# Icon Licenses, Attribution & Provenance — icons.architoon.xyz This document covers the icons served by the Architoon icon CDN (`icons.architoon.xyz`) and hosted in this repository. It lists every icon source, the terms each is used under, and the attribution those terms require. It is the CDN-side counterpart of `packages/tdl-mcp/ICON-LICENSES.md` in the TDL repository (https://github.com/NourDT/tdl), which covers the smaller set of icons bundled into the `@architoon/tdl-mcp` npm package. Where the two differ, the difference is only which icons a given channel carries — the terms below are the same. Available at https://icons.architoon.xyz/LICENSES.md ## IMPORTANT: license carve-out The Architoon/TDL source code is licensed under the MIT License. **The MIT license does NOT apply to the icons served by this CDN or stored in this repository.** Every icon remains the property of its respective owner and is provided under that owner's own terms, listed below. Nothing here grants you rights to the artwork beyond what its owner grants. In particular, some of this artwork is licensed **per icon rather than per pack**. A Simple Icons mark may carry its brand owner's own terms even though the Simple Icons project as a whole is released under CC0. The `license` field in `index.json` is authoritative for any given icon; the per-source sections below explain what governs the rest. ## What this CDN serves | Source | Terms summary | |---|---| | Simple Icons | **Per icon.** CC0-1.0 where upstream records no override; a minority are MIT, Apache-2.0 or CC-BY-3.0/4.0. Logos remain their owners' trademarks | | Devicon | MIT | | Kubernetes | Apache-2.0 **OR** CC-BY-4.0 at the licensee's choice — **we distribute under CC-BY-4.0, so attribution is required** | | Lucide | ISC, plus a Feather-derived MIT sub-license | Every set above is one whose **licensor drew the artwork it licenses** — Simple Icons and Devicon draw their own marks, the Kubernetes authors drew the Kubernetes icons, Lucide draws its own glyphs. That is now a requirement for being served here, and it is why the Gil Barbara logo collection is gone — see "Gil Barbara Logos — no longer served" below. **No major cloud vendor's official icon set is served here.** Amazon's, Microsoft's and Google's have all been removed; all `aws-*`, `azure-*` and `gcp-*` paths return 404. The three sections below explain why in each case and link to the vendor's own download. One precision that matters: removing the *vendor* sets does not remove every icon that depicts an Amazon, Microsoft or Google product. Devicon's own drawings remain — for example `devicon-amazonwebservices`, `devicon-azure`, `devicon-azuredevops`, `devicon-azuresqldatabase` and `devicon-googlecloud` — under Devicon's MIT licence, not under any vendor grant. That licence covers the drawing. It conveys no vendor trademark rights, and depicting a product still means using that company's mark. Per-source icon counts are deliberately not stated in this document. They change with every corpus update, and a number written down here goes stale — and therefore false — the moment it does. The authoritative, always-current answer is the `source` field in `https://icons.architoon.xyz/icons/index.json`: group by it to see exactly what is served under which terms. **Do not infer an icon's origin from its id — or from its labels.** The id prefix is a naming convention, not a provenance claim. This document previously leaned on that lesson to keep serving ids beginning `aws-` that were labelled `"source": "gilbarbara"`, `"license": "CC0-1.0"`, describing them as "third-party CC0 redraws" of Amazon's artwork. **That description was false, and it was ours.** Reading the artwork itself showed those files reproduced Amazon's own Architecture Icons — the official layout, category gradients and service titles — merely relabelled CC0 by the collection that served them, whose dedication could not grant what the collector never owned. The whole collection has been removed (see the Gil Barbara section below). The corrected lesson is broader than the original one: a filename is not provenance, an upstream `source` field is not provenance, and a licence label is not provenance. Only the artwork is. Decisions about what this CDN serves are made by examining the artwork against its claimed origin, and this document no longer makes provenance claims that have not been checked that way. That is now a mechanism rather than an intention. Nothing reaches this CDN without both naming a vetted source and surviving a scan of its own markup for the signatures official vendor asset files carry; a file that cannot show both is refused, by name and with a reason, rather than quietly skipped. The lists of permitted sources and vendor signatures live in [`scripts/icon-provenance.mjs`](scripts/icon-provenance.mjs), and `test/sync-filter.test.mjs` fails the build if either check stops working. See [README.md](README.md#sync-icons) for how the two gates divide the work and why neither would be sufficient alone. The artwork is served verbatim. It is never recolored, reshaped, cropped, or rotated. ## Attribution Three sets carry attribution obligations, all discharged in the per-source sections below: - The **Kubernetes** community icons, which we distribute under the CC-BY-4.0 branch of their dual licence. - **Devicon** (MIT) and **Lucide** (ISC, plus the Feather-derived MIT sub-licence). - The minority of **Simple Icons** marks whose upstream licence is MIT, Apache-2.0 or CC-BY rather than CC0. These are named individually in the Simple Icons section, because a blanket statement would not identify who is being attributed for what. If you consume icons from this CDN, carry this file with them. --- ## Open-source icon sets ### Simple Icons - **Source:** https://github.com/simple-icons/simple-icons — https://simpleicons.org/ - **License:** **per icon.** CC0 1.0 Universal where upstream records no override; otherwise the licence upstream records for that specific mark. - **Attribution required:** for the subset listed below, yes. Simple Icons' own `DISCLAIMER.md` is explicit that the project-level grant does not reach every icon in it: > "Simple Icons is released under CC0 - though that doesn't mean to imply that > all icons within the project are also CC0. Please see individual licenses > where available." This document previously leaned on the repo-level CC0 grant to cover our whole distribution. That was wrong, and it is corrected here: a brand owner who licensed their mark under CC-BY-SA never granted CC0, and no amount of project-level dedication by Simple Icons can grant it on their behalf. Every Simple Icons entry in `index.json` now carries the licence upstream records for that individual mark. **Where the per-icon facts come from.** Upstream publishes them in `data/simple-icons.json` as an `icon.license` object. We rely on a pinned snapshot of that file rather than a live fetch, so the licence recorded for an icon cannot drift without a deliberate, reviewable change: - Upstream repo: https://github.com/simple-icons/simple-icons - Pinned release: **16.28.0** - Data file: `data/simple-icons.json` - SHA-256: `031297247af6d062241858c7a8ce4f64a322d911916203474709983f8e7876bc` **What we decline to serve.** Marks whose upstream licence is copyleft (CC-BY-SA, GPL, AGPL), non-commercial (CC-BY-NC), or the literal `custom` — where upstream declines to name a licence and points at the brand owner's own permission page — are **not served here**. The reasoning is in the "Icons we decline to redistribute" section below. **Trademark note**, unchanged and applying to every Simple Icons mark whatever its licence: the licence covers the artwork, not the brand. The logos remain subject to their owners' trademark rights. Using a logo to *refer to* the brand, as architecture diagrams do, is the intended nominative use. **Attribution for the non-CC0 marks we do serve.** These carry an attribution obligation, discharged here: | Icon id | Attribution | Licence | Artwork source | |---|---|---|---| | `simple-icons-aiohttp` | AIOHTTP | Apache-2.0 | https://github.com/aio-libs/aiohttp | | `simple-icons-airbrake` | Airbrake | Apache-2.0 | https://github.com/airbrake/slate | | `simple-icons-ajv` | Ajv | MIT | https://github.com/ajv-validator/ajv | | `simple-icons-alacritty` | Alacritty | Apache-2.0 | https://github.com/alacritty/alacritty | | `simple-icons-android` | Android | CC-BY-3.0 | https://partnermarketinghub.withgoogle.com/brands/android/ | | `simple-icons-angular` | Angular | CC-BY-4.0 | https://angular.dev/press-kit | | `simple-icons-apache` | Apache | Apache-2.0 | https://www.apache.org/foundation/press/kit | | `simple-icons-authelia` | Authelia | Apache-2.0 | https://github.com/authelia/authelia | | `simple-icons-bootstrap` | Bootstrap | MIT | https://getbootstrap.com/docs/5.3/about/brand | | `simple-icons-exercism` | Exercism | CC-BY-3.0 | https://github.com/exercism/website-icons | | `simple-icons-javascript` | JavaScript | MIT | https://github.com/voodootikigod/logo.js | | `simple-icons-rocksdb` | RocksDB | CC-BY-4.0 | https://github.com/facebook/rocksdb | | `simple-icons-sqlalchemy` | SQLAlchemy | MIT | https://commons.wikimedia.org/wiki/File:SQLAlchemy.svg | The CC-BY marks above additionally require that the licence be named and that any modification be indicated. We make no modifications; the licence for each is named in the table and in the icon's `license` field. ### Devicon - **Source:** https://github.com/devicons/devicon — https://devicon.dev/ - **License:** MIT License - **Attribution required:** Yes — the MIT license text below must accompany distributions, and does. ``` The MIT License (MIT) Copyright (c) 2015 konpa