BLOG
The open source license risk blog: field notes on relicensing.
The open source license risk blog gives plain reads on relicensing, the differences between the Business Source License, the Server Side Public License, and the GNU AGPL, and how to keep a dependency tree defensible.
State of Relicensing Exposure 2026: the numbers behind the wave.
How far BSL and SSPL changes reach into enterprise estates, which components carry the exposure, and what remediation actually costs. Read the study →
License Change & Relicensing · 28 articles
Open Source License Risk · 24 articles
HashiCorp & Terraform · 23 articles
Redis, Elastic & Databases · 26 articles
Commercial Licensing · 20 articles
Remediation & Alternatives · 24 articles
M&A and Compliance · 16 articles
Governance & SBOM · 18 articles
COMMON QUESTIONS
Questions buyers ask.
What does the open source license risk blog cover?
It covers relicensing events, the differences between the Business Source License, the Server Side Public License, and the GNU AGPL, SBOM practice, governance, and open source risk in M and A.
How often is it updated?
New field notes are published as relicensing events and license changes warrant. This is a fast moving topic, so posts carry dated, as of framing.
Do the posts give legal advice?
No. The blog provides commercial and licensing risk perspective, not legal advice. For interpretation of license terms, consult your own counsel.
Where do I go deeper than a blog post?
See the gated open source risk white papers for longer form analysis, or contact us for a confidential assessment of your own tree.
CONTAINMENT
Map your blast radius before it spreads.
A confidential open source license risk assessment. Independent, buyer side, paid only by you.
Not ready to talk? Read the free open source license risk guides first.