Skip to content

Example for license texts #53

Open
@cuhland

Description

The CyclonDX specification allows to add the text of a license

  1. since 1.2 directly in the license
  2. since 1.3 as evidence

Unfortunately there is no example of this in the bom-examples repository.

Another topic I wanted to bring up here (don't know where to address it otherwise) is the implementation in the various projects. The generators are not working consistent, and most miss the option to configure if the license-text should be added directly to the license or if it should be added as evidence.

I will give an overview here

project inserted as
cyclonedx-gomod ?
cyclonedx-maven-plugin license
cyclonedx-node-yarn evidence
cyclonedx-node-npm evidence
cyclonedx-webpack-plugin evidence
cyclonedx-python license and/or evidence
to be continued ..

*) the list was adjusted, extended and updated my the CycloneDX-CWG/maintainers

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Assignees

No one assigned

    Labels

    help wantedExtra attention is needed

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions