security-wg icon indicating copy to clipboard operation
security-wg copied to clipboard

Requirement (Gold level): The project MUST include a license and copyright statement in each source file

Open UlisesGascon opened this issue 2 years ago • 8 comments

We agreed on #1175 to open an issue to follow up a discussion about the these requirements for Node.js (cc: @mhdawson @ljharb @RafaelGSS)

The project MUST include a copyright statement in each source file, identifying the copyright holder (e.g., the [project name] contributors).

The project MUST include a license statement in each source file. This MAY be done by including the following inside a comment near the beginning of each file: SPDX-License-Identifier: SPDX license expression for project

Context

Potential actions

  • [ ] Discuss with the OSSF in order to remove these requirements or clarify the need for them

UlisesGascon avatar Jan 04 '24 18:01 UlisesGascon

I’ve also filed https://github.com/coreinfrastructure/best-practices-badge/issues/2046 to discuss this.

ljharb avatar Jan 06 '24 15:01 ljharb

This issue is stale because it has been open many days with no activity. It will be closed soon unless the stale label is removed or a comment is made.

github-actions[bot] avatar Apr 06 '24 00:04 github-actions[bot]

This issue has been inactive for 90 days. It will be closed in 14 days unless there is further activity or the stale label is taken off.

github-actions[bot] avatar Jul 06 '24 00:07 github-actions[bot]

This issue has been inactive for 90 days. It will be closed in 14 days unless there is further activity or the stale label is taken off.

github-actions[bot] avatar Oct 05 '24 00:10 github-actions[bot]

never stale

ljharb avatar Oct 05 '24 01:10 ljharb

This issue has been inactive for 90 days. It will be closed in 14 days unless there is further activity or the stale label is taken off.

github-actions[bot] avatar Jan 05 '25 00:01 github-actions[bot]

This issue has been inactive for 90 days. It will be closed in 14 days unless there is further activity or the stale label is taken off.

github-actions[bot] avatar Apr 06 '25 00:04 github-actions[bot]

This issue has been inactive for 90 days. It will be closed in 14 days unless there is further activity or the stale label is taken off.

github-actions[bot] avatar Jul 06 '25 00:07 github-actions[bot]