Turn an npm lockfile into a reviewable notice draft.

Compare local package metadata, classify exact license declarations with your policy, attach local LICENSE or NOTICE text and export an evidence ZIP. No package is executed and no registry, repository or URL is contacted.

NPM PACKAGE-LOCK V2/V3 ONLY UP TO 50,000 PACKAGE ENTRIES 100 LOCAL EVIDENCE FILES / 15 MIB

Import release evidence

Both npm files are required. LICENSE and NOTICE text is optional.

Exact declaration policy

One declaration per line or comma. Matching is exact and case-insensitive; SPDX expressions are not interpreted. You can override each package decision later.

No npm release files selected.

Selected manifest, lockfile and evidence content is processed in this page and is not sent to a WebRynx application endpoint. Package code is not executed and source files are not modified.

No inventory yet. Choose the two npm files or load the built-in sample.