•  
      request #45595 Allowlist licenses acceptable for Tuleap dependencies
    Infos
    #45595
    Thomas Gerbet (tgerbet)
    2025-11-27 10:01
    2025-11-06 16:01
    47317
    Details
    Allowlist licenses acceptable for Tuleap dependencies

    Licenses usable by Tuleap dependencies should be allow-listed and enforced in CI to be sure no dependencies with a license not compatible with Tuleap is being used.

    Other
    All
    Empty
    • [ ] enhancement
    • [x] internal improvement
    Empty
    Stage
    Thomas Gerbet (tgerbet)
    Closed
    2025-11-27
    Attachments
    Empty
    References
    Referencing request #45595

    Git commit

    tuleap/tuleap/stable

    feat: Build Sofware-Bill-of-Materials of PHP dependency trees ecc10bf5c8
    feat: Build Sofware-Bill-of-Materials of pnpm dependency trees 20ab12414e
    chore: @testing-library/vue: 6.6.1 -> 8.1.0 903d42ec5c
    chore: Use the variable font variant in the technical slidedecks 124b9cb9aa
    chore: Remove usage of the clean-webpack-plugin 66fa035789
    Revert "chore: Remove usage of the clean-webpack-plugin" 967942687c
    feat: Ensure JS manifest files are consistent with the built assets 6209905a25
    chore: Manage CKEditor4 assets outside of Webpack 621f47bdae
    fix: Kanban widget cannot be displayed 368c76fa62
    chore: Remove usage of the clean-webpack-plugin 933ba93356
    feat: Generate SBOMs for Rust and Go projects 3d7c575e4a
    fix: Drop "tuleap-mercure" package 5d59f94d91
    chore: Remove indirect usages of argparse bedee18811
    feat: Verify license compatibility of dependencies in CI 36b73e6670

    Follow-ups