OpenChain-Project / Reference-Material

This repository contains the reference material related to the OpenChain Project
Other
71 stars 56 forks source link

[Improvement] Adding additional risks to supply-chain-education-leaflet-version-2-2024 #74

Open andreaskotulla opened 6 months ago

andreaskotulla commented 6 months ago

supply-chain-education-leaflet-version-2-2024

Section: Risks caused by failure to comply

What about other risks which should be considered:

  1. Export restrictions: Some licenses may restrice exporting, failure to comply may have serious implications (fines, imprisonment)
  2. Security vulnerabilities
  3. Licenses change: Licenses may change from version to version and may introdice a different set of obligations. Therefore licensing needs to be continuously monitored.

Expected behavior

Other risks besides compliance should be mentioned.