{
  "licence_assessment_counts": {
    "ALLOW": 91,
    "DENY": 0,
    "MANUALLY_REVIEWED": 5,
    "REVIEW": 0,
    "UNKNOWN": 0
  },
  "missing_dependencies": [],
  "packages": {
    "Golang Utilities": {
      "anchor": "package-48159359-b9eb-af1a-404a-9f5c71156710",
      "declared_licence": "Apache-2.0",
      "is_compliant": true,
      "is_dependency": false,
      "licence": "Apache-2.0",
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [],
      "licence_source": "configuration",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "Golang Utilities",
      "url": "unknown",
      "version": "unknown"
    },
    "dario.cat/mergo": {
      "anchor": "package-ba4c83b1-4931-0229-70e6-1b8bff96e47b",
      "declared_licence": "BSD-3-Clause",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "BSD-3-Clause",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "BSD-3-Clause",
        "discovered_licence": "BSD-3-Clause",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "BSD-3-Clause",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/imdario/mergo/blob/v1.0.0/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "dario.cat/mergo",
      "url": "https://github.com/imdario/mergo/blob/v1.0.0/LICENSE",
      "version": "v1.0.0"
    },
    "github.com/DeRuina/timberjack": {
      "anchor": "package-edb732d7-5ebd-19ff-a723-c8d8c52a7751",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/DeRuina/timberjack/blob/v1.4.8/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/DeRuina/timberjack",
      "url": "https://github.com/DeRuina/timberjack/blob/v1.4.8/LICENSE",
      "version": "v1.4.8"
    },
    "github.com/OneOfOne/xxhash": {
      "anchor": "package-4e884669-bc70-1c58-2c06-4559af34c15c",
      "declared_licence": "Apache-2.0",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "Apache-2.0",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "Apache-2.0",
        "discovered_licence": "Apache-2.0",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "Apache-2.0",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/OneOfOne/xxhash/blob/v1.2.8/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/OneOfOne/xxhash",
      "url": "https://github.com/OneOfOne/xxhash/blob/v1.2.8/LICENSE",
      "version": "v1.2.8"
    },
    "github.com/ProtonMail/go-crypto": {
      "anchor": "package-1c9005f3-13b8-eccb-0425-4ae9f29fde85",
      "declared_licence": "BSD-3-Clause",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "BSD-3-Clause",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "BSD-3-Clause",
        "discovered_licence": "BSD-3-Clause",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "BSD-3-Clause",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/ProtonMail/go-crypto/blob/v1.1.6/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/ProtonMail/go-crypto",
      "url": "https://github.com/ProtonMail/go-crypto/blob/v1.1.6/LICENSE",
      "version": "v1.1.6"
    },
    "github.com/asaskevich/govalidator": {
      "anchor": "package-3c3e5f59-ee6b-ccd9-6eb0-c04f8f4c3b6f",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/asaskevich/govalidator/blob/475eaeb16496/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/asaskevich/govalidator",
      "url": "https://github.com/asaskevich/govalidator/blob/475eaeb16496/LICENSE",
      "version": "v0.0.0-20200108200545-475eaeb16496"
    },
    "github.com/avast/retry-go/v4": {
      "anchor": "package-87ee07ee-7872-f850-dc1b-cdee238c4ea8",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/avast/retry-go/blob/v4.7.0/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/avast/retry-go/v4",
      "url": "https://github.com/avast/retry-go/blob/v4.7.0/LICENSE",
      "version": "v4.7.0"
    },
    "github.com/bmatcuk/doublestar/v3": {
      "anchor": "package-8e9527c8-917a-e2de-862a-50b9a4e05d6a",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/bmatcuk/doublestar/blob/v3.0.0/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/bmatcuk/doublestar/v3",
      "url": "https://github.com/bmatcuk/doublestar/blob/v3.0.0/LICENSE",
      "version": "v3.0.0"
    },
    "github.com/bombsimon/logrusr/v4": {
      "anchor": "package-99e9f8fe-432a-3a42-2a15-d1b27cffaf24",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/bombsimon/logrusr/blob/v4.2.0/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/bombsimon/logrusr/v4",
      "url": "https://github.com/bombsimon/logrusr/blob/v4.2.0/LICENSE",
      "version": "v4.2.0"
    },
    "github.com/cloudflare/circl": {
      "anchor": "package-b8e27017-bc44-14cc-1806-18c37261426e",
      "declared_licence": "BSD-3-Clause",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "BSD-3-Clause",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "BSD-3-Clause",
        "discovered_licence": "BSD-3-Clause",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "BSD-3-Clause",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/cloudflare/circl/blob/v1.6.3/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/cloudflare/circl",
      "url": "https://github.com/cloudflare/circl/blob/v1.6.3/LICENSE",
      "version": "v1.6.3"
    },
    "github.com/cyphar/filepath-securejoin": {
      "anchor": "package-c7cbc63e-7167-11ff-92e7-7541c32a2c7e",
      "declared_licence": "unknown",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "Unknown",
      "licence_assessment": {
        "assessed_licence_source": "manual licence review",
        "automatic_status": "REVIEW",
        "dependency_licence": "BSD-3-Clause AND MPL-2.0",
        "discovered_licence": "Unknown",
        "manual_review": {
          "reason": "Reviewed the MPL-2.0 obligations for this unmodified dependency and will retain the required notices.",
          "reviewed": true
        },
        "project_licence": "Apache-2.0",
        "reason": "Assessed using manually verified BSD-3-Clause AND MPL-2.0 because the discovered licence was unknown. All AND obligations apply: BSD-3-Clause: A permissive dependency generally permits redistribution; retain its notices and conditions.; MPL-2.0: Weak copyleft obligations depend on modification, linking and how the work is distributed.",
        "rule": "expression-and",
        "scancode_licences": [],
        "selected_licence": "BSD-3-Clause AND MPL-2.0",
        "source": "built-in",
        "status": "MANUALLY_REVIEWED"
      },
      "licence_candidates": [
        "BSD-3-Clause",
        "MPL-2.0"
      ],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment does not meet the configured policy; accepted after manual review: BSD-3-Clause AND MPL-2.0.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/cyphar/filepath-securejoin/blob/v0.6.1/COPYING.md",
          "text": ""
        },
        {
          "kind": "licence",
          "path": "https://github.com/cyphar/filepath-securejoin/blob/v0.6.1/COPYING.md",
          "text": ""
        }
      ],
      "licence_source": "unknown",
      "manual_check": {
        "checked": true,
        "reason": "BSD-3-Clause AND MPL-2.0"
      },
      "mark_as_problematic": true,
      "name": "github.com/cyphar/filepath-securejoin",
      "url": "unknown",
      "version": "v0.6.1"
    },
    "github.com/deckarep/golang-set/v2": {
      "anchor": "package-9c4fae1a-2704-9e77-075e-fdd96a6aae37",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/deckarep/golang-set/blob/v2.9.0/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/deckarep/golang-set/v2",
