nodesource / ncm-ci

NCM for CICD systems
https://nodesource.com/products/certified-modules
MIT License
8 stars 2 forks source link

Surface what the different values mean #15

Closed bnb closed 6 years ago

bnb commented 6 years ago

Several times today in the #eng-ncm channel, there were questions about what the different marks ncm-ci reports on mean.

Having this defined in --help would be... helpful 😅

bnb commented 6 years ago

For context:

L = ??? V = ??? U = ???

juliangruber commented 6 years ago

Right! Initial definition was

L = License V = Vulnerable U = Unlicensed

But that's both outdated and inconsistent.

Should we go with

C = Compliance S = Security

or

L = License V = Vulnerability

I personally prefer L and V because that's closer to my mental model.

juliangruber commented 6 years ago

I added definitions:

screenshot 2018-09-28 at 07 27 49
bnb commented 6 years ago

@juliangruber what is the distinction between license and unlicensed?

juliangruber commented 6 years ago

Fixed that, it was supposed to be Uncertified, ie there was an error certifying the package