google-nomulus/config/dependency-license
Weimin Yu f5981a1bf9 Use Gradle dependency dynamic versioning (#1612)
* Use Gradle dependency dynamic versioning

Use dynamic versioning for Gradle dependencies when possible.
Please refer to go/dr-dependency-upgrade for more information about the
automation plan.

This PR calls out all dependencies that must be pinned to specific
versions for various reasons. The remaining ones are converted to
open-ended version ranges ("[version_str,)").
2022-05-02 14:10:52 -04:00
..
allowed_licenses.json Use Gradle dependency dynamic versioning (#1612) 2022-05-02 14:10:52 -04:00
license_normalizer_bundle.json Check dependencies' open-source licenses (#165) 2019-07-11 12:08:08 -04:00
README.md Restrict "Public Domain" license acceptance (#329) 2019-10-28 13:32:42 -04:00

Summary

This folder contains configuration files for the gradle-license-report plugin:

  • allowed_licenses.json declares the acceptable licenses. A license may have multiple entries in this file, since the 'moduleLicense' property value must match exactly the phrases found in pom or manifest files.
  • license_normalizer_bundle.json configures normalization rules for license reporting.

Notes About Adding New Licenses

  • The WTFPL license is not allowed.

  • Each 'Public Domain' license entry must include a specific 'moduleName'. Do not omit moduleName or use wildcards.