Skip to content

Map names from the v1 reports to an SPDX id

mo khan requested to merge 34825-legacy-ids into master

What does this MR do?

The v1.0 and v1.1 reports do not support SPDX identifiers which mean they rely on case insensitive name matching. This change provides a mapping from the list of licenses that a user can choose from to the equivalent SPDX identifier.

Does this MR meet the acceptance criteria?

Conformity

Availability and Testing

Security

If this MR contains changes to processing or storing of credentials or tokens, authorization and authentication methods and other items described in the security review guidelines:

  • [-] Label as security and @ mention @gitlab-com/gl-security/appsec
  • [-] The MR includes necessary changes to maintain consistency between UI, API, email, or other methods
  • [-] Security reports checked/validated by a reviewer from the AppSec team

#34825 (closed)

Edited by 🤖 GitLab Bot 🤖

Merge request reports