{
  "SPDXID": "SPDXRef-DOCUMENT",
  "name": "perl-CPAN-DistnameInfo-help-0.0.12-1.oe2403sp4.aarch64.rpm",
  "spdxVersion": "SPDX-2.2",
  "creationInfo": {
    "created": "2026-07-04T02:24:06.585354077Z",
    "creators": [
      "openeuler_creator"
    ]
  },
  "dataLicense": "CC0-1.0",
  "documentNamespace": "https://sbom.openEuler.org/perl-CPAN-DistnameInfo-help-0.0.12-1.oe2403sp4.aarch64.rpm",
  "packages": [
    {
      "SPDXID": "SPDXRef-rpm-perl-CPAN-DistnameInfo-help-0.12",
      "name": "perl-CPAN-DistnameInfo-help",
      "licenseConcluded": "GPL-1.0-only or Artistic-1.0-Perl",
      "checksums": [
        {
          "algorithm": "SHA256",
          "checksumValue": "649304e8bcaee237a71cc72934afb3f8a8b3d5ab2c5b791b0d00fc2f00d8a04a"
        }
      ],
      "description": "Many online services that are centered around CPAN attempt to\nassociate multiple uploads by extracting a distribution name from the\nfilename of the upload. For most distributions this is easy as they\nhave used ExtUtils::MakeMaker or Module::Build to create the\ndistribution, which results in a uniform name. But sadly not all\nuploads are created in this way.",
      "downloadLocation": "NOASSERTION",
      "externalRefs": [
        {
          "referenceCategory": "PACKAGE_MANAGER",
          "referenceLocator": "pkg:rpm/perl-CPAN-DistnameInfo-help@0.12-1.oe2403sp4?arch=noarch&epoch=0&upstream=perl-CPAN-DistnameInfo-0.12-1.oe2403sp4.src.rpm",
          "referenceType": "purl"
        }
      ],
      "filesAnalyzed": false,
      "homepage": "http://search.cpan.org/dist/CPAN-DistnameInfo/",
      "licenseDeclared": "GPL-1.0-only or Artistic-1.0-Perl",
      "sourceInfo": "acquired package info from repodata DB: repodata/69e709f4d2852d98f12867a74015d19384fe2727ff670fd70178cdde80b1e77e-primary.sqlite.bz2",
      "summary": "Extract distribution name and version from a distribution filename",
      "supplier": "Organization: http://openeuler.org",
      "versionInfo": "0:0.12-1.oe2403sp4"
    }
  ],
  "relationships": []
}
