Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Unknown license and download location information should be NOASSERTION instead of NONE in SPDX #7402

Closed
DmitriyLewen opened this issue Aug 27, 2024 Discussed in #7397 · 0 comments · Fixed by #7403
Closed
Assignees
Labels
scan/sbom Issues relating to SBOM

Comments

@DmitriyLewen
Copy link
Contributor

DmitriyLewen commented Aug 27, 2024

Description

We use NONE field for licenseConcluded and licenseDeclared.
But NOASSERTION field is more suitable.
See more in #7397

Discussed in #7397

@DmitriyLewen DmitriyLewen added the kind/bug Categorizes issue or PR as related to a bug. label Aug 27, 2024
@DmitriyLewen DmitriyLewen self-assigned this Aug 27, 2024
@aquasecurity aquasecurity deleted a comment Aug 27, 2024
@aquasecurity aquasecurity deleted a comment Aug 27, 2024
@DmitriyLewen DmitriyLewen added scan/sbom Issues relating to SBOM and removed kind/bug Categorizes issue or PR as related to a bug. labels Aug 27, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
scan/sbom Issues relating to SBOM
Projects
None yet
Development

Successfully merging a pull request may close this issue.

4 participants
@DmitriyLewen and others