Permission is hereby granted, free of charge, to any person obtaining a copy of this software and associated documentation files (the "Software"), to deal in the Software without restriction, including without limitation the rights to use, copy, modify, merge, publish, distribute, sublicense, and/or sell copies of the Software, and to permit persons to whom the Software is furnished to do so, subject to the following conditions: The above copyright notice and this permission notice shall be included in all copies or substantial portions of the Software. THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE SOFTWARE. ``` ### Lucide - **Source:** https://github.com/lucide-icons/lucide — https://lucide.dev/ - **License:** ISC License, PLUS a separate MIT sub-license covering the subset of icons Lucide inherited from the Feather project. Both blocks below must accompany distributions, and do. - **Attribution required:** Yes — both license blocks below. ``` ISC License Copyright (c) 2026 Lucide Icons and Contributors Permission to use, copy, modify, and/or distribute this software for any purpose with or without fee is hereby granted, provided that the above copyright notice and this permission notice appear in all copies. THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. ``` A named list of icons in Lucide's own `LICENSE` file (airplay, alert-circle, alert-octagon, alert-triangle, aperture, arrow-\* / arrow-\*-circle, at-sign, calendar, cast, check, chevron-\*, chevrons-\*, circle, clipboard, clock, code, columns, command, compass, corner-\*, crosshair, **database**, divide-circle, divide-square, dollar-sign, download, external-link, feather, frown, hash, headphones, help-circle, info, italic, **key**, layout, life-buoy, link, link-2, loader, **lock**, log-in, log-out, maximize, meh, minimize, minimize-2, minus, minus-circle, minus-square, monitor, moon, more-horizontal, more-vertical, move, music, navigation, navigation-2, octagon, pause-circle, percent, plus, plus-circle, plus-square, power, radio, rss, search, **server**, share, shopping-bag, sidebar, smartphone, smile, square, table-2, tablet, target, terminal, trash, trash-2, triangle, tv, type, upload, x, x-circle, x-octagon, x-square, zoom-in, zoom-out) is Feather-derived and ships under this separate MIT grant: ``` The MIT License (MIT) (for the icons listed above) Copyright (c) 2013-present Cole Bemis Permission is hereby granted, free of charge, to any person obtaining a copy of this software and associated documentation files (the "Software"), to deal in the Software without restriction, including without limitation the rights to use, copy, modify, merge, publish, distribute, sublicense, and/or sell copies of the Software, and to permit persons to whom the Software is furnished to do so, subject to the following conditions: The above copyright notice and this permission notice shall be included in all copies or substantial portions of the Software. THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE SOFTWARE. ``` **Note:** our own `core` icon bundle includes `lucide-server`, `lucide-database`, `lucide-lock`, and `lucide-key` — four of the icons on the Feather-derived list above — so both license blocks apply to material we actually ship, not just theoretically. ### Gil Barbara Logos — no longer served - **Source:** https://github.com/gilbarbara/logos - **Status:** the entire collection has been **removed** from this CDN. All `gilbarbara-*` paths, and the `aws-*` paths that served files from this collection, return 404. - **Why — a correction of our own earlier claim.** This document previously served the collection under its repository-level CC0-1.0 dedication and described its `aws-*` files as "third-party CC0 redraws". Inspection of the artwork showed otherwise: those files reproduced Amazon's own Architecture Icons (official layout, category gradients, service titles), and the collection generally gathers vendors' own logo files — its README says "All logos appearing on the site are the property of their respective owners." A CC0 dedication over files the dedicator does not own conveys nothing, so there is no licence chain from the artwork's owners to us, and we do not redistribute artwork on a grant the grantor had no standing to make. The claim that these were independent redraws was published by us without verifying it against the artwork; this section is the correction. - **What to use instead:** for depicting vendors' products, Devicon's own MIT drawings and the per-icon-licensed Simple Icons marks remain served; for vendor artwork itself, obtain it from the vendor (see the cloud provider sections below) and supply it to your renderer yourself. ### Kubernetes Community Icons - **Source:** https://github.com/kubernetes/community (icons/) - **License:** Dual-licensed — Apache License 2.0 **OR** CC-BY-4.0, at the licensee's choice. The choice is stated in the icon set's own `icons/README.md`: "The Kubernetes Icons Set is licensed under a choice of either Apache-2.0 or CC-BY-4.0 (Creative Commons Attribution 4.0 International)." The Apache-2.0 file at the repository root is the *whole-repo* default that GitHub's sidebar reports; it does not override the icon set's explicit either/or. - **The branch we take:** **CC-BY-4.0**, and `index.json` records the licence as `Apache-2.0 OR CC-BY-4.0` so that the choice remains yours as well as ours. Because we distribute under CC-BY-4.0, attribution is required and is given below. If you would rather take the Apache-2.0 branch, you may — that is what a dual licence means — in which case preserve the NOTICE and licence text instead. - **Attribution required:** Yes, and provided here: > Kubernetes icons © The Kubernetes Authors, from > https://github.com/kubernetes/community, used under CC-BY-4.0 > (https://creativecommons.org/licenses/by/4.0/). Icons are used unmodified > except for file renaming. ``` Apache License, Version 2.0 Licensed under the Apache License, Version 2.0 (the "License"); you may not use this file except in compliance with the License. You may obtain a copy of the License at http://www.apache.org/licenses/LICENSE-2.0 Unless required by applicable law or agreed to in writing, software distributed under the License is distributed on an "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. See the License for the specific language governing permissions and limitations under the License. ``` ## Icons we decline to redistribute Some Simple Icons marks carry upstream terms we are not willing to serve from an open CDN. Those icons are absent from this repository and their paths return 404. The test is an allow-list, not a deny-list, so an unfamiliar licence introduced by a future upstream release fails closed — the icon is dropped until someone reviews the term, rather than served on an unread one. Served: `CC0-1.0`, `MIT`, `Apache-2.0`, `ISC`, `BSD-2-Clause`, `BSD-3-Clause`, `CC-BY-2.0`, `CC-BY-2.5`, `CC-BY-3.0`, `CC-BY-4.0`, `Unlicense`, `Zlib`. Not served, and why: - **Copyleft** (`CC-BY-SA-*`, `GPL-*`, `AGPL-*`, `LGPL-*`, `MPL-2.0`). These attach share-alike or source-disclosure obligations to whoever receives the file. A CDN hands over a bare `.svg` over HTTP with no opportunity to attach terms to it, so serving these would set downstream consumers up to breach obligations they were never shown. We will not create that trap. - **Non-commercial** (`CC-BY-NC-*`, `CC-BY-NC-SA-*`, `CC-BY-NC-ND-*`). People build commercial architecture diagrams with these icons. An NC term would make that a licence breach, silently. - **No-derivatives** (`CC-BY-ND-*`). We serve artwork verbatim, but we cannot bind anyone downstream to do the same. - **`custom`.** Upstream declines to name a licence and points at the brand owner's own permission page. Unreviewed terms are not a basis for redistribution, and a link is not a grant. This is deliberately stricter than the rule applied to the `@architoon/icons` and `@architoon/tdl-mcp` packages would need to be, and it lands in the same place. The CDN's exposure is strictly greater than a package's: it is public, unauthenticated, uncounted, and served with a one-year `immutable` cache that makes a mistake slow to undo. Artwork that is not good enough to bundle is not good enough to serve. Where a dropped mark has a freely-licensed equivalent in another set, that equivalent is still served — `devicon-php`, `devicon-ruby`, `devicon-rust` and `devicon-jenkins`, for instance, are Devicon's own MIT drawings and unaffected. Not every dropped mark has such an equivalent. ## Cloud provider icons **No major cloud vendor's official icon set is served here.** Amazon Web Services, Microsoft Azure and Google Cloud each have a section below explaining why, and where to get the artwork from the vendor. The three cases are not identical, and the distinction is worth keeping. Microsoft and Amazon both grant permission, but grant it *for a purpose*. Google grants nothing we could find at all. What removed all three from this CDN is the same structural fact in the first two cases and a plain absence of permission in the third. ### Amazon Web Services — not served here **Amazon's official AWS architecture icon set is no longer served from this CDN.** The artwork has been deleted from this repository, and the `aws-*` paths that pointed at it return 404. - **Why — the grant is real, but our hosting model does not fit it.