Commit 24588cf
fix(fossid-webapp): Set unmappable snippet license issue severity to
With the introduction of snippet findings in the scan results, some
issues are also present in the result because licenses from FossID
snippets cannot always be mapped to SPDX, for instance "RETURNN license"
or "Apache 2-0".
While the usage of the declared license mapping file helped to
alleviate some of these issues, several remained, polluting the webapp
report.
Opening a support ticket at FossID to have them correct the license,
while being the correct solution, does not scale regarding the amount of
licenses to correct.
Therefore, this commit lowers for now the severity of these issues to
`HINT` and map them to `NO_ASSERTION`. This is a temporary solution
until a snippet curation mechanism is introduced to be able to correct
those licenses.
Signed-off-by: Nicolas Nobelis <[email protected]>HINT
1 parent e3763e1 commit 24588cf
File tree
2 files changed
+7
-2
lines changed- scanner/src
- main/kotlin/scanners/fossid
- test/kotlin/scanners/fossid
2 files changed
+7
-2
lines changedLines changed: 3 additions & 1 deletion
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
33 | 33 | | |
34 | 34 | | |
35 | 35 | | |
| 36 | + | |
36 | 37 | | |
37 | 38 | | |
38 | 39 | | |
| |||
124 | 125 | | |
125 | 126 | | |
126 | 127 | | |
127 | | - | |
| 128 | + | |
| 129 | + | |
128 | 130 | | |
129 | 131 | | |
130 | 132 | | |
| |||
Lines changed: 4 additions & 1 deletion
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
35 | 35 | | |
36 | 36 | | |
37 | 37 | | |
| 38 | + | |
38 | 39 | | |
39 | 40 | | |
40 | 41 | | |
| |||
91 | 92 | | |
92 | 93 | | |
93 | 94 | | |
94 | | - | |
| 95 | + | |
| 96 | + | |
| 97 | + | |
95 | 98 | | |
96 | 99 | | |
97 | 100 | | |
| |||
0 commit comments