      "url": "https://github.com/deckarep/golang-set/blob/v2.9.0/LICENSE",
      "version": "v2.9.0"
    },
    "github.com/djherbis/times": {
      "anchor": "package-c92d6f9e-2513-538c-1680-570321cb3b5b",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/djherbis/times/blob/v1.6.0/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/djherbis/times",
      "url": "https://github.com/djherbis/times/blob/v1.6.0/LICENSE",
      "version": "v1.6.0"
    },
    "github.com/dolmen-go/contextio": {
      "anchor": "package-fab99f78-caf3-b805-8ea7-4704e9d86f31",
      "declared_licence": "Apache-2.0",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "Apache-2.0",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "Apache-2.0",
        "discovered_licence": "Apache-2.0",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "Apache-2.0",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/dolmen-go/contextio/blob/v1.0.0/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/dolmen-go/contextio",
      "url": "https://github.com/dolmen-go/contextio/blob/v1.0.0/LICENSE",
      "version": "v1.0.0"
    },
    "github.com/emirpasic/gods": {
      "anchor": "package-edb2d680-f6a5-6807-7b3e-d27ca7784602",
      "declared_licence": "unknown",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "Unknown",
      "licence_assessment": {
        "assessed_licence_source": "manual licence review",
        "automatic_status": "ALLOW",
        "dependency_licence": "BSD-2-Clause AND ISC",
        "discovered_licence": "Unknown",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "Assessed using manually verified BSD-2-Clause AND ISC because the discovered licence was unknown. All AND obligations apply: BSD-2-Clause: A permissive dependency generally permits redistribution; retain its notices and conditions.; ISC: A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "expression-and",
        "scancode_licences": [],
        "selected_licence": "BSD-2-Clause AND ISC",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [
        "BSD-2-Clause",
        "ISC"
      ],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment does not meet the configured policy; accepted after manual review: BSD-2-Clause AND ISC.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/emirpasic/gods/blob/v1.18.1/LICENSE",
          "text": ""
        },
        {
          "kind": "licence",
          "path": "https://github.com/emirpasic/gods/blob/v1.18.1/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "unknown",
      "manual_check": {
        "checked": true,
        "reason": "BSD-2-Clause AND ISC"
      },
      "mark_as_problematic": true,
      "name": "github.com/emirpasic/gods",
      "url": "unknown",
      "version": "v1.18.1"
    },
    "github.com/evanphx/hclogr": {
      "anchor": "package-f794694b-7ab3-b56c-f5a3-355eef7689a8",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/evanphx/hclogr/blob/v0.2.0/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/evanphx/hclogr",
      "url": "https://github.com/evanphx/hclogr/blob/v0.2.0/LICENSE",
      "version": "v0.2.0"
    },
    "github.com/fatih/color": {
      "anchor": "package-db721560-71ec-e408-b821-eabbca5a8cda",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/fatih/color/blob/v1.16.0/LICENSE.md",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/fatih/color",
      "url": "https://github.com/fatih/color/blob/v1.16.0/LICENSE.md",
      "version": "v1.16.0"
    },
    "github.com/fsnotify/fsnotify": {
      "anchor": "package-ef4aeb96-dce8-3d07-5ca3-f6188332e53b",
      "declared_licence": "BSD-3-Clause",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "BSD-3-Clause",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "BSD-3-Clause",
        "discovered_licence": "BSD-3-Clause",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "BSD-3-Clause",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/fsnotify/fsnotify/blob/v1.9.0/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/fsnotify/fsnotify",
      "url": "https://github.com/fsnotify/fsnotify/blob/v1.9.0/LICENSE",
      "version": "v1.9.0"
    },
    "github.com/git-pkgs/spdx": {
      "anchor": "package-b6eb0737-bf5b-4af2-0523-83f6fd4dad01",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/git-pkgs/spdx/blob/v0.3.1/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/git-pkgs/spdx",
      "url": "https://github.com/git-pkgs/spdx/blob/v0.3.1/LICENSE",
      "version": "v0.3.1"
    },
    "github.com/github/go-spdx/v2/spdxexp": {
      "anchor": "package-3a404cbe-86e8-ddcb-3c1f-e86baa164b22",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/github/go-spdx/blob/v2.7.0/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/github/go-spdx/v2/spdxexp",
      "url": "https://github.com/github/go-spdx/blob/v2.7.0/LICENSE",
      "version": "v2.7.0"
    },
    "github.com/go-faker/faker/v4": {
      "anchor": "package-36aa16ad-aa56-cce3-7bc4-eea755b16678",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/go-faker/faker/blob/v4.9.0/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/go-faker/faker/v4",
      "url": "https://github.com/go-faker/faker/blob/v4.9.0/LICENSE",
      "version": "v4.9.0"
    },
    "github.com/go-git/gcfg": {
      "anchor": "package-dce76d5d-fbf8-92f8-8dcc-a81b511d1820",
      "declared_licence": "BSD-3-Clause",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "BSD-3-Clause",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "BSD-3-Clause",
        "discovered_licence": "BSD-3-Clause",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "BSD-3-Clause",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/go-git/gcfg/blob/3a3c6141e376/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/go-git/gcfg",
      "url": "https://github.com/go-git/gcfg/blob/3a3c6141e376/LICENSE",
      "version": "v1.5.1-0.20230307220236-3a3c6141e376"
    },
    "github.com/go-git/go-billy/v5": {
      "anchor": "package-b8b75015-740d-a02d-6805-db514b152332",
      "declared_licence": "Apache-2.0",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "Apache-2.0",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "Apache-2.0",
        "discovered_licence": "Apache-2.0",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "Apache-2.0",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/go-git/go-billy/blob/v5.9.0/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/go-git/go-billy/v5",
      "url": "https://github.com/go-git/go-billy/blob/v5.9.0/LICENSE",
      "version": "v5.9.0"
    },
    "github.com/go-git/go-git/v5": {
      "anchor": "package-61451cd8-7098-1c81-64b0-a503958fb577",
      "declared_licence": "Apache-2.0",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "Apache-2.0",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "Apache-2.0",
        "discovered_licence": "Apache-2.0",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "Apache-2.0",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/go-git/go-git/blob/v5.19.1/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/go-git/go-git/v5",
      "url": "https://github.com/go-git/go-git/blob/v5.19.1/LICENSE",
      "version": "v5.19.1"
    },
    "github.com/go-http-utils/headers": {
      "anchor": "package-c084ff18-9a40-403f-a638-946dacc770d5",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/go-http-utils/headers/blob/fed159eddc2a/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/go-http-utils/headers",
