aboutcode-org / aboutcode-org/scancode-toolkit

Incorrect detection of the tmate license in fastapi

Đang mở
#3,652 0 bình luận 0 reaction 1 người được giao Được @AyanSinhaMahapatra nhận Xem trên GitHub
bug
Ngôn ngữ chính
Python
Star
2.6k
Fork
791
Merge trung bình
1 ngày 12 giờ
Pull request đã merge (30 ngày)
5

Mô tả

A recent scan of fastapi-0.109.2.tar.gz from https://github.com/tiangolo/fastapi/archive/refs/tags/0.109.2.tar.gz resulted in the correct detection of declared_license_expression of `mit` but the other_license_expressions show 7 detections for `tmate` and since that license is copyleft the license_clarity_score shows conflicting_license_categories as true.

But I don't think that tmate code is actually in this project. The reported tmate detections are simply text indicating that a tmate service, provided by github, can be enabled when building the project. For example:

description: 'Run the build with tmate debugging enabled (https://github.com/marketplace/actions/debugging-with-tmate)'

So I think that there is a false positive detection of tmate resulting in fastapi getting a -20 value for conflicting_license_categories when that is not accurate.

Scan results attached.
[fastapi-0.109.2.tar.gz_scan.zip](https://github.com/nexB/scancode-toolkit/files/14225304/fastapi-0.109.2.tar.gz_scan.zip)

Hướng dẫn đóng góp

Mở hướng dẫn đóng góp

Đánh giá

Issue này chưa được đánh giá.

Nhận issue mới trong hộp thư của bạn

Bản tóm tắt ngắn những issue GitHub phù hợp với người mới.