💡 WHY HUGO IS RIGHT
A license is a promise, and it should be made once the project can keep it. Until the code has docs, tests and a contribution process, it stays private. When it goes out, do the details properly: a LICENSE file, a NOTICE file, SPDX identifiers in every source file, a clear contributor sign-off. Those details are what make the project usable by companies with license scanners, and cheap to audit later.