nexB / dejacode

Automate open source license compliance and ensure software supply chain integrity
https://dejacode.readthedocs.io
GNU Affero General Public License v3.0
18 stars 7 forks source link

DJC: Create a script to load scan results into a DejaCode Product and trigger scanning of all packages #132

Open DennisClark opened 1 month ago

DennisClark commented 1 month ago

Benefit: Optimize dataflow from ScanCode scan results.

Solution: Create a script to load scan results into a DejaCode Product and trigger scanning of all packages.

Notes: There are related issues about Download URL quality that need to be investigated, possibly making use of the PurlDB.

DennisClark commented 1 month ago

See related issue #131

tdruez commented 1 month ago

@DennisClark Could you clarify the context of this?

Solution: Create a script to load scan results into a DejaCode Product and trigger scanning of all packages.

Why not use the "Import data from Scan" or "Pull ScanCode.io Project data" features?

DennisClark commented 1 month ago

@tdruez The context is a product team using SCIO, but who are not necessarily DejaCode users, to be able to push scan results to DejaCode for review by a different group in the organization.

mjherzog commented 1 month ago

The simple answer is that we need a push option in addition to the current pull options.

pombredanne commented 3 weeks ago

See also:

pombredanne commented 3 weeks ago

The simple answer is that we need a push option in addition to the current pull options.