      "url": "https://github.com/go-http-utils/headers/blob/fed159eddc2a/LICENSE",
      "version": "v0.0.0-20181008091004-fed159eddc2a"
    },
    "github.com/go-logr/logr": {
      "anchor": "package-f96c14c5-421c-26e5-149a-5edd783f84b5",
      "declared_licence": "Apache-2.0",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "Apache-2.0",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "Apache-2.0",
        "discovered_licence": "Apache-2.0",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "Apache-2.0",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/go-logr/logr/blob/v1.4.4/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/go-logr/logr",
      "url": "https://github.com/go-logr/logr/blob/v1.4.4/LICENSE",
      "version": "v1.4.4"
    },
    "github.com/go-logr/stdr": {
      "anchor": "package-b0af2bab-8c2b-5516-b0d6-c1c26a5e0022",
      "declared_licence": "Apache-2.0",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "Apache-2.0",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "Apache-2.0",
        "discovered_licence": "Apache-2.0",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "Apache-2.0",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/go-logr/stdr/blob/v1.2.2/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/go-logr/stdr",
      "url": "https://github.com/go-logr/stdr/blob/v1.2.2/LICENSE",
      "version": "v1.2.2"
    },
    "github.com/go-logr/zapr": {
      "anchor": "package-f068b51b-8250-adcb-7765-7fda521d4370",
      "declared_licence": "Apache-2.0",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "Apache-2.0",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "Apache-2.0",
        "discovered_licence": "Apache-2.0",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "Apache-2.0",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/go-logr/zapr/blob/v1.3.0/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/go-logr/zapr",
      "url": "https://github.com/go-logr/zapr/blob/v1.3.0/LICENSE",
      "version": "v1.3.0"
    },
    "github.com/go-ozzo/ozzo-validation/v4": {
      "anchor": "package-49b295f6-cce1-cc5e-35c7-6c6d45305f13",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/go-ozzo/ozzo-validation/blob/v4.3.0/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/go-ozzo/ozzo-validation/v4",
      "url": "https://github.com/go-ozzo/ozzo-validation/blob/v4.3.0/LICENSE",
      "version": "v4.3.0"
    },
    "github.com/go-viper/mapstructure/v2": {
      "anchor": "package-b985d432-f362-6f35-ba3c-5da8ef88404a",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/go-viper/mapstructure/blob/v2.5.0/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/go-viper/mapstructure/v2",
      "url": "https://github.com/go-viper/mapstructure/blob/v2.5.0/LICENSE",
      "version": "v2.5.0"
    },
    "github.com/godbus/dbus/v5": {
      "anchor": "package-170d89ab-f90c-7ff8-e792-a7d9bc813c2e",
      "declared_licence": "BSD-2-Clause",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "BSD-2-Clause",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "BSD-2-Clause",
        "discovered_licence": "BSD-2-Clause",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "BSD-2-Clause",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/godbus/dbus/blob/v5.2.2/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/godbus/dbus/v5",
      "url": "https://github.com/godbus/dbus/blob/v5.2.2/LICENSE",
      "version": "v5.2.2"
    },
    "github.com/gofrs/uuid/v5": {
      "anchor": "package-8cfc9391-5e18-a499-f4ae-65043b6f81e6",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/gofrs/uuid/blob/v5.5.1/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/gofrs/uuid/v5",
      "url": "https://github.com/gofrs/uuid/blob/v5.5.1/LICENSE",
      "version": "v5.5.1"
    },
    "github.com/gogs/chardet": {
      "anchor": "package-87c569b7-8a95-0114-d4f3-3342500b0360",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/gogs/chardet/blob/b7413eaefb8f/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/gogs/chardet",
      "url": "https://github.com/gogs/chardet/blob/b7413eaefb8f/LICENSE",
      "version": "v0.0.0-20211120154057-b7413eaefb8f"
    },
    "github.com/golang/groupcache/lru": {
      "anchor": "package-d9b23de2-82e1-bfc9-7a6e-8566e812f6b0",
      "declared_licence": "Apache-2.0",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "Apache-2.0",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "Apache-2.0",
        "discovered_licence": "Apache-2.0",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "Apache-2.0",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/golang/groupcache/blob/2c02b8208cf8/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/golang/groupcache/lru",
      "url": "https://github.com/golang/groupcache/blob/2c02b8208cf8/LICENSE",
      "version": "v0.0.0-20241129210726-2c02b8208cf8"
    },
    "github.com/hashicorp/errwrap": {
      "anchor": "package-512dc576-14a1-d3bf-2568-3b0fa9d3fe5a",
      "declared_licence": "MPL-2.0",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MPL-2.0",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "REVIEW",
        "dependency_licence": "MPL-2.0",
        "discovered_licence": "MPL-2.0",
        "manual_review": {
          "reason": "Used indirectly through go-multierror in utils/commonerrors for error wrapping helpers. This is acceptable provided the dependency remains unmodified in distribution artifacts, MPL-2.0 notices and licence text are retained, and any future modifications to MPL-covered files are made available under MPL-2.0.",
          "reviewed": true
        },
        "project_licence": "Apache-2.0",
        "reason": "Weak copyleft obligations depend on modification, linking and how the work is distributed.",
        "rule": "weak-copyleft-dependency",
        "scancode_licences": [],
        "selected_licence": "MPL-2.0",
        "source": "built-in",
        "status": "MANUALLY_REVIEWED"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/hashicorp/errwrap/blob/v1.0.0/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/hashicorp/errwrap",
      "url": "https://github.com/hashicorp/errwrap/blob/v1.0.0/LICENSE",
      "version": "v1.0.0"
    },
    "github.com/hashicorp/go-cleanhttp": {
      "anchor": "package-96f7dab4-acc5-ac12-fcc7-3f84bc5f7401",
      "declared_licence": "MPL-2.0",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MPL-2.0",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "REVIEW",
        "dependency_licence": "MPL-2.0",
        "discovered_licence": "MPL-2.0",
        "manual_review": {
          "reason": "Used directly in utils/http to create isolated pooled HTTP clients and transports. This is acceptable provided the dependency remains unmodified in distribution artifacts, MPL-2.0 notices and licence text are retained, and any future modifications to MPL-covered files are made available under MPL-2.0.",
          "reviewed": true
        },
        "project_licence": "Apache-2.0",
        "reason": "Weak copyleft obligations depend on modification, linking and how the work is distributed.",
        "rule": "weak-copyleft-dependency",
        "scancode_licences": [],
        "selected_licence": "MPL-2.0",
        "source": "built-in",
