What problem does it solve?
oss-review helps legal and engineering teams reduce shipping risk by determining what open source licenses are present and what obligations those licenses trigger under your software’s deployment model, especially for copyleft and non-OSI source-available licenses.
Core Features & Use Cases
- Dependency scope review: Review a dependency list, a single library, or outbound code proposed for open-sourcing.
- Deployment-model mapping: Classify and translate license obligations into actions based on SaaS, distributed binary, internal-only, or embedded/firmware delivery.
- Copyleft and non-OSI risk surfacing: Flag license-unknown packages for review, distinguish weak vs strong copyleft, and identify non-OSI licenses posing as open source.
- Outbound release compatibility check: Verify the chosen outbound license is compatible with every embedded dependency license and that required attribution files are present.
Quick Start
Run oss-review on your dependency manifest by providing the package file path or repo path when prompted by the argument-hint.