,
+ createdAt,
+ })
+
+ return {
+ ok: true,
+ token,
+ expiresAt: new Date(createdAt + ttlMs).toISOString(),
+ }
+ }
+
+ function verifyAndConsumeToken(token: string): DesktopLinkRecord | null {
+ cleanupExpiredTokens()
+
+ const normalizedToken = token.trim()
+ if (!/^[a-f0-9]{64}$/i.test(normalizedToken)) {
+ return null
+ }
+
+ const record = desktopLinkTokens.get(normalizedToken)
+ if (!record) {
+ return null
+ }
+
+ desktopLinkTokens.delete(normalizedToken)
+ return record
+ }
+
+ return {
+ cleanupExpiredTokens,
+ issueToken,
+ verifyAndConsumeToken,
+ getTokenCount: () => desktopLinkTokens.size,
+ }
+}
diff --git a/website/server/tsconfig.json b/website/server/tsconfig.json
new file mode 100644
index 0000000..6fbba50
--- /dev/null
+++ b/website/server/tsconfig.json
@@ -0,0 +1,13 @@
+{
+ "compilerOptions": {
+ "target": "ES2022",
+ "module": "ESNext",
+ "moduleResolution": "Node",
+ "esModuleInterop": true,
+ "strict": true,
+ "skipLibCheck": true,
+ "resolveJsonModule": true,
+ "types": ["node"]
+ },
+ "include": ["src"]
+}
diff --git a/website/src/App.tsx b/website/src/App.tsx
new file mode 100644
index 0000000..6be5100
--- /dev/null
+++ b/website/src/App.tsx
@@ -0,0 +1,40 @@
+import { QueryClient, QueryClientProvider } from '@tanstack/react-query'
+import { BrowserRouter } from 'react-router-dom'
+import { SuperTokensWrapper } from 'supertokens-auth-react'
+import { PlatformAuthProvider } from './auth/platform-auth'
+import { isSuperTokensConfigured } from './auth/supertokens-client'
+import { AppRouteTree } from './router/AppRouteTree'
+import { ROUTER_FUTURE_FLAGS } from './router/router-future'
+import './styles/global.css'
+
+const queryClient = new QueryClient({
+ defaultOptions: {
+ queries: {
+ staleTime: 60_000,
+ retry: 1,
+ refetchOnWindowFocus: false,
+ },
+ },
+})
+
+function MaybeSuperTokensWrapper({ children }: { children: React.ReactNode }) {
+ if (!isSuperTokensConfigured()) {
+ return <>{children}>
+ }
+
+ return {children}
+}
+
+export default function App() {
+ return (
+
+
+
+
+
+
+
+
+
+ )
+}
diff --git a/website/src/__tests__/auth-env.test.ts b/website/src/__tests__/auth-env.test.ts
new file mode 100644
index 0000000..c73dac8
--- /dev/null
+++ b/website/src/__tests__/auth-env.test.ts
@@ -0,0 +1,17 @@
+import { describe, expect, it } from 'vitest'
+import { getAuthRuntimeConfig } from '../auth/auth-env'
+
+describe('getAuthRuntimeConfig', () => {
+ it('normalizes loopback origins to the current browser origin', () => {
+ const config = getAuthRuntimeConfig({
+ VITE_SUPERTOKENS_API_DOMAIN: 'http://localhost:3001/',
+ VITE_SUPERTOKENS_WEBSITE_DOMAIN: 'http://127.0.0.1:4273/',
+ VITE_AUTH_API_BASE_URL: 'http://localhost:3001/',
+ }, {
+ locationOrigin: 'http://127.0.0.1:4273',
+ })
+
+ expect(config.superTokensWebsiteDomain).toBe('http://127.0.0.1:4273')
+ expect(config.authApiBaseUrl).toBe('http://localhost:3001')
+ })
+})
diff --git a/website/src/__tests__/password-policy.test.ts b/website/src/__tests__/password-policy.test.ts
new file mode 100644
index 0000000..e794cd3
--- /dev/null
+++ b/website/src/__tests__/password-policy.test.ts
@@ -0,0 +1,13 @@
+import { describe, expect, it } from 'vitest'
+import { validateStrongPassword } from '../auth/password-policy'
+
+describe('validateStrongPassword', () => {
+ it('rejects weak passwords', () => {
+ expect(validateStrongPassword('weak')).toBeTruthy()
+ expect(validateStrongPassword('NoSymbols1')).toBeTruthy()
+ })
+
+ it('accepts strong passwords', () => {
+ expect(validateStrongPassword('HyperTwist!9')).toBeUndefined()
+ })
+})
diff --git a/website/src/auth/auth-api.ts b/website/src/auth/auth-api.ts
new file mode 100644
index 0000000..8172171
--- /dev/null
+++ b/website/src/auth/auth-api.ts
@@ -0,0 +1,181 @@
+import { getAuthRuntimeConfig } from './auth-env'
+
+const authRuntime = getAuthRuntimeConfig()
+const DEFAULT_AUTH_API_TIMEOUT_MS = authRuntime.authApiTimeoutMs
+
+function normalizeBaseUrl(value: unknown) {
+ return String(value || '').trim().replace(/\/$/, '')
+}
+
+function normalizePath(path: string) {
+ return path.startsWith('/') ? path : `/${path}`
+}
+
+function buildCandidateBaseUrls() {
+ const configured = normalizeBaseUrl(authRuntime.authApiBaseUrl)
+ const origin = normalizeBaseUrl(typeof window !== 'undefined' ? window.location.origin : '')
+ return Array.from(new Set([configured, origin].filter(Boolean)))
+}
+
+function buildTimeoutSignal(timeoutMs: number) {
+ const controller = new AbortController()
+ const timeout = window.setTimeout(() => controller.abort(), timeoutMs)
+ return {
+ signal: controller.signal,
+ cleanup() {
+ window.clearTimeout(timeout)
+ },
+ }
+}
+
+export interface AuthApiFetchResult {
+ response: Response
+ baseUrl: string
+}
+
+export interface DesktopLinkPayload {
+ ok: true
+ token: string
+ expires_at: string
+}
+
+export interface DesktopLinkVerifyPayload {
+ ok: true
+ email: string
+ plan: string
+ role: string
+ can_download: boolean
+ access_status: string
+}
+
+export interface AuthHealthPayload {
+ ok: true
+ service: string
+ supertokens: {
+ configured: boolean
+ reachable: boolean
+ ready: boolean
+ apiVersion?: string | null
+ error?: string | null
+ oauth?: {
+ github: boolean
+ google: boolean
+ }
+ }
+ fallback: {
+ enabled: boolean
+ active?: boolean
+ reason?: string | null
+ }
+}
+
+export interface ApiBootstrapUserPayload {
+ user: {
+ id: string
+ email: string
+ name?: string
+ plan?: string
+ role?: string
+ can_download?: boolean
+ billing?: {
+ source?: string
+ access_status?: string
+ can_download?: boolean
+ subscription_id?: string | null
+ customer_id?: string | null
+ transaction_id?: string | null
+ last_event_id?: string | null
+ last_event_type?: string | null
+ last_event_at?: string | null
+ updated_at?: string | null
+ state_path?: string | null
+ }
+ is_admin?: boolean
+ auth_method?: string
+ }
+ mode: string
+}
+
+export function buildAuthApiBaseUrls() {
+ return buildCandidateBaseUrls()
+}
+
+export async function authApiFetch(
+ path: string,
+ init?: RequestInit,
+ options?: {
+ timeoutMs?: number
+ baseUrls?: string[]
+ },
+): Promise {
+ const baseUrls = options?.baseUrls?.length ? options.baseUrls : buildCandidateBaseUrls()
+ const timeoutMs = Math.max(1000, options?.timeoutMs ?? DEFAULT_AUTH_API_TIMEOUT_MS)
+ const normalizedPath = normalizePath(path)
+
+ let lastError: unknown = null
+ for (const baseUrl of baseUrls) {
+ const { signal, cleanup } = buildTimeoutSignal(timeoutMs)
+ try {
+ const response = await fetch(`${baseUrl}${normalizedPath}`, {
+ credentials: 'include',
+ ...init,
+ signal,
+ })
+ return { response, baseUrl }
+ } catch (error) {
+ lastError = error
+ } finally {
+ cleanup()
+ }
+ }
+
+ throw lastError ?? new Error('Auth API unreachable')
+}
+
+export async function getCurrentUser() {
+ const result = await authApiFetch('/api/auth/me')
+ return result.response
+}
+
+export async function logoutCurrentUser() {
+ const result = await authApiFetch('/api/auth/logout', {
+ method: 'POST',
+ headers: {
+ 'content-type': 'application/json',
+ },
+ })
+ return result.response
+}
+
+export async function createDesktopLinkToken() {
+ const result = await authApiFetch('/api/auth/desktop-link', {
+ method: 'POST',
+ headers: {
+ 'content-type': 'application/json',
+ },
+ body: JSON.stringify({}),
+ })
+ const payload = await result.response.json() as DesktopLinkPayload | { error?: string }
+ if (!result.response.ok || payload == null || (payload as DesktopLinkPayload).ok !== true) {
+ throw new Error((payload as { error?: string }).error || `desktop_link_http_${result.response.status}`)
+ }
+ return payload as DesktopLinkPayload
+}
+
+export async function verifyDesktopLinkToken(token: string) {
+ const result = await authApiFetch(`/api/auth/desktop-link/verify?token=${encodeURIComponent(token)}`)
+ const payload = await result.response.json() as DesktopLinkVerifyPayload | { error?: string }
+ if (!result.response.ok || payload == null || (payload as DesktopLinkVerifyPayload).ok !== true) {
+ throw new Error((payload as { error?: string }).error || `desktop_link_verify_http_${result.response.status}`)
+ }
+ return payload as DesktopLinkVerifyPayload
+}
+
+export async function getAuthHealth() {
+ const result = await authApiFetch('/api/auth/health')
+ const payload = await result.response.json() as AuthHealthPayload
+ if (!result.response.ok) {
+ throw new Error(`auth_health_http_${result.response.status}`)
+ }
+ return payload
+}
diff --git a/website/src/auth/auth-env.ts b/website/src/auth/auth-env.ts
new file mode 100644
index 0000000..fd33fb4
--- /dev/null
+++ b/website/src/auth/auth-env.ts
@@ -0,0 +1,92 @@
+function normalizeEnvValue(value: unknown) {
+ return String(value || '').trim().replace(/\/$/, '')
+}
+
+function normalizeLoopbackOrigin(configuredOrigin: string, locationOrigin: string) {
+ if (!configuredOrigin || !locationOrigin) return configuredOrigin
+
+ try {
+ const configured = new URL(configuredOrigin)
+ const current = new URL(locationOrigin)
+ const loopbackHosts = new Set(['localhost', '127.0.0.1'])
+
+ if (
+ loopbackHosts.has(configured.hostname)
+ && loopbackHosts.has(current.hostname)
+ && configured.protocol === current.protocol
+ && configured.port === current.port
+ ) {
+ return normalizeEnvValue(locationOrigin)
+ }
+ } catch {
+ return configuredOrigin
+ }
+
+ return configuredOrigin
+}
+
+export interface AuthEnvLike {
+ [key: string]: string | number | undefined
+ VITE_SUPERTOKENS_API_DOMAIN?: string
+ VITE_SUPERTOKENS_WEBSITE_DOMAIN?: string
+ VITE_SUPERTOKENS_API_BASE_PATH?: string
+ VITE_SUPERTOKENS_WEBSITE_BASE_PATH?: string
+ VITE_AUTH_API_BASE_URL?: string
+ VITE_AUTH_API_TIMEOUT_MS?: string | number
+}
+
+export interface AuthRuntimeConfig {
+ superTokensApiDomain: string
+ superTokensWebsiteDomain: string
+ superTokensApiBasePath: string
+ superTokensWebsiteBasePath: string
+ authApiBaseUrl: string
+ authApiTimeoutMs: number
+}
+
+export function getAuthRuntimeConfig(
+ env: Partial = import.meta.env as Partial,
+ options?: { locationOrigin?: string },
+): AuthRuntimeConfig {
+ const locationOrigin = normalizeEnvValue(
+ options?.locationOrigin ?? (typeof window !== 'undefined' ? window.location.origin : ''),
+ )
+
+ return {
+ superTokensApiDomain: normalizeLoopbackOrigin(
+ normalizeEnvValue(env.VITE_SUPERTOKENS_API_DOMAIN),
+ locationOrigin,
+ ),
+ superTokensWebsiteDomain: normalizeLoopbackOrigin(
+ normalizeEnvValue(env.VITE_SUPERTOKENS_WEBSITE_DOMAIN),
+ locationOrigin,
+ ),
+ superTokensApiBasePath: normalizeEnvValue(env.VITE_SUPERTOKENS_API_BASE_PATH) || '/auth',
+ superTokensWebsiteBasePath: normalizeEnvValue(env.VITE_SUPERTOKENS_WEBSITE_BASE_PATH) || '/auth',
+ authApiBaseUrl: normalizeLoopbackOrigin(
+ normalizeEnvValue(env.VITE_AUTH_API_BASE_URL),
+ locationOrigin,
+ ),
+ authApiTimeoutMs: Math.max(1000, Number(env.VITE_AUTH_API_TIMEOUT_MS || 8000)),
+ }
+}
+
+export function validateAuthRuntimeConfig(
+ env?: Partial,
+): { ready: boolean; missing: string[]; warnings: string[] } {
+ const config = getAuthRuntimeConfig(env ?? (import.meta.env as Partial))
+ const missing: string[] = []
+ if (!config.superTokensApiDomain) missing.push('VITE_SUPERTOKENS_API_DOMAIN')
+ if (!config.superTokensWebsiteDomain) missing.push('VITE_SUPERTOKENS_WEBSITE_DOMAIN')
+
+ const warnings: string[] = []
+ if (!config.authApiBaseUrl) {
+ warnings.push('VITE_AUTH_API_BASE_URL not configured; same-origin auth fallback remains active.')
