OSS licence compliance
know your licences
OSS is everywhere, but not all licences are equal.
Don’t wait for legal to find the problem, catch it at the source.














of companies lack automated tools for licence management. [3]
Undiscovered conflicts cause product delays
SCANOSS scans your code in real time, detects open source components, and flags licence risks—so you can innovate confidently, without compliance blind spots.
The hidden risk
Even the most popular open source licences can introduce legal and operational risks.
MIT
Permissive, but attribution is mandatory. Miss it, and you’re in breach
APACHE 2.0
Includes a patent clause. Infringe it, and you lose the right to use the code.
GPL v3
Copyleft licence. Must open source your own code if improperly combined.
BSD 3-Clause
Requires careful tracking of attribution and endorsement rules.
SCANOSS empowers you to track and manage OSS licences with confidence.
Full OSS detection
Compliant SBOMs
Build precise, licence-tagged Software Bills of Materials for internal use or external review.
Licence conflict alerts
Uncover licence incompatibilities and policy violations before they reach production.
Legal audit trails
Provide traceable, verifiable records for every identified component, complete with licence details.
How it works
Integrate in your workflow
SCANOSS is engineered for straightforward integration into any development environment.
Unlike package managers, SCANOSS scans every line of code, even copied snippets.
Licence Dataset
Get licence data instantly
Works where you build






