You are viewing a plain text version of this content. The canonical link for it is here.
Posted to issues@cordova.apache.org by "Marcel Kinard (JIRA)" <ji...@apache.org> on 2014/05/29 19:31:02 UTC

[jira] [Commented] (CB-6722) add function to coho to check licenses of third-party dependencies

    [ https://issues.apache.org/jira/browse/CB-6722?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=14012573#comment-14012573 ] 

Marcel Kinard commented on CB-6722:
-----------------------------------

If a third-party dependency identifies its license but does not codify it in the package.json file, it may be appropriate to open a pull request to that dependency to add their license to their package.json file.

> add function to coho to check licenses of third-party dependencies
> ------------------------------------------------------------------
>
>                 Key: CB-6722
>                 URL: https://issues.apache.org/jira/browse/CB-6722
>             Project: Apache Cordova
>          Issue Type: New Feature
>          Components: Coho
>            Reporter: Marcel Kinard
>            Assignee: Martin Gonzalez
>            Priority: Minor
>
> It would be nice if https://www.npmjs.org/package/license-checker could be added to coho to make it easier to check the licenses of node modules that are 3rd-party dependencies. Since third-party dependencies should have licenses that are Apache-friendly ( see http://www.apache.org/legal/resolved.html#category-a ), we should be checking that our dependencies fit that, especially since the license should be in each dependency's package.json file.



--
This message was sent by Atlassian JIRA
(v6.2#6252)