If you are an #opensource developer and would like to check which software you are pulling in unnoticed, check the osskb.org brochure, a free of charge and privacy-friendly service you can use https://www.softwaretransparency.org/projects/osskb-org-brochure #licensecompliance #sca
osskb.org brochure | STF

osskb.org brochure describing the benefits, use cases and how to access to osskb.org, the Software Transparency Foundation universal and free of charge service to detec open source software, even at snippet level, as well as information about software compliance to enrich SBOM

STF

πŸ’Έ Did you know?
45% of organizations have paid over $1 million in audit expenses in the last 3 years.

This highlights the critical importance of effective IT Asset Management (ITAM) and license compliance.

πŸ“Š Want to avoid costly audits and optimize your software investments?
πŸ‘‰See what your peers are doing about it here: https://zurl.co/xfcUW

@emt - A QBS Technology Group Company

#ITAM #LicenseCompliance #Flexera #Audit #SoftwareAssets #ITManagement #emtdisti

AI-generated code risks "license amnesia," obscuring open-source origins and obligations. Developers must demand transparency, enforce license scans, and adopt compliance practices to protect projects and preserve open-source integrity. #OpenSource #AIEthics #LicenseCompliance #CodeProvenance #SBOM

https://saysomething.hashnode.dev/license-amnesia-how-ai-coding-assistants-threaten-open-source-compliance-and-what-developers-can-do-about-it

πŸ’Έ Did you know?
45% of organizations have paid over $1 million in audit expenses in the last 3 years.

This highlights the critical importance of effective IT Asset Management (ITAM) and license compliance.

πŸ“Š Want to avoid costly audits and optimize your software investments?
πŸ‘‰ Read and download the full Flexera ITAM Report 2025 now! [https://zurl.co/xfcUW]

@emt - A QBS Technology Group Company @Flexera

#ITAM #LicenseCompliance #Flexera #Audit #SoftwareAssets #ITManagement #emtdisti

πŸ’Έ Did you know?
45% of organizations have paid over $1 million in audit expenses in the last 3 years.

This highlights the critical importance of effective IT Asset Management (ITAM) and license compliance.

πŸ“Š Want to avoid costly audits and optimize your software investments?
πŸ‘‰ Read and download the full Flexera ITAM Report 2025 now! [https://zurl.co/xfcUW]

emt

#ITAM #LicenseCompliance #Flexera #Audit #SoftwareAssets #ITManagement #emtdisti

Open source isn't free if you're ignoring the rules. License compliance isn't optionalβ€”it's essential.

Learn what it really means to be compliant:
πŸ”— https://scatool.com/resources/license-compliance-explained/open-source-license-compliance/

#FOSS #CyberSecurity #AuditReady #SCATool #OpenSource #LicenseCompliance #DevSecOps

πŸ’Έ Did you know?
45% of organizations have paid over $1 million in audit expenses in the last 3 years.

This highlights the critical importance of effective IT Asset Management (ITAM) and license compliance.

πŸ“Š Want to avoid costly audits and optimize your software investments?
πŸ‘‰ Read and download the full @Flexera ITAM Report 2025 now! [https://zurl.co/xfcUW]

@emt

#ITAM #LicenseCompliance #Flexera #Audit #SoftwareAssets #ITManagement #emtdisti

Surprise of the day:

Presence of the International Committee of the Red Cross at the FOSS license and security compliance tools workshop.

https://workshop.aboutcode.org/

They explained that they use #Linux and #FOSS. Because of their specific, highly distributed, use case, they have their own approach to license compliance (via SSH).

#RedCross #ICRC #LicenseCompliance

FOSDEM 2025 Fringe: FOSS license and security compliance tools workshop

Fri, Jan. 31st, 2025

Some weeks ago I mentioned I was brewing something relevant to #JS and #CSS and #FOSS license compliance – now here it is  

I propose using #REUSE / #SPDX Snippet Tags in a slightly inventive way to tag front-end code, so the information stays in-line even after minification. I present some limited PoC and ask for testers, more PoC and feedback.

https://matija.suklje.name/persistent-copyright-licensing-information-in-client-side-javascript-css-and-similar-a-proposal-call-for-help

My proposal leans solely on already existing specs and tools.

#FrontEnd #JavaScript #EcmaScript #LicenseCompliance

Persistent copyright & licensing information in client-side JavaScript, CSS and similar – a proposal & call for help - REUSE.software for JS, CSS &sim

I propose using SPDX Snippet Tags in a slightly inventive way to tag front-end code, so the information stays in-line even after minification. I present some limited PoC and ask for testers, more PoC and feedback.

Hook’s Humble Homepage

I may have something brewing …  

#JS #CSS #Licensing #LicenseCompliance