License Scan report

Project: cncf-2
Subproject: open-telemetry
Snapshot on: 2024-02-09 (show repos)
assign-reviewers-action b101a9c1
community eda25d4f
opamp-go ce8a8ddf
opamp-spec 0360da84
opentelemetry-android abf83d63
opentelemetry-collector a567d2af
opentelemetry-collector-contrib 22e0ce00
opentelemetry-collector-releases d96e8f0d
opentelemetry-configuration c5128cc4
opentelemetry-cpp 6e8f7c44
opentelemetry-cpp-contrib 6a7bb023
opentelemetry-demo ab6c1a7c
opentelemetry-dotnet f214d27e
opentelemetry-dotnet-contrib 89ff089b
opentelemetry-dotnet-instrumentation 82f4d124
opentelemetry-erlang f6db9a91
opentelemetry-erlang-contrib eacf98ce
opentelemetry-go dd5d0547
opentelemetry-go-build-tools 7b5c8818
opentelemetry-go-contrib ea8df2ce
opentelemetry-go-instrumentation 2ac28454
opentelemetry-go-vanityurls f252f171
opentelemetry-helm-charts 842212df
opentelemetry-java a5d20654
opentelemetry-java-contrib 2a66e05a
opentelemetry-java-examples 12095a9c
opentelemetry-java-instrumentation 1c07aa5c
opentelemetry-js f86251d4
opentelemetry-js-contrib 39c34df6
opentelemetry-lambda 4471945a
opentelemetry-network 084893ca
opentelemetry-network-build-tools 07939738
opentelemetry-operator 94c8420e
opentelemetry-php b20c45df
opentelemetry-php-contrib 5e8357bb
opentelemetry-php-instrumentation 4b4d180f
opentelemetry-profiling 9cd9e81b
opentelemetry-proto c451441d
opentelemetry-proto-go 985478f7
opentelemetry-proto-java e2efe5f0
opentelemetry-proto-profile 154f8715
opentelemetry-python 3500f5c0
opentelemetry-python-contrib 47caeab7
opentelemetry-ruby 367cf9a1
opentelemetry-ruby-contrib c048b149
opentelemetry-rust 3f327a1e
opentelemetry-rust-contrib c56e309f
opentelemetry-sandbox-web-js d8fab863
opentelemetry-specification fa5eca7a
opentelemetry-sqlcommenter 2f8841ad
opentelemetry-swift 613b64d5
opentelemetry.io 7f611621
otel-arrow cfd4ede9
oteps d6b1172d
semantic-conventions a78115ee
semantic-conventions-java 0141bda5
sig-security 7f0d2b43
stackoverflow2slack 2477173d
weaver e2a8bee3
wg-prometheus 06a139ea

Key findings:

Finding #1
Priority: High
These files (or the files that the license files apply to) are under the LGPL-2.1+ (weak copyleft) license which may conflict with the project license. If the files are not needed you should remove them from your repos.
2 files (show files)
open-telemetry-2024-02-09.zip/opentelemetry-go-instrumentation/LICENSES/libbpf/LICENSE.LGPL-2.1
open-telemetry-2024-02-09.zip/opentelemetry-go-instrumentation/internal/include/libbpf/LICENSE.LGPL-2.1
Finding #2
Priority: Medium
These files (or the files that the license files apply to) are under the MPL-2.0 (weak copyleft) license which may conflict with the project license. If the files are not needed you should remove them from your repos.
4 files (show files)
open-telemetry-2024-02-09.zip/opentelemetry-go-instrumentation/LICENSES/github.com/hashicorp/go-version/LICENSE
open-telemetry-2024-02-09.zip/opentelemetry-java-contrib/static-instrumenter/agent-instrumenter/src/integrationTest/resources/app.jar/mozilla/public-suffix-list.txt
open-telemetry-2024-02-09.zip/opentelemetry-java-contrib/static-instrumenter/maven-plugin/src/test/resources/test-http-app.jar/mozilla/public-suffix-list.txt
open-telemetry-2024-02-09.zip/opentelemetry-java-instrumentation/licenses/okhttp-4.12.0.jar/okhttp3/internal/publicsuffix/NOTICE

License summary:

Project Licenses:
  Apache-2.0   26610
  CC-BY-4.0   1
Weak Copyleft:
  LGPL-2.1+   2
  MPL-2.0   4
Attribution:
  BSD-Style OR LGPL-2.1   24
  Apache-2.0 AND BSD-2-Clause AND MIT   1
  Apache-2.0 AND BSD-3-Clause   2
  Apache-2.0 AND BSD-3-Clause AND MIT   2
  Apache-2.0 AND MIT   22
  BSD-2-Clause   27
  BSD-3-Clause   578
  BSD-3-Clause AND MIT   2
  ISC   20
  MIT   518
Other:
  Artistic-1.0-Perl   4
  CC0-1.0   2
  LicenseRef-Public-domain   12
  Unlicense   1
  LicenseRef-Non-commercial   1
No license found:
  No license found in file   18360
  No license found in file - excluded file extension   1766
  No license found in file - empty file   240
  No license found in file - third party directory   494
TOTAL   48693  

Counts are numbers of files detected in the scanned repos.


Please contact the provider of this report with any questions, comments, etc. regarding its contents.