Tooling-Resources

FOSS Licenses

FOSS Licenses FOSS Licenses consists of: license meta data for FOSS licenses adding useful information to existing licenses aiming at simplifying compliance work. flame - command line program Python API License meta data The meta data can be found in the var directory. Each license has a JSON file with meta information and a LICENSE file with the license text. The meta data consists of:

Licomp Toolkit

Licomp Toolkit Licomp Toolkit … Compatibility without the guesswork The licomp-toolkit is a Python-based utility designed to evaluate license compatibility between different software components. It serves as a bridge to multiple compatibility resources, allowing developers and legal teams to determine if an inbound license (e.g., a library they want to use) is legally compatible with their project’s outbound license.

SBoM Compliance Tool

SBoM Compliance Tool … License Certainty, Built-in. SBoM Compliance Tool is a set of tools designed to automate and verify open-source compliance within the Software Bill of Materials (SBOM) ecosystem. While there are many tools that generate SBOMs (like cdxgen), SBoM Compliance Tool is specialized for the governance phase. Example question with an SBoM Compliance Tool answer Now that I have this list of 500 components in an SBoM (our-product.cyclonedx.json), are we legally allowed to ship this product?

Software Compliance Resources

Software Compliance Resources There are great tools and resources out there. We are not trying to rewrite them, we are aiming at compiling a list of the best tools and resources and write some of the missing ourselves. Our resources: FAQ Glossary Guides Compliance resources About this page This page was automatically generated from ssh://git@codeberg.org/software-compliance-org/software-compliance-resources/src/branch/main/README.md