Skip to content

Conversation

@pombredanne
Copy link
Member

This pr is to prepare release 31.2.0

JonoYang and others added 15 commits September 8, 2022 16:37
Signed-off-by: Jono Yang <jyang@nexb.com>
Signed-off-by: Philippe Ombredanne <pombredanne@nexb.com>
Signed-off-by: Philippe Ombredanne <pombredanne@nexb.com>
Contributed-by: Dennis Clark <dmclark@nexb.com>
Signed-off-by: Philippe Ombredanne <pombredanne@nexb.com>
Contributed-by: Dennis Clark <dmclark@nexb.com>
Signed-off-by: Philippe Ombredanne <pombredanne@nexb.com>
Signed-off-by: Philippe Ombredanne <pombredanne@nexb.com>
Signed-off-by: Philippe Ombredanne <pombredanne@nexb.com>
Signed-off-by: Philippe Ombredanne <pombredanne@nexb.com>
Signed-off-by: Philippe Ombredanne <pombredanne@nexb.com>
Signed-off-by: Philippe Ombredanne <pombredanne@nexb.com>
Signed-off-by: Philippe Ombredanne <pombredanne@nexb.com>
Signed-off-by: Philippe Ombredanne <pombredanne@nexb.com>
Signed-off-by: Philippe Ombredanne <pombredanne@nexb.com>
Contributed-by: Dennis Clark <dmclark@nexb.com>
Signed-off-by: Philippe Ombredanne <pombredanne@nexb.com>
Signed-off-by: Philippe Ombredanne <pombredanne@nexb.com>
AyanSinhaMahapatra and others added 14 commits September 19, 2022 16:49
Reference: #3103
Signed-off-by: Ayan Sinha Mahapatra <ayansmahapatra@gmail.com>
- Fix bug where we were looking for holders in resources without
  checking if the copyright option was enabled.
- Added a test case that was failing without the fix, same as the
  reported bug.

Reference: #3109
Reported-by: https://github.com/bwjohnson-ss
Signed-off-by: Ayan Sinha Mahapatra <ayansmahapatra@gmail.com>
Signed-off-by: Ayan Sinha Mahapatra <ayansmahapatra@gmail.com>
Signed-off-by: Jono Yang <jyang@nexb.com>
Signed-off-by: Alex <aleksandrosansan@gmail.com>
Signed-off-by: Alex <aleksandrosansan@gmail.com>
Signed-off-by: Alex <aleksandrosansan@gmail.com>
This is still a work in progress

Signed-off-by: Philippe Ombredanne <pombredanne@nexb.com>
    * Yield packages before resources and assign resources to packages before yielding resources

Signed-off-by: Jono Yang <jyang@nexb.com>
Signed-off-by: Philippe Ombredanne <pombredanne@nexb.com>
This is a minimal CSV output for key license detection data that lives
in the etc directory and can be intalled via pip locally

Signed-off-by: Philippe Ombredanne <pombredanne@nexb.com>
Signed-off-by: Philippe Ombredanne <pombredanne@nexb.com>
Signed-off-by: Philippe Ombredanne <pombredanne@nexb.com>
License validation tests were not properly regeneratable.

Signed-off-by: Philippe Ombredanne <pombredanne@nexb.com>
Signed-off-by: Philippe Ombredanne <pombredanne@nexb.com>
If there is a license tag, use it for dteection, otherwise use all
declared licensing information.

Add new rules to improve license detection accuracy.

Signed-off-by: Philippe Ombredanne <pombredanne@nexb.com>
@pombredanne pombredanne added this to the v31.2 milestone Oct 3, 2022
AyanSinhaMahapatra and others added 11 commits October 4, 2022 01:54
Regen test expectations updating score and rule relevances for
detections which were due to updates to give lower scores in cc0 rules.

Signed-off-by: Ayan Sinha Mahapatra <ayansmahapatra@gmail.com>
We now better detect specific CC0 notices seen in Debian copyright files

Signed-off-by: Philippe Ombredanne <pombredanne@nexb.com>
This is form of author with just a first name and email.

Signed-off-by: Philippe Ombredanne <pombredanne@nexb.com>
GitHub Workflows security hardening
Replace gemfileparser with gemfileparser2
Signed-off-by: Ayan Sinha Mahapatra <ayansmahapatra@gmail.com>
Yield package before assigning to resource
Signed-off-by: Philippe Ombredanne <pombredanne@nexb.com>
@pombredanne
Copy link
Member Author

All green now! @AyanSinhaMahapatra thank you for preparing this!
Merging now.

@pombredanne pombredanne merged commit da98250 into develop Oct 5, 2022
@pombredanne pombredanne deleted the prep-release-31-2 branch October 5, 2022 06:47
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

5 participants