+ }
+
+ return {
+ ready: missing.length === 0,
+ missing,
+ warnings,
+ }
+}
diff --git a/website/src/auth/password-policy.ts b/website/src/auth/password-policy.ts
new file mode 100644
index 0000000..5aff550
--- /dev/null
+++ b/website/src/auth/password-policy.ts
@@ -0,0 +1,32 @@
+const UNSAFE_PASSWORD_SYMBOL_PATTERN = /[\s"'`\\]/
+const REQUIRED_UPPERCASE_PATTERN = /[A-Z]/
+const REQUIRED_LOWERCASE_PATTERN = /[a-z]/
+const REQUIRED_NUMBER_PATTERN = /\d/
+const REQUIRED_SYMBOL_PATTERN = /[!@#$%^&*()_\-+=[\]{}|;:,.<>/?~]/
+
+export const PASSWORD_POLICY_HINT =
+ '8+ chars; upper/lower, number, symbol. Avoid spaces, quotes, backticks, backslashes.'
+
+export const PASSWORD_POLICY_PLACEHOLDER = '8+ chars; upper/lower, number, symbol'
+
+export function validateStrongPassword(password: string) {
+ const value = String(password || '')
+
+ if (value.length < 8) {
+ return 'Use at least 8 characters.'
+ }
+ if (!REQUIRED_UPPERCASE_PATTERN.test(value) || !REQUIRED_LOWERCASE_PATTERN.test(value)) {
+ return 'Use uppercase and lowercase letters.'
+ }
+ if (!REQUIRED_NUMBER_PATTERN.test(value)) {
+ return 'Add at least one number.'
+ }
+ if (!REQUIRED_SYMBOL_PATTERN.test(value)) {
+ return 'Add at least one symbol.'
+ }
+ if (UNSAFE_PASSWORD_SYMBOL_PATTERN.test(value)) {
+ return 'Avoid spaces, quotes, backticks, and backslashes.'
+ }
+
+ return undefined
+}
diff --git a/website/src/auth/platform-auth.tsx b/website/src/auth/platform-auth.tsx
new file mode 100644
index 0000000..7b29fa2
--- /dev/null
+++ b/website/src/auth/platform-auth.tsx
@@ -0,0 +1,386 @@
+import {
+ createContext,
+ useContext,
+ useEffect,
+ useMemo,
+ useState,
+ type ReactNode,
+} from 'react'
+import { signIn as superTokensSignIn, signUp as superTokensSignUp } from 'supertokens-auth-react/recipe/emailpassword'
+import { redirectToThirdPartyLogin } from 'supertokens-auth-react/recipe/thirdparty'
+import { signOut as superTokensSignOut } from 'supertokens-auth-react/recipe/session'
+import { getCurrentUser, logoutCurrentUser, type ApiBootstrapUserPayload } from './auth-api'
+import { ensureSuperTokensInit, isSuperTokensConfigured } from './supertokens-client'
+import { validateStrongPassword } from './password-policy'
+
+export type AuthMethod = 'supertokens' | 'email' | 'github' | 'google' | 'orcid'
+export type ColorMode = 'dark' | 'light'
+export type PlatformRole = 'viewer' | 'operator' | 'reviewer' | 'admin'
+
+export interface PlatformUser {
+ id: string
+ name: string
+ email: string
+ authMethod: AuthMethod
+ plan: 'free' | 'operator' | 'studio' | 'enterprise'
+ role?: PlatformRole
+ isAdmin?: boolean
+ canDownload?: boolean
+ billing?: {
+ source: string
+ accessStatus: string
+ canDownload: boolean
+ subscriptionId?: string | null
+ customerId?: string | null
+ transactionId?: string | null
+ lastEventId?: string | null
+ lastEventType?: string | null
+ lastEventAt?: string | null
+ updatedAt?: string | null
+ statePath?: string | null
+ }
+}
+
+export interface PlatformLoginInput {
+ method: AuthMethod
+ email: string
+ password?: string
+}
+
+export interface PlatformRegisterInput {
+ method: 'supertokens' | 'email'
+ email: string
+ password: string
+ name?: string
+}
+
+interface PlatformAuthContextValue {
+ user: PlatformUser | null
+ isAuthenticated: boolean
+ isLoading: boolean
+ colorMode: ColorMode
+ superTokensConfigured: boolean
+ login: (input: PlatformLoginInput) => Promise<{ ok: boolean; error?: string }>
+ register: (input: PlatformRegisterInput) => Promise<{ ok: boolean; error?: string }>
+ loginWithProvider: (provider: 'github' | 'google' | 'orcid') => Promise
+ logout: () => Promise
+ toggleColorMode: () => void
+}
+
+const AUTH_STORAGE_KEY = 'hypertwist.platform.user.v1'
+const COLOR_MODE_STORAGE_KEY = 'hypertwist.platform.color-mode.v1'
+const PlatformAuthContext = createContext(null)
+
+function normalizeEmail(value: unknown) {
+ return String(value || '').trim().toLowerCase()
+}
+
+function deriveNameFromEmail(email: string) {
+ const userPart = email.split('@')[0] || 'Operator'
+ return userPart
+ .replace(/[._-]+/g, ' ')
+ .replace(/\b\w/g, (char) => char.toUpperCase())
+ .trim()
+}
+
+function normalizePlan(value: unknown): PlatformUser['plan'] {
+ const plan = String(value || '').trim().toLowerCase()
+ if (plan === 'operator' || plan === 'studio' || plan === 'enterprise' || plan === 'free') {
+ return plan
+ }
+ if (plan === 'student' || plan === 'team' || plan === 'group' || plan === 'scholar') {
+ return 'operator'
+ }
+ return 'free'
+}
+
+function normalizeRole(value: unknown): PlatformRole | undefined {
+ const role = String(value || '').trim().toLowerCase()
+ if (role === 'viewer' || role === 'operator' || role === 'reviewer' || role === 'admin') {
+ return role
+ }
+ return undefined
+}
+
+function readStoredUser(): PlatformUser | null {
+ if (typeof window === 'undefined') return null
+ try {
+ const raw = window.localStorage.getItem(AUTH_STORAGE_KEY)
+ if (!raw) return null
+ const parsed = JSON.parse(raw) as PlatformUser
+ if (!parsed?.id || !parsed?.email || !parsed?.authMethod) return null
+ return parsed
+ } catch {
+ return null
+ }
+}
+
+function writeStoredUser(user: PlatformUser | null) {
+ if (typeof window === 'undefined') return
+ if (!user) {
+ window.localStorage.removeItem(AUTH_STORAGE_KEY)
+ return
+ }
+ window.localStorage.setItem(AUTH_STORAGE_KEY, JSON.stringify(user))
+}
+
+function readStoredColorMode(): ColorMode {
+ if (typeof window === 'undefined') return 'dark'
+ const stored = window.localStorage.getItem(COLOR_MODE_STORAGE_KEY)
+ return stored === 'light' ? 'light' : 'dark'
+}
+
+function writeStoredColorMode(mode: ColorMode) {
+ if (typeof window === 'undefined') return
+ window.localStorage.setItem(COLOR_MODE_STORAGE_KEY, mode)
+ document.documentElement.dataset.theme = mode
+}
+
+function normalizeApiUser(input: ApiBootstrapUserPayload['user'] | undefined, fallbackMethod: AuthMethod): PlatformUser | null {
+ if (!input) return null
+ const id = String(input.id || '').trim()
+ const email = normalizeEmail(input.email)
+ if (!id || !email) return null
+ const role = normalizeRole(input.role)
+ return {
+ id,
+ email,
+ name: String(input.name || '').trim() || deriveNameFromEmail(email),
+ authMethod: String(input.auth_method || '').trim() === 'supertokens' ? 'supertokens' : fallbackMethod,
+ plan: normalizePlan(input.plan),
+ role,
+ isAdmin: input.is_admin === true || role === 'admin',
+ canDownload: input.can_download === true,
+ billing: input.billing ? {
+ source: String(input.billing.source || 'session'),
+ accessStatus: String(input.billing.access_status || 'session-default'),
+ canDownload: input.billing.can_download === true,
+ subscriptionId: input.billing.subscription_id || null,
+ customerId: input.billing.customer_id || null,
+ transactionId: input.billing.transaction_id || null,
+ lastEventId: input.billing.last_event_id || null,
+ lastEventType: input.billing.last_event_type || null,
+ lastEventAt: input.billing.last_event_at || null,
+ updatedAt: input.billing.updated_at || null,
+ statePath: input.billing.state_path || null,
+ } : undefined,
+ }
+}
+
+function createLocalFallbackUser(email: string, password: string, name?: string): PlatformUser {
+ const safeEmail = normalizeEmail(email)
+ return {
+ id: `local-${btoa(`${safeEmail}:${password.length}`)}`,
+ email: safeEmail,
+ name: String(name || '').trim() || deriveNameFromEmail(safeEmail),
+ authMethod: 'email',
+ plan: 'free',
+ role: 'operator',
+ canDownload: false,
+ billing: {
+ source: 'local-fallback',
+ accessStatus: 'local-fallback',
+ canDownload: false,
+ },
+ }
+}
+
+async function parseSignInError(response: { status?: string; formFields?: Array<{ error?: string }> }) {
+ if (response.status === 'WRONG_CREDENTIALS_ERROR') return 'Incorrect email or password.'
+ if (response.status === 'FIELD_ERROR') return response.formFields?.[0]?.error || 'Check the highlighted field.'
+ return 'Unable to sign in.'
+}
+
+async function parseSignUpError(response: { status?: string; formFields?: Array<{ error?: string }> }) {
+ if (response.status === 'FIELD_ERROR') return response.formFields?.[0]?.error || 'Check the highlighted field.'
+ if (response.status === 'SIGN_UP_NOT_ALLOWED') return 'Sign-up is not allowed right now.'
+ return 'Unable to create your account.'