        "status": "MANUALLY_REVIEWED"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/hashicorp/go-cleanhttp/blob/v0.5.2/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/hashicorp/go-cleanhttp",
      "url": "https://github.com/hashicorp/go-cleanhttp/blob/v0.5.2/LICENSE",
      "version": "v0.5.2"
    },
    "github.com/hashicorp/go-hclog": {
      "anchor": "package-9d49f903-8bfd-797c-ce11-39809761cadf",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/hashicorp/go-hclog/blob/v1.6.3/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/hashicorp/go-hclog",
      "url": "https://github.com/hashicorp/go-hclog/blob/v1.6.3/LICENSE",
      "version": "v1.6.3"
    },
    "github.com/hashicorp/go-multierror": {
      "anchor": "package-5812e8ea-673e-ec04-5158-a48b908a0c89",
      "declared_licence": "MPL-2.0",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MPL-2.0",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "REVIEW",
        "dependency_licence": "MPL-2.0",
        "discovered_licence": "MPL-2.0",
        "manual_review": {
          "reason": "Used directly in utils/commonerrors to aggregate multiple errors. This is acceptable provided the dependency remains unmodified in distribution artifacts, MPL-2.0 notices and licence text are retained, and any future modifications to MPL-covered files are made available under MPL-2.0.",
          "reviewed": true
        },
        "project_licence": "Apache-2.0",
        "reason": "Weak copyleft obligations depend on modification, linking and how the work is distributed.",
        "rule": "weak-copyleft-dependency",
        "scancode_licences": [],
        "selected_licence": "MPL-2.0",
        "source": "built-in",
        "status": "MANUALLY_REVIEWED"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/hashicorp/go-multierror/blob/v1.1.1/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/hashicorp/go-multierror",
      "url": "https://github.com/hashicorp/go-multierror/blob/v1.1.1/LICENSE",
      "version": "v1.1.1"
    },
    "github.com/hashicorp/go-retryablehttp": {
      "anchor": "package-679192a6-6548-abe6-00dd-218e39d33187",
      "declared_licence": "MPL-2.0",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MPL-2.0",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "REVIEW",
        "dependency_licence": "MPL-2.0",
        "discovered_licence": "MPL-2.0",
        "manual_review": {
          "reason": "Used directly in utils/http to implement retryable HTTP client behavior and request handling. This is acceptable provided the dependency remains unmodified in distribution artifacts, MPL-2.0 notices and licence text are retained, and any future modifications to MPL-covered files are made available under MPL-2.0.",
          "reviewed": true
        },
        "project_licence": "Apache-2.0",
        "reason": "Weak copyleft obligations depend on modification, linking and how the work is distributed.",
        "rule": "weak-copyleft-dependency",
        "scancode_licences": [],
        "selected_licence": "MPL-2.0",
        "source": "built-in",
        "status": "MANUALLY_REVIEWED"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/hashicorp/go-retryablehttp/blob/v0.7.8/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/hashicorp/go-retryablehttp",
      "url": "https://github.com/hashicorp/go-retryablehttp/blob/v0.7.8/LICENSE",
      "version": "v0.7.8"
    },
    "github.com/jbenet/go-context/io": {
      "anchor": "package-8618ad07-8ad2-567b-db93-d77915d9e815",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/jbenet/go-context/blob/d14ea06fba99/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/jbenet/go-context/io",
      "url": "https://github.com/jbenet/go-context/blob/d14ea06fba99/LICENSE",
      "version": "v0.0.0-20150711004518-d14ea06fba99"
    },
    "github.com/joho/godotenv": {
      "anchor": "package-b861c2c3-da94-286a-0800-ac4b1f914d3a",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/joho/godotenv/blob/v1.5.1/LICENCE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/joho/godotenv",
      "url": "https://github.com/joho/godotenv/blob/v1.5.1/LICENCE",
      "version": "v1.5.1"
    },
    "github.com/josharian/intern": {
      "anchor": "package-5ace8ca9-71e2-6c52-4454-5b687bbb2bdb",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/josharian/intern/blob/v1.0.0/license.md",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/josharian/intern",
      "url": "https://github.com/josharian/intern/blob/v1.0.0/license.md",
      "version": "v1.0.0"
    },
    "github.com/kevinburke/ssh_config": {
      "anchor": "package-8a833faf-3933-de86-5500-472bf95cd86f",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/kevinburke/ssh_config/blob/v1.2.0/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/kevinburke/ssh_config",
      "url": "https://github.com/kevinburke/ssh_config/blob/v1.2.0/LICENSE",
      "version": "v1.2.0"
    },
    "github.com/klauspost/compress": {
      "anchor": "package-86b05ef1-d1cc-a0cd-a413-287c8ef57e21",
      "declared_licence": "unknown",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "Unknown",
      "licence_assessment": {
        "assessed_licence_source": "manual licence review",
        "automatic_status": "ALLOW",
        "dependency_licence": "Apache-2.0 AND BSD-3-Clause AND MIT",
        "discovered_licence": "Unknown",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "Assessed using manually verified Apache-2.0 AND BSD-3-Clause AND MIT because the discovered licence was unknown. All AND obligations apply: Apache-2.0: A permissive dependency generally permits redistribution; retain its notices and conditions.; BSD-3-Clause: A permissive dependency generally permits redistribution; retain its notices and conditions.; MIT: A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "expression-and",
        "scancode_licences": [],
        "selected_licence": "Apache-2.0 AND BSD-3-Clause AND MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [
        "Apache-2.0",
        "BSD-3-Clause",
        "MIT"
      ],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment does not meet the configured policy; accepted after manual review: BSD-3-Clause AND Apache-2.0 AND MIT.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/klauspost/compress/blob/v1.18.7/LICENSE",
          "text": ""
        },
        {
          "kind": "licence",
          "path": "https://github.com/klauspost/compress/blob/v1.18.7/LICENSE",
          "text": ""
        },
        {
          "kind": "licence",
          "path": "https://github.com/klauspost/compress/blob/v1.18.7/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "unknown",
      "manual_check": {
        "checked": true,
        "reason": "BSD-3-Clause AND Apache-2.0 AND MIT"
      },
      "mark_as_problematic": true,
      "name": "github.com/klauspost/compress",
      "url": "unknown",
      "version": "v1.18.7"
    },
    "github.com/klauspost/compress/internal/snapref": {
      "anchor": "package-22ee2112-5d24-cea1-36d5-3c2a4ab97c91",
      "declared_licence": "BSD-3-Clause",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "BSD-3-Clause",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "BSD-3-Clause",
        "discovered_licence": "BSD-3-Clause",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "BSD-3-Clause",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/klauspost/compress/blob/v1.18.7/internal/snapref/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/klauspost/compress/internal/snapref",
