Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

What is the license ? #5

Closed
ziadhany opened this issue Jul 11, 2022 · 12 comments
Closed

What is the license ? #5

ziadhany opened this issue Jul 11, 2022 · 12 comments
Assignees

Comments

@ziadhany
Copy link
Contributor

I am trying to import the Mandiant in vulnerablecode as part of my GSoC project. it will be great if we get the license
@pombredanne

@pombredanne
Copy link

FWIW this is tracked on our side in aboutcode-org/vulnerablecode#487 and aboutcode-org/vulnerablecode#795

@pombredanne
Copy link

@williballenthin @jhsmith @RonnieSalomonsen and team: gentle ping... if there is no license the data cannot be reused at all.

@williballenthin
Copy link

@aaronc100 do you have a preference or insights here?

@aaronc100
Copy link
Collaborator

aaronc100 commented Oct 11, 2022 via email

@williballenthin
Copy link

@aaronc100 given that you maintain this repo, can I ask that you take lead on this?

@aaronc100
Copy link
Collaborator

aaronc100 commented Oct 11, 2022 via email

@pombredanne
Copy link

@aaronc100 Thank you in advance: anything you will select as a license will work and be a good choice.
And FWIW, the more common licenses of vulnerability data we see these days are either CC-BY-4.0 or CC-BY-SA-4.0.

@aaronc100
Copy link
Collaborator

I have updated our readme and source files (*.cpp). CVE information is CC BY-SA 4.0 and source files are MIT. Please let me know if this resolves this issue to satisfaction. Thanks! --Aaron

@pombredanne
Copy link

@aaronc100 and team: this is awesome and you rock. Thanks!

@aaronc100
Copy link
Collaborator

Licensing updated on repo.

@pombredanne
Copy link

Just for the record, since code and data are mixed in the files with the exception of these few PoC files in https://github.com/mandiant/Vulnerability-Disclosures/search?l=C%2B%2B&q=include , I will treat the effective resulting license of the collection as CC-BY-SA-4.0 AND MIT

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

4 participants