Create your own GitHub profile
Sign up for your own profile on GitHub, the best place to host code, manage projects, and build software alongside 50 million developers.
Sign up
Pinned
1,754 contributions in the last year
Contribution activity
September 2020
- pombredanne/go-mod-upgrade Go
- pombredanne/gomajor Go
- pombredanne/fity Python
- pombredanne/pdfquery Python
- pombredanne/skeleton Python
- pombredanne/open_source_compliance_emoticon
- pombredanne/libxml2-win-binaries PowerShell
- pombredanne/koala Python
- pombredanne/REA-Products
- pombredanne/python-apt-3 C++
- pombredanne/dpkg-status-viewer Python
- pombredanne/reaktor-fall-2020 Python
- pombredanne/packagedependancy-htmlexplorer Java
- pombredanne/PackageFileParser JavaScript
- pombredanne/debian-package-status Python
- pombredanne/gcloud_cli Python
- pombredanne/software_package_explorer HTML
- pombredanne/code.blindspotsecurity.com-dav-reglookup- C
- pombredanne/vminspection C
- pombredanne/vmxray.com JavaScript
- pombredanne/vmxray C
- pombredanne/iGold Shell
- pombredanne/checksumdir Python
- pombredanne/spdx-py-build-tool Python
- pombredanne/spdx-npm-build-tool Python
5
repositories not shown
Created a pull request in numpy/numpy that received 2 comments
DOC: Use SPDX license expressions with correct license
After a check I found that tools/npy_tempita/license.txt license is an MIT license and not a "BSD Derived" as reported.
I also propose to use SPDX …
+4
−4
•
2
comments
- Prepare plugins extraction #2233
- Report correct detected license text in binary
- Report SPDX keys everywhere
- Do not fail if Debian status is missing
- Release 3.2
- Add new license rules
- Misc updates: add new generated keywords
- Add extracted_from field #2042
- Do not carry null bytes in text #2212
- Do not use attrs 20.1.0 as a workaround for #2201
- collect installed alpine packages #2061
- Bump dependencies #295
- Improve ignore when walking files
- Improve handling of copyright corner cases
Created an issue in nexB/scancode-toolkit that received 6 comments
Validate that all licenses (and their URLs) are detected from https://directory.fsf.org/wiki?title=Category:License
There are about ~240 URLs and licenses listed at https://directory.fsf.org/wiki?title=Category:License We should: ensure that we can detect all of…
6
comments
- Resolve circular module dependencies
- Bump dependencie and relax some
- Error when installing restview
- Do not collect expanded detected license texts on binaries
- Simplify scancode's own licensing
- Add "Web Template Output Additional Permission" AGPL exception
- Some text files are processed with null bytes
- Consider collecting Yocto and OE license checksums
- Add new YAML output formatter option
- Improve proprietary license detection
- Incorrect license detections
- Simplify branching model
- New and improved licenses
- Provide Dockerfiles for easy test installations
- Improve/add documentation
- Add more reporting features
- Add support for RPM-based distros for docker and rootfs images scanpipe
- Track which Docker image/layer a resource or package is found
- Process rootfs one at a time
- Remove code duplication from rootfs/docker pipes checksum handling
- Failed to scan Debian Docker image

