libheif 1.22.2, built with LIBDE265_VERSION=1.0.16 and USE_UNSAFE_EVAL=0. This is the unmodified libheif-without-unsafe-eval.js distributed with heic-to 1.5.2. Used as a replaceable ES module by the ItsyTools HEIC decoder worker. License: GNU Lesser General Public License v3 or later. See LICENSE.txt and GPL-3.0.txt. Upstream package, source and build instructions: https://www.npmjs.com/package/heic-to/v/1.5.2 https://github.com/hoppergee/heic-to https://github.com/strukturag/libheif/tree/v1.22.2 https://github.com/strukturag/libde265/tree/v1.0.16 Corresponding source downloads (same versions, freely accessible): https://registry.npmjs.org/heic-to/-/heic-to-1.5.2.tgz https://github.com/strukturag/libheif/archive/refs/tags/v1.22.2.tar.gz https://github.com/strukturag/libde265/archive/refs/tags/v1.0.16.tar.gz Build recipe: libheif build-emscripten.sh with LIBDE265_VERSION=1.0.16 USE_UNSAFE_EVAL=0 USE_WASM=0. The decoder is loaded as a separate ES module by /heic-to-jpg/worker.js. To try a compatible modified decoder, save a local copy of the tool and replace /heic-to-jpg/vendor/libheif.js while keeping that import path. These libraries are provided without warranty. Their authors retain copyright. ItsyTools does not modify this library, and no photo data is sent to its authors.