eclipse-ee4j / eclipse-ee4j/tyrus

NOTICE file mistakes with Third-Party Content

Open
#645 6 comments 0 reactions 1 assignee Claimed by @bravehorsie View on GitHub
Dominant language
Java
Stars
128
Forks
49
PR merge metrics
No merged PRs in 30d

Description

The eclipse-ee4j/websocket-api has erroneous IPzilla entries for the for the following dependencies.

* Google Guava Version: 18.0 (PB Orbit CQ12184) - https://dev.eclipse.org/ipzilla/show_bug.cgi?id=16060
* atinject (Package javax.inject) Version: 1.0 (PB Orbit CQ3578) - https://dev.eclipse.org/ipzilla/show_bug.cgi?id=16061
* javax.validation:validation-api:jar:1.1.0.Final (PB CQ15114 Type A) - https://dev.eclipse.org/ipzilla/show_bug.cgi?id=16062

Can you confirm yes or no that these 3 dependencies should be reassigned from websocket-api to tyrus?

This was discovered by Mark Thomas during a PR review of the generated NOTICE file for websocket-api.
See: https://github.com/eclipse-ee4j/websocket-api/pull/271

A discussion on ee4j-build@eclipse.org was started
https://dev.eclipse.org/mhonarc/lists/ee4j-build/msg00195.html

A possible resolution was proposed by @waynebeaton and we want to make sure that these 3 dependencies are supposed to belong to the Tyrus project.
https://dev.eclipse.org/mhonarc/lists/ee4j-build/msg00199.html

Contributor guide

Open the contributing guide

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.