      "url": "https://github.com/klauspost/compress/blob/v1.18.7/internal/snapref/LICENSE",
      "version": "v1.18.7"
    },
    "github.com/klauspost/compress/zstd/internal/xxhash": {
      "anchor": "package-3628e521-f274-0a46-036e-3317f37a136d",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/klauspost/compress/blob/v1.18.7/zstd/internal/xxhash/LICENSE.txt",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/klauspost/compress/zstd/internal/xxhash",
      "url": "https://github.com/klauspost/compress/blob/v1.18.7/zstd/internal/xxhash/LICENSE.txt",
      "version": "v1.18.7"
    },
    "github.com/klauspost/cpuid/v2": {
      "anchor": "package-f44ab62c-0f46-c517-2b27-638374d3d919",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/klauspost/cpuid/blob/v2.3.0/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/klauspost/cpuid/v2",
      "url": "https://github.com/klauspost/cpuid/blob/v2.3.0/LICENSE",
      "version": "v2.3.0"
    },
    "github.com/mailru/easyjson": {
      "anchor": "package-1d47e61a-8caf-a240-713d-8a0765e0c598",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/mailru/easyjson/blob/v0.9.2/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/mailru/easyjson",
      "url": "https://github.com/mailru/easyjson/blob/v0.9.2/LICENSE",
      "version": "v0.9.2"
    },
    "github.com/mattn/go-colorable": {
      "anchor": "package-c06dfafd-d0a5-a5d5-4b38-4a37fe25eaf3",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/mattn/go-colorable/blob/v0.1.14/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/mattn/go-colorable",
      "url": "https://github.com/mattn/go-colorable/blob/v0.1.14/LICENSE",
      "version": "v0.1.14"
    },
    "github.com/mattn/go-isatty": {
      "anchor": "package-04e24326-bc32-4234-598e-90c94720897e",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/mattn/go-isatty/blob/v0.0.20/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/mattn/go-isatty",
      "url": "https://github.com/mattn/go-isatty/blob/v0.0.20/LICENSE",
      "version": "v0.0.20"
    },
    "github.com/mitchellh/go-homedir": {
      "anchor": "package-31e269a2-2733-21d5-7d4f-9c682514ab59",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/mitchellh/go-homedir/blob/v1.1.0/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/mitchellh/go-homedir",
      "url": "https://github.com/mitchellh/go-homedir/blob/v1.1.0/LICENSE",
      "version": "v1.1.0"
    },
    "github.com/pelletier/go-toml/v2": {
      "anchor": "package-a03d316d-9573-f53e-648b-8a940e2077b5",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/pelletier/go-toml/blob/v2.2.4/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/pelletier/go-toml/v2",
      "url": "https://github.com/pelletier/go-toml/blob/v2.2.4/LICENSE",
      "version": "v2.2.4"
    },
    "github.com/perimeterx/marshmallow": {
      "anchor": "package-85765083-ceef-f594-50c4-e9dcf51dd10a",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/perimeterx/marshmallow/blob/v1.1.5/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/perimeterx/marshmallow",
      "url": "https://github.com/perimeterx/marshmallow/blob/v1.1.5/LICENSE",
      "version": "v1.1.5"
    },
    "github.com/petermattis/goid": {
      "anchor": "package-7ff4886e-28d5-a4a1-2722-604be21c21ed",
      "declared_licence": "Apache-2.0",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "Apache-2.0",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "Apache-2.0",
        "discovered_licence": "Apache-2.0",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "Apache-2.0",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/petermattis/goid/blob/a731cc31b4fe/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/petermattis/goid",
      "url": "https://github.com/petermattis/goid/blob/a731cc31b4fe/LICENSE",
      "version": "v0.0.0-20250813065127-a731cc31b4fe"
    },
    "github.com/pjbgf/sha1cd": {
      "anchor": "package-676caa21-3e34-5846-a638-3110da25b4c9",
      "declared_licence": "Apache-2.0",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "Apache-2.0",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "Apache-2.0",
        "discovered_licence": "Apache-2.0",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "Apache-2.0",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/pjbgf/sha1cd/blob/v0.6.0/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/pjbgf/sha1cd",
      "url": "https://github.com/pjbgf/sha1cd/blob/v0.6.0/LICENSE",
      "version": "v0.6.0"
    },
    "github.com/pquerna/ffjson": {
      "anchor": "package-e92b764c-9dc7-0226-acda-d031bbdbbd67",
      "declared_licence": "Apache-2.0",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "Apache-2.0",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "Apache-2.0",
        "discovered_licence": "Apache-2.0",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "Apache-2.0",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/pquerna/ffjson/blob/aa0246cd15f7/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/pquerna/ffjson",
      "url": "https://github.com/pquerna/ffjson/blob/aa0246cd15f7/LICENSE",
      "version": "v0.0.0-20190930134022-aa0246cd15f7"
    },
    "github.com/rifflock/lfshook": {
      "anchor": "package-3bd104ab-1b91-d967-e9ee-741bbe0663f9",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/rifflock/lfshook/blob/b9218ef580f5/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/rifflock/lfshook",
      "url": "https://github.com/rifflock/lfshook/blob/b9218ef580f5/LICENSE",
      "version": "v0.0.0-20180920164130-b9218ef580f5"
    },
    "github.com/rs/zerolog": {
      "anchor": "package-f7b0c3d8-48fc-b871-cb33-61c7d4cbf9c9",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/rs/zerolog/blob/v1.35.1/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/rs/zerolog",
      "url": "https://github.com/rs/zerolog/blob/v1.35.1/LICENSE",
      "version": "v1.35.1"
    },
    "github.com/sagikazarmark/locafero": {
      "anchor": "package-f0d4a0bd-e355-01b9-f1dc-acc220d04fbd",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/sagikazarmark/locafero/blob/v0.11.0/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/sagikazarmark/locafero",
      "url": "https://github.com/sagikazarmark/locafero/blob/v0.11.0/LICENSE",
      "version": "v0.11.0"
    },
    "github.com/santhosh-tekuri/jsonschema/v6": {
      "anchor": "package-1ca4e812-a8a4-7791-5fd9-7f7c5f9b666a",
      "declared_licence": "Apache-2.0",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "Apache-2.0",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "Apache-2.0",
        "discovered_licence": "Apache-2.0",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "Apache-2.0",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/santhosh-tekuri/jsonschema/blob/v6.0.3/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/santhosh-tekuri/jsonschema/v6",
      "url": "https://github.com/santhosh-tekuri/jsonschema/blob/v6.0.3/LICENSE",
      "version": "v6.0.3"
    },
    "github.com/sasha-s/go-deadlock": {
      "anchor": "package-db62a250-692d-4eee-0807-f2c1c93e6bd1",
      "declared_licence": "Apache-2.0",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "Apache-2.0",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "Apache-2.0",
        "discovered_licence": "Apache-2.0",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "Apache-2.0",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/sasha-s/go-deadlock/blob/v0.3.9/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/sasha-s/go-deadlock",
      "url": "https://github.com/sasha-s/go-deadlock/blob/v0.3.9/LICENSE",
      "version": "v0.3.9"
    },
    "github.com/sergi/go-diff/diffmatchpatch": {
      "anchor": "package-9eba75ad-ff41-27f6-715b-41e21700cbe0",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/sergi/go-diff/blob/5b0b94c5c0d3/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/sergi/go-diff/diffmatchpatch",
      "url": "https://github.com/sergi/go-diff/blob/5b0b94c5c0d3/LICENSE",
      "version": "v1.3.2-0.20230802210424-5b0b94c5c0d3"
    },
    "github.com/shirou/gopsutil/v4": {
      "anchor": "package-96059858-327d-ae9d-d9ca-a58eec242098",
      "declared_licence": "BSD-3-Clause",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "BSD-3-Clause",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "BSD-3-Clause",
        "discovered_licence": "BSD-3-Clause",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "BSD-3-Clause",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/shirou/gopsutil/blob/v4.26.8/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/shirou/gopsutil/v4",
      "url": "https://github.com/shirou/gopsutil/blob/v4.26.8/LICENSE",
      "version": "v4.26.8"
    },
    "github.com/sirupsen/logrus": {
      "anchor": "package-2881124d-a3aa-3acb-e08e-2516e4953abb",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/sirupsen/logrus/blob/v1.10.2/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/sirupsen/logrus",
      "url": "https://github.com/sirupsen/logrus/blob/v1.10.2/LICENSE",
      "version": "v1.10.2"
    },
    "github.com/skeema/knownhosts": {
      "anchor": "package-803da542-c1b5-be9c-a2f3-2e317108411d",
      "declared_licence": "Apache-2.0",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "Apache-2.0",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "Apache-2.0",
        "discovered_licence": "Apache-2.0",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "Apache-2.0",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/skeema/knownhosts/blob/v1.3.1/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/skeema/knownhosts",
      "url": "https://github.com/skeema/knownhosts/blob/v1.3.1/LICENSE",
      "version": "v1.3.1"
    },
    "github.com/sourcegraph/conc": {
      "anchor": "package-ddc464f1-4957-4626-7636-2b967b987960",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/sourcegraph/conc/blob/5f936abd7ae8/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/sourcegraph/conc",
      "url": "https://github.com/sourcegraph/conc/blob/5f936abd7ae8/LICENSE",
      "version": "v0.3.1-0.20240121214520-5f936abd7ae8"
    },
    "github.com/spaolacci/murmur3": {
      "anchor": "package-6c704832-f4c5-db78-fa8c-4d679e690f42",
      "declared_licence": "BSD-3-Clause",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "BSD-3-Clause",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "BSD-3-Clause",
        "discovered_licence": "BSD-3-Clause",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "BSD-3-Clause",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/spaolacci/murmur3/blob/v1.1.0/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/spaolacci/murmur3",
      "url": "https://github.com/spaolacci/murmur3/blob/v1.1.0/LICENSE",
      "version": "v1.1.0"
    },
    "github.com/spf13/afero": {
      "anchor": "package-0e269342-4cb5-12af-7108-0e01083dc5ba",
      "declared_licence": "Apache-2.0",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "Apache-2.0",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "Apache-2.0",
        "discovered_licence": "Apache-2.0",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "Apache-2.0",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/spf13/afero/blob/v1.15.0/LICENSE.txt",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/spf13/afero",
      "url": "https://github.com/spf13/afero/blob/v1.15.0/LICENSE.txt",
      "version": "v1.15.0"
    },
    "github.com/spf13/cast": {
      "anchor": "package-c8825d3c-1845-bbee-949c-7a3033649417",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/spf13/cast/blob/v1.10.0/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/spf13/cast",
      "url": "https://github.com/spf13/cast/blob/v1.10.0/LICENSE",
      "version": "v1.10.0"
    },
    "github.com/spf13/pflag": {
      "anchor": "package-21b264e5-203c-540e-ba92-84649450f986",
      "declared_licence": "BSD-3-Clause",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "BSD-3-Clause",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "BSD-3-Clause",
        "discovered_licence": "BSD-3-Clause",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "BSD-3-Clause",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/spf13/pflag/blob/v1.0.10/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/spf13/pflag",
      "url": "https://github.com/spf13/pflag/blob/v1.0.10/LICENSE",
      "version": "v1.0.10"
    },
    "github.com/spf13/viper": {
      "anchor": "package-9dfd44d7-afa6-84cf-cad9-5d48ebc6d982",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/spf13/viper/blob/v1.21.0/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/spf13/viper",
      "url": "https://github.com/spf13/viper/blob/v1.21.0/LICENSE",
      "version": "v1.21.0"
    },
    "github.com/stretchr/testify": {
      "anchor": "package-245cb304-f906-c779-d032-88fcd906b9b1",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/stretchr/testify/blob/v1.12.1/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/stretchr/testify",
      "url": "https://github.com/stretchr/testify/blob/v1.12.1/LICENSE",
      "version": "v1.12.1"
    },
    "github.com/stretchr/testify/internal/difflib": {
      "anchor": "package-e3185487-d660-90dd-b477-e8529c9dbcbb",
      "declared_licence": "BSD-3-Clause",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "BSD-3-Clause",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "BSD-3-Clause",
        "discovered_licence": "BSD-3-Clause",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "BSD-3-Clause",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/stretchr/testify/blob/v1.12.1/internal/difflib/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/stretchr/testify/internal/difflib",
      "url": "https://github.com/stretchr/testify/blob/v1.12.1/internal/difflib/LICENSE",
      "version": "v1.12.1"
    },
    "github.com/stretchr/testify/internal/spew": {
      "anchor": "package-bf473585-29e4-cf5a-ea51-440577003543",
      "declared_licence": "ISC",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "ISC",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "ISC",
        "discovered_licence": "ISC",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "ISC",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment does not meet the configured policy; accepted after manual review: ISC accepted for this project as a transitive test dependency..",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/stretchr/testify/blob/v1.12.1/internal/spew/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": true,
        "reason": "ISC accepted for this project as a transitive test dependency."
