Scan Evidence
Scan evidence is generated by FlexNet Code Insight during a scan and is available for view in Analysis Workbench to any analyst assigned to the project. Scan evidence is typically an indicator of third-party content in the codebase. It can be useful for verifying system-generated inventory, identifying and creating additional inventory not discovered during scan, finding embedded licenses and copyrights in bundled code or archives, determining file origin, and locating stolen or borrowed code.
You can quickly view filter on and view the following evidence for codebase files in Analysis Workbench. (For more details about viewing evidence in Analysis Workbench, see Viewing License Details in Analysis Workbench and Using the Evidence Details Tab.)
|
•
|
Exact Matches—A whole-file match to a file in the Compliance Library |
|
•
|
Source Matches—Snippet-level matches to files in the Compliance Library |
|
•
|
Copyrights—Third-party copyright statements detected in the code |
|
•
|
Emails/URLs—Third-party emails and URLs detected in the code |
|
•
|
Licenses—Licenses detected in the code based on custom license patterns supplied by Electronic Update |
|
•
|
Search Terms—String matches based on pre-configured search terms provided by Flexera and on custom search terms added by the user as part of the Scan Profile |
Open topic with navigation