fossas / fossa-cli

Fast, portable and reliable dependency analysis for any codebase. Supports license & vulnerability scanning for large monoliths. Language-agnostic; integrates with 20+ build systems.
https://fossa.com
Other
1.27k stars 174 forks source link

[BUG] #1430

Closed wood4099 closed 5 months ago

wood4099 commented 5 months ago

Important: Bug reports should be directed to support@fossa.com for faster response and prioritization. Bug reports may still be created here but they may not get immediate attention and may be closed in favor of internally tracked tickets.

Describe the bug Analyze the winui3 c # project using Fossa and execute the command "Fossa analyze -- experimental enable binary discovery -- force vendor dependency scan method ArchiveUpload -- debug". However, the Fossa website did not scan all TRANSITIVE DEPENDENCIES.

To Reproduce

Expected behavior The system *. of Deep dependencies Dll scans very few surfaces and does not correspond to the ones used in the program.

Debug bundle fossa.debug.json.gz

Additional context image

github-actions[bot] commented 5 months ago

Thank you @wood4099 for creating this issue. If this is in regards to a defect, product question or feature request: you should use our support portal at https://support.fossa.com to file a request, as you would receive more immediate support.

jssblck commented 5 months ago

Hey there @wood4099!

Thanks for this issue- it looks like this is going to require some specific details from you around your project, in particular details around the reason for why you believe the reported list to be invalid.

Please open a ticket on our support site so that we can discuss this in more detail! I'm going to close the ticket here but please do follow up through the support site.