Skip to content

Commit 1a00a63

Browse files
committed
Vetting newly imported crates
1 parent 64b2881 commit 1a00a63

3 files changed

Lines changed: 254 additions & 13 deletions

File tree

supply-chain/audits.toml

Lines changed: 47 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -285,6 +285,11 @@ criteria = "safe-to-deploy"
285285
delta = "2.4.0 -> 2.4.1"
286286
notes = "Only allowing new clippy lints"
287287

288+
[[audits.bitflags]]
289+
who = "Jan-Erik Rediger <jrediger@mozilla.com>"
290+
criteria = "safe-to-deploy"
291+
delta = "2.9.4 -> 2.10.0"
292+
288293
[[audits.bytes]]
289294
who = "Jan-Erik Rediger <jrediger@mozilla.com>"
290295
criteria = "safe-to-deploy"
@@ -306,6 +311,11 @@ who = "Jan-Erik Rediger <jrediger@mozilla.com>"
306311
criteria = "safe-to-deploy"
307312
delta = "1.0.78 -> 1.0.83"
308313

314+
[[audits.cc]]
315+
who = "Jan-Erik Rediger <jrediger@mozilla.com>"
316+
criteria = "safe-to-deploy"
317+
delta = "1.2.41 -> 1.2.53"
318+
309319
[[audits.chrono]]
310320
who = "Lars Eggert <lars@eggert.org>"
311321
criteria = "safe-to-deploy"
@@ -366,12 +376,27 @@ who = "Lars Eggert <lars@eggert.org>"
366376
criteria = "safe-to-deploy"
367377
delta = "0.3.11 -> 0.4.0"
368378

379+
[[audits.fallible-iterator]]
380+
who = "Jan-Erik Rediger <jrediger@mozilla.com>"
381+
criteria = "safe-to-deploy"
382+
version = "0.2.0"
383+
384+
[[audits.fallible-streaming-iterator]]
385+
who = "Jan-Erik Rediger <jrediger@mozilla.com>"
386+
criteria = "safe-to-deploy"
387+
version = "0.1.9"
388+
369389
[[audits.fd-lock]]
370390
who = "Jan-Erik Rediger <jrediger@mozilla.com>"
371391
criteria = "safe-to-deploy"
372392
delta = "3.0.12 -> 3.0.13"
373393
notes = "Dependency updates only"
374394

395+
[[audits.find-msvc-tools]]
396+
who = "Jan-Erik Rediger <jrediger@mozilla.com>"
397+
criteria = "safe-to-deploy"
398+
delta = "0.1.4 -> 0.1.8"
399+
375400
[[audits.flate2]]
376401
who = "Jan-Erik Rediger <jrediger@mozilla.com>"
377402
criteria = "safe-to-deploy"
@@ -515,6 +540,16 @@ criteria = "safe-to-deploy"
515540
delta = "0.19.0 -> 0.20.0"
516541
notes = "Removed all LMDB-specific code, added malloc_size_of integration"
517542

543+
[[audits.rmp]]
544+
who = "Jan-Erik Rediger <jrediger@mozilla.com>"
545+
criteria = "safe-to-deploy"
546+
delta = "0.8.14 -> 0.8.15"
547+
548+
[[audits.rmp-serde]]
549+
who = "Jan-Erik Rediger <jrediger@mozilla.com>"
550+
criteria = "safe-to-deploy"
551+
delta = "1.3.0 -> 1.3.1"
552+
518553
[[audits.rustversion]]
519554
who = "Jan-Erik Rediger <jrediger@mozilla.com>"
520555
criteria = "safe-to-deploy"
@@ -714,6 +749,18 @@ criteria = "safe-to-deploy"
714749
delta = "1.1.0 -> 1.2.0"
715750
notes = "Added a file lock on the created directory"
716751

752+
[[trusted.cc]]
753+
criteria = "safe-to-deploy"
754+
user-id = 55123 # rust-lang-owner
755+
start = "2022-10-29"
756+
end = "2027-02-20"
757+
758+
[[trusted.find-msvc-tools]]
759+
criteria = "safe-to-deploy"
760+
user-id = 539 # Josh Stone (cuviper)
761+
start = "2025-08-29"
762+
end = "2027-02-20"
763+
717764
[[trusted.hashbrown]]
718765
criteria = "safe-to-deploy"
719766
user-id = 55123 # rust-lang-owner

supply-chain/config.toml

Lines changed: 9 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -86,7 +86,7 @@ criteria = "safe-to-deploy"
8686

8787
[[exemptions.hashlink]]
8888
version = "0.7.0"
89-
criteria = "safe-to-run"
89+
criteria = "safe-to-deploy"
9090

9191
[[exemptions.hermit-abi]]
9292
version = "0.2.6"
@@ -112,6 +112,10 @@ criteria = "safe-to-run"
112112
version = "0.2.139"
113113
criteria = "safe-to-deploy"
114114

115+
[[exemptions.libsqlite3-sys]]
116+
version = "0.26.0"
117+
criteria = "safe-to-deploy"
118+
115119
[[exemptions.memchr]]
116120
version = "2.5.0"
117121
criteria = "safe-to-deploy"
@@ -172,6 +176,10 @@ criteria = "safe-to-run"
172176
version = "0.6.27"
173177
criteria = "safe-to-run"
174178

179+
[[exemptions.rusqlite]]
180+
version = "0.27.0"
181+
criteria = "safe-to-deploy"
182+
175183
[[exemptions.scroll]]
176184
version = "0.11.0"
177185
criteria = "safe-to-deploy"

0 commit comments

Comments
 (0)