Giter Club home page Giter Club logo

Comments (4)

markphip avatar markphip commented on June 5, 2024 1

FWIW, I moved my action into the same repository and get same issue. Just wanted to rule out the reusable workflow as a reason.

from dependency-review-action.

febuiles avatar febuiles commented on June 5, 2024

@markphip Thanks for the report! This repo has no license assigned according to the API we're using:

$ gh api -H "Accept: application/vnd.github.v3+json" /repos/future-funk/ubiquitous-enigma/dependency-graph/compare/main...adding-req
[
  {
    "change_type": "added",
    "manifest": "requirements.txt",
    "ecosystem": "pip",
    "name": "git-deps",
    "version": "\u003e= 1.1.0",
    "package_url": "",
    "license": null,
    "source_repository_url": "https://github.com/aspiers/git-deps",
    "vulnerabilities": []
  }
]

I'm not sure why that is the case, but thanks to this report I'm realizing that our error reporting on unknown licenses is only happening when faulty licenses are found. I'll update the ticket once I fix this!

from dependency-review-action.

febuiles avatar febuiles commented on June 5, 2024

@markphip I've updated the Action to print a message when the license for a project is unknown:

Screenshot 2022-06-15 at 15 30 32

I know this is not ideal, and I hope it's a temporary thing. I hope we can mitigate this in a future release by getting more license data using the Licenses API or by improving the licensing info available in that API request.

from dependency-review-action.

markphip avatar markphip commented on June 5, 2024

That will help understand. I think it is a good change. Thanks

from dependency-review-action.

Related Issues (20)

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.