aboutcode-org / aboutcode-org/dejacode

BUG: LicenseRef should not be used with License Exceptions

Aperta
#318 8 commenti 0 reazioni 2 assegnatari Assegnata a @hesa Vedi su GitHub
bug design needed HighPriority integration
Lingua principale
Python
Stelle
50
Fork
27
Merge medio
4h 51m
PR unite (30g)
11

Descrizione

The SPDX team has specified that a non-SPDX-license-list text which is an exception should be identified with a name that starts with `AdditionRef` rather than `LicenseRef`.

So, from the SPDX perspective, this is wrong:
`some-license-key WITH LicenseRef-something-exception`
but this is right:
`some-license-key WITH AdditionRef-something-exception`

There are multiple Active license exceptions in DejaCode with SPDX key starting with "LicenseRef".
Updating them would of course have an impact on the LicenseDB and various ScanCode tools, so such an update is a big deal and would require a fair amount of work and communication/documentation.

I have created a new Query and Report in DejaCode (nexB dataspace) called License Exceptions with "LicenseRef". I am also attaching the .xlsx output from the report to this issue.

The resolution of this conflict requires some discussion.

Note that our current workaround to this problem, which is simply to construct an expression like this using the AND operator

`some-license-key AND LicenseRef-something-exception`

rather than using the operator WITH , gets us through the SPDX validator, but is not really a good long-term sustainable solution, since it avoids compliance with the latest SPDX standard.

Guida per i contributori

Apri la guida per i contributori

Valutazione

Questa issue non è ancora stata valutata.

Ricevi le nuove issue nella tua casella

Un breve riepilogo di issue GitHub adatte ai principianti.