• English
  • Deutsch
  • Log In
    Password Login
    Research Outputs
    Fundings & Projects
    Researchers
    Institutes
    Statistics
Repository logo
Fraunhofer-Gesellschaft
  1. Home
  2. Fraunhofer-Gesellschaft
  3. Konferenzschrift
  4. A Critical Retrospect of OSS License Compliance: Lessons Learned and Next Steps
 
  • Details
  • Full
Options
2025
Conference Paper
Title

A Critical Retrospect of OSS License Compliance: Lessons Learned and Next Steps

Abstract
In the rapidly evolving software development landscape, the integration of Open Source Software (OSS) has become commonplace, providing developers with extensive libraries and tools that enhance productivity and accelerate project timelines. However, the use of OSS comes with significant legal responsibilities, particularly regarding compliance with various Open Source Software Licenses (OSSL). An initial framework was designed to ensure OSS compliance, centering on automated creation of Software Bill of Materials (SBOMs) and a “License Playbook”. Automated checks were executed with tools such as Maven and Nexus, verifying license acceptability and required source-code inclusion. In follow-up work, OSS notice lists were automated, domain-driven design was applied to improve communication, and Java-based tools for Maven were introduced to structure compliance data and reduce errors.
Over time, it became clear that the original framework no longer aligns with evolving requirements, especially as various web projects with focus on OSSL gained in importance. The existing license-management tool encounters challenges in handling large dependency sets, and post-release adjustments in Maven repositories remain difficult to perform. Consequently, alternative software suites are being evaluated to determine whether the proprietary tool should be adapted or replaced to meet evolving needs and strengthen the overall OSS compliance strategy.
Author(s)
Dyck, Sergius  
Fraunhofer-Institut für Optronik, Systemtechnik und Bildauswertung IOSB  
Haferkorn, Daniel  
Fraunhofer-Institut für Optronik, Systemtechnik und Bildauswertung IOSB  
Mainwork
The 29th World Multi-Conference on Systemics, Cybernetics and Informatics. Proceedings. Volume 1  
Conference
World Multi-Conference on Systemics, Cybernetics and Informatics 2025  
File(s)
Download (157.49 KB)
Rights
Use according to copyright law
DOI
10.54808/WMSCI2025.01.408
10.24406/publica-5441
Language
English
Fraunhofer-Institut für Optronik, Systemtechnik und Bildauswertung IOSB  
Keyword(s)
  • Open Source Software

  • Open Source Compliance

  • Software Bill of Materials

  • Critical Retrospect

  • Lessons Learned

  • Cookie settings
  • Imprint
  • Privacy policy
  • Api
  • Contact
© 2024