Scancode-toolkit

Latest version: v32.3.0

Safety actively analyzes 681844 Python packages for vulnerabilities to keep your Python projects secure.

Scan your dependencies

Page 2 of 12

32.0.7

------------------------

This is a minor release with a lot of license detection
improvements, with new and updated license detection rules
and new licenses.

- 33 new licenses, 30 licenses updated
- 70 new and updated license rules

The main updates over the previous stable release are:

- To the license Rule class adds is_license_clue attribute
and is_deprecated attribute to support license clues
detection, and always maintain consistency on unique rule
names. Adds fixes for other license detection bug related
to license clues, bug in setup.cfg license detection and
makes license detection identifiers python-safe. See
https://github.com/nexB/scancode-toolkit/pull/3462

- Update/Add new licenses and license rules. See
https://github.com/nexB/scancode-toolkit/pull/3470
https://github.com/nexB/scancode-toolkit/pull/3513

- Bump commoncode to v31.0.3 fixing a VirtualCodebase
creation issue when there is a directory under the
root with the same name as the root directory itself.
https://github.com/nexB/commoncode/issues/57
https://github.com/nexB/scancode-toolkit/pull/3495

32.0.6

------------------------

This is a minor release with a lot of license and package detection
improvements, specially for maven packages. We also support the SPDX
license list 3.21 now. The main updates over the previous stable
release are:

- New and updated licenses, including support for newly released
SPDX license list version 3.21. For more details see
https://github.com/nexB/scancode-toolkit/pull/3437

- Fixes in summary plugin for licenses, and top-level license
detections. https://github.com/nexB/scancode-toolkit/pull/3430

- Updated maven license and package detections, with fixes for
various maven package manifest parsing, improved top-level
package assembly, ecosystem specific package license detection,
fixes in ``--todo`` plugin, updated license detection rules/heuristics
and other misc changes. For more details see:
https://github.com/nexB/scancode-toolkit/pull/3447

- Improved Gemfile.lock parsing. For more details see
https://github.com/nexB/scancode-toolkit/pull/3444

- Auto-review plugin to get todo items for scan review, with
the new ``--todo`` CLI option. For more details see:
https://github.com/nexB/scancode-toolkit/pull/3353

- Misc. license and copyright detection improvements at
https://github.com/nexB/scancode-toolkit/pull/3346

- Other misc. minor bugfixes detailed in all the previous
release-candidates.

32.0.5rc3

------------------------

The previous release v32.0.5rc3 was failing on mac app release
tests, see https://github.com/nexB/scancode-toolkit/issues/3435
for more details. This release attempts to fix this and release
correctly.

32.0.5rc2

------------------------

The previous release v32.0.5rc1 failed to upload pypi wheels
because of file size limits enforced by pypi, and this release
is effectively the same as the previous one, but now the size
limit has been increased by https://github.com/pypi/support/issues/2926
so this will upload the wheels correctly.

32.0.5rc1

------------------------

This is a minor bugfix release with the following updates:

- A new `--todo` option is added to show the todo items that
should be reviewed, which are ambiguous license/package
detections.

- New licenses and license detection rules. And other license
detection fixes.

32.0.4

---------------------

This is a minor bugfix release with the following updates:

- Fixes a performance issue issue arising out of license detection
on files happening in a single-threaded process_codebase step when the
license CLI option is disabled for a package scan.
Reference: https://github.com/nexB/scancode-toolkit/pull/3423

Page 2 of 12

© 2024 Safety CLI Cybersecurity Inc. All Rights Reserved.