aboutcode-org / aboutcode-org/scancode-toolkit

SCTK detecting mongodb-sspl-1.0 in the OpenSearch README incorrectly

未關閉
#3,923 0 則留言 1 個 reaction 已指派 1 人 已被 @AyanSinhaMahapatra 認領 在 GitHub 檢視
bug
主要語言
Python
星號
2.6k
分支
791
平均合併
1 天 12 小時
30 天內合併 PR
5

描述

A recent scan of the OpenSearch source package available from https://github.com/opensearch-project/OpenSearch/archive/refs/tags/2.16.0.tar.gz returned the overall license of apache-2.0 correctly, but it incorrectly reports finding mongodb-sspl-1.0 in the README.md file, probably because of this bit:

`**OpenSearch** is [a community-driven, open source fork](https://aws.amazon.com/blogs/opensource/introducing-opensearch/) of [Elasticsearch](https://en.wikipedia.org/wiki/Elasticsearch) and [Kibana](https://en.wikipedia.org/wiki/Kibana) following the [license change](https://blog.opensource.org/the-sspl-is-not-an-open-source-license/) in early 2021. We're looking to sustain (and evolve!) a search and analytics suite for the multitude of businesses who are dependent on the rights granted by the original, [Apache v2.0 License](LICENSE.txt).`

This is unfortunate because the overall licensing is clearly apache-2.0. Scan results attached.

[OpenSearch-2.16.0.tar.gz_scan.zip](https://github.com/user-attachments/files/17017227/OpenSearch-2.16.0.tar.gz_scan.zip)
[OpenSearch-2.16.0.tar.gz_scan.zip](https://github.com/user-attachments/files/17017227/OpenSearch-2.16.0.tar.gz_scan.zip)

貢獻指南

開啟貢獻指南

評估

這個 Issue 還沒有評估資料。

把新 issue 寄到你的電子郵件信箱

精選適合新手參與的 GitHub issue 摘要。