** Amazon's icon page says: "We allow customers and partners to use these toolkits and assets to create architecture diagrams," and adds that icons may appear "in materials like whitepapers, presentations, data sheets, and posters." That is a permission bound to a *purpose* and to a described class of user. An open CDN is neither: it answers any request from anyone with `Access-Control-Allow-Origin: *` and no referer check, for any use at all, permitted or not. We cannot honour a purpose-bound grant through a delivery mechanism that is indifferent to purpose. This is the same reasoning that removed the Azure set, and it applies here for the same structural reason. - **The internal licence trace records Amazon's grant as "DEFENSIBLE BUT UNCONFIRMED — counsel required."** We are not willing to keep publicly redistributing vendor artwork on a position that our own review says has not been confirmed. Removing it costs us a set of icons; leaving it costs someone else their rights if the reading is wrong. - **A note on what changed, and what did not.** Bundling these icons into a diagramming tool for the purpose Amazon names is a materially different act from serving them from an open CDN to anyone who requests a URL. This section is about the second. It is not a claim that the first is impermissible. - **Get them from Amazon:** https://aws.amazon.com/architecture/icons/ — downloading there means you hold the permission first-hand, on Amazon's terms, rather than on an assumption we made for you. - **Amazon's restrictions, which still apply to any copy you obtain.** From the AWS Trademark Guidelines (https://aws.amazon.com/trademark-guidelines/): "You will not alter the logo images in any manner, including but not limited to changing the proportion, color, or font", and "You will not display the AWS Marks in any manner that implies sponsorship or endorsement by AWS." - **Note:** no `aws-*` id of any origin is served any more. The ids beginning `aws-` that outlived the first removal were served from the Gil Barbara collection as "CC0 redraws"; inspection showed they reproduced Amazon's own artwork, and the whole collection has since been removed (see the Gil Barbara section above). What remains that depicts AWS is Devicon's own drawing, `devicon-amazonwebservices`, under Devicon's MIT — a licence that covers the drawing and conveys no Amazon trademark rights. ### Microsoft Azure — not served here **Microsoft's Azure architecture icon set is no longer served from this CDN.** The artwork has been deleted from this repository and `azure-*` paths return 404. - **Why — the grant is real, but our hosting model does not fit it.** Unlike Google Cloud (where no grant could be found at all), Microsoft does publish clear terms: "Microsoft permits the use of these icons in architectural diagrams, training materials, or documentation. You can copy, distribute, and display the icons only for the permitted use unless granted explicit permission by Microsoft. Microsoft reserves all other rights." That permission is bound to a *purpose*. An open CDN is not: it answers any request from anyone with `Access-Control-Allow-Origin: *` and no referer check, for any use at all, permitted or not. We cannot honour a purpose-bound grant through a delivery mechanism that is indifferent to purpose, so we stopped. - **Two further mismatches.** Microsoft puts its own download behind a terms checkbox, so a user who accepts it has read what they are agreeing to; our CDN routed people straight past that step. Microsoft also serves the icon package with no CORS header, which is a fair signal that direct browser-side hotlinking is not the intended distribution path. - **Get them from Microsoft:** https://learn.microsoft.com/en-us/azure/architecture/icons/ — the download sits behind the terms checkbox. Read it; it is short. Downloading there means you hold the permission first-hand, on Microsoft's terms, rather than on an assumption we made for you. - **Microsoft's restrictions, which still apply to any copy you obtain:** "Don't crop, flip, or rotate icons. Don't distort or change icon shape in any way. Don't use Microsoft product icons to represent your product or service." - **Note:** this removes Microsoft's *official* artwork. Devicon's own drawings that depict Azure products (`devicon-azure`, `devicon-azuredevops`, `devicon-azuresqldatabase`) remain under Devicon's MIT licence. That licence covers the drawing and conveys no Microsoft trademark rights. ### Google Cloud Platform — not served here **Google Cloud icons are not distributed by Architoon.