aboutcode-org / aboutcode-org/scancode.io

package scan on the source/binary side for package manifests

未关闭
#1,783 0 条评论 0 个 reaction 已指派 1 人 已被 @AyanSinhaMahapatra 认领 在 GitHub 查看
back2source
主要语言
Python
星标
215
派生
203
平均合并
4 天 8 小时
30 天内合并 PR
6

描述

Currently we are not scanning a lot of package manifests which we support and get package/dependencies for in the d2d pipeline.

Some examples are the:

- `.nuspec` and `.deps.json` files for nuget https://github.com/aboutcode-org/scancode.io/issues/1472
- `cartfile` and `cartfile.resolved` for macOS/iOS https://github.com/aboutcode-org/scancode-toolkit/issues/2656 https://github.com/aboutcode-org/scancode.io/issues/1471

This gives us better packages/dependencies information on these sources/binaries if we perform a package-scan on these.
This would be scanning all the resources which are not matched (scanning matched package manifests would introduce duplicates) .

贡献指南

打开贡献指南

评估

这个 Issue 还没有评估数据。

把新 issue 发到你的邮箱

精选适合新手参与的 GitHub issue 摘要。