What are open source license risk services?
Open source license risk services map the open source you run, quantify the exposure created when a project relicenses, and contain it through remediation, negotiation, or governance. The aim is a dependency tree you can defend to a vendor, an auditor, or your board.
Where should we start?
Most buyers start with an open source license risk assessment, which maps every dependency and its current license state. From there we scope a relicensing exposure review, remediation, or negotiation as needed.
Do you cover BSL and SSPL projects specifically?
Yes. Our relicensing exposure review focuses on Business Source License and Server Side Public License projects such as HashiCorp, Redis, and Elastic, and traces the blast radius through everything built on them.
Is this legal advice?
No. These are commercial and licensing risk advisory services, not legal advice. For interpretation of license terms and compliance, we recommend your own counsel.