** They are not in the `@architoon/tdl-mcp` npm bundle, and they are no longer served from this CDN: the artwork has been deleted from this repository and `gcp-*` paths return 404. - **Why:** no redistribution grant could be located on any primary source. The long-cited "used freely and without permission" clause is **absent** from the current `cloud.google.com/icons` page (checked 2026-08-02 in a rendered browser — the page carries no license or terms language at all), from the footer terms links (`policies.google.com/terms`, `cloud.google.com/product-terms` — no "icon" match), and from the official style-guide PDF (marked "Proprietary & Confidential"). Google's general brand policy (Partner Marketing Hub) routes product-icon use through creating an account and requesting permission via an approval form, and lists product icons as protected trade dress. - **Maintainer decision (2026-08-22):** an earlier decision dropped GCP icons from the npm bundle but kept serving them from the CDN, on the reasoning that CDN distribution was easy to reverse. That halfway position has been withdrawn. Serving artwork publicly is a distribution in its own right, and we are not willing to keep doing it without a grant we can point to. The icons are gone from both channels. This will be reconsidered only if Google publishes a clear redistribution grant. - **Get them from Google:** https://cloud.google.com/icons — downloading there means you get the artwork from Google on whatever terms Google sets, rather than on an assumption we made for you. - **Note:** Devicon's own drawing depicting Google Cloud (`devicon-googlecloud`) remains under Devicon's MIT licence, which covers the drawing and conveys no Google trademark rights. ### Trademark notice AWS and all related marks are trademarks of Amazon.com, Inc. or its affiliates. Microsoft and Azure are trademarks of the Microsoft group of companies. Google and related marks are trademarks of Google LLC. All three are named here because third-party drawings served under open-source licences still depict their products, even though no vendor's official icon set is served. Kubernetes is a trademark of The Linux Foundation. All other brand names and logos are the property of their respective owners. Architoon is not affiliated with, sponsored by, or endorsed by any of these companies. Logos are used solely to identify the corresponding products and services in user-created diagrams. ## For users of Architoon Diagrams you create with these icons — including commercial use — are within the open-source licences governing every set served here. That is the point of the exclusions above: what remains carries no non-commercial and no share-alike strings. No additional license is needed to share or publish your diagrams. Where an icon is under MIT, Apache-2.0 or CC-BY, keep this file's attribution with anything you redistribute. If your diagram needs AWS, Azure or Google Cloud vendor artwork, get it from the vendor using the links in the three sections above and keep it alongside your own work. We deliberately no longer supply it. ## For redistributors If you redistribute Architoon, the icon library, or derivative works: 1. Include this file. 2. Keep the Devicon (MIT), Lucide (ISC + Feather MIT sub-license), Kubernetes (CC-BY-4.0) and per-icon Simple Icons attributions intact. 3. Do not modify the artwork — no recoloring, reshaping, cropping, or rotating — and keep the source attributions in this file intact. Some marks are under CC-BY, which requires that modifications be indicated if you make any. 4. Remember the MIT license on this project's code does not cover the icons. ## Removal requests **How to reach us.** If you are a rights holder and believe any icon is used improperly, contact us through the Architoon site, https://architoon.xyz. Please put "icon takedown" in the subject or first line so it is routed correctly, and identify the icon by its `id` or file path if you can. **What will happen.** We will remove or correct the artwork promptly at the origin — deleting it from this repository and redeploying, so the CDN stops serving it — and we will ask our CDN provider to purge its edge cache. We do not currently publish a dedicated takedown mailbox, and we would rather say so plainly than list an address we cannot promise is monitored. If the route above does not work for you, say so through it and we will give you a direct address. > **TODO (maintainer):** the route above is the project homepage, which is > adequate at current scale but is not a real licensing contact. Before this > repository or the CDN reaches a wider audience, replace it with a dedicated > and monitored channel — a licensing mailbox, or a public issue tracker — so a > rights holder has an unambiguous way to reach someone. **What removal cannot achieve — please read.** Icons are served with `Cache-Control: public, max-age=31536000, immutable`, a one-year cache that clients are told never to revalidate. Removal stops us distributing the file. It does **not** recall copies that already exist. Browser caches, intermediate proxies, and any file already downloaded, vendored, or committed into a downstream project may keep the artwork for as long as a year, and copies outside our infrastructure are beyond our reach entirely. Removal here means "we stop distributing it", not "the file ceases to exist". We will not claim otherwise, and a rights holder who needs wider recall should plan on that basis.