+}
+
+export function PlatformAuthProvider({ children }: { children: ReactNode }) {
+ const [user, setUser] = useState(() => readStoredUser())
+ const [isLoading, setIsLoading] = useState(true)
+ const [colorMode, setColorMode] = useState(() => readStoredColorMode())
+ const superTokensConfigured = isSuperTokensConfigured()
+
+ useEffect(() => {
+ writeStoredColorMode(colorMode)
+ }, [colorMode])
+
+ useEffect(() => {
+ let cancelled = false
+
+ async function bootstrap() {
+ setIsLoading(true)
+ if (superTokensConfigured) {
+ ensureSuperTokensInit()
+ }
+
+ try {
+ const response = await getCurrentUser()
+ if (!response.ok) {
+ if (!cancelled) {
+ setUser(readStoredUser())
+ }
+ return
+ }
+
+ const payload = await response.json() as ApiBootstrapUserPayload
+ const nextUser = normalizeApiUser(payload.user, 'supertokens')
+ if (!cancelled) {
+ setUser(nextUser)
+ writeStoredUser(nextUser)
+ }
+ } catch {
+ if (!cancelled) {
+ setUser(readStoredUser())
+ }
+ } finally {
+ if (!cancelled) {
+ setIsLoading(false)
+ }
+ }
+ }
+
+ void bootstrap()
+
+ return () => {
+ cancelled = true
+ }
+ }, [superTokensConfigured])
+
+ const value = useMemo(() => ({
+ user,
+ isAuthenticated: Boolean(user),
+ isLoading,
+ colorMode,
+ superTokensConfigured,
+ async login(input) {
+ if (input.method === 'github' || input.method === 'google' || input.method === 'orcid') {
+ await redirectToThirdPartyLogin({ thirdPartyId: input.method })
+ return { ok: true }
+ }
+
+ const safeEmail = normalizeEmail(input.email)
+
+ if (!safeEmail) {
+ return { ok: false, error: 'Email is required.' }
+ }
+
+ if (!superTokensConfigured) {
+ const localUser = createLocalFallbackUser(safeEmail, input.password || '')
+ setUser(localUser)
+ writeStoredUser(localUser)
+ return { ok: true }
+ }
+
+ ensureSuperTokensInit()
+ const response = await superTokensSignIn({
+ formFields: [
+ { id: 'email', value: safeEmail },
+ { id: 'password', value: String(input.password || '') },
+ ],
+ }) as { status?: string; formFields?: Array<{ error?: string }> }
+
+ if (response.status !== 'OK') {
+ return { ok: false, error: await parseSignInError(response) }
+ }
+
+ try {
+ const bootstrapResponse = await getCurrentUser()
+ if (!bootstrapResponse.ok) {
+ return { ok: false, error: 'Signed in, but account bootstrap failed.' }
+ }
+ const payload = await bootstrapResponse.json() as ApiBootstrapUserPayload
+ const nextUser = normalizeApiUser(payload.user, 'supertokens')
+ setUser(nextUser)
+ writeStoredUser(nextUser)
+ } catch {
+ return { ok: false, error: 'Signed in, but the account API is unavailable.' }
+ }
+
+ return { ok: true }
+ },
+ async register(input) {
+ const safeEmail = normalizeEmail(input.email)
+ const passwordError = validateStrongPassword(input.password)
+ if (!safeEmail) {
+ return { ok: false, error: 'Email is required.' }
+ }
+ if (passwordError) {
+ return { ok: false, error: passwordError }
+ }
+
+ if (!superTokensConfigured) {
+ const localUser = createLocalFallbackUser(safeEmail, input.password, input.name)
+ setUser(localUser)
+ writeStoredUser(localUser)
+ return { ok: true }
+ }
+
+ ensureSuperTokensInit()
+ const response = await superTokensSignUp({
+ formFields: [
+ { id: 'email', value: safeEmail },
+ { id: 'password', value: input.password },
+ ],
+ }) as { status?: string; formFields?: Array<{ error?: string }> }
+
+ if (response.status !== 'OK') {
+ return { ok: false, error: await parseSignUpError(response) }
+ }
+
+ try {
+ const bootstrapResponse = await getCurrentUser()
+ if (!bootstrapResponse.ok) {
+ return { ok: false, error: 'Account created, but bootstrap failed.' }
+ }
+ const payload = await bootstrapResponse.json() as ApiBootstrapUserPayload
+ const nextUser = normalizeApiUser(payload.user, 'supertokens')
+ setUser(nextUser)
+ writeStoredUser(nextUser)
+ } catch {
+ return { ok: false, error: 'Account created, but the account API is unavailable.' }
+ }
+
+ return { ok: true }
+ },
+ async loginWithProvider(provider) {
+ if (!superTokensConfigured) {
+ return
+ }
+ ensureSuperTokensInit()
+ await redirectToThirdPartyLogin({ thirdPartyId: provider })
+ },
+ async logout() {
+ writeStoredUser(null)
+ setUser(null)
+ if (!superTokensConfigured) {
+ return
+ }
+ try {
+ await logoutCurrentUser()
+ } catch {
+ // Keep local logout deterministic even if the API is unavailable.
+ }
+ try {
+ await superTokensSignOut()
+ } catch {
+ // Session revocation can already have happened server-side.
+ }
+ },
+ toggleColorMode() {
+ setColorMode((current) => current === 'dark' ? 'light' : 'dark')
+ },
+ }), [colorMode, isLoading, superTokensConfigured, user])
+
+ return {children}
+}
+
+export function usePlatformAuth() {
+ const context = useContext(PlatformAuthContext)
+ if (!context) {
+ throw new Error('usePlatformAuth must be used within PlatformAuthProvider')
+ }
+ return context
+}
diff --git a/website/src/auth/supertokens-client.ts b/website/src/auth/supertokens-client.ts
new file mode 100644
index 0000000..44b935c
--- /dev/null
+++ b/website/src/auth/supertokens-client.ts
@@ -0,0 +1,158 @@
+import SuperTokens from 'supertokens-auth-react'
+import EmailPassword from 'supertokens-auth-react/recipe/emailpassword'
+import ThirdParty, { Github, Google } from 'supertokens-auth-react/recipe/thirdparty'
+import Session from 'supertokens-auth-react/recipe/session'
+import { getAuthRuntimeConfig, validateAuthRuntimeConfig } from './auth-env'
+import { PASSWORD_POLICY_HINT, PASSWORD_POLICY_PLACEHOLDER, validateStrongPassword } from './password-policy'
+
+const authRuntime = getAuthRuntimeConfig()
+const authRuntimeValidation = validateAuthRuntimeConfig()
+const SUPERTOKENS_API_DOMAIN = authRuntime.superTokensApiDomain
+const SUPERTOKENS_WEBSITE_DOMAIN = authRuntime.superTokensWebsiteDomain
+const SUPERTOKENS_API_BASE_PATH = authRuntime.superTokensApiBasePath
+const SUPERTOKENS_WEBSITE_BASE_PATH = authRuntime.superTokensWebsiteBasePath
+
+const GITHUB_OAUTH_ENABLED = String((import.meta.env as Record).VITE_GITHUB_OAUTH_ENABLED || '').toLowerCase() === 'true'
+const GOOGLE_OAUTH_ENABLED = String((import.meta.env as Record).VITE_GOOGLE_OAUTH_ENABLED || '').toLowerCase() === 'true'
+const ORCID_OAUTH_ENABLED = String((import.meta.env as Record).VITE_ORCID_OAUTH_ENABLED || '').toLowerCase() === 'true'
+
+let initialized = false
+
+function readRequestedPostAuthPath() {
+ if (typeof window === 'undefined') return null
+ const params = new URLSearchParams(window.location.search)
+ const requestedPath = String(params.get('next') || '').trim()
+ if (!requestedPath || !requestedPath.startsWith('/') || requestedPath.startsWith('//')) {
+ return null
+ }
+ return requestedPath
+}
+
+const SUPERTOKENS_BRAND_STYLE = `
+[data-supertokens~="container"] {
+ --palette-background: 11, 16, 32;
+ --palette-inputBackground: 16, 22, 44;
+ --palette-inputBorder: 84, 203, 255;
+ --palette-primary: 247, 178, 103;
+ --palette-primaryBorder: 247, 178, 103;
+ --palette-success: 158, 255, 199;
+ --palette-successBackground: 10, 62, 47;
+ --palette-error: 248, 113, 113;
+ --palette-errorBackground: 69, 10, 10;
+ --palette-textTitle: 244, 246, 248;
+ --palette-textLabel: 212, 225, 245;
+ --palette-textInput: 247, 249, 252;
+ --palette-textPrimary: 247, 178, 103;
+ --palette-textLink: 84, 203, 255;
+ --palette-buttonText: 11, 16, 32;
+ --palette-superTokensBrandingBackground: 11, 16, 32;
+ --palette-superTokensBrandingText: 212, 225, 245;
+ width: min(460px, calc(100vw - 2rem));
+ margin-top: 0;
+ border: 1px solid rgba(84, 203, 255, 0.24) !important;
+ border-radius: 24px !important;
+ background: rgba(12, 18, 35, 0.94) !important;
+ box-shadow: 0 28px 90px rgba(0, 0, 0, 0.55) !important;
+}
+[data-supertokens~="button"] {
+ min-height: 44px;
+ border-radius: 999px !important;
+ background: #f7b267 !important;
+ border-color: #f7b267 !important;
+ color: #0b1020 !important;
+ font-weight: 700;
+}
+[data-supertokens~="button"]:hover {
+ background: #ffc788 !important;
+}
+[data-supertokens~="inputWrapper"] {
+ min-height: 44px;
+ border-radius: 14px !important;
+ background: rgba(14, 21, 40, 0.92) !important;
+ border: 1px solid rgba(84, 203, 255, 0.28) !important;
+ color: #f8fafc !important;
+}
+`
+
+export function isSuperTokensConfigured() {
+ return Boolean(SUPERTOKENS_API_DOMAIN)
+}
+
+export function isGitHubOAuthEnabled() {
+ return GITHUB_OAUTH_ENABLED
+}
+
+export function isGoogleOAuthEnabled() {
+ return GOOGLE_OAUTH_ENABLED
+}
+
+export function isOrcidOAuthEnabled() {
+ return ORCID_OAUTH_ENABLED
+}
+
+export function getSuperTokensAuthRuntimeValidation() {
+ return authRuntimeValidation
+}
+
+export function ensureSuperTokensInit() {
+ if (initialized || !isSuperTokensConfigured() || typeof window === 'undefined') {
+ return
+ }
+
+ const thirdPartyProviders = []
+ if (GITHUB_OAUTH_ENABLED) thirdPartyProviders.push(Github.init())
+ if (GOOGLE_OAUTH_ENABLED) thirdPartyProviders.push(Google.init())
+
+ const recipeList: Parameters[0]['recipeList'] = [
+ EmailPassword.init({
+ signInAndUpFeature: {
+ signInForm: {
+ formFields: [
+ { id: 'email', label: 'Email', placeholder: 'operator@hypertwist.app' },
+ { id: 'password', label: 'Password', placeholder: 'Your password' },
+ ],
+ },
+ signUpForm: {
+ formFields: [
+ { id: 'email', label: 'Email', placeholder: 'operator@hypertwist.app' },
+ {
+ id: 'password',
+ label: `Password (${PASSWORD_POLICY_HINT})`,
+ placeholder: PASSWORD_POLICY_PLACEHOLDER,
+ validate: async (value: unknown) => validateStrongPassword(String(value || '')),
+ },
+ ],
+ },
+ },
+ }),
+ Session.init(),
+ ]
+
+ if (thirdPartyProviders.length > 0) {
+ recipeList.splice(1, 0, ThirdParty.init({
+ signInAndUpFeature: {
+ providers: thirdPartyProviders,
+ },
+ }))
+ }
+
+ SuperTokens.init({
+ appInfo: {
+ appName: 'HyperTwist',
+ apiDomain: SUPERTOKENS_API_DOMAIN,
+ websiteDomain: SUPERTOKENS_WEBSITE_DOMAIN || window.location.origin,
+ apiBasePath: SUPERTOKENS_API_BASE_PATH,
+ websiteBasePath: SUPERTOKENS_WEBSITE_BASE_PATH,
+ },
+ recipeList,
+ style: SUPERTOKENS_BRAND_STYLE,
+ getRedirectionURL: async (context) => {
+ if (context.action === 'SUCCESS') {
+ return readRequestedPostAuthPath() || '/app'
+ }
+ return undefined
+ },
+ })
+
+ initialized = true
+}
diff --git a/website/src/components/layout/AppShell.tsx b/website/src/components/layout/AppShell.tsx
new file mode 100644
index 0000000..4eae117
--- /dev/null
+++ b/website/src/components/layout/AppShell.tsx
@@ -0,0 +1,74 @@
+import { Gauge, KeyRound, MonitorSmartphone, PackageOpen, ShieldCheck } from 'lucide-react'
+import { NavLink, Outlet } from 'react-router-dom'
+import { usePlatformAuth } from '../../auth/platform-auth'
+import { brandConfig } from '../../site-config'
+
+const appLinks = [
+ { to: '/app', label: 'Overview', icon: Gauge, end: true },
+ { to: '/app/downloads', label: 'Downloads', icon: MonitorSmartphone },
+ { to: '/app/browser-access', label: 'Browser Access', icon: PackageOpen },
+ { to: '/app/account', label: 'Account', icon: KeyRound },
+ { to: '/app/notices', label: 'Notices', icon: ShieldCheck },
+] as const
+
+export function AppShell() {
+ const { user, logout, colorMode, toggleColorMode } = usePlatformAuth()
+
+ return (
+
+ )
+}
diff --git a/website/src/components/layout/MarketingShell.tsx b/website/src/components/layout/MarketingShell.tsx
new file mode 100644
index 0000000..d0bb48d
--- /dev/null
+++ b/website/src/components/layout/MarketingShell.tsx
@@ -0,0 +1,89 @@
+import { Link, NavLink } from 'react-router-dom'
+import { usePlatformAuth } from '../../auth/platform-auth'
+import { brandConfig } from '../../site-config'
+import { footerLinks } from '../../site-data'
+
+const marketingLinks = [
+ { to: '/', label: 'Home' },
+ { to: '/about', label: 'About' },
+ { to: '/resources', label: 'Resources' },
+ { to: '/pricing', label: 'Pricing' },
+ { to: '/download', label: 'Download' },
+] as const
+
+export function MarketingShell({
+ title,
+ eyebrow,
+ lede,
+ children,
+}: {
+ title: string
+ eyebrow: string
+ lede: string
+ children: React.ReactNode
+}) {
+ const { isAuthenticated } = usePlatformAuth()
+
+ return (
+
+
+
+
+
+ {eyebrow}
+ {title}
+ {lede}
+
+ {children}
+
+
+
+
+
{brandConfig.brandName}
+
{brandConfig.tagline}
+
+
+ {footerLinks.map((link) => (
+
+ {link.label}
+
+ ))}
+
+
+ Public distribution surfaces must continue to expose open-source notices and corresponding-source guidance when shipped builds contain MPL-covered material.
