aboutcode-org / aboutcode-org/dejacode

DJC: Design an enhanced DejaCode Package model to identify source code relationships

Aperta
#41 1 commento 0 reazioni 3 assegnatari Rivendicata da @DennisClark Vedi su GitHub
design needed enhancement integration PackageSet
Lingua principale
Python
Stelle
50
Fork
27
Merge medio
4h 51m
PR unite (30g)
11

Descrizione

The working idea here is to come up with the best way to identify cross-package relationships, especially to be able to get to
(1) the source code
and
(2) more complete copyright+license data, which usually comes from the source code.

We could start by displaying the values for `contains_source_code`, `source_packages`, `code_view_url`, and `vcs_url` in the "Detected Package" section of the Scan tab (when a value is available). The ScanCode package model has this support for source code relationships (which are also in PurlDB):

- the `contains_source_code` boolean flags tells if the package itself contains source code: https://github.com/nexB/scancode-toolkit/blob/0465269543eb338086c10bdeb1e81d3013522b4d/src/packagedcode/models.py#L452
- the `source_packages` field is a list of Package URLs that may exist for this package https://github.com/nexB/scancode-toolkit/blob/0465269543eb338086c10bdeb1e81d3013522b4d/src/packagedcode/models.py#L457
- the `code_view_url` and `vcs_url` provide reference URLs to view or fetch actual source code https://github.com/nexB/scancode-toolkit/blob/0465269543eb338086c10bdeb1e81d3013522b4d/src/packagedcode/models.py#L414

Now that we have standardized on PURL as the package identifier, we should be able to pursue this DejaCode improvement using **package-set** values via integration with the PurlDB.

Guida per i contributori

Apri la guida per i contributori

Valutazione

Questa issue non è ancora stata valutata.

Ricevi le nuove issue nella tua casella

Un breve riepilogo di issue GitHub adatte ai principianti.