aboutcode-org / aboutcode-org/scancode-toolkit

Create winexe package only when name is available?

Open
#3,054 0 comments 0 reactions 1 assignee Claimed by @JonoYang View on GitHub
bug
Dominant language
Python
Stars
2.6k
Forks
791
Avg merge
1d 12h
Merged PRs (30d)
5

Description

I scanned a docker image layer from `docker://python:3.8-slim-buster` using the `--system-package` option and there were a number of Package data detected from Windows executables that did not provide a name or any other information:
```
{
"type": "winexe",
"namespace": null,
"name": null,
"version": null,
"qualifiers": {},
"subpath": null,
"primary_language": null,
"description": "",
"release_date": null,
"parties": [],
"keywords": [],
"homepage_url": null,
"download_url": null,
"size": null,
"sha1": null,
"md5": null,
"sha256": null,
"sha512": null,
"bug_tracking_url": null,
"code_view_url": null,
"vcs_url": null,
"copyright": null,
"license_expression": "unknown AND unknown",
"declared_license": {
"LegalCopyright": null,
"LegalTrademarks": "",
"License": null
},
"notice_text": null,
"source_packages": [],
"file_references": [],
"extra_data": {},
"dependencies": [],
"repository_homepage_url": null,
"repository_download_url": null,
"api_data_url": null,
"datasource_id": "windows_executable",
"purl": null
}

```
Should we skip package creation for Windows executables if we cannot get a name for it?

Contributor guide

Open the contributing guide

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.