Survey Finds Most Companies Still Lack Formal Policies to Manage Open Source Risks


As highlighted in the Information Week blog DARKReading, a recent study assessing industry trends regarding open source software found that although 78% of organizations surveyed run part or all of their operations on open source software (only 3% of respondents reported not using open source software in any way), a majority of respondents had no formal policies or procedures governing the use of open source software. The study’s findings also highlighted a number of other specific ways the adoption of appropriate internal controls has not kept pace with the increasing use of open source software, leaving many organizations exposed to significant potential risks, including the following:

The survey, the Ninth Annual Future of Open Source Survey, was published by Black Duck Software and North Bridge.


Copyright © 2025 by Morgan, Lewis & Bockius LLP. All Rights Reserved.
National Law Review, Volume V, Number 325