Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Can we get vuln-type filtering for licenses as well? #5250

Closed
mastacheata opened this issue Sep 26, 2023 Discussed in #4991 · 1 comment
Closed

Can we get vuln-type filtering for licenses as well? #5250

mastacheata opened this issue Sep 26, 2023 Discussed in #4991 · 1 comment

Comments

@mastacheata
Copy link

Discussed in #4991

Originally posted by mastacheata August 14, 2023

Description

Hey there,

it would be great if the license scanner results could be filtered by type before outputting them.

I think the vuln-type filter would be especially useful to filter out OS packages.
The typical use case for trivy is not people building new Linux distributions and sharing them publicly, but people building and sharing applications that just so happen to run on a Linux system. In the later case, the operating system packages being GPL licensed is of no concern at all, but a library-type dependency with a viral license is extremely important to consider.

So far, the only option around that is to filter the results by specifying a custom template or filtering the json or text outputs using third party tools.

Thanks for considering this.

Target

Container Image

Scanner

License

@github-actions
Copy link

@github-actions github-actions bot closed this as not planned Won't fix, can't repro, duplicate, stale Sep 26, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant