https://github.com/nexb/scancode.io

ScanCode.io is a server to script and automate software composition analysis pipelines with ScanPipe pipelines. This project is sponsored by NLnet project https://nlnet.nl/project/vulnerabilitydatabase/ Google Summer of Code, nexB and others generous sponsors!
https://github.com/nexb/scancode.io

Keywords

cyclonedx docker foss-compliance license open-source package-url purl sca scancode software-composition-analysis spdx virtual-machine vulnerabilities

Keywords from Contributors

debian-packages apt apt-get deb822 debian debian-control debian-copyright debian-repositories debian-source-contro dep5

Last synced: 11 months ago
JSON representation

Acceptance Criteria

Repository metadata

ScanCode.io is a server to script and automate software composition analysis pipelines with ScanPipe pipelines. This project is sponsored by NLnet project https://nlnet.nl/project/vulnerabilitydatabase/ Google Summer of Code, nexB and others generous sponsors!


Owner metadata


Committers metadata

Last synced: over 1 year ago

Total Commits: 811
Total Committers: 20
Avg Commits per committer: 40.55
Development Distribution Score (DDS): 0.416

Commits in past year: 288
Committers in past year: 13
Avg Commits per committer in past year: 22.154
Development Distribution Score (DDS) in past year: 0.59

Name Email Commits
Thomas Druez t****z@n****m 474
tdruez 4****z 202
Philippe Ombredanne p****e@n****m 29
Keshav Priyadarshi g****t@k****e 26
Ayan Sinha Mahapatra a****a@g****m 21
Jono Yang J****g 21
Hanan Younes 5****0 14
Avishrant Sharma a****s@g****m 4
Jono Yang j****g@n****m 4
lf32 l****v@g****m 2
Alexander Mazuruk a****k@s****m 2
Hritik Vijay p****g@h****h 2
Swastik Sharma 8****k 2
lf32 9****2 2
xerrni e****t@p****m 1
Divyansh044 1****4 1
Jayanth Kumar 6****m 1
Tushar Goel 3****9 1
mpij 1****j 1
Philip Cali p****i@g****m 1

Committer domains:


Issue and Pull Request metadata

Last synced: 12 months ago

Total issues: 373
Total pull requests: 231
Average time to close issues: 4 months
Average time to close pull requests: 24 days
Total issue authors: 31
Total pull request authors: 17
Average comments per issue: 2.13
Average comments per pull request: 0.63
Merged pull request: 192
Bot issues: 0
Bot pull requests: 0

Past year issues: 254
Past year pull requests: 194
Past year average time to close issues: 27 days
Past year average time to close pull requests: 8 days
Past year issue authors: 21
Past year pull request authors: 12
Past year average comments per issue: 1.89
Past year average comments per pull request: 0.63
Past year merged pull request: 166
Past year bot issues: 0
Past year bot pull requests: 0

More stats: https://issues.ecosyste.ms/repositories/lookup?url=https://github.com/nexb/scancode.io

Top Issue Authors

  • pombredanne (215)
  • tdruez (35)
  • keshav-space (21)
  • DennisClark (20)
  • mjherzog (14)
  • AyanSinhaMahapatra (10)
  • Hritik14 (10)
  • JonoYang (9)
  • RabeeaEgbareia (6)
  • TG1999 (4)
  • chinyeungli (3)
  • philcali (2)
  • parvjain639 (2)
  • silverhook (2)
  • InfernalAzazel (2)

Top Pull Request Authors

  • tdruez (120)
  • keshav-space (32)
  • AyanSinhaMahapatra (26)
  • JonoYang (17)
  • jayanth-kumar-morem (8)
  • pombredanne (5)
  • TG1999 (5)
  • swastkk (3)
  • Hritik14 (3)
  • Divyansh044 (3)
  • aalexanderr (2)
  • lata-11 (2)
  • AkshayMuthal (1)
  • philcali (1)
  • quepop (1)

Top Issue Labels

  • enhancement (45)
  • bug (43)
  • web-ui (21)
  • high priority (18)
  • design-needed (13)
  • low priority (13)
  • medium priority (10)
  • devel-deploy (9)
  • nice-to-have (6)
  • reporting (3)
  • good first issue (2)
  • outputs (2)
  • Top Priority (Max 3 per Release) (2)
  • help wanted (2)
  • documentation (1)
  • duplicate (1)

Top Pull Request Labels

  • devel-deploy (3)
  • bug (1)

Package metadata

pypi.org: scancodeio

Automate software composition analysis pipelines


Dependencies

.github/workflows/ci-docker.yml actions
  • actions/checkout v2 composite
.github/workflows/ci.yml actions
  • actions/checkout v2 composite
  • actions/setup-python v2 composite
  • postgres 13 docker
Dockerfile docker
  • python 3.9 build
docker-compose.yml docker
  • nginx latest
  • postgres 13
  • redis latest
scanpipe/tests/data/image-with-symlinks/Dockerfile docker
  • scratch latest build
.github/workflows/pypi-release.yml actions
  • actions/checkout v3 composite
  • actions/setup-python v4 composite
  • pypa/gh-action-pypi-publish release/v1 composite
docker-compose-offline.yml docker
  • nginx latest
  • postgres 13
  • redis latest
  • scancodeio_web latest
  • scancodeio_worker latest
scanpipe/tests/data/d2d-javascript/to/package.json npm
scanpipe/tests/data/manifests/package.json npm
  • home-path ^0.1.1 development
  • path-exists ^2.0.0 development
  • standard ^5.4.1 development
  • @types/node ^8.0.24
  • electron-download ^4.1.0
  • extract-zip ^1.0.3
setup.py pypi
scanpipe/tests/data/manifests/requirements.txt pypi
  • click ==8.1.3 test
.github/workflows/publish-docker.yml actions
  • actions/checkout v4 composite
  • docker/build-push-action v5 composite
  • docker/login-action v3 composite
  • docker/metadata-action v5 composite
docker-compose.dev.yml docker
docker-compose.purldb-scan-worker.yml docker
scanpipe/tests/data/cyclonedx/asgiref-3.3.0.cdx.json swiftpm
scanpipe/tests/data/cyclonedx/django-4.0.10_as_cdx.json swiftpm
scanpipe/tests/data/cyclonedx/nested.cdx.json swiftpm

Score: 14.66194518873312