generated: '2026-08-13' method: searched source: >- Registry search across npm, PyPI, RubyGems, crates.io, NuGet, Maven Central, pkg.go.dev and Packagist, plus the provider docs and CDN. summary: package_count: 1 official_count: 1 server_sdk_count: 0 note: >- Chatsimple / Expertise AI publishes NO server-side client library in any package registry. The one first-party distributable is the browser embed loader for the Expertise Live web component, served straight from the company CDN with no registry entry and no version in the URL. Because there is no API client SDK, no `SDKs` pointer is wired in apis.yml — only `Packages` — so the sdk_count checks are correctly left unscored rather than credited to a widget loader. packages: - language: javascript registry: cdn name: chat-bot-loader.js url: https://cdn.chatsimple.ai/chat-bot-loader.js install: official: true kind: browser-embed-loader version: null published: null note: >- CDN-distributed, so there is no registry metadata endpoint to query. The URL is UNPINNED — it carries no version segment and always floats to whatever the CDN currently serves — so a consumer cannot tell which build they are getting either. That is the finding, not a gap in this probe. The loader it returns today is a 4,951-byte minified bundle that defines the custom element and then pulls a content-hashed runtime from https://cdn.expertise.ai/assets-wc/index-cab4d267.js (the hash is the only version signal available, and it is not published anywhere). x-evidence: fetched: '2026-08-13' url: https://cdn.chatsimple.ai/chat-bot-loader.js http_status: 200 content_type: text/javascript size_bytes: 4951 registry_probes: - registry: npm query: chatsimple result: no first-party package status: 200 - registry: npm query: expertise-ai result: no first-party package (only unrelated AI-SDK packages) status: 200 - registry: pypi package: chatsimple status: 404 - registry: pypi package: expertise-ai status: 404 - registry: github org: https://github.com/ChatSimple status: 200 result: >- Organization exists and is owned by the company (display name "ExpertiseAI"), but it has 0 public repositories, so there is no source-distributed library either.