
Analysis: How to make sure it does more good than ill
Published: 31 August 2006 11:45 GMT
Although there are many benefits to using open source software, Paul Barton, technology partner at law firm Field Fisher Waterhouse LLP explains the legal issues end users must be aware of to avoid trouble.
For many organisations, from SMEs to government departments, the use of open source software (or OSS) is becoming increasingly popular. Lower costs, increased flexibility and, in many cases, better security make it an attractive option for IT departments.
But what are the legal obligations associated with its use? Many end users are unaware of these issues.
There are a number of different licences associated with OSS which vary in terms of what they allow a licensee to do. There is no substitute for a detailed analysis of the specific terms of the OSS licence being used and the means by which any derivative software is exploited.
Pros and cons of using open source
One of the key benefits of open source software is the ability to access source code and modify, adapt and enhance the software to meet the licensee's particular needs.
With OSS, costs and development time are often greatly reduced in the short-term, given the extensive stock of existing code available for developers. Most open source licences allow the licensee to modify the program, enabling a considerable degree of tailoring. Support and maintenance is also often easier since the source code is freely available.
However, most forms of OSS licences are structured in favour of the contributor rather than the licensee. There are usually no contractual commitments of quality or fitness for purpose. The licensee will have to bear the risk of any errors in the code, and since there are often many contributors at work, there are numerous opportunities for infringing code to be introduced. This may, in some cases, outweigh the time and cost advantages of using open source.
OSS licences contain very few (if any) of the warranties that might generally be included in proprietary software. For example, those relating to the suitability of the software for a particular use, meeting a particular specification or being developed to a particular standard of care.
Crucially, the licence includes no indemnity protection against claims by third parties for intellectual property rights (IPR) infringement, so the user of the software is not automatically protected from such legal actions.
One significant limitation is that once the OSS has been modified, the licensee is usually obliged to put these modifications back into the open source community. If a new piece of software is deemed to be derived from, combined with or a modified version of an open source application, it may be subject to the terms of the open source licence. In return for open access to the software, most licences require licensees to provide access to derivative works for others to use, modify and redistribute (often referred to as the 'viral' effect). Failure to do so contravenes the OSS' licence. If the OSS user does not license his own code under the terms of the open source licence, he has no right to use the software.
The combining of open source and proprietary products can carry significant commercial risks. For those buying software products, this may apply even when only part of a software product is open source.
One tricky situation is 'contaminating' software by combining it with open source code. This means a company may be obliged to reveal the code for the entire package, thus giving competitors access to its own proprietary and confidential source code.
There is a great deal of debate as to whether, in such situations, the whole software package must be disclosed or whether it should be just the parts that interact with the open source code. This is an area of legal uncertainty and consequently it is important to be aware that contaminating products with open source code carries with it certain risks.
This makes it difficult for businesses to use OSS as a platform for onward licensing, given that much of the 'traditional' commercial value may have to be surrendered. The terms of the licences vary, and the individual licence must be analysed in detail to determine the extent of the viral effect and what must, in turn be licensed back to the open source community.
Practical steps in minimising risk
There is no simple solution to open source issues, reflecting the fact that there are a number of different OSS licences which have largely been untested in the courts. However any business using open source products should consider taking the following steps:
Identify the commercial value of open source
Consider your business model
Manage the risks
Paul Barton is a partner in the technology law group at Field Fisher Waterhouse LLP
Oh dear ! For someone claiming to be a legal profe...
Simon Hobson
All round a good article, but it does mention the ...
Symon Chalk
"OSS licences contain very few (if any) of the war...
Charles McCreary
A company who writes software that is found to inc...
Richard Steiner
This article is inaccurate, and needs a complete o...
Anonymous
Development Manager to work within their software licence team based in Berkshire As a Software Sales Executive you will be responsible for ...
Key words: Java JEE, J2EE, Vignette VCM, Alfresco, EMC Documentum, Open Text Livelink, Fatwire, Interwoven Teamsite, Autonomy, Mediasurface, ...
Liaise as appropriate with the Head of Risk Assurance on any aspects of vulnerability discovered, ensuring controls are established to address all ...
Agenda Setters 2009
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.
Improving IT service delivery through an integrated approach to software asset management...
TechRepublic Resource Guide: Software as a Service (SaaS) for Small and Midsize Businesses...
Top 10 DMVs for Easier SQL Server Monitoring
Download a Free Trial of SmartDraw: Learn why SmartDraw is the ideal alternative...
Stories from the web...
Copyright © 2008 CBS Interactive Limited. All rights reserved. Top of page
Clive Longbottom Windows 7: Not perfect - but ready for prime time Microsoft's latest OS fixes most of Vista's ills - but still has challenges ahead
Stephen Kleynhans Mind the details with Windows 7 Just because it might work better than Vista, it doesn't mean you can be sloppy