# Third-Party Notices
## Needle 3 (Cactus Compute)
ForgetTab packages the official Needle 3 browser runtime and weights, fetched by
`npm run needle:setup` from <https://huggingface.co/Cactus-Compute/needle3>:
- `needle.js` and `needle.wasm`: the Needle 3 WebAssembly engine (`wasm/` platform folder)
- `needle3.cact`: Needle 3 weights (2-bit Cactus Quants)
- `needle.h`: the C API header
Source: <https://github.com/cactus-compute/needle> · <https://www.cactuscompute.com/needle>
Published by Cactus Compute, Inc. under the **Apache License, Version 2.0** (the upstream
license file carries no separate copyright line). The full license text is copied next to the
files as `needle/LICENSE` by the setup script and ships inside `dist/needle/LICENSE`.
The files are redistributed unmodified. They are not committed to this repository; the setup
script downloads them from the official source (pinned revision, SHA-256 verified).
Citation requested by the authors:
```bibtex
@misc{needle3_2026,
title = {Needle: Automation Foundation Model for Tiny Devices},
author = {Ndubuaku, Henry and Mosoyan, Karen and Mroz, Jakub and Cylich, Noah and
Kumar, Satyajit and Sandhu, Parkirat and Shemet, Roman and Lee, Justin H.},
year = {2026},
organization = {Cactus Compute, Inc.},
howpublished = {\url{https://github.com/cactus-compute/needle}}
}
```
## npm runtime dependencies (bundled into the extension)
| Package | License | Source |
| -------------- | ------- | ---------------------------------------- |
| `react` | MIT | <https://github.com/facebook/react> |
| `react-dom` | MIT | <https://github.com/facebook/react> |
| `idb` | ISC | <https://github.com/jakearchibald/idb> |
| `lucide-react` | ISC | <https://github.com/lucide-icons/lucide> |
Development-only tools (Vite, Vitest, Playwright, ESLint, Prettier, TypeScript, fake-indexeddb)
are not shipped in the extension.