aboutcode-org / aboutcode-org/scancode-toolkit

Incorrect License Identification for glob 13.0.0

未关闭
#4,670 6 条评论 1 个 reaction 已指派 0 人 在 GitHub 查看
bug
主要语言
Python
星标
2.6k
派生
791
平均合并
1 天 12 小时
30 天内合并 PR
5

描述

### Description

We have observed incorrect license reported while running scancode on a npm package called [glob 13.0.0](https://www.npmjs.com/package/glob), below are the details from scancode results

**License detected:** GPL-2.0-only WITH Classpath-exception-2.0 OR CDDL-1.1
**Matching score:** 50
**File:** LICENSE.md
**Link:** https://github.com/isaacs/node-glob/blob/3bfb9604fabcd372fd13bbacef90339d10d1aa92/LICENSE.md
**Matched Text:** their respective `LICENSE` or `LICENSE.md` files.\n\nThe remainder of this project is licensed under the Blue Oak\nModel License, as follows
**Rule Url:** "https://github.com/nexB/scancode-toolkit/tree/develop/src/licensedcode/data/rules/gpl-2.0_with_classpath-exception-2.0_or_cddl-1.1_3.RULE"

It appears that this is a misidentification—possibly due to boilerplate language in the LICENSE.md file.

I am attaching the scancode results for 32.1.0 but it also persists in the latest version of scancode.

[glob-scancode.json](https://github.com/user-attachments/files/24500717/glob-scancode.json)

贡献指南

打开贡献指南

评估

这个 Issue 还没有评估数据。

把新 issue 发到你的邮箱

精选适合新手参与的 GitHub issue 摘要。