+
+
+
+ )
+}
diff --git a/website/src/components/routes/ProtectedRoute.tsx b/website/src/components/routes/ProtectedRoute.tsx
new file mode 100644
index 0000000..27bbfcc
--- /dev/null
+++ b/website/src/components/routes/ProtectedRoute.tsx
@@ -0,0 +1,18 @@
+import { Navigate, Outlet, useLocation } from 'react-router-dom'
+import { usePlatformAuth } from '../../auth/platform-auth'
+import { GeneralPageLoader } from '../ui/Skeletons'
+
+export function ProtectedRoute() {
+ const { isAuthenticated, isLoading } = usePlatformAuth()
+ const location = useLocation()
+
+ if (isLoading) {
+ return
+ }
+
+ if (!isAuthenticated) {
+ return
+ }
+
+ return
+}
diff --git a/website/src/components/ui/Skeletons.tsx b/website/src/components/ui/Skeletons.tsx
new file mode 100644
index 0000000..699d37c
--- /dev/null
+++ b/website/src/components/ui/Skeletons.tsx
@@ -0,0 +1,36 @@
+import { useEffect, useState } from 'react'
+import { NamedAgentSpinner } from './agent-spinners'
+
+export function GeneralPageLoader({ title = 'Loading' }: { title?: string }) {
+ const [isCompleting, setIsCompleting] = useState(false)
+
+ useEffect(() => {
+ const pulseTimer = window.setTimeout(() => {
+ setIsCompleting(true)
+ }, 900)
+ const clearTimer = window.setTimeout(() => {
+ setIsCompleting(false)
+ }, 1550)
+
+ return () => {
+ window.clearTimeout(pulseTimer)
+ window.clearTimeout(clearTimer)
+ }
+ }, [])
+
+ const spinnerColor = isCompleting ? 'var(--ht-amber)' : 'var(--ht-cyan)'
+
+ return (
+
+ )
+}
diff --git a/website/src/components/ui/agent-spinners.tsx b/website/src/components/ui/agent-spinners.tsx
new file mode 100644
index 0000000..17d46db
--- /dev/null
+++ b/website/src/components/ui/agent-spinners.tsx
@@ -0,0 +1,81 @@
+import { useEffect, useState, type CSSProperties } from 'react'
+
+const spinnerRegistry = {
+ cascade: {
+ frames: [
+ '⠀⠀⠀⠀',
+ '⠁⠀⠀⠀',
+ '⠋⠀⠀⠀',
+ '⠞⠁⠀⠀',
+ '⡴⠋⠀⠀',
+ '⣠⠞⠁⠀',
+ '⢀⡴⠋⠀',
+ '⠀⣠⠞⠁',
+ '⠀⢀⡴⠋',
+ '⠀⠀⣠⠞',
+ '⠀⠀⢀⡴',
+ '⠀⠀⠀⣠',
+ '⠀⠀⠀⢀',
+ ],
+ interval: 60,
+ },
+ orbit: {
+ frames: ['⠃', '⠉', '⠘', '⠰', '⢠', '⣀', '⡄', '⠆'],
+ interval: 90,
+ },
+} as const
+
+function useSpinnerFrame(frames: readonly string[], interval: number) {
+ const [index, setIndex] = useState(0)
+
+ useEffect(() => {
+ const id = window.setInterval(() => {
+ setIndex((current) => (current + 1) % frames.length)
+ }, interval)
+ return () => window.clearInterval(id)
+ }, [frames, interval])
+
+ return frames[index] ?? ''
+}
+
+export function NamedAgentSpinner({
+ name,
+ size = 28,
+ color = 'currentColor',
+ className,
+ style,
+}: {
+ name: keyof typeof spinnerRegistry
+ size?: number
+ color?: string
+ className?: string
+ style?: CSSProperties
+}) {
+ const meta = spinnerRegistry[name]
+ const frame = useSpinnerFrame(meta.frames, meta.interval)
+
+ return (
+
+
+ {frame}
+
+
+ )
+}
diff --git a/website/src/main.tsx b/website/src/main.tsx
new file mode 100644
index 0000000..c4c5b6d
--- /dev/null
+++ b/website/src/main.tsx
@@ -0,0 +1,9 @@
+import React from 'react'
+import ReactDOM from 'react-dom/client'
+import App from './App'
+
+ReactDOM.createRoot(document.getElementById('root')!).render(
+
+
+ ,
+)
diff --git a/website/src/pages/app-pages.tsx b/website/src/pages/app-pages.tsx
new file mode 100644
index 0000000..8f24dd1
--- /dev/null
+++ b/website/src/pages/app-pages.tsx
@@ -0,0 +1,207 @@
+import { useMemo } from 'react'
+import { useMutation, useQuery } from '@tanstack/react-query'
+import { buildAuthApiBaseUrls, createDesktopLinkToken, getAuthHealth } from '../auth/auth-api'
+import { usePlatformAuth } from '../auth/platform-auth'
+import { downloadTargets, mplSourceUrl } from '../site-config'
+import { roadmapHonestyCards } from '../site-data'
+
+function Panel({
+ title,
+ children,
+ kicker,
+}: {
+ title: string
+ children: React.ReactNode
+ kicker?: string
+}) {
+ return (
+
+ {kicker ? {kicker}
: null}
+ {title}
+ {children}
+
+ )
+}
+
+export function DashboardOverviewPage() {
+ const { user } = usePlatformAuth()
+ const healthQuery = useQuery({
+ queryKey: ['auth-health'],
+ queryFn: getAuthHealth,
+ })
+
+ const desktopLinkMutation = useMutation({
+ mutationFn: createDesktopLinkToken,
+ })
+
+ const verifyUrl = useMemo(() => {
+ const token = desktopLinkMutation.data?.token
+ if (!token) return ''
+ const [baseUrl] = buildAuthApiBaseUrls()
+ if (!baseUrl) return ''
+ return `${baseUrl}/api/auth/desktop-link/verify?token=${encodeURIComponent(token)}`
+ }, [desktopLinkMutation.data?.token])
+
+ return (
+
+
+ {user?.name}
+ {user?.email}
+ Plan: {user?.plan}
+ Role: {user?.role || 'operator'}
+ Desktop downloads: {user?.canDownload ? 'enabled' : 'not yet entitled'}
+
+
+
+ {healthQuery.isLoading ? Checking auth server health...
: null}
+ {healthQuery.isError ? Auth health probe failed. The local fallback can still keep the dashboard usable.
: null}
+ {healthQuery.data ? (
+
+ Service: {healthQuery.data.service}
+ SuperTokens configured: {healthQuery.data.supertokens.configured ? 'yes' : 'no'}
+ SuperTokens core reachable: {healthQuery.data.supertokens.reachable ? 'yes' : 'no'}
+ SuperTokens ready: {healthQuery.data.supertokens.ready ? 'yes' : 'no'}
+ Fallback enabled: {healthQuery.data.fallback.enabled ? 'yes' : 'no'}
+ Fallback active: {healthQuery.data.fallback.active ? 'yes' : 'no'}
+ Core API version: {healthQuery.data.supertokens.apiVersion || 'unavailable'}
+ OAuth routes: GitHub {healthQuery.data.supertokens.oauth?.github ? 'on' : 'off'}, Google {healthQuery.data.supertokens.oauth?.google ? 'on' : 'off'}
+
+ ) : null}
+ {healthQuery.data?.fallback.active ? (
+
+ Shared auth core is not fully ready right now. Dashboard fallback posture remains available{healthQuery.data.fallback.reason ? ` (${healthQuery.data.fallback.reason})` : ''}.
+
+ ) : null}
+
+
+
+ Generate a short-lived token so the local desktop runtime can verify your browser session without exposing account credentials.
+ desktopLinkMutation.mutate()}
+ disabled={desktopLinkMutation.isPending}
+ >
+ {desktopLinkMutation.isPending ? 'Generating token...' : 'Generate desktop-link token'}
+
+ {desktopLinkMutation.isError ? (
+ Could not generate a token. Ensure the auth server is reachable and your session is valid.
+ ) : null}
+ {desktopLinkMutation.data ? (
+
+
Token: {desktopLinkMutation.data.token}
+
Expires: {desktopLinkMutation.data.expires_at}
+
Verify URL: {verifyUrl || 'same-origin verify route'}
+
+ ) : null}
+
+
+
+
+ Source: {user?.billing?.source || 'session'}
+ Access status: {user?.billing?.accessStatus || 'session-default'}
+ Desktop download access: {user?.billing?.canDownload ? 'enabled' : 'not yet enabled'}
+ Last billing event: {user?.billing?.lastEventType || 'none recorded'}
+
+
+
+
+
+ {roadmapHonestyCards.map((item) => (
+ {item}
+ ))}
+
+
+
+ )
+}
+
+export function DownloadCenterPage() {
+ const { user } = usePlatformAuth()
+ const canDownload = user?.canDownload === true
+
+ return (
+
+
+ {!canDownload ? (
+
+ Your current account does not yet have desktop download entitlement.
+ Complete the matching checkout or operator provisioning step, then refresh this dashboard.
+
+ ) : null}
+
+ {downloadTargets.map((target) => (
+
+ {target.platform}
+ {target.details}
+ {target.href && canDownload ? (
+
+ Download {target.platform}
+
+ ) : (
+
+ {target.href ? 'Account not entitled yet' : 'Release URL not configured yet'}
+
+ )}
+
+ ))}
+
+
+
+ )
+}
+
+export function BrowserAccessPage() {
+ return (
+
+
+
+ The embedded browser/CEF shell is live and owned as part of the current shipping posture.
+ Browser runtime status, runtime-ready typing, and native operator diagnostics are already surfaced in the desktop runtime.
+ The public browser dashboard is for operator/account/release access, not a claim of full simulator parity.
+
+
+
+
+ The optional full-browser client remains spec-only.
+ MagicTile native renderer widening remains explicit No-Go until a real browser-host gap is proven.
+ This dashboard intentionally stays above those boundaries instead of silently crossing them.
+
+
+
+ )
+}
+
+export function AccountPage() {
+ const { user, superTokensConfigured } = usePlatformAuth()
+
+ return (
+
+
+
+ Email: {user?.email}
+ Name: {user?.name}
+ Plan: {user?.plan}
+ Desktop downloads: {user?.canDownload ? 'enabled' : 'not yet entitled'}
+ Billing status: {user?.billing?.accessStatus || 'session-default'}
+ Auth stack: {superTokensConfigured ? 'SuperTokens-backed' : 'Local fallback mode'}
+
+
+
+ )
+}
+
+export function NoticesPage() {
+ return (
+
+
+
+ Pricing, checkout, and download surfaces must expose open-source notices and corresponding-source guidance whenever shipped builds contain MPL-covered material.
