Company & Ecosystem

SoftSafe Tech joins OIN 2.0 to advance open-source patent risk governance

SoftSafe Tech joined OIN 2.0 to participate in open source patent risk management

SoftSafe Tech has joined the Open Invention Network (OIN) 2.0 as a member of this community dedicated to managing open-source patents. This participation integrates open-source patent risks into SoftSafe Tech’s existing software component identification, vulnerability management, license compliance, and supply chain security efforts.

Joining OIN 2.0

OIN leverages a patent cross-licensing mechanism to reduce the risk of patent litigation within the scope defined by Linux System, and supports open collaboration through shared participation. OIN 2.0 continues this approach with specific rights, obligations, applicable areas, and membership arrangements outlined in agreements signed by members and as specified by OIN.

Membership Record of SoftSafe Tech in the OIN 2.0 Complete Member Directory
SoftSafe Tech’s membership record within the OIN 2.0 Community Directory, which is updated with each new member addition.

Membership status can be verified in the OIN 2.0 Complete Member List. This directory serves as a continuous source of updates for confirming membership status.

Connecting patent governance with software supply chain governance

When enterprises use open-source software, they typically face issues related to component sources, security vulnerabilities, license obligations, copyright information, and patent risks. Software composition analysis (SCA) and software bill of materials (SBOM) can help organizations identify components and versions, vulnerability management tracks affected ranges and repair statuses, while license reviews assess the obligations such as declarations and source code provisions; patent risk is a separate matter that requires specific judgment based on technical scope, usage methods, and applicable agreements.

  • Maintain an up-to-date list of software components and dependencies with each product version update
  • Document vulnerability assessments, license conclusions, and corresponding remediation evidence
  • Identify intellectual property risks in delivery and commercial usage scenarios
  • Verify OIN (Open Invention Network) agreements, Linux System definitions, and member statuses when needed

From participant to contributor

SoftSafe Tech understands the significant value of open-source software for industrial innovation. We aim not only to assist customers in identifying and managing vulnerabilities, license obligations, and compliance risks within open-source software but also to further educate them about the importance of open-source patent risks. Together with our clients, industry partners, and the open-source community, we will collaborate on developing executable risk management methods for protecting the global open-source ecosystem.

Cao Guoliang, Co-Founder of SoftSafe Tech

SoftSafe Tech has been dedicated to developing products and services in areas such as software composition analysis, static code analysis, fuzz testing, SBOM (Software Bill of Materials), vulnerability management, open-source license compliance, and AI-based code security. After joining OIN 2.0, the company will continue to link open-source patent risks with these engineering governance processes and share executable risk management methods with clients, industry partners, and the open-source community.

Participating in international open-source governance mechanisms does not replace an organization's own compliance reviews. Organizations still need to form their judgments based on actual components, product versions, distribution methods, and license texts, and retain evidence that corresponds to specific delivery versions.

Back to news