      },
      "mark_as_problematic": true,
      "name": "github.com/stretchr/testify/internal/spew",
      "url": "https://github.com/stretchr/testify/blob/v1.12.1/internal/spew/LICENSE",
      "version": "v1.12.1"
    },
    "github.com/sttk/stringcase": {
      "anchor": "package-9072b219-119e-16bc-1b98-3797192d4019",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/sttk/stringcase/blob/v1.0.0/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/sttk/stringcase",
      "url": "https://github.com/sttk/stringcase/blob/v1.0.0/LICENSE",
      "version": "v1.0.0"
    },
    "github.com/subosito/gotenv": {
      "anchor": "package-cd5a5819-b329-faf2-5a09-cb9807a8bae4",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/subosito/gotenv/blob/v1.6.0/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/subosito/gotenv",
      "url": "https://github.com/subosito/gotenv/blob/v1.6.0/LICENSE",
      "version": "v1.6.0"
    },
    "github.com/tklauser/go-sysconf": {
      "anchor": "package-9e02d811-e6f5-82d5-a768-05a95c478ee9",
      "declared_licence": "BSD-3-Clause",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "BSD-3-Clause",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "BSD-3-Clause",
        "discovered_licence": "BSD-3-Clause",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "BSD-3-Clause",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/tklauser/go-sysconf/blob/v0.3.16/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/tklauser/go-sysconf",
      "url": "https://github.com/tklauser/go-sysconf/blob/v0.3.16/LICENSE",
      "version": "v0.3.16"
    },
    "github.com/tklauser/numcpus": {
      "anchor": "package-2da754ca-4cb3-f189-574e-a98c4e67df40",
      "declared_licence": "Apache-2.0",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "Apache-2.0",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "Apache-2.0",
        "discovered_licence": "Apache-2.0",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "Apache-2.0",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/tklauser/numcpus/blob/v0.11.0/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/tklauser/numcpus",
      "url": "https://github.com/tklauser/numcpus/blob/v0.11.0/LICENSE",
      "version": "v0.11.0"
    },
    "github.com/xanzy/ssh-agent": {
      "anchor": "package-0c320420-4466-1e29-697f-fdb211b0f806",
      "declared_licence": "Apache-2.0",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "Apache-2.0",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "Apache-2.0",
        "discovered_licence": "Apache-2.0",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "Apache-2.0",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/xanzy/ssh-agent/blob/v0.3.3/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/xanzy/ssh-agent",
      "url": "https://github.com/xanzy/ssh-agent/blob/v0.3.3/LICENSE",
      "version": "v0.3.3"
    },
    "github.com/zalando/go-keyring": {
      "anchor": "package-b0f75a23-be6c-a019-8362-4a49b3bbe6e8",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/zalando/go-keyring/blob/v0.2.8/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "github.com/zalando/go-keyring",
      "url": "https://github.com/zalando/go-keyring/blob/v0.2.8/LICENSE",
      "version": "v0.2.8"
    },
    "go.mongodb.org/mongo-driver": {
      "anchor": "package-f7cacbe0-6e70-aaed-34c8-9367785a14cd",
      "declared_licence": "Apache-2.0",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "Apache-2.0",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "Apache-2.0",
        "discovered_licence": "Apache-2.0",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "Apache-2.0",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/mongodb/mongo-go-driver/blob/v1.17.7/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "go.mongodb.org/mongo-driver",
      "url": "https://github.com/mongodb/mongo-go-driver/blob/v1.17.7/LICENSE",
      "version": "v1.17.7"
    },
    "go.uber.org/atomic": {
      "anchor": "package-adcf0471-cf42-7f3e-360a-f189f7dc4a6c",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/uber-go/atomic/blob/v1.12.0/LICENSE.txt",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "go.uber.org/atomic",
      "url": "https://github.com/uber-go/atomic/blob/v1.12.0/LICENSE.txt",
      "version": "v1.12.0"
    },
    "go.uber.org/mock/gomock": {
      "anchor": "package-75683a3f-5a92-6bd4-f191-d9ceef6128d7",
      "declared_licence": "Apache-2.0",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "Apache-2.0",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "Apache-2.0",
        "discovered_licence": "Apache-2.0",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "Apache-2.0",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/uber/mock/blob/v0.6.0/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "go.uber.org/mock/gomock",
      "url": "https://github.com/uber/mock/blob/v0.6.0/LICENSE",
      "version": "v0.6.0"
    },
    "go.uber.org/multierr": {
      "anchor": "package-35984842-8d04-ba48-4da4-85a032664582",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/uber-go/multierr/blob/v1.10.0/LICENSE.txt",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "go.uber.org/multierr",
      "url": "https://github.com/uber-go/multierr/blob/v1.10.0/LICENSE.txt",
      "version": "v1.10.0"
    },
    "go.uber.org/zap": {
      "anchor": "package-8d5b3bd4-fc20-6f42-2815-08cddb4e2845",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/uber-go/zap/blob/v1.28.0/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "go.uber.org/zap",
      "url": "https://github.com/uber-go/zap/blob/v1.28.0/LICENSE",
      "version": "v1.28.0"
    },
    "go.yaml.in/yaml/v2": {
      "anchor": "package-69cef494-b032-0af3-3da2-59316d1030d2",
      "declared_licence": "Apache-2.0",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "Apache-2.0",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "Apache-2.0",
        "discovered_licence": "Apache-2.0",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "Apache-2.0",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/yaml/go-yaml/blob/v2.4.2/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "go.yaml.in/yaml/v2",
      "url": "https://github.com/yaml/go-yaml/blob/v2.4.2/LICENSE",
      "version": "v2.4.2"
    },
    "go.yaml.in/yaml/v3": {
      "anchor": "package-bb39fc08-127b-1405-2b7f-69a5c3f28e13",
      "declared_licence": "MIT",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "MIT",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "MIT",
        "discovered_licence": "MIT",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/yaml/go-yaml/blob/v3.0.5/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "go.yaml.in/yaml/v3",
      "url": "https://github.com/yaml/go-yaml/blob/v3.0.5/LICENSE",
      "version": "v3.0.5"
    },
    "golang.org/x/crypto": {
      "anchor": "package-593aff2f-96d9-dc42-271e-e841b676537e",
      "declared_licence": "BSD-3-Clause",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "BSD-3-Clause",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "BSD-3-Clause",
        "discovered_licence": "BSD-3-Clause",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "BSD-3-Clause",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://cs.opensource.google/go/x/crypto/+/v0.55.0:LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "golang.org/x/crypto",
      "url": "https://cs.opensource.google/go/x/crypto/+/v0.55.0:LICENSE",
      "version": "v0.55.0"
    },
    "golang.org/x/exp/maps": {
      "anchor": "package-10cdd565-d750-e332-5996-a47e6d88d5d1",
      "declared_licence": "BSD-3-Clause",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "BSD-3-Clause",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "BSD-3-Clause",
        "discovered_licence": "BSD-3-Clause",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "BSD-3-Clause",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://cs.opensource.google/go/x/exp/+/746e56fc:LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "golang.org/x/exp/maps",
      "url": "https://cs.opensource.google/go/x/exp/+/746e56fc:LICENSE",
      "version": "v0.0.0-20260410095643-746e56fc9e2f"
