Legal, Privacy & Compliance

StacksAtlas LLC provides on-premise network software. This page is your starting point for legal documents, operator responsibilities, and third-party attributions.

Official documents

Privacy Policy

How StacksAtlas LLC handles website visits, optional email registration, and Business license activation. Your network scan data stays on your appliance.

Read full document
Terms of Service

License grant for Free portable and Business tiers, acceptable use, disclaimers, and limitation of liability.

Read full document

Software license (summary)

StacksAtlas software license (summary)
Free portable

Session scanner for Windows, macOS, and Docker. No license key. Unlimited device discovery for the session; data clears when you exit portable mode. Not for always-on production monitoring, alerts, federation, or multi-user teams. See Terms for full grant.

Business ($40)

Perpetual license per Central Hub or standalone always-on appliance. Persistent database, alerts, and fleet. One Business license per appliance. Unlimited device discovery on all tiers. Transfer via Lemon Squeezy customer portal deactivate/reactivate. See licensing guide.

This summary does not replace the Terms of Service.

Business license offline grace

After activation, a Business appliance may run offline within the license grace period built into the product (soft warning, then validation required). This supports air-gapped sites. Deactivate and move licenses through the Lemon Squeezy customer portal from your purchase receipt.

Data handling (summary)

  • Network inventory: stored only on your appliance (LiteDB on Nodes/standalone; Hub fleet data on the Hub host). Not uploaded to StacksAtlas LLC.
  • No product telemetry: we do not collect usage analytics or device lists from your installs.
  • Business activation: one-time handshake with Lemon Squeezy (license key + hardware ID hash). See the Privacy Policy.
  • Optional email: free $0 checkout on the home page is for release updates only, not required to download portable builds.
  • Backups & GDPR: you control local snapshots and permanent delete. See Data Sovereignty.

Your responsibilities as operator

Authorized scanning only

Run discovery only on networks and subnets you own or have explicit permission to monitor. You are responsible for compliance with workplace policy and applicable law.

Install optional tools yourself

Nmap and Npcap are not bundled on any platform (including Docker images on GHCR). Discovery works without them. Install separately for Deep Scan or richer Windows capture, and accept their license terms.

Tailscale is separate

Remote fleet enrollment may use Tailscale. Tailscale is not part of StacksAtlas; its terms and privacy policy apply to your tailnet.

Protect local data

Appliance databases and backups contain sensitive inventory. Secure the host, restrict admin access, and use RBAC/SSO on shared appliances.

Merchant of record

Purchases are processed by Lemon Squeezy (Merchant of Record). Payment card data is handled by Lemon Squeezy, not StacksAtlas LLC. Refunds and tax invoices follow Lemon Squeezy policies.

Distribution & code signing

  • Windows MSI and portable: Authenticode-signed (STACKSATLAS LLC) when distributed from releases.stacksatlas.com.
  • macOS DMG: Developer ID signed and notarized (v1.7.6+).
  • Release manifest: Ed25519-signed metadata for in-appliance update checks on Windows.
Verify downloads from official URLs on the download section or your Lemon Squeezy order portal.

Open-source attributions

StacksAtlas is built on open-source software and public registry data (including IEEE MA-L/OUI vendor assignments for MAC lookup). Optional OpenAVC pairing is documented under companion integrations below. We comply with redistribution requirements by not bundling Nmap or Npcap on Windows, macOS, or official Docker images, and by publishing attributions here.
Data registries & identification

StacksAtlas embeds public registry data for MAC vendor lookup and device fingerprinting. Registry data stays on your appliance and is not sent to these organizations.

IEEE RA public data

MAC address vendor identification uses the IEEE Registration Authority public MA-L assignment list (~45,000+ organizations), embedded as oui.json in the appliance. IEEE and the IEEE Registration Authority are not affiliated with StacksAtlas LLC.

BSD 2-Clause

XML fingerprint database for HTTP and SNMP device identification.

Infrastructure & discovery

Components that power network discovery. Nmap and Npcap are not bundled with StacksAtlas on any platform (Windows, macOS, or official Docker images).

NPSL

Optional deep scan engine. Not redistributed with StacksAtlas. Install separately and accept the Nmap Public Source License.

Npcap OEM / Free

Optional Windows packet capture driver for raw ARP and deep scan. Not bundled. Install from npcap.com with WinPcap API-compatible mode if prompted.

MIT

ARP table resolution for subnet discovery on Windows.

MIT

SNMP queries for device fingerprinting and Recog integration.

MIT

mDNS/Bonjour service discovery (.local hostnames and service records).

MIT

Embedded NoSQL database for Node and standalone appliance storage.

Backend (.NET)

Core appliance and API dependencies. ASP.NET Core and Microsoft.Extensions packages are used under the MIT license.

Community

PDF report generation under the QuestPDF Community License. Organizations above Community revenue limits must obtain a commercial QuestPDF license.

MIT

2D graphics for sparklines and report rendering.

Apache 2.0

Structured logging.

MIT

SMTP client for email alerts.

MIT

Interactive OpenAPI (Swagger UI) at /api-docs.

MIT

Ed25519 verification for signed release manifests.

Microsoft.AspNetCore.SignalR.Client

MIT

Real-time federation sync between Hub and enrolled Nodes.

Entity Framework Core + SQLite / SQL Server / PostgreSQL

MIT

Optional Hub fleet database backends (SQLite default; SQL Server and PostgreSQL supported).

System.IdentityModel.Tokens.Jwt

MIT

JWT authentication for the local API and SSO handoff.

Frontend (appliance UI)
MIT

UI framework for the diagnostic dashboard.

MIT

Component library.

MIT

Frontend build tooling.

MIT

Latency history charts.

MIT

Column reordering in device grids.

MIT

Interactive federation topology graph on the Hub dashboard.

MIT

Client-side routing.

Companion integrations (not bundled)

StacksAtlas pairs with these separate open-source projects on your LAN. They are not included in the StacksAtlas installer — install and license them independently.

MIT

Optional AV control platform used with the StacksAtlas Control Bridge (Business permanent install). OpenAVC and the OpenAVC logo are trademarks of OpenAVC LLC; the MIT license covers source code only.

MIT

YAML/Python device drivers consumed by OpenAVC on your site.

Website (stacksatlas.com)

Documentation and marketing site (separate from the appliance binary).

MIT

Site framework and static generation.

Material UI (MUI)

MIT

Docs and marketing UI components.

@next/mdx

MIT

MDX-powered documentation pages.

Recharts

MIT

Charts in interactive demos.

Standard open-source license texts

Many bundled libraries use the licenses below. Full license texts are available from the OSI and Apache Foundation:


Copyright © 2024–2026 StacksAtlas LLC. All rights reserved. StacksAtlas name and logo are trademarks of StacksAtlas LLC.