Credits & licences
what it builds on.
VOX itself is proprietary (see LICENSE). Third-party components keep their own licences and are installed by pip, npm or Docker on your machine, not bundled. The full record, with the date each licence file was read, is SOURCES.md and the comments in app/voice/requirements.txt.
01Python packages
| Component | Licence | Role |
|---|---|---|
| pipecat-ai 1.11.0 (with Silero VAD and the smart-turn v3 model) | BSD-2-Clause (Silero VAD: MIT; smart-turn: BSD-2-Clause) | voice pipeline, barge-in |
| anthropic (Python SDK) | MIT | Claude API |
| FastAPI / uvicorn | MIT / BSD-3-Clause | web servers |
| cryptography | Apache-2.0 OR BSD-3-Clause | Telnyx webhook signatures |
| google-api-python-client, google-auth, google-auth-oauthlib, google-auth-httplib2 | Apache-2.0 | Gmail, Calendar |
| mcp, mcp-types 2.2.0 | MIT | MCP servers |
| nltk | Apache-2.0 | sentence splitting (the punkt_tab data: needs review) |
| soxr, num2words, libsndfile (in soundfile) | LGPL-2.1 (transitive) | see Call rules |
| certifi | MPL-2.0 (transitive, unmodified CA data) | TLS certificates |
| numpy, onnxruntime, Pillow, regex, tqdm, requests, jsonschema and other transitive packages | BSD / MIT / Apache-2.0 / ISC | listed in SOURCES.md and requirements.txt |
Optional: app/voice/requirements-input.txt (pyautogui for mouse and keyboard) is installed with --no-deps, because a plain pip install pyautogui pulls two GPL packages. See SOURCES.md.
02Node packages
| Package | Version | Licence |
|---|---|---|
| @anthropic-ai/sdk | 0.128.0 (pinned in app/package-lock.json) | MIT |
03Programs you may run next to VOX
| Program | Licence | Note |
|---|---|---|
| rhasspy/piper | MIT | Never the GPL fork OHF-Voice/piper1-gpl. Piper loads libespeak-ng (GPL-3.0-or-later) in its own process. Each voice has its own licence. |
| whisper.cpp | MIT | OpenAI Whisper weights: MIT. |
| openWakeWord | Apache-2.0 code | All pretrained models are CC BY-NC-SA 4.0 (non-commercial). Bring your own models. |
| Caddy, nginx | Apache-2.0, BSD-2-Clause | Referenced by the example configs only. |
| MCP servers you enable | their own | Recorded per server in data/mcp.json; a server cannot be enabled without an SPDX licence. |
No GPL or AGPL component is part of VOX.
04Third-party services
VOX can connect to these services. They are not part of the purchase: you sign up, accept their terms and pay their fees yourself. Names are trademarks of their owners and are used only to describe compatibility.
Anthropic, ElevenLabs, Twilio, Telnyx, Stripe, Google (Gmail, Calendar, Cloud), Telegram, your SMTP provider.
05Fonts and this documentation
The VOX console, public site and operator panel serve no third-party scripts, fonts or trackers. This documentation loads Geist and Geist Mono from Google Fonts (SIL Open Font License 1.1).
The VOX name, logo and screenshots are part of the item for your reference. Replace them with your own brand before you publish (Rebranding).