Evaluating Cutforge: a due-diligence checklist

Last updated: 30 September 2026

Cutforge is young: the first stable release shipped in June 2026. Before you build a product on any young SDK, check more than its landing page. This page lists the facts, and how to verify each one yourself.

What leaves the user’s browser

This is the complete list of network requests the SDK makes:

RequestWhenWhat is sent
POST https://license.cutforge.dev/v1/validateWith a hosted license key, at most once every 7 days (the result is cached)The key and the SDK version. Nothing about the user or their media.
NoneWith an offline key (CF1.…)Offline keys are verified locally against an ECDSA signature. No request at all.
URLs you pass inWhen you use preset.media or assetProviderThe browser fetches your media from your own servers.

There is no analytics, no telemetry, no crash reporting, and no font or script loaded from a CDN. Imported files are read locally and kept in the browser’s own storage (OPFS and IndexedDB). The export is handed to your code as a Blob; where it goes next is your decision.

Verify it yourself: open the live editor with your browser’s developer tools on the Network tab. Everything it loads comes from its own domain, with no third-party scripts. Import a clip, edit it and export it: the only requests you will see are the editor’s own code files, and nothing about your media is sent anywhere. The demo runs without a key, so there is no license request either.

Who maintains it

Cutforge is built and maintained by one engineer, Maxence Leguéry, in France. Sales, invoices and VAT go through Lemon Squeezy as merchant of record. The licensor’s legal identity is in the license. Support is by email, straight to the person who writes the code: cutforge@maxenceleguery.net.

A one-person vendor is a real risk to weigh. Here is how the license handles it:

Releases and support policy

VersionReleased
1.0.021 June 2026
1.1.0, 1.1.19 September 2026
1.1.229 September 2026
1.2.030 September 2026

Maintained lines receive bug-fix and security releases on npm:

Linenpm tagStatus
1.2latestActive: features, bug fixes, security fixes
1.1release-1.1Maintained: security fixes
1.0release-1.0Maintained: security fixes

Release dates are public on the npm package page. Upgrades are documented: 1.2, for example, prefixes every editor CSS class with cf- so your page’s styles cannot leak into the editor, which matters if you use customCss.

How it is tested

The package

License

Commercial and source-available, not open source. Licensed per developer: €99 a year for one, €399 for up to five, custom for enterprise. There are no limits on domains, end users or renders. Includes a 14-day refund on the first charge. The full terms are in the license, terms and refund policy.

Known limits

To see how this compares with Rendley, IMG.LY, Remotion and the open-source options, read the comparison.