aboutcode-org / aboutcode-org/purldb

Introduce the concept of a "successor package" to the purldb data model

オープン
#175 コメント 4 件 リアクション 0 件 担当者 1 名 @JonoYang が担当を希望しています GitHub で見る
enhancement
主要言語
HTML
スター
67
フォーク
69
平均マージ
8日 8時間
マージ済み PR(30日)
1

説明

It is not a super-common situation (fortunately) but sometimes a package gets moved and/or renamed to an entirely new namespace. Consider log4j

`pkg:maven/log4j/log4j@1.2.27` is followed by
`pkg:maven/org.apache.logging.log4j/log4j@2.0`

indicating that it became part of a "logging" project. This is fine, but it can make it challenging to find the "next" or "later" versions of a specific package.

Modeling details to be determined: possibly a new field on the basic package definition called `successor_package` (purl format of course) or possibly a new relation, since this is a relatively rare occurrence.

コントリビューションガイド

このリポジトリのコントリビューションガイドは索引されていません

評価

この issue はまだ評価されていません。

新しい issue をメールで受け取る

初心者向けの GitHub issue を短くまとめたダイジェスト。