‘Your Code Looks Like My Code‘


Policies, collective goodwill protect IP for open-source projects


Email    print   
November 15, 2006 —  Businesses look to legal counsel to protect homegrown code. But for open-source projects, calling in the lawyers is rarely the first line of defense.

To address intellectual property concerns, they rely primarily on policies and procedures—spelled out in great detail—as well as the collective goodwill among members of the open-source community. “The trust level among open-source developers is high, and the tolerance of impropriety is extremely low,” said Lawrence Rosen, an attorney for technology law firm Rosenlaw & Einschlag.

According to Rosen, author of “Open Source Licensing: Software Freedom and Intellectual Property Law” (Prentice Hall 2004), being careful about the provenance of code donations to open-source projects comes down to three things: “Know the people you are working with, get it in writing and publish [the code].”

Contributors must draft a document that says: “I am giving you what I own, and I have the right to give it to you,” he explained. Once the code is published, the open-source community is quick to vet the contribution, pointing out if any part of it looks and feels like someone else’s code.

GOAL: QUICK RESOLUTION
That situation has occurred, said Cliff Schmidt, vice president of legal affairs for the Apache Software Foundation. Cases have come up where “the code is your project looks like the code in my project.” The similarity is often due to a third project, from which both parties derived pieces of the same open-source code, he said. “When that happens, there is a discussion, and we move quickly to resolve the issue.” That is typically a matter of getting the developer who contributed the code to rewrite it, so as not to infringe on a copyright, he said. “The community rallies around fixing these things as soon as possible.”

Apache requires contributors to sign a document that says their contributions are licensed to the Apache Software Foundation and its recipients, said Schmidt. They must state that they are the author of that original work, and that they or their employer owns the copyright of that work.

The Eclipse Foundation follows a similar approach. “Our focus is on ensuring that we demonstrate the provenance of the code from a copyright standpoint,” said the foundation’s executive director, Mike Milinkovich. “We work to make sure we are not accidentally shipping code we are unaware of.”

Eclipse also analyzes code contributions by running them against an automated intellectual property tool, he said. But smaller projects cannot afford to use such offerings, noted Rosen. The open-source community does a remarkable job of vetting code contributions, he said. “I have never seen a group that is so philosophically committed [to its ideals].”





Share this link: http://sdt.bz/29798
 
Most Read Latest News Blog Resources

Add comment


Name*
Email*  
Country     


  • Comment
Loading




close
NEXT ARTICLE
Appcelerator buys Particle Code to beef up HTML5 mobile Web capabilities
The company's second acquisition of the year gives it the ability to provide additional services for mobile HTML5 development Read More...
 
 
 
 
News on Monday
more>>
SharePoint Tech Report
more>>


   

 
 

Download Current Issue
FEBRUARY 2012 PDF ISSUE

Need Back Issues?
DOWNLOAD HERE

Want to subscribe?


 
blogs tab
Are you at risk for burnout?
Burnout is a severe problem and it can strike at any time. Here's how to tell if you are nearing the edge.
02/09/2012 02:16 PM EST

Agility, mom, and apple pie
If we're to evaluate the state-of-the-art in software development, we should start with the values espoused in the Agile Manifesto.
02/07/2012 11:57 AM EST

RIM woos developers with free tablet
How do you get more apps ported to the BlackBerry PlayBook? By giving every developer a free tablet, of course!
02/04/2012 01:57 PM EST

GitHire: Use Headhunters to Find Your Perfect Programmer
Are you a hiring manager tired of scouring the job boards? Check out this new service that will find 5 people interested in your jobs.
02/03/2012 12:17 PM EST

Facebook claims hacker cred
Facebook's SEC S-1 filing form includes a short essay on the Hacker Way by Mark Zuckerberg himself.
02/02/2012 08:26 AM EST

Ryan Dahl steps down
Ryan Dahl, creator of Node.js, steps back from his position as gatekeeper for the project.
02/01/2012 04:58 PM EST

 
Events calendar tab
2/13/2012 to 2/16/2012
Santa Clara
TechWeb

2/26/2012 to 2/29/2012
San Francisco
BZ Media

2/27/2012 to 3/2/2012
San Francisco
RSA

3/4/2012 to 3/7/2012
Las Vegas
IBM Tivoli

3/5/2012 to 3/9/2012
San Francisco
TechWeb