OpenLogic's Open Source Policy Builder outlines the key characteristics of best-in-class components of a comprehensive open source policy. Your organization can start to build its own open source policy by answering the questions and formulating language expressing its choices into a policy statement.
The Policy Builder covers questions including:
Which open source licenses are approved for use in company products?
Who in your organization is responsible for understanding and ensuring compliance with the terms and conditions of open source licenses?
What kind of security/integrity review is required before open source software is procured?
Will open source be distributed in company products?
Are contributions to open source projects allowed?
Are company employees allow to speak publicly about the company's use of open source software in products?