Samsung / LPVS

License Pre-Validation Service analyzes which open source components and licenses are used in every patch. It returns the list of restricted licenses and the possibility of license violation on the comment with the exact code location and the open source component information.

Home Page:https://samsung.github.io/LPVS/

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

OpenSSF best practices badge

o-kopysov opened this issue · comments

Our goal is to achieve the Best Practice Passing badge.
The link to the LPVS project: https://bestpractices.coreinfrastructure.org/en/projects/6309

We will try to meet all goals from the checklist ASAP.

Wonderful suggestion!

Current status is 90% for "Passing" badge (link).
Missing items: Static code analysis, Dynamic code analysis
Sonar Cloud could help to solve all problems. But if its usage is impossible, we will try to find other ways to solve the problem.