Earlier quoted context omitted.
If you think of the use case of forks, sure. If you think of employees creating new repos in the org--- smash the correct LICENSE in there ASAP. The problem is that forking a different repo into the org triggers the logic of a "new repository".
A simple solution prior to writing to a file in this case is to check if it already exists. It shouldn’t matter what triggers this bot if it’s programmed safe and idempotent.
But it's important that this -not- get applied to outside work from forks.