Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Replace copy of license with an SPDX identifier. #171

Open
wants to merge 1 commit into
base: main
Choose a base branch
from

Conversation

jaraco
Copy link
Owner

@jaraco jaraco commented Mar 21, 2025

Keeping a separate copy of a well-known license is just extra maintenance burden. With the introduction of SPDX identifiers in PyPI metadata, the most straightforward way to indicate the license for the project is through the license metadata field.

Comment on lines -8 to -9
The above copyright notice and this permission notice shall be included in
all copies or substantial portions of the Software.
Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Doesn't removal violate this requirement?

Copy link
Owner Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

In my opinion, no. The permission notice is still included by way of the SPDX identifier. It merely reduces the redundancy.

Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

SPDX is a reference to a license in an external DB, not to a notice within a license. And the requirement is to include this notice in all copies of the project.

IANAL, but I'm like 99% sure downstreams would not be able to distribute said software if it doesn't have a license file.

It's probably a good idea to ask @hroncok @befeleme @mgorny if the respective distros have policies that would cause problems.

Also, GitHub will probably stop being able to detect said licenses. It uses https://licensee.github.io/licensee/ to perform detection. You can run it as a CLI tool in a container to see what it'd return.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants