Evidence-backed facts
- Linux Foundation SPDX Project documents license and exception identifiers, names, reference text, matching guidance, deprecation state, and machine-readable list data. informative
- Public reads do not grant license authorship, legal advice, compliance, exception, relicensing, or SPDX endorsement authority. informative
- Clients must bind list version, license or exception ID, deprecated flag, text or template representation, references, and match rules. informative
- An SPDX identifier names standardized license text; it does not prove a package's actual license, compatibility, obligations, ownership, or legal compliance. informative