GPL
GPL (copyleft) can introduce obligations depending on how software is distributed and linked.
Common Approach:
- Mark as Review or Block depending on your product model
- Validate usage with legal/security
DevSecOps Bot by Sttor supports:
- Detecting GPL components early in PRs
- Enforcing governance policy (Issue/Block) consistently