anchore / anchore/grant

feature: source content measured against true license text

Open
#44 0 comments 0 reactions 0 assignees View on GitHub
feat
Dominant language
Go
Stars
183
Forks
18
Avg merge
3d 7h
Merged PRs (30d)
7

Description

Whenever possible grant should attempt to obtain the originally analyzed license text and compare it to the official OSI license text. This can surface any changes made by the software publisher to the original text and allow the user to flag on or make choices about licenses that are shown to be significantly different than what they're labeled as.

Contributor guide

Open the contributing guide

Research direction

No files, tests, or entry points are named. Start by locating the existing license-text acquisition and analysis flow, then determine how official OSI texts can be obtained and compared. Done means detected differences are surfaced clearly and users can flag or choose how significantly different labeled licenses are handled.

Written by the indexing model from the issue text.

Assessment

Tech stack
go
Domain
security
Issue type
Feature
Difficulty
5/5
Estimated time
Over a week
Activity status
Stale
Clarity
Mostly clear
Newbie friendliness
35/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.