Open
Description
Hi team,
I'm using Syft to scan Python wheels, and I noticed that license information for .so files or other compiled binaries inside the wheel is not detected. For example, when scanning Pillow-10.0.1-cp311-cp311-manylinux_2_28_x86_64.whl
, the .so files included in the package don't show any license data in the SBOM.
Is there a way Syft can extract license information from these binary files?
Would appreciate any guidance on how best to handle this.
Thanks!
Metadata
Metadata
Assignees
Labels
Type
Projects
Status