+
+
+ Current corresponding-source URL: {mplSourceUrl || 'configure VITE_MPL_SOURCE_URL before public launch'}
+
+
+
+ )
+}
diff --git a/website/src/pages/auth-pages.tsx b/website/src/pages/auth-pages.tsx
new file mode 100644
index 0000000..9a19b8e
--- /dev/null
+++ b/website/src/pages/auth-pages.tsx
@@ -0,0 +1,150 @@
+import { useEffect, useState } from 'react'
+import { Link, useNavigate, useSearchParams } from 'react-router-dom'
+import { usePlatformAuth } from '../auth/platform-auth'
+import { isGitHubOAuthEnabled, isGoogleOAuthEnabled, isOrcidOAuthEnabled } from '../auth/supertokens-client'
+
+function AuthShell({
+ title,
+ subtitle,
+ children,
+ footer,
+}: {
+ title: string
+ subtitle: string
+ children: React.ReactNode
+ footer: React.ReactNode
+}) {
+ return (
+
+
+
Browser account access
+
{title}
+
{subtitle}
+ {children}
+
{footer}
+
+
+ )
+}
+
+function useNextPath() {
+ const [searchParams] = useSearchParams()
+ const next = searchParams.get('next') || '/app'
+ return next.startsWith('/') ? next : '/app'
+}
+
+export function LoginPage() {
+ const navigate = useNavigate()
+ const { login, isAuthenticated } = usePlatformAuth()
+ const nextPath = useNextPath()
+ const [email, setEmail] = useState('')
+ const [password, setPassword] = useState('')
+ const [error, setError] = useState('')
+ const [isSubmitting, setIsSubmitting] = useState(false)
+
+ useEffect(() => {
+ if (isAuthenticated) {
+ navigate(nextPath, { replace: true })
+ }
+ }, [isAuthenticated, navigate, nextPath])
+
+ async function handleSubmit(event: React.FormEvent) {
+ event.preventDefault()
+ setIsSubmitting(true)
+ setError('')
+ const result = await login({ method: 'email', email, password })
+ setIsSubmitting(false)
+ if (!result.ok) {
+ setError(result.error || 'Unable to sign in.')
+ return
+ }
+ navigate(nextPath, { replace: true })
+ }
+
+ return (
+ Need access? Create an account.}
+ >
+
+
+ {isGoogleOAuthEnabled() ? (
+ void login({ method: 'google', email: '' })}>
+ Continue with Google
+
+ ) : null}
+ {isGitHubOAuthEnabled() ? (
+ void login({ method: 'github', email: '' })}>
+ Continue with GitHub
+
+ ) : null}
+ {isOrcidOAuthEnabled() ? (
+ void login({ method: 'orcid', email: '' })}>
+ Continue with ORCID
+
+ ) : null}
+
+
+ )
+}
+
+export function RegisterPage() {
+ const navigate = useNavigate()
+ const { register, isAuthenticated } = usePlatformAuth()
+ const nextPath = useNextPath()
+ const [email, setEmail] = useState('')
+ const [password, setPassword] = useState('')
+ const [name, setName] = useState('')
+ const [error, setError] = useState('')
+ const [isSubmitting, setIsSubmitting] = useState(false)
+
+ useEffect(() => {
+ if (isAuthenticated) {
+ navigate(nextPath, { replace: true })
+ }
+ }, [isAuthenticated, navigate, nextPath])
+
+ async function handleSubmit(event: React.FormEvent) {
+ event.preventDefault()
+ setIsSubmitting(true)
+ setError('')
+ const result = await register({ method: 'email', email, password, name })
+ setIsSubmitting(false)
+ if (!result.ok) {
+ setError(result.error || 'Unable to create your account.')
+ return
+ }
+ navigate(nextPath, { replace: true })
+ }
+
+ return (
+ Already have access? Log in.}
+ >
+
+
+ )
+}
diff --git a/website/src/pages/public-pages.tsx b/website/src/pages/public-pages.tsx
new file mode 100644
index 0000000..5d09808
--- /dev/null
+++ b/website/src/pages/public-pages.tsx
@@ -0,0 +1,579 @@
+import { useDeferredValue, useMemo, useState } from 'react'
+import { ArrowRight, BookOpenText, Boxes, Download, ExternalLink, Landmark, MonitorCog, Sparkles } from 'lucide-react'
+import { Link } from 'react-router-dom'
+import { MarketingShell } from '../components/layout/MarketingShell'
+import {
+ brandConfig,
+ downloadTargets,
+ paddleReadyDescription,
+ planCatalog,
+ publicDocsUrl,
+ releaseNotesUrl,
+} from '../site-config'
+import {
+ capabilityPillars,
+ changelogEntries,
+ companyNarrative,
+ heroMetrics,
+ openSourceNotices,
+ resourceCollections,
+ roadmapHonestyCards,
+ shippingNowCards,
+ sourceAvailability,
+ supportFaqs,
+} from '../site-data'
+
+function Section({
+ title,
+ description,
+ children,
+}: {
+ title: string
+ description?: string
+ children: React.ReactNode
+}) {
+ return (
+
+
+
{title}
+ {description ?
{description}
: null}
+
+ {children}
+
+ )
+}
+
+export function HomeLanding() {
+ return (
+
+
+
+
+
+ HyperTwist is a native training environment for classic cube, higher-dimensional
+ families, browser-assisted recognition, replay explanation, and desktop packaging.
+ The public site is intentionally honest: the desktop runtime is real, the browser
+ account/dashboard is real, and the optional full-browser simulator path remains spec-only.
+
+
+
+ Download desktop app
+
+
+ Open operator dashboard
+
+
+ View pricing
+
+
+
+
+
+
+ Browser account shell outside the simulator. Native Unreal runtime inside the simulator.
+
+
+
+
+ {heroMetrics.map((metric) => (
+
+ {metric.value}
+ {metric.label}
+
+ ))}
+
+
+
+
+
+ {shippingNowCards.map((item) => (
+
+
+ {item}
+
+ ))}
+
+
+
+
+
+ {capabilityPillars.map((pillar) => (
+
+ {pillar.title}
+ {pillar.description}
+
+ ))}
+
+
+
+
+
+ {roadmapHonestyCards.map((item) => (
+
+ {item}
+
+ ))}
+
+
+
+
+
+
+
+ Browser account and operator shell
+ Authenticated browser access for release posture, desktop pairing, notices, and operator state.
+
+ Open dashboard
+
+
+
+
+ Desktop download and package lane
+ Public download posture for the native Unreal build, with legal linkage already wired in.
+
+ Open download center
+
+
+
+
+ Checkout and notices discipline
+ Paddle-ready pricing plus public notices surfaces for any downloadable build containing MPL-covered material.
+
+ Review notices
+
+
+
+
+
+ )
+}
+
+export function AboutPage() {
+ return (
+
+
+
+
{companyNarrative.mission}
+
{companyNarrative.posture}
+
{companyNarrative.distribution}
+
+
+
+
+
+
+
+ It treats higher-dimensional puzzles as first-class work
+ 120-cell and 5D runtime ownership are not hand-wavy aspirations. They are part of the current product truth.
+
+
+
+ It stays roadmap-honest
+ Shipped, retained, and spec-only surfaces remain clearly separated so public copy matches actual authority.
+
+
+
+ It separates browser shell from simulator truth
+ The public web surface helps operators access the product without pretending the browser already replaces the desktop runtime.
+
+
+
+
+ )
+}
+
+export function ResourcesPage() {
+ const [query, setQuery] = useState('')
+ const deferredQuery = useDeferredValue(query)
+
+ const filteredCollections = useMemo(() => {
+ const normalized = deferredQuery.trim().toLowerCase()
+ if (!normalized) return resourceCollections
+ return resourceCollections
+ .map((collection) => ({
+ ...collection,
+ items: collection.items.filter((item) => item.toLowerCase().includes(normalized) || collection.title.toLowerCase().includes(normalized)),
+ }))
+ .filter((collection) => collection.items.length > 0)
+ }, [deferredQuery])
+
+ return (
+
+
+
+
+
+
+
+
Docs landing
+
Product-facing documentation, boundaries, and rollout guidance.
+
+
+
+
Support
+
Contact, rollout questions, and account/download help.
+
+
+
+
Release notes
+
Recent public-facing packets and posture updates.
+
+
+
+
+ )
+}
+
+export function DocsPage() {
+ return (
+
+
+
+
+ Feature truth
+ Use documentation derived from the feature registry so shipped capability, retained capability, and spec-only branches are not mixed together.
+
+
+ Roadmap truth
+ Roadmap-facing copy should say the embedded browser shell is live, while the optional full-browser client remains separate and frozen as spec-only.
+
+
+ Distribution truth
+ Pricing, checkout, and download docs must stay linked to open-source notices whenever shipped builds contain MPL-covered material.
+
+
+
+
+ {publicDocsUrl ? (
+
+ ) : null}
+
+ )
+}
+
+export function SupportPage() {
+ return (
+
+
+
+
+
+ {supportFaqs.map((faq) => (
+
+ {faq.question}
+ {faq.answer}
+
+ ))}
+
+
+
+ )
+}
+
+export function ChangelogPage() {
+ return (
+
+
+
+ {changelogEntries.map((entry) => (
+
+ {entry.date}
+ {entry.title}
+ {entry.details}
+
+ ))}
+
+
+ {releaseNotesUrl ? (
+
+ ) : null}
+
+ )
+}
+
+export function PricingPage() {
+ return (
+
+
+
+ {planCatalog.map((plan) => (
+
+ {plan.name}
+ {plan.price}
+ {plan.notes}
+
+ {plan.features.map((feature) => (
+ {feature}
+ ))}
+
+
+ {plan.ctaLabel}
+
+
+ ))}
+
+
+
+
+
+
+ Public pricing, checkout, and download pages are distribution surfaces. Before external launch,
+ keep their legal footer and open-source notices link live and ensure the corresponding-source URL is configured for any downloadable build containing MPL-covered material.
+
+
+
+
+ )
+}
+
+export function DownloadPage() {
+ return (
+
+
+
+ {downloadTargets.map((target) => (
+
+ {target.platform}
+ {target.subtitle}
+ {target.details}
+ {target.href ? (
+
+ Sign in for {target.platform} access
+
+ ) : (
+
+ Release URL not configured yet
+
+ )}
+
+ ))}
+
+
+
+
+
+
+ HyperTwist treats desktop distribution as an account-gated release surface.
+ Public pages can describe supported targets and release posture, but the actual
+ download links live behind the protected dashboard where plan and entitlement
+ state are resolved.
+
+
+ Sign in to check access
+
+
+
+
+
+
+
+ After sign-in, open the operator dashboard to generate a desktop-link token.
+ That token is designed to hand browser identity and plan posture over to the local desktop app without exposing your password.
+
+
+ Open dashboard
+
+
+
+
+ )
+}
+
+export function OpenSourceNoticesPage() {
+ return (
+
+
+
+ {openSourceNotices.map((item) => (
+
+ {item.component}
+ {item.license}
+ {item.whyItMatters}
+
+ ))}
+
+
+
+
+
+
+ MPL-covered shipped builds need a stable corresponding-source location for the exact distributed material.
+
+
+
+ Public corresponding-source URL:{' '}
+ {sourceAvailability.mplSourceUrl ? (
+ {sourceAvailability.mplSourceUrl}
+ ) : (
+ 'configure VITE_MPL_SOURCE_URL before public launch'
+ )}
+
+
+ Public repository / notices reference:{' '}
+ {sourceAvailability.openSourceRepoUrl ? (
+ {sourceAvailability.openSourceRepoUrl}
+ ) : (
+ 'configure VITE_OPEN_SOURCE_REPO_URL before public launch'
+ )}
+
+
+
+ Official MPL 2.0 license text:{' '}
+
+ https://www.mozilla.org/en-US/MPL/2.0/
+
+
+
+
+
+ )
+}
+
+export function PrivacyPage() {
+ return (
+
+
+
+
+ The public website stores account/session data needed for authentication, plan access, and desktop-link issuance.
+ The browser shell does not claim ownership over the full simulator runtime state unless a future browser-client packet is explicitly opened.
+ Support, billing, and release operations should collect only the data required to deliver digital access and maintain legal compliance.
+
+
+
+
+ )
+}
+
+export function TermsPage() {
+ return (
+
+
+
+
+ Browser access covers public pages, account, release, download, and operator/dashboard surfaces.
+ The simulator itself is delivered through the desktop lane unless a later browser-client branch is explicitly opened.
