Towards Engineering Free/Libre Open Source Software (FLOSS) Ecosystems for Impact and Sustainability 2019
DOI: 10.1007/978-981-13-7099-1_5
|View full text |Cite
|
Sign up to set email alerts
|

Open-Source License Compliance in Software Supply Chains

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
3
1

Citation Types

0
4
0

Year Published

2020
2020
2024
2024

Publication Types

Select...
4
2

Relationship

1
5

Authors

Journals

citations
Cited by 8 publications
(4 citation statements)
references
References 8 publications
0
4
0
Order By: Relevance
“…The challenges of managing third-party intellectual property (TPIP) in the software bill of materials (SBoM) (Riehle & Harutyunyan, 2019) and the SBoM of containers such as Docker (Hemel, 2020;Courtès, 2020), including licence compliance, can also be addressed by using R-Bs. Riehle and Harutyunyan (2019) outline the challenges of managing open source licence compliance in the SBoM where there is a mixture of proprietary and open source licensed components in a single product.…”
Section: Applications Of Reproducible Buildsmentioning
confidence: 99%
See 2 more Smart Citations
“…The challenges of managing third-party intellectual property (TPIP) in the software bill of materials (SBoM) (Riehle & Harutyunyan, 2019) and the SBoM of containers such as Docker (Hemel, 2020;Courtès, 2020), including licence compliance, can also be addressed by using R-Bs. Riehle and Harutyunyan (2019) outline the challenges of managing open source licence compliance in the SBoM where there is a mixture of proprietary and open source licensed components in a single product.…”
Section: Applications Of Reproducible Buildsmentioning
confidence: 99%
“…The challenges of managing third-party intellectual property (TPIP) in the software bill of materials (SBoM) (Riehle & Harutyunyan, 2019) and the SBoM of containers such as Docker (Hemel, 2020;Courtès, 2020), including licence compliance, can also be addressed by using R-Bs. Riehle and Harutyunyan (2019) outline the challenges of managing open source licence compliance in the SBoM where there is a mixture of proprietary and open source licensed components in a single product. A further problem is that there can be many versions of source code publicly available in multiple repositories and that there is therefore a broader concern of provenance in the long-term maintenance of software (Rousseau et al, 2020).…”
Section: Applications Of Reproducible Buildsmentioning
confidence: 99%
See 1 more Smart Citation
“…While open source software and open source development have been extensively researched [8,25], the topic of corporate open source governance, in particular, has been studied to a lesser extent. To address this industry-relevant topic, in our previous work, we studied different aspects of FLOSS governance in companies, such as the potential legal risks of open source use in products [35], and industry requirements for governance tools [23].…”
Section: Introductionmentioning
confidence: 99%