Check license finder and determine what we can legally do
We recently added license finder to gitlab which is
We have a basic list of licenses we allow for dependencies of GitLab but every once in a while we have new dependencies that include licenses that are not part of the list and/or are less well known. Considering the legal implications of adding a package with a potentially dangerous license, I suggest we add some kind of legal oversight to approving new licenses to the license finder.
Currently, the team takes ownership on deciding which license to approve which keeps us shipping but that could bite us in the future.