    },
    "golang.org/x/mod/semver": {
      "anchor": "package-d094022b-b328-f8d3-1c1a-0858b260a9a4",
      "declared_licence": "BSD-3-Clause",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "BSD-3-Clause",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "BSD-3-Clause",
        "discovered_licence": "BSD-3-Clause",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "BSD-3-Clause",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://cs.opensource.google/go/x/mod/+/v0.38.0:LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "golang.org/x/mod/semver",
      "url": "https://cs.opensource.google/go/x/mod/+/v0.38.0:LICENSE",
      "version": "v0.38.0"
    },
    "golang.org/x/net": {
      "anchor": "package-338c5481-d3a4-d52c-09b2-4a69f23c4012",
      "declared_licence": "BSD-3-Clause",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "BSD-3-Clause",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "BSD-3-Clause",
        "discovered_licence": "BSD-3-Clause",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "BSD-3-Clause",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://cs.opensource.google/go/x/net/+/v0.58.0:LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "golang.org/x/net",
      "url": "https://cs.opensource.google/go/x/net/+/v0.58.0:LICENSE",
      "version": "v0.58.0"
    },
    "golang.org/x/oauth2": {
      "anchor": "package-8345a7c6-162a-492e-39e0-47330f7b827b",
      "declared_licence": "BSD-3-Clause",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "BSD-3-Clause",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "BSD-3-Clause",
        "discovered_licence": "BSD-3-Clause",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "BSD-3-Clause",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://cs.opensource.google/go/x/oauth2/+/v0.36.0:LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "golang.org/x/oauth2",
      "url": "https://cs.opensource.google/go/x/oauth2/+/v0.36.0:LICENSE",
      "version": "v0.36.0"
    },
    "golang.org/x/sync/errgroup": {
      "anchor": "package-e052dc72-59f1-da29-2aae-c40ab70887ca",
      "declared_licence": "BSD-3-Clause",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "BSD-3-Clause",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "BSD-3-Clause",
        "discovered_licence": "BSD-3-Clause",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "BSD-3-Clause",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://cs.opensource.google/go/x/sync/+/v0.22.0:LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "golang.org/x/sync/errgroup",
      "url": "https://cs.opensource.google/go/x/sync/+/v0.22.0:LICENSE",
      "version": "v0.22.0"
    },
    "golang.org/x/sys": {
      "anchor": "package-af39534f-be6f-71bf-ee2f-937b8c05225b",
      "declared_licence": "BSD-3-Clause",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "BSD-3-Clause",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "BSD-3-Clause",
        "discovered_licence": "BSD-3-Clause",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "BSD-3-Clause",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://cs.opensource.google/go/x/sys/+/v0.47.0:LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "golang.org/x/sys",
      "url": "https://cs.opensource.google/go/x/sys/+/v0.47.0:LICENSE",
      "version": "v0.47.0"
    },
    "golang.org/x/text": {
      "anchor": "package-d21fca5b-b1f8-d72b-9221-0e4500b5b865",
      "declared_licence": "BSD-3-Clause",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "BSD-3-Clause",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "BSD-3-Clause",
        "discovered_licence": "BSD-3-Clause",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "BSD-3-Clause",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://cs.opensource.google/go/x/text/+/v0.41.0:LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "golang.org/x/text",
      "url": "https://cs.opensource.google/go/x/text/+/v0.41.0:LICENSE",
      "version": "v0.41.0"
    },
    "gopkg.in/warnings.v0": {
      "anchor": "package-13433117-b7d0-ac2a-ae25-43f7cb19cad9",
      "declared_licence": "BSD-2-Clause",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "BSD-2-Clause",
      "licence_assessment": {
        "assessed_licence_source": "discovered metadata",
        "automatic_status": "ALLOW",
        "dependency_licence": "BSD-2-Clause",
        "discovered_licence": "BSD-2-Clause",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "permissive-dependency",
        "scancode_licences": [],
        "selected_licence": "BSD-2-Clause",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment meets the configured policy.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/go-warnings/warnings/blob/v0.1.2/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "tool",
      "manual_check": {
        "checked": false,
        "reason": ""
      },
      "mark_as_problematic": false,
      "name": "gopkg.in/warnings.v0",
      "url": "https://github.com/go-warnings/warnings/blob/v0.1.2/LICENSE",
      "version": "v0.1.2"
    },
    "sigs.k8s.io/yaml": {
      "anchor": "package-7d47efe3-d1a3-2a70-3c64-21cac50944e3",
      "declared_licence": "unknown",
      "is_compliant": true,
      "is_dependency": true,
      "licence": "Unknown",
      "licence_assessment": {
        "assessed_licence_source": "manual licence review",
        "automatic_status": "ALLOW",
        "dependency_licence": "BSD-3-Clause AND MIT",
        "discovered_licence": "Unknown",
        "manual_review": {
          "reason": "",
          "reviewed": false
        },
        "project_licence": "Apache-2.0",
        "reason": "Assessed using manually verified BSD-3-Clause AND MIT because the discovered licence was unknown. All AND obligations apply: BSD-3-Clause: A permissive dependency generally permits redistribution; retain its notices and conditions.; MIT: A permissive dependency generally permits redistribution; retain its notices and conditions.",
        "rule": "expression-and",
        "scancode_licences": [],
        "selected_licence": "BSD-3-Clause AND MIT",
        "source": "built-in",
        "status": "ALLOW"
      },
      "licence_candidates": [
        "Apache-2.0",
        "BSD-3-Clause",
        "MIT"
      ],
      "licence_classifiers": [],
      "licence_compliance_details": "Automatic licence assessment does not meet the configured policy; accepted after manual review: MIT AND BSD-3-Clause.",
      "licence_evidence": [
        {
          "kind": "licence",
          "path": "https://github.com/kubernetes-sigs/yaml/blob/v1.6.0/LICENSE",
          "text": ""
        },
        {
          "kind": "licence",
          "path": "https://github.com/kubernetes-sigs/yaml/blob/v1.6.0/LICENSE",
          "text": ""
        },
        {
          "kind": "licence",
          "path": "https://github.com/kubernetes-sigs/yaml/blob/v1.6.0/LICENSE",
          "text": ""
        }
      ],
      "licence_source": "unknown",
      "manual_check": {
        "checked": true,
        "reason": "MIT AND BSD-3-Clause"
      },
      "mark_as_problematic": true,
      "name": "sigs.k8s.io/yaml",
      "url": "unknown",
      "version": "v1.6.0"
    }
  },
  "project": {
    "accepted_licences": [
      "Apache-2.0",
      "BSD*",
      "CC-BY-*",
      "JSON",
      "MIT",
      "Python-2.0",
      "PSF-2.0",
      "MPL-2.0"
    ],
    "complete": true,
    "compliance": true,
    "compliance_details": "The project is licensed under the Apache-2.0 licence. The project and all assessed dependencies meet the configured licence policy, including any documented manual reviews.",
    "compliance_points": [
      "The project and all assessed dependencies meet the configured licence policy, including any documented manual reviews."
    ],
    "licence": "Apache-2.0",
    "name": "Golang Utilities"
  },
  "render_time": "2026-10-02T15:15:42.902044",
  "undocumented_exemptions": [],
  "unknown_licences": [
    "github.com/cyphar/filepath-securejoin",
    "github.com/emirpasic/gods",
    "github.com/klauspost/compress",
    "sigs.k8s.io/yaml"
  ],
  "unreviewed_licences": []
}
