@@ -222,66 +222,6 @@ License Clarity Scoring Update
222222 - Scoring Weight = -20
223223
224224
225- License Clarity Scoring Update
226- ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
227-
228- - We are moving away from the license clarity scoring defined by ClearlyDefined
229- in the license clarity score plugin. The previous license clarity scoring
230- logic produced a score that was misleading, where it would return a low score
231- when scanning packages due to the stringent scoring criteria. We are now
232- using more general criteria to get a sense of what provenance information has
233- been provided and whether or not there is a conflict in licensing between
234- what licenses were declared at the top-level key files and what licenses have
235- been detected in the files under the top-level.
236-
237- - The license clarity score is a value from 0-100 calculated by combining the
238- weighted values determined for each of the scoring elements:
239-
240- - Declared license:
241-
242- - When true, indicates that the software package licensing is documented at
243- top-level or well-known locations in the software project, typically in a
244- package manifest, NOTICE, LICENSE, COPYING or README file.
245- - Scoring Weight = 40
246-
247- - Identification precision:
248-
249- - Indicates how well the license statement(s) of the software identify known
250- licenses that can be designated by precise keys (identifiers) as provided in
251- a publicly available license list, such as the ScanCode LicenseDB, the SPDX
252- license list, the OSI license list, or a URL pointing to a specific license
253- text in a project or organization website.
254- - Scoring Weight = 40
255-
256- - License texts:
257-
258- - License texts are provided to support the declared license expression in
259- files such as a package manifest, NOTICE, LICENSE, COPYING or README.
260- - Scoring Weight = 10
261-
262- - Declared copyright:
263-
264- - When true, indicates that the software package copyright is documented at
265- top-level or well-known locations in the software project, typically in a
266- package manifest, NOTICE, LICENSE, COPYING or README file.
267- - Scoring Weight = 10
268-
269- - Ambiguous compound licensing:
270-
271- - When true, indicates that the software has a license declaration that
272- makes it difficult to construct a reliable license expression, such as in
273- the case of multiple licenses where the conjunctive versus disjunctive
274- relationship is not well defined.
275- - Scoring Weight = -10
276-
277- - Conflicting license categories:
278-
279- - When true, indicates the declared license expression of the software is in
280- the permissive category, but that other potentially conflicting categories,
281- such as copyleft and proprietary, have been detected in lower level code.
282- - Scoring Weight = -20
283-
284-
285225Outputs:
286226~~~~~~~~
287227
0 commit comments