+ Downloaded builds and their public distribution pages remain subject to open-source notice and corresponding-source disclosure rules where applicable.
+
+
+
+
+ )
+}
+
+export function ShippingPaymentPage() {
+ return (
+
+
+
+ {paddleReadyDescription}
+
+ No physical goods ship through this site.
+ Pricing and checkout are structured for Paddle-backed digital plans.
+ Desktop downloads must remain paired with public notices and legal links when required by shipped-code obligations.
+
+
+
+
+ )
+}
diff --git a/website/src/router/AppRouteTree.tsx b/website/src/router/AppRouteTree.tsx
new file mode 100644
index 0000000..f07686c
--- /dev/null
+++ b/website/src/router/AppRouteTree.tsx
@@ -0,0 +1,36 @@
+import { Navigate, Route, Routes } from 'react-router-dom'
+import { AppShell } from '../components/layout/AppShell'
+import { ProtectedRoute } from '../components/routes/ProtectedRoute'
+import { renderPublicRoutes } from './PublicRoutes'
+import { Suspense, lazy } from 'react'
+import { GeneralPageLoader } from '../components/ui/Skeletons'
+
+const DashboardOverviewPage = lazy(() => import('../pages/app-pages').then((m) => ({ default: m.DashboardOverviewPage })))
+const DownloadCenterPage = lazy(() => import('../pages/app-pages').then((m) => ({ default: m.DownloadCenterPage })))
+const BrowserAccessPage = lazy(() => import('../pages/app-pages').then((m) => ({ default: m.BrowserAccessPage })))
+const AccountPage = lazy(() => import('../pages/app-pages').then((m) => ({ default: m.AccountPage })))
+const NoticesPage = lazy(() => import('../pages/app-pages').then((m) => ({ default: m.NoticesPage })))
+
+function withAppLoader(title: string, element: React.ReactNode) {
+ return }>{element}
+}
+
+export function AppRouteTree() {
+ return (
+
+ {renderPublicRoutes()}
+
+ }>
+ }>
+ )} />
+ )} />
+ )} />
+ )} />
+ )} />
+
+
+
+ } />
+
+ )
+}
diff --git a/website/src/router/PublicRoutes.tsx b/website/src/router/PublicRoutes.tsx
new file mode 100644
index 0000000..97817fe
--- /dev/null
+++ b/website/src/router/PublicRoutes.tsx
@@ -0,0 +1,43 @@
+import { Suspense, lazy, type ReactNode } from 'react'
+import { Route } from 'react-router-dom'
+import { GeneralPageLoader } from '../components/ui/Skeletons'
+
+const HomeLanding = lazy(() => import('../pages/public-pages').then((m) => ({ default: m.HomeLanding })))
+const AboutPage = lazy(() => import('../pages/public-pages').then((m) => ({ default: m.AboutPage })))
+const ResourcesPage = lazy(() => import('../pages/public-pages').then((m) => ({ default: m.ResourcesPage })))
+const DocsPage = lazy(() => import('../pages/public-pages').then((m) => ({ default: m.DocsPage })))
+const SupportPage = lazy(() => import('../pages/public-pages').then((m) => ({ default: m.SupportPage })))
+const ChangelogPage = lazy(() => import('../pages/public-pages').then((m) => ({ default: m.ChangelogPage })))
+const PricingPage = lazy(() => import('../pages/public-pages').then((m) => ({ default: m.PricingPage })))
+const DownloadPage = lazy(() => import('../pages/public-pages').then((m) => ({ default: m.DownloadPage })))
+const OpenSourceNoticesPage = lazy(() => import('../pages/public-pages').then((m) => ({ default: m.OpenSourceNoticesPage })))
+const PrivacyPage = lazy(() => import('../pages/public-pages').then((m) => ({ default: m.PrivacyPage })))
+const TermsPage = lazy(() => import('../pages/public-pages').then((m) => ({ default: m.TermsPage })))
+const ShippingPaymentPage = lazy(() => import('../pages/public-pages').then((m) => ({ default: m.ShippingPaymentPage })))
+const LoginPage = lazy(() => import('../pages/auth-pages').then((m) => ({ default: m.LoginPage })))
+const RegisterPage = lazy(() => import('../pages/auth-pages').then((m) => ({ default: m.RegisterPage })))
+
+function withGeneralLoader(title: string, element: ReactNode) {
+ return }>{element}
+}
+
+export function renderPublicRoutes() {
+ return (
+ <>
+ )} />
+ )} />
+ )} />
+ )} />
+ )} />
+ )} />
+ )} />
+ )} />
+ )} />
+ )} />
+ )} />
+ )} />
+ )} />
+ )} />
+ >
+ )
+}
diff --git a/website/src/router/router-future.ts b/website/src/router/router-future.ts
new file mode 100644
index 0000000..a41ad53
--- /dev/null
+++ b/website/src/router/router-future.ts
@@ -0,0 +1,4 @@
+export const ROUTER_FUTURE_FLAGS = {
+ v7_startTransition: true,
+ v7_relativeSplatPath: true,
+} as const
diff --git a/website/src/site-config.ts b/website/src/site-config.ts
new file mode 100644
index 0000000..6394728
--- /dev/null
+++ b/website/src/site-config.ts
@@ -0,0 +1,93 @@
+const env = import.meta.env as Record
+
+function readTrimmedEnv(name: string, fallback = '') {
+ return String(env[name] || fallback).trim()
+}
+
+export const brandConfig = {
+ brandName: 'HyperTwist',
+ legalName: 'HyperTwist',
+ domain: 'hypertwist.app',
+ tagline: 'Native cube and hypercube training, from first solve to 120-cell.',
+ contact: {
+ email: readTrimmedEnv('VITE_SUPPORT_EMAIL', 'hello@hypertwist.app'),
+ emailHref: `mailto:${readTrimmedEnv('VITE_SUPPORT_EMAIL', 'hello@hypertwist.app')}`,
+ },
+ payment: {
+ provider: 'Paddle',
+ },
+}
+
+export const planCatalog = [
+ {
+ key: 'explorer',
+ name: 'Explorer',
+ price: 'Free',
+ ctaLabel: 'Start in the browser',
+ ctaHref: '/register',
+ notes: 'Preview the browser account shell, operator dashboard, release notes, and desktop onboarding posture.',
+ features: [
+ 'Browser account access',
+ 'Release notes and resource center',
+ 'Operator dashboard preview',
+ 'Open-source notices and distribution transparency',
+ ],
+ },
+ {
+ key: 'operator',
+ name: 'Operator',
+ price: readTrimmedEnv('VITE_PLAN_PRICE_OPERATOR', 'Launch pricing via Paddle'),
+ ctaLabel: readTrimmedEnv('VITE_PADDLE_CHECKOUT_URL_OPERATOR') ? 'Open Paddle checkout' : 'Request operator access',
+ ctaHref: readTrimmedEnv('VITE_PADDLE_CHECKOUT_URL_OPERATOR', '/pricing'),
+ notes: 'Desktop-first recognition, replay, training, and higher-dimensional runtime ownership for active training operators.',
+ features: [
+ 'Desktop download access',
+ 'Desktop-link token handoff',
+ 'Recognition, replay, and coaching ownership',
+ 'Classic-cube package and validation lane access',
+ ],
+ },
+ {
+ key: 'studio',
+ name: 'Studio',
+ price: readTrimmedEnv('VITE_PLAN_PRICE_STUDIO', 'Contact for launch readiness'),
+ ctaLabel: readTrimmedEnv('VITE_PADDLE_CHECKOUT_URL_STUDIO') ? 'Open Paddle checkout' : 'Talk to HyperTwist',
+ ctaHref: readTrimmedEnv('VITE_PADDLE_CHECKOUT_URL_STUDIO', '/support'),
+ notes: 'Higher-dimensional families, operator deployment support, and packaging/validation coordination for production lanes.',
+ features: [
+ 'Magic120Cell and 5D operator posture',
+ 'Release planning and deployment coordination',
+ 'Desktop distribution and legal-notice readiness',
+ 'Custom support for rollout and training programs',
+ ],
+ },
+] as const
+
+export const downloadTargets = [
+ {
+ platform: 'Windows',
+ subtitle: 'Primary shipping lane',
+ href: readTrimmedEnv('VITE_WINDOWS_DOWNLOAD_URL'),
+ details: 'Current packaged validation is strongest on the Windows Unreal lane.',
+ },
+ {
+ platform: 'macOS',
+ subtitle: 'Planned distribution surface',
+ href: readTrimmedEnv('VITE_MAC_DOWNLOAD_URL'),
+ details: 'List a signed desktop build here when the package lane is opened.',
+ },
+ {
+ platform: 'Linux',
+ subtitle: 'Operator-targeted later lane',
+ href: readTrimmedEnv('VITE_LINUX_DOWNLOAD_URL'),
+ details: 'Use for future package publication after the bounded release lane is widened.',
+ },
+] as const
+
+export const publicDocsUrl = readTrimmedEnv('VITE_PUBLIC_DOCS_URL')
+export const releaseNotesUrl = readTrimmedEnv('VITE_RELEASE_NOTES_URL')
+export const mplSourceUrl = readTrimmedEnv('VITE_MPL_SOURCE_URL')
+export const openSourceRepoUrl = readTrimmedEnv('VITE_OPEN_SOURCE_REPO_URL')
+
+export const paddleReadyDescription =
+ 'HyperTwist is a desktop-first training environment for classic cube, recognition-assisted reconstruction, replay explanation, coaching, higher-dimensional runtime ownership, and browser-based operator access. Delivery is digital-only through authenticated account access and desktop downloads. Pricing and checkout are wired for Paddle, while public legal surfaces stay responsible for open-source notices and corresponding-source disclosure when shipped builds contain MPL-covered components.'
