Skip to content

Bind RAT license check into the default build - #3

Merged
jgoodyear merged 1 commit into
apache:mainfrom
CalvinKirs:rat-check
Sep 10, 2026
Merged

jgoodyear merged 1 commit into
apache:mainfrom
CalvinKirs:rat-check

Conversation

@CalvinKirs

@CalvinKirs CalvinKirs commented Sep 10, 2026 •

Copy link
Copy Markdown
Member

The Apache parent pom only runs apache-rat:check in the apache-release profile, so plain mvn verify (and the CI added in #2) never actually enforced license headers, despite the plugin being configured. This binds a rat-check execution to the validate phase so every mvn -B verify run enforces them.

Fixes the two violations that surfaced once RAT actually ran:

  • uv.lock — generated lockfile, added to the RAT excludes;
  • AGENTS.md — given a compact SPDX header in an HTML comment ( RAT 0.16 recognizes SPDX identifiers).

Verified locally: mvn -B verify now shows Rat check: ... Unapproved: 0 and stays green alongside Spotless and Checkstyle.

The Apache parent pom only runs apache-rat:check in the apache-release
profile, so plain mvn verify never enforced license headers. Bind an
execution to the validate phase so verify (and CI) fails on missing
headers. Fix the two existing violations: exclude the generated uv.lock,
and give AGENTS.md a compact SPDX header comment (the markdown form
used by Apache Magpie).
@jgoodyear
jgoodyear merged commit ef140bf into apache:main Sep 10, 2026
1 check passed
@jgoodyear

Copy link
Copy Markdown
Contributor

Thank you ! :)

@CalvinKirs
CalvinKirs deleted the rat-check branch September 10, 2026 13:47
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants