fix: Handle incompatible license in dependencies #889
Merged
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Context
SAP/cloud-sdk-java-backlog#ISSUENUMBER.
Blackduck scan failed because of dependencies under namespace com.sap.cloud.security had (an unintended) license update.
As per maven central, the licenses changed from The Apache Software License (v3.6.0) -> SAP DEVELOPER LICENSE AGREEMENT (v3.6.1) (check here)
BlackDuck does not recognise the new license and categorizes it as Basic Proprietary Commercial License.
The following 4 dependencies are affected.
Additionally, v3.6.2 is also affected.
Feature scope:
Definition of Done
Functionality scope stated & coveredTests cover the scope aboveError handling created / updated & covered by the tests aboveDocumentation updatedRelease notes updated