The Open Source Alternative: Understanding Risks and Leveraging Opportunities
by Heather J. Meeker
Part 2. Understanding Risks
Two major risks arise from open source: infringement risk and compliance risk. Infringement risk is the risk that infringing code has entered the open source code base due to the collaborative development model. In other words, this risk arises from the open source development model. Compliance risk is the risk that the licensee is not complying with the open source licenses that apply to the code. In other words, this risk arises from the open source licensing model. Infringement risk is addressed via due diligence, which is discussed in detail in Chapter 4. This part focuses primarily on compliance risk. Over the years, the focus of risk management for open source has shifted from infringement to compliance risk analysis.
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access