Replies: 1 comment
-
There is a PR regarding license scanning for SBOM. |
Beta Was this translation helpful? Give feedback.
0 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
Description
Would love to see support for license scanning with Poetry - its working great with pure pip projects but Poetry is over 50% of our projects and it seems there is no path to do this directly at the moment.
Right now a hacky solution is for a pre-scan step in CI along the lines of
Which is OK I guess though it would of course be nicer to have it supported out of the box.
Then I also thought that an alternative to this would be to use the
sbom
target seeing as it contains license information - but license scanning an SBOM target is not supported either?Target
Filesystem
Scanner
License
Beta Was this translation helpful? Give feedback.
All reactions