Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Audit and Automate license scanning of CNCF projects #109

Closed
idvoretskyi opened this issue Sep 1, 2020 · 4 comments
Closed

Audit and Automate license scanning of CNCF projects #109

idvoretskyi opened this issue Sep 1, 2020 · 4 comments

Comments

@idvoretskyi
Copy link
Member

FOSSA license scanning for all the repos (that include code) in the CNCF project organizations should be enabled:
https://github.com/fossas/fossa-cli

@caniszczyk
Copy link
Contributor

@idvoretskyi FYI this should be "license scanning" where FOSSA is one option.

We have some projects that use Snyk and WhiteSource already and those are fine options too.

@caniszczyk caniszczyk changed the title Audit the licenses of CNCF projects with FOSSA Audit and Automate license scanning of CNCF projects Sep 1, 2020
@idvoretskyi
Copy link
Member Author

@caniszczyk good point, thanks!

idvoretskyi added a commit to idvoretskyi/trickster that referenced this issue Apr 14, 2021
Ref.: cncf/foundation#109

Signed-off-by: Ihor Dvoretskyi <ihor@linux.com>
idvoretskyi added a commit to idvoretskyi/k8gb that referenced this issue Apr 14, 2021
Ref.: cncf/foundation#109

Signed-off-by: Ihor Dvoretskyi <ihor@linux.com>
idvoretskyi added a commit to idvoretskyi/k8gb that referenced this issue Apr 14, 2021
Ref.: cncf/foundation#109

Signed-off-by: Ihor Dvoretskyi <ihor@linux.com>
idvoretskyi added a commit to idvoretskyi/k8gb that referenced this issue Apr 14, 2021
Ref.: cncf/foundation#109

Signed-off-by: Ihor Dvoretskyi <ihor@linux.com>
ytsarev pushed a commit to k8gb-io/k8gb that referenced this issue Apr 14, 2021
Ref.: cncf/foundation#109

Signed-off-by: Ihor Dvoretskyi <ihor@linux.com>
jranson pushed a commit to trickstercache/trickster that referenced this issue Apr 14, 2021
Ref.: cncf/foundation#109

Signed-off-by: Ihor Dvoretskyi <ihor@linux.com>
@krook
Copy link
Member

krook commented May 17, 2024

Can we call this "done" @idvoretskyi @RobertKielty?

@idvoretskyi
Copy link
Member Author

The License scanning is a necessary part of the project onboarding, so assuming this is done.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

3 participants