Skip to content

Practice areas · OSS

Open Source Compliance

Licence audits (GPL, AGPL, Apache, MIT), SBOM review, contribution policies and remediation.

Overview

Open-source exposure is the most common technical finding in investor diligence and the easiest to fix early. We audit the dependency tree against your distribution model, flag copyleft and patent-clause issues, and write the contribution policy your engineers will actually follow.

What we do

  • Dependency and licence audit against the distribution model
  • SBOM review and generation guidance
  • Copyleft (GPL/AGPL) exposure assessment and remediation
  • Patent-clause analysis in Apache-2.0 and similar licences
  • Inbound and outbound contribution policies
  • Pre-diligence clean-up programmes

Questions

Have a matter to discuss?

Tell us what you are building. We will run a conflict check and arrange an NDA before any confidential disclosure.