Platform Engineering · 2025
OSS & IP Compliance Audit
Procured a source-composition-analysis tool, ran the scans across the product, and removed GPL and commercially-licensed dependencies from a shipping enterprise codebase.
Internal product work — no public repository
- Full estate
- Scan coverage
- GPL + commercial
- Dependencies removed
Why it mattered
TCS Enterprise Manager is a commercial product sold to enterprise customers, so a copyleft or commercially-licensed dependency in the tree is a legal exposure. Nobody had checked systematically.
What I did
I made the case for procuring a FlexNet Code Insight licence for source composition analysis, then ran the audit: executed the scans, worked through the findings, separated real obligations from scanner noise, and drove the removal or replacement of GPL and commercial libraries the product could not ship.