官方公告见:https://brakemanpro.com/2018/06/28/brakeman-pro-acquired-by-synopsys 新许可证的解释见:https://github.com/presidentbeef/brakeman/pull/1238#issuecomment-401448976
其中最关键的一段,即许可证变更对使用的影响:
However, under the new license, it is no longer possible to use Brakeman OSS for the development of a commercial product or online service or to resell Brakeman OSS as a service. Companies wishing to do either will require a commercial agreement with Synopsys.
包装 Brakeman 做安全产品的项目要小心啦。
无论如何,恭喜 Brakeman 这个针对 dead language Ruby 和 dead framework Rails 的静态扫描工具在资本层面被证明有价值,Synopsys 是世界最强 C 静态扫描工具 Coverity 的开发商,收购了 Ruby 平台的扫描工具意味着什么呢?