---
title: "Open source license verification"
description: "Tools for automated license verification"
url: "https://www.rubick.com/wiki/tools/licenses/"
---

[Edit this page on github](https://github.com/jadeforrest/blog/edit/master/src/content/wiki/tools/licenses.md)

[Wiki](https://www.rubick.com/wiki/) / [Tools & Platforms](https://www.rubick.com/wiki/tools/) / Open source license verification

# 🧩Open source license verification

Tools for automated license verification

## Open source licenses

-   Used to be really a mess to do this. Spreadsheet based approaches.
-   I wrote an internal tool at New Relic for this. Have seen a few commercial offerings.
-   A former coworker of mine said: “It’s a lot easier than it used to be, now that most package management ecosystems have adopted [SPDX](https://en.wikipedia.org/wiki/Software_Package_Data_Exchange) declarations in some form or another. Generally, I see GH actions being used to generate SBOM, and SPDX gathering / verification being a step in that process.”
