Practice areas · OSS
Open Source Compliance
Licence audits (GPL, AGPL, Apache, MIT), SBOM review, contribution policies and remediation.
Overview
Open-source exposure is the most common technical finding in investor diligence and the easiest to fix early. We audit the dependency tree against your distribution model, flag copyleft and patent-clause issues, and write the contribution policy your engineers will actually follow.
What we do
- Dependency and licence audit against the distribution model
- SBOM review and generation guidance
- Copyleft (GPL/AGPL) exposure assessment and remediation
- Patent-clause analysis in Apache-2.0 and similar licences
- Inbound and outbound contribution policies
- Pre-diligence clean-up programmes
Questions
Have a matter to discuss?
Tell us what you are building. We will run a conflict check and arrange an NDA before any confidential disclosure.