• An open-source library or software is software in which the copyright holder grants the use of source code and is under protection by intellectual property rights. Thus, the conditions of the license (copyright) defined by the copyright holder are in effect, and there are several conditions depending on the open-source library. You must review and manage risk factors for the license, as there is a risk of legal liability due to license violation and copyright infringement.
• You must choose the type and version of an open-source library by taking into account compatibility with changes in the development environment or version of the library. Since vulnerabilities can be found in used open-source libraries, these issues must be examined to manage security risks.