Justified Gallery
Italy · miromannino.github.io/Justified-Gallery · 2 vendors
Justified Gallery is an open-source JavaScript library designed and built by Miro Mannino. It enables the creation of high-quality justified image galleries for websites, arranging images in an elegant, brick-wall-like layout. The library is used by thousands of websites, including 500px, and is also available as a WordPress plugin.
Resilience scores
- Digital Sovereignty: 0
- Digital Resilience: 4
- Financial Resilience: 2
Technology vendors
- Fastly, Inc. — Technology — United States
- GitHub, Inc. — Technology — United States
Services catalogue
1 service in catalogue across 1 category; runs on 2 sub-vendors.
- JavaScript Library
Insights
Last updated 2026-08-16 · revision 1
2 direct vendors, 75 subvendors
Direct vendors by controlling owner country (sample)
- United States: 2
Subvendors by controlling owner country (sample)
- Sweden: 2
- United Kingdom: 1
- Australia: 1
Migration Readiness: 4/10
Assessed by AI based on technology stack characteristics (cloud-native vs legacy, containerization, microservices), regulatory environment, data residency requirements, financial stability, and vendor lock-in risks. The score ranges from 0-10, where higher scores indicate better readiness for technology migration.
Justified Gallery demonstrates medium-low migration readiness. The primary challenge stems from significant vendor lock-in with critical services. The company heavily relies on GitHub for its entire development lifecycle (source code hosting, version control, issue tracking) and documentation hosting (GitHub Pages), as well as npm for package distribution. While technically feasible, migrating these core infrastructure components to alternative platforms would involve substantial effort, potential disruption to development workflows, and a steep learning curve for the team. The lack of vendor geographic diversity (all critical services from the United States) further concentrates this lock-in risk. Furthermore, the absence of financial data makes it impossible to assess the company's ability to fund a potentially complex and costly migration initiative. On the positive side, the core product (JavaScript library and WordPress plugins) is highly portable and not tied to specific cloud infrastructure. The use of static site generators (Jekyll/GitHub Pages for documentation, Astro for personal site) also simplifies the migration of content. The lack of specified data residency requirements or complex regulatory environments provides flexibility and reduces potential migration hurdles. The dependency on jQuery is a legacy aspect that might require refactoring during a modernization effort, but it's not an immediate blocker for infrastructure migration.
Compliance
5 in-scope frameworks identified; showing 3.
UAE Personal Data Protection Law — Assessment Required
The UAE Federal Personal Data Protection Law (PDPL), effective September 2021 with implementing regulations issued in 2022, applies to data controllers and processors operating in the UAE or processing personal data of UAE residents. The author (Miro Mannino) is currently based in Dubai, UAE, and operates his personal website and open-source projects from there. The PDPL may apply to the processing of personal data through his websites (contact forms, analytics). Risk is Low because: (1) the PDPL is still in early enforcement stages; (2) the project is a personal open-source endeavour with minimal commercial activity; (3) enforcement focus has been on larger commercial entities. However, an assessment is warranted given the author's UAE residency.
Evidence: https://miromannino.com/, https://u.ae/en/information-and-services/justice-safety-and-the-law/cyber-safety-and-digital-security/personal-data-protection-law
GDPR (source) — Assessment Required
GDPR is unambiguously applicable because Justified Gallery is an Italian-origin open-source project created by Miro Mannino, an Italian national (now based in Dubai/Abu Dhabi). The project's website (miromannino.github.io/Justified-Gallery) and the author's personal site (miromannino.com) collect personal data via Google Analytics, Google reCAPTCHA, and contact forms — all of which involve processing personal data of EU/EEA residents. The risk is rated Medium rather than High because: (1) Justified Gallery itself is a client-side JavaScript library that does not independently collect or process personal data — it is a tool used by third-party website operators; (2) the author's personal website has a basic privacy policy acknowledging cookie use but it is minimal and may not fully satisfy GDPR requirements (e.g., no explicit lawful basis statements, no DPO appointment disclosed, no data subject rights procedures documented); (3) the project is a solo open-source endeavour with no formal corporate structure, limiting enforcement exposure but not eliminating it. Fines under GDPR can reach €20M or 4% of global annual turnover. Enforcement by the Italian DPA (Garante) is active and well-documented.
Evidence: https://miromannino.com/privacy-policy, https://miromannino.github.io/Justified-Gallery/, https://eur-lex.europa.eu/legal-content/EN/TXT/?uri=CELEX%3A32016R0679, https://www.garanteprivacy.it/, https://github.com/miromannino/Justified-Gallery
ePrivacy Directive — Assessment Required
The ePrivacy Directive (implemented in Italy via the Privacy Code) requires informed consent before placing non-essential cookies on users' devices. The author's website (miromannino.com) and the Justified Gallery project page use Google Analytics (a tracking/analytics cookie) and Google reCAPTCHA. No cookie consent banner or consent management platform (CMP) is visible on either website. The Italian Garante has been actively enforcing cookie consent requirements since its 2021 cookie guidelines. Risk is Medium because: (1) the websites are relatively low-traffic personal/portfolio sites; (2) enforcement typically targets larger commercial operators first; but (3) the absence of any cookie consent mechanism is a clear compliance gap.
Evidence: https://miromannino.com/privacy-policy, https://miromannino.github.io/Justified-Gallery/, https://eur-lex.europa.eu/legal-content/EN/TXT/?uri=CELEX%3A32002L0058, https://www.garanteprivacy.it/web/guest/home/docweb/-/docweb-display/docweb/9677876
Financials
Financial Resilience Score: 2/10
Justified Gallery is not a company but an open-source JavaScript library maintained by a single individual, Miro Mannino, under the MIT License. As such, there is no revenue, no operating income, no equity, and no formal financial structure to assess. The project is funded solely through voluntary PayPal donations, and the author has explicitly stated it generates no earnings. From a project sustainability perspective, resilience is very low due to the single-maintainer dependency (bus factor of 1) and the absence of any commercial backing or revenue model. Additionally, the underlying technology stack relies on jQuery, which has fallen out of favor in modern front-end development. Newer CSS-based solutions and alternative libraries (PhotoSwipe, Masonry) reduce demand for Justified Gallery. The latest referenced version (3.8.0) suggests the project may be in maintenance mode. While the MIT license and existing adoption by notable sites (500px, FooGallery) provide some longevity, the lack of any financial or organizational foundation makes it unsuitable for traditional financial resilience scoring.
Key strengths: MIT open-source license enables broad adoption, Historical adoption by notable sites including 500px and FooGallery, Well-developed documentation and tutorials, Code can persist independently of the author via open-source distribution
Risk factors: Single-maintainer dependency (bus factor = 1), No revenue model; relies on voluntary donations, Dependency on jQuery, which is declining in modern front-end stacks, Project appears to be in maintenance mode (latest version 3.8.0), Competition from CSS-native solutions and modern libraries like PhotoSwipe and Masonry
Workforce by country
- Italy: 1
Signed-in users can see whether their own company is exposed to this vendor's disruption, plus the full sub-vendor list and country breakdowns, every in-scope compliance framework plus gaps and next steps, and alerts when any of it changes.