The Linux Foundation's "sigstore" project
The Linux Foundation's "sigstore" project
Posted Mar 11, 2021 2:55 UTC (Thu) by rahulsundaram (subscriber, #21946)In reply to: The Linux Foundation's "sigstore" project by jebba
Parent article: The Linux Foundation's "sigstore" project
Given how many websites do this and how often a requirement to bundle a license is enforced, it is a pretty mundane assumption. Also most of the contributors in a project with a long tail has a few patches each that fixed a bug or added a feature they wanted and moved on, leaving a much smaller number of contributors doing bulk of the work and they can either spend their limited time improving the library or enforcing a licensing term. In legal terms, there isn't an exception. In practice, this sort of licensing requirement is often overlooked and questioning me isn't going to change that one bit.
