I actually was going to suggest that. I'd see if
whipper could be used, since it's command-line and does secure ripping quite well - it's probably the most advanced CD ripper for Linux at the moment, IMO. Though, the dependencies could be an issue, I suppose. That and it's probably complicated to use with all its features it has.
Looking at its license (GPLv3) I'm not seeing any specific restrictions about it being used in commercial applications. It *could* work though cd-paranoia would probably work too. Whichever, to get it working with the least amount of effort and issues.
P.S. Using cdrdao might allow for CD burning too, not too sure.