diff --git a/website/src/site-data.ts b/website/src/site-data.ts
new file mode 100644
index 0000000..c17371c
--- /dev/null
+++ b/website/src/site-data.ts
@@ -0,0 +1,153 @@
+import { brandConfig, downloadTargets, mplSourceUrl, openSourceRepoUrl, publicDocsUrl, releaseNotesUrl } from './site-config'
+
+export const heroMetrics = [
+ { label: 'Current runtime center', value: 'Native Unreal' },
+ { label: 'Higher-dimensional ownership', value: '120-cell + 5D' },
+ { label: 'Browser posture', value: 'Embedded shell live' },
+ { label: 'Package gate', value: 'Phase 10B/10C closed' },
+] as const
+
+export const capabilityPillars = [
+ {
+ title: 'Recognition to reconstruction',
+ description: 'Classic-cube intake, correction closure, browser-assisted recognition, and solve guidance are already first-party owned surfaces.',
+ },
+ {
+ title: 'Replay, coaching, and analytics',
+ description: 'Replay capture, explanation, leaderboard persistence, training analytics, and operator diagnostics are part of the current shipping lane.',
+ },
+ {
+ title: 'Higher-dimensional seriousness',
+ description: 'Hyper puzzle catalog, replay verification, 120-cell and 5D runtime ownership, and non-Euclidean tiling posture are all represented honestly.',
+ },
+ {
+ title: 'Desktop-first distribution',
+ description: 'Browser account access supports the operator, while the real simulator and package-validation story remain desktop-first and Unreal-backed.',
+ },
+] as const
+
+export const shippingNowCards = [
+ 'Native Unreal training runtime, coaching cockpit, and generated-mode launch',
+ 'Classic-cube timing, drill flows, local leaderboard persistence, and replay recording',
+ 'Browser-assisted recognition shell with correction closure and recommendation readout',
+ 'Embedded browser runtime with live operator/runtime diagnostics inside Unreal',
+ 'MagicTile browser host bridge plus bounded native behavior proof',
+ 'Higher-dimensional 120-cell and 5D runtime-state, projection, and persistence ownership',
+] as const
+
+export const roadmapHonestyCards = [
+ 'The embedded browser shell is shipping. The optional full-browser client remains spec-only and is not presented as a live simulator.',
+ 'Native renderer widening for MagicTile stays explicitly No-Go until a real browser-host gap is evidenced.',
+ 'Pricing and checkout are Paddle-ready, but public launch still requires production checkout URLs and corresponding-source publication for MPL-covered shipped builds.',
+ 'Desktop distribution is the primary product lane. Browser access is for account, operator, release, and support surfaces unless a later browser-client packet is deliberately reopened.',
+] as const
+
+export const resourceCollections = [
+ {
+ title: 'Product truth',
+ items: [
+ 'Feature registry-backed descriptions only',
+ 'Roadmap-honest separation between shipped and retained capability',
+ 'Release notes that surface what actually landed',
+ ],
+ },
+ {
+ title: 'Operator rollout',
+ items: [
+ 'Desktop download instructions and release channels',
+ 'Desktop-link handshake for browser-to-desktop sign-in',
+ 'Legal/notices linkage for public distribution surfaces',
+ ],
+ },
+ {
+ title: 'Training depth',
+ items: [
+ 'Classic-cube recognition and correction workflows',
+ 'Replay, coaching, analytics, and package validation posture',
+ 'Higher-dimensional puzzle-family references and browser-host boundaries',
+ ],
+ },
+] as const
+
+export const changelogEntries = [
+ {
+ date: 'June 22, 2026',
+ title: 'Public HyperTwist website, auth shell, and distribution surfaces landed',
+ details: 'A dedicated hypertwist.app app now exists for public pages, browser account access, download posture, public notices, and Paddle-ready pricing.',
+ },
+ {
+ date: 'June 19, 2026',
+ title: 'Embedded browser runtime hardened for operator diagnostics',
+ details: 'Runtime-ready, runtime-status, and native training/dashboard diagnostics were typed and surfaced as first-party operator status.',
+ },
+ {
+ date: 'June 19, 2026',
+ title: 'MagicTile native behavior proof and renderer gate frozen',
+ details: 'The native behavior proof seam landed and the renderer-port decision remained explicit No-Go without new browser-host failure evidence.',
+ },
+ {
+ date: 'June 18, 2026',
+ title: 'Classic-cube package/integration validation refreshed',
+ details: 'Phase 10B and 10C were revalidated with packaged smoke coverage, stricter package helper enforcement, and maintained archive proof.',
+ },
+] as const
+
+export const openSourceNotices = [
+ {
+ component: 'cubing/cubing.js',
+ license: 'MPL-2.0',
+ whyItMatters: 'HyperTwist relies on an accepted MPL-covered route for current live cubing functionality.',
+ },
+ {
+ component: 'coqui-ai/TTS package code',
+ license: 'MPL-2.0',
+ whyItMatters: 'If shipped desktop builds contain this code, public pricing/download pages and the installed app must expose notices and source availability.',
+ },
+ {
+ component: 'Retained permissive browser/runtime sidecars',
+ license: 'MIT / permissive family',
+ whyItMatters: 'These support the public site and embedded browser surfaces, but the public legal surface still needs to stay easy to find and stable.',
+ },
+] as const
+
+export const sourceAvailability = {
+ mplSourceUrl,
+ openSourceRepoUrl,
+ docsUrl: publicDocsUrl,
+ releaseNotesUrl,
+}
+
+export const footerLinks = [
+ { to: '/about', label: 'About' },
+ { to: '/resources', label: 'Resources' },
+ { to: '/pricing', label: 'Pricing' },
+ { to: '/download', label: 'Download' },
+ { to: '/open-source-notices', label: 'Open Source Notices' },
+ { to: '/privacy', label: 'Privacy' },
+ { to: '/terms', label: 'Terms' },
+ { to: '/shipping-payment', label: 'Shipping & Payment' },
+] as const
+
+export const supportFaqs = [
+ {
+ question: 'Is the simulator fully in the browser?',
+ answer: 'No. The current shipping lane is desktop-first and Unreal-backed. The public website offers account, operator, support, and download access, while the optional full-browser simulator path remains spec-only.',
+ },
+ {
+ question: 'Can I download a build immediately after sign-in?',
+ answer: 'Yes, once a release URL is configured for your plan. The dashboard also exposes a desktop-link token so the browser account can pair with the desktop app safely.',
+ },
+ {
+ question: 'Why is there an open-source notices page on pricing and download surfaces?',
+ answer: 'Because HyperTwist already carries explicit doctrine requiring public legal and corresponding-source linkage whenever a downloadable shipped build contains MPL-covered material.',
+ },
+] as const
+
+export const companyNarrative = {
+ mission: 'HyperTwist closes the gap between physical cubing practice, deep replay analysis, operator-grade coaching, and serious higher-dimensional puzzle study.',
+ posture:
+ 'The product is intentionally honest about what already ships, what is retained and planned, and what remains optional or spec-only. That honesty is part of the platform quality bar.',
+ distribution:
+ 'The website exists to support public positioning, authenticated operator access, pricing, notices, and desktop distribution without pretending the browser itself already replaces the real desktop runtime.',
+ contactEmail: brandConfig.contact.email,
+}
diff --git a/website/src/styles/global.css b/website/src/styles/global.css
new file mode 100644
index 0000000..3b37a16
--- /dev/null
+++ b/website/src/styles/global.css
@@ -0,0 +1,671 @@
+:root {
+ --ht-bg: #070b18;
+ --ht-bg-2: #0d1630;
+ --ht-surface: rgba(13, 20, 41, 0.82);
+ --ht-surface-strong: rgba(14, 23, 48, 0.94);
+ --ht-border: rgba(113, 213, 255, 0.18);
+ --ht-border-strong: rgba(247, 178, 103, 0.34);
+ --ht-text: #eef4ff;
+ --ht-muted: #b9c8e0;
+ --ht-cyan: #54cbff;
+ --ht-cyan-soft: rgba(84, 203, 255, 0.16);
+ --ht-amber: #f7b267;
+ --ht-amber-soft: rgba(247, 178, 103, 0.12);
+ --ht-success: #9effc7;
+ --ht-grid: rgba(148, 201, 255, 0.06);
+ --font-display: "Space Grotesk", "IBM Plex Sans", sans-serif;
+ --font-body: "IBM Plex Sans", system-ui, sans-serif;
+}
+
+html[data-theme="light"] {
+ --ht-bg: #f4f8ff;
+ --ht-bg-2: #dbeaff;
+ --ht-surface: rgba(255, 255, 255, 0.85);
+ --ht-surface-strong: rgba(255, 255, 255, 0.96);
+ --ht-border: rgba(9, 54, 122, 0.14);
+ --ht-border-strong: rgba(194, 104, 15, 0.3);
+ --ht-text: #081426;
+ --ht-muted: #4f6686;
+ --ht-cyan: #0d80b8;
+ --ht-cyan-soft: rgba(13, 128, 184, 0.12);
+ --ht-amber: #c8680f;
+ --ht-amber-soft: rgba(200, 104, 15, 0.12);
+ --ht-success: #0f8b56;
+ --ht-grid: rgba(35, 90, 167, 0.08);
+}
+
+* {
+ box-sizing: border-box;
+}
+
+html, body, #root {
+ min-height: 100%;
+}
+
+body {
+ margin: 0;
+ font-family: var(--font-body);
+ color: var(--ht-text);
+ background:
+ radial-gradient(circle at top, rgba(84, 203, 255, 0.18), transparent 30%),
+ radial-gradient(circle at 85% 15%, rgba(247, 178, 103, 0.18), transparent 26%),
+ linear-gradient(180deg, var(--ht-bg), var(--ht-bg-2));
+ background-attachment: fixed;
+}
+
+body::before {
+ content: "";
+ position: fixed;
+ inset: 0;
+ pointer-events: none;
+ background-image:
+ linear-gradient(var(--ht-grid) 1px, transparent 1px),
+ linear-gradient(90deg, var(--ht-grid) 1px, transparent 1px);
+ background-size: 32px 32px;
+ mask-image: linear-gradient(180deg, rgba(255,255,255,0.28), transparent 68%);
+}
+
+a {
+ color: inherit;
+ text-decoration: none;
+}
+
+img {
+ max-width: 100%;
+ display: block;
+}
+
+.site-shell,
+.app-shell {
+ min-height: 100vh;
+}
+
+.site-header,
+.page-main,
+.site-footer,
+.app-topbar,
+.app-main {
+ position: relative;
+ z-index: 1;
+}
+
+.site-header {
+ display: flex;
+ align-items: center;
+ justify-content: space-between;
+ gap: 1.5rem;
+ padding: 1.25rem clamp(1rem, 3vw, 2.25rem);
+ border-bottom: 1px solid var(--ht-border);
+ backdrop-filter: blur(18px);
+ background: rgba(8, 12, 22, 0.42);
+ position: sticky;
+ top: 0;
+}
+
+.brand-mark {
+ display: flex;
+ align-items: center;
+ gap: 0.9rem;
+ min-width: 0;
+}
+
+.brand-mark__image,
+.app-sidebar__brand-image {
+ width: 3rem;
+ height: 3rem;
+ object-fit: contain;
+ filter: drop-shadow(0 0 18px rgba(84, 203, 255, 0.2));
+}
+
+.brand-mark strong,
+.app-sidebar__brand strong {
+ display: block;
+ font-family: var(--font-display);
+ letter-spacing: 0.02em;
+}
+
+.brand-mark small,
+.app-sidebar__brand p,
+.site-footer__brand p,
+.app-topbar__user span {
+ display: block;
+ color: var(--ht-muted);
+}
+
+.site-nav,
+.site-header__actions,
+.button-row,
+.feature-band,
+.metric-grid,
+.card-grid,
+.split-grid,
+.panel-grid,
+.app-nav,
+.site-footer__links {
+ display: flex;
+ gap: 1rem;
+}
+
+.site-nav {
+ flex-wrap: wrap;
+ justify-content: center;
+}
+
+.site-nav__link,
+.app-nav__link {
+ padding: 0.7rem 0.95rem;
+ border-radius: 999px;
+ color: var(--ht-muted);
+ transition: 160ms ease;
+}
+
+.site-nav__link:hover,
+.site-nav__link.is-active,
