FZI Live
TASTE MeetUp X FZI
FOSS: Werkzeuge für Compliance und Security
Using FOSS is one thing. Knowing exactly what you’re using is another matter entirely. As soon as open-source components are incorporated into a product, certain obligations arise. License terms must be complied with, security vulnerabilities must be identified and assessed, and there must be transparency with customers and regulatory authorities regarding the software included in the product. Anyone trying to keep track of this manually would quickly become overwhelmed.
The MeetUp on 14 October will demonstrate how tools can make this process more tangible. The central topic will be the Software Bill of Materials (SBOM): what it includes, why it is becoming the standard, and how to create one using freely available tools. The event will also cover license compliance: Which aspects need to be checked, and how can tools help with this? Finally, the focus will be on security: how can known vulnerabilities in FOSS components be systematically identified and assessed?
Although the focus is on open-source tools, the approach described works just as well with commercial solutions. Those who have already established initial compliance processes and want to know how other companies are tackling this will find concrete starting points here. So will those who are just getting started.
- 14 Oct 2026
- 15:00 - 16:00
- Online Event