+.app-nav__link:hover,
+.app-nav__link.is-active {
+ color: var(--ht-text);
+ background: var(--ht-cyan-soft);
+}
+
+.button {
+ display: inline-flex;
+ align-items: center;
+ justify-content: center;
+ gap: 0.5rem;
+ min-height: 2.8rem;
+ padding: 0.8rem 1.1rem;
+ border-radius: 999px;
+ border: 1px solid transparent;
+ font-weight: 700;
+ cursor: pointer;
+ transition: transform 160ms ease, background 160ms ease, border-color 160ms ease, color 160ms ease;
+}
+
+.button:hover {
+ transform: translateY(-1px);
+}
+
+.button--primary {
+ background: linear-gradient(120deg, var(--ht-amber), #ffc788);
+ color: #09111d;
+}
+
+.button--ghost {
+ background: rgba(255, 255, 255, 0.02);
+ border-color: var(--ht-border);
+ color: var(--ht-text);
+}
+
+.button--full {
+ width: 100%;
+}
+
+.button.is-disabled,
+.button:disabled {
+ opacity: 0.62;
+ cursor: not-allowed;
+ transform: none;
+}
+
+.page-main {
+ width: min(1180px, calc(100vw - 2rem));
+ margin: 0 auto;
+ padding-bottom: 4rem;
+}
+
+.page-hero {
+ padding: clamp(2.25rem, 6vw, 5rem) 0 1.5rem;
+}
+
+.eyebrow {
+ margin: 0 0 0.65rem;
+ font-size: 0.79rem;
+ text-transform: uppercase;
+ letter-spacing: 0.16em;
+ color: var(--ht-cyan);
+ font-weight: 700;
+}
+
+.page-hero h1,
+.app-topbar h1,
+.auth-card h1 {
+ margin: 0;
+ font-family: var(--font-display);
+ font-size: clamp(2.4rem, 6vw, 4.8rem);
+ line-height: 0.98;
+}
+
+.page-hero__lede,
+.section-heading p,
+.hero-copy p,
+.card p,
+.callout p,
+.panel p,
+.timeline-entry p,
+.auth-card__subtitle {
+ color: var(--ht-muted);
+ line-height: 1.7;
+}
+
+.hero-panel,
+.page-section,
+.site-footer,
+.auth-card,
+.app-sidebar,
+.app-topbar,
+.panel,
+.hero-visual-card,
+.metric-card,
+.card,
+.callout,
+.timeline-entry {
+ border: 1px solid var(--ht-border);
+ background: var(--ht-surface);
+ border-radius: 1.5rem;
+ box-shadow: 0 24px 90px rgba(0, 0, 0, 0.15);
+ backdrop-filter: blur(18px);
+}
+
+.hero-panel {
+ padding: clamp(1.25rem, 3vw, 2rem);
+}
+
+.hero-grid {
+ display: grid;
+ grid-template-columns: minmax(0, 1.35fr) minmax(300px, 0.85fr);
+ gap: 1.5rem;
+ align-items: center;
+}
+
+.hero-copy {
+ display: grid;
+ gap: 1.2rem;
+}
+
+.hero-visual-card {
+ padding: 1.2rem;
+ background:
+ radial-gradient(circle at top, rgba(84, 203, 255, 0.18), transparent 42%),
+ linear-gradient(180deg, rgba(15, 24, 48, 0.96), rgba(10, 16, 30, 0.94));
+}
+
+.hero-visual-card__image {
+ width: min(320px, 100%);
+ margin: 0 auto;
+}
+
+.hero-visual-card__caption {
+ margin: 1rem 0 0;
+ color: var(--ht-muted);
+ text-align: center;
+}
+
+.metric-grid {
+ margin-top: 1rem;
+ flex-wrap: wrap;
+}
+
+.metric-card {
+ flex: 1 1 210px;
+ padding: 1rem 1.1rem;
+}
+
+.metric-card strong {
+ display: block;
+ font-family: var(--font-display);
+ font-size: 1.45rem;
+}
+
+.metric-card span {
+ color: var(--ht-muted);
+}
+
+.page-section {
+ margin-top: 1.4rem;
+ padding: clamp(1.25rem, 3vw, 1.85rem);
+}
+
+.section-heading {
+ margin-bottom: 1rem;
+}
+
+.section-heading h2,
+.card h3,
+.panel h2,
+.timeline-entry h3 {
+ margin: 0;
+ font-family: var(--font-display);
+}
+
+.card-grid,
+.split-grid,
+.panel-grid {
+ flex-wrap: wrap;
+}
+
+.card-grid > *,
+.split-grid > *,
+.panel-grid > * {
+ flex: 1 1 280px;
+}
+
+.card,
+.panel,
+.callout,
+.timeline-entry {
+ padding: 1.15rem;
+}
+
+.card--compact {
+ display: grid;
+ gap: 0.8rem;
+}
+
+.card--pricing {
+ display: grid;
+ gap: 1rem;
+}
+
+.top-gap {
+ margin-top: 1rem;
+}
+
+.status-pill {
+ display: inline-flex;
+ align-items: center;
+ gap: 0.4rem;
+ margin: 0 0 0.6rem;
+ padding: 0.3rem 0.65rem;
+ border-radius: 999px;
+ background: var(--ht-amber-soft);
+ color: var(--ht-amber);
+ font-size: 0.8rem;
+ font-weight: 700;
+}
+
+.list {
+ margin: 0;
+ padding-left: 1.15rem;
+ display: grid;
+ gap: 0.6rem;
+ color: var(--ht-muted);
+}
+
+.feature-band {
+ flex-wrap: wrap;
+}
+
+.feature-band__card {
+ flex: 1 1 280px;
+ display: block;
+ padding: 1.2rem;
+ border: 1px solid var(--ht-border);
+ border-radius: 1.3rem;
+ background: rgba(10, 16, 30, 0.56);
+}
+
+.feature-band__card--link {
+ transition: border-color 160ms ease, transform 160ms ease;
+}
+
+.feature-band__card--link:hover {
+ transform: translateY(-2px);
+ border-color: var(--ht-border-strong);
+}
+
+.inline-link {
+ display: inline-flex;
+ align-items: center;
+ gap: 0.45rem;
+ margin-top: 0.8rem;
+ color: var(--ht-cyan);
+ font-weight: 700;
+}
+
+.timeline {
+ display: grid;
+ gap: 1rem;
+}
+
+.timeline-entry {
+ border-left: 4px solid var(--ht-amber);
+}
+
+.timeline-entry__date {
+ margin: 0 0 0.4rem;
+ color: var(--ht-cyan);
+ font-size: 0.85rem;
+ font-weight: 700;
+}
+
+.site-footer {
+ width: min(1180px, calc(100vw - 2rem));
+ margin: 1rem auto 2rem;
+ padding: 1.2rem;
+ display: grid;
+ gap: 0.9rem;
+}
+
+.site-footer__links {
+ flex-wrap: wrap;
+}
+
+.site-footer__note {
+ color: var(--ht-muted);
+}
+
+.auth-shell {
+ min-height: 100vh;
+ display: grid;
+ place-items: center;
+ padding: 1.25rem;
+}
+
+.auth-card {
+ width: min(540px, 100%);
+ padding: 1.6rem;
+}
+
+.auth-form {
+ display: grid;
+ gap: 0.7rem;
+ margin-top: 1rem;
+}
+
+.input-label {
+ font-size: 0.92rem;
+ color: var(--ht-muted);
+}
+
+.input {
+ width: 100%;
+ min-height: 2.9rem;
+ padding: 0.85rem 0.95rem;
+ border-radius: 1rem;
+ border: 1px solid var(--ht-border);
+ background: rgba(7, 12, 24, 0.7);
+ color: var(--ht-text);
+}
+
+.input:focus {
+ outline: 2px solid rgba(84, 203, 255, 0.24);
+ outline-offset: 1px;
+}
+
+.form-error {
+ color: #ff9f9f;
+ margin: 0;
+}
+
+.provider-row {
+ display: grid;
+ gap: 0.7rem;
+ margin-top: 1rem;
+}
+
+.auth-card__footer {
+ margin-top: 1rem;
+ color: var(--ht-muted);
+}
+
+.app-shell {
+ display: grid;
+ grid-template-columns: 280px minmax(0, 1fr);
+}
+
+.app-sidebar {
+ min-height: 100vh;
+ margin: 0.8rem;
+ padding: 1rem;
+ position: sticky;
+ top: 0.8rem;
+ align-self: start;
+}
+
+.app-sidebar__brand {
+ display: flex;
+ align-items: center;
+ gap: 0.85rem;
+ margin-bottom: 1.2rem;
+}
+
+.app-nav {
+ flex-direction: column;
+}
+
+.app-nav__link {
+ display: flex;
+ align-items: center;
+ gap: 0.7rem;
+}
+
+.app-sidebar__footer {
+ margin-top: 1.25rem;
+ display: grid;
+ gap: 0.65rem;
+}
+
+.app-main-shell {
+ padding: 0.8rem 0.8rem 0.8rem 0;
+}
+
+.app-topbar {
+ display: flex;
+ align-items: flex-end;
+ justify-content: space-between;
+ gap: 1rem;
+ padding: 1rem 1.2rem;
+}
+
+.app-main {
+ padding-top: 0.9rem;
+}
+
+.code-block {
+ padding: 0.9rem 1rem;
+ border-radius: 1rem;
+ background: rgba(3, 9, 20, 0.74);
+ border: 1px solid var(--ht-border);
+ overflow-x: auto;
+}
+
+code {
+ font-family: ui-monospace, SFMono-Regular, Menlo, Consolas, "Liberation Mono", monospace;
+ color: var(--ht-success);
+}
+
+.general-page-loader-shell {
+ position: relative;
+ min-height: calc(100vh - 10rem);
+ display: grid;
+ place-items: center;
+ overflow: hidden;
+ padding: 1.5rem;
+ background: transparent;
+}
+
+.general-page-loader-frame {
+ position: relative;
+ display: inline-flex;
+ min-width: min(24rem, 82vw);
+ flex-direction: column;
+ align-items: center;
+ gap: 0.9rem;
+ border: 1px solid var(--ht-border-strong);
+ border-radius: 1.2rem;
+ padding: 1.35rem 1.2rem 1.1rem;
+ background: rgba(12, 18, 35, 0.72);
+ box-shadow:
+ inset 0 0 0 1px rgba(255, 255, 255, 0.04),
+ 0 0 28px rgba(84, 203, 255, 0.15);
+ backdrop-filter: blur(14px);
+}
+
+.general-page-loader-text {
+ display: inline-flex;
+ font-size: 0.81rem;
+ font-weight: 600;
+ letter-spacing: 0.12em;
+ text-transform: uppercase;
+ color: var(--ht-muted);
+}
+
+.loading-spinner {
+ color: var(--ht-cyan);
+ text-shadow:
+ 0 0 6px rgba(84, 203, 255, 0.9),
+ 0 0 18px rgba(84, 203, 255, 0.55),
+ 0 0 32px rgba(84, 203, 255, 0.28);
+}
+
+.loading-spinner.is-completing {
+ color: var(--ht-amber);
+ text-shadow:
+ 0 0 6px rgba(247, 178, 103, 0.95),
+ 0 0 18px rgba(247, 178, 103, 0.55),
+ 0 0 32px rgba(247, 178, 103, 0.28);
+}
+
+@media (max-width: 980px) {
+ .hero-grid,
+ .app-shell {
+ grid-template-columns: 1fr;
+ }
+
+ .site-header,
+ .app-topbar {
+ align-items: flex-start;
+ flex-direction: column;
+ }
+
+ .app-sidebar {
+ position: static;
+ }
+
+ .app-main-shell {
+ padding: 0 0.8rem 0.8rem;
+ }
+}
+
+@media (max-width: 720px) {
+ .site-header,
+ .page-main,
+ .site-footer {
+ width: min(100vw - 1rem, 100%);
+ }
+
+ .site-header {
+ padding-inline: 0.8rem;
+ }
+
+ .page-main {
+ padding-bottom: 2rem;
+ }
+
+ .site-nav,
+ .site-header__actions,
+ .button-row {
+ width: 100%;
+ flex-direction: column;
+ }
+}
diff --git a/website/src/test-setup.ts b/website/src/test-setup.ts
new file mode 100644
index 0000000..d263e51
--- /dev/null
+++ b/website/src/test-setup.ts
@@ -0,0 +1,4 @@
+import matchers from '@testing-library/jest-dom/matchers'
+import { expect } from 'vitest'
+
+expect.extend(matchers)
diff --git a/website/src/vite-env.d.ts b/website/src/vite-env.d.ts
new file mode 100644
index 0000000..11f02fe
--- /dev/null
+++ b/website/src/vite-env.d.ts
@@ -0,0 +1 @@
+///
diff --git a/website/tsconfig.json b/website/tsconfig.json
new file mode 100644
index 0000000..d339cad
--- /dev/null
+++ b/website/tsconfig.json
@@ -0,0 +1,22 @@
+{
+ "compilerOptions": {
+ "target": "ES2020",
+ "useDefineForClassFields": true,
+ "lib": ["ES2020", "DOM", "DOM.Iterable"],
+ "allowJs": false,
+ "skipLibCheck": true,
+ "esModuleInterop": true,
+ "allowSyntheticDefaultImports": true,
+ "strict": true,
+ "forceConsistentCasingInFileNames": true,
+ "module": "ESNext",
+ "moduleResolution": "Node",
+ "resolveJsonModule": true,
+ "isolatedModules": true,
+ "noEmit": true,
+ "jsx": "react-jsx",
+ "types": ["vitest/globals", "@testing-library/jest-dom"]
+ },
+ "include": ["src"],
+ "references": [{ "path": "./tsconfig.node.json" }]
+}
diff --git a/website/tsconfig.node.json b/website/tsconfig.node.json
new file mode 100644
index 0000000..c17b816
--- /dev/null
+++ b/website/tsconfig.node.json
@@ -0,0 +1,10 @@
+{
+ "compilerOptions": {
+ "composite": true,
+ "module": "ESNext",
+ "moduleResolution": "Node",
+ "allowSyntheticDefaultImports": true,
+ "types": ["node"]
+ },
+ "include": ["vite.config.ts"]
+}
diff --git a/website/vite.config.ts b/website/vite.config.ts
new file mode 100644
index 0000000..595a2a1
--- /dev/null
+++ b/website/vite.config.ts
@@ -0,0 +1,33 @@
+import { defineConfig } from 'vite'
+import react from '@vitejs/plugin-react-swc'
+
+export default defineConfig({
+ plugins: [react()],
+ build: {
+ rollupOptions: {
+ output: {
+ manualChunks(id) {
+ if (id.includes('supertokens-auth-react')) {
+ return 'auth-vendor'
+ }
+ if (id.includes('react-router-dom') || id.includes('@tanstack/react-query')) {
+ return 'app-vendor'
+ }
+ if (id.includes('lucide-react')) {
+ return 'icon-vendor'
+ }
+ return undefined
+ },
+ },
+ },
+ },
+ server: {
+ port: 4273,
+ },
+ preview: {
+ port: 4274,
+ },
+ test: {
+ environment: 'jsdom',
+ },
+})