GitHub / EmbarkStudios/cargo-deny issues and pull requests
#782 - Add a config option to suppress `warning[unmatched-source]: allowed source was not encountered`
Pull Request -
State: open - Opened by takeoverjp 8 days ago
#781 - Allow suppressing `warning[unmatched-source]: allowed source was not encountered`
Issue -
State: open - Opened by takeoverjp 8 days ago
Labels: enhancement
#780 - fix typo in bans/cfg.md
Pull Request -
State: closed - Opened by cocoliliace 18 days ago
#779 - Allow passing cargo metadata via file
Pull Request -
State: closed - Opened by TroyKomodo 23 days ago
#778 - Bug: panic when running 'cargo deny check advisories' on project pontifex
Issue -
State: closed - Opened by m1guelpf 25 days ago
- 1 comment
Labels: bug
#777 - Feat: CLI argument to pass a pre-generated cargo metadata file
Issue -
State: closed - Opened by hofbi about 2 months ago
Labels: enhancement
#776 - Ban direct dependency only
Issue -
State: open - Opened by jayvdb about 2 months ago
Labels: enhancement
#775 - Update the PyPI package
Issue -
State: closed - Opened by Tremeschin about 2 months ago
- 2 comments
#774 - Fix aarch64-linux-musl release
Pull Request -
State: closed - Opened by Jake-Shadle about 2 months ago
#773 - Transparently ignore semver trick
Pull Request -
State: closed - Opened by Jake-Shadle about 2 months ago
#772 - Bug: unused workspace dependency false positive when `[graph] exclude` is used
Issue -
State: open - Opened by eric-seppanen about 2 months ago
Labels: bug
#771 - Bug: error: failed to compile `cargo-deny v0.16.1`
Issue -
State: closed - Opened by hofbi about 2 months ago
- 5 comments
Labels: bug
#770 - `bans` skips maintenance problem at large scale
Issue -
State: open - Opened by Veetaha about 2 months ago
- 2 comments
#769 - Document how to obtain license file hashes for clarifications
Issue -
State: open - Opened by tim3z 2 months ago
- 1 comment
Labels: enhancement
#768 - docs: fix incorrect key
Pull Request -
State: closed - Opened by cakebaker 2 months ago
#767 - Feature request: how to enable check for BSL-licensed repositories
Issue -
State: closed - Opened by dentiny 2 months ago
- 5 comments
Labels: enhancement
#766 - Update crates
Pull Request -
State: closed - Opened by Jake-Shadle 2 months ago
#765 - Bug: bans.build allow-build-scripts error does not show computed hash when using non-default build script path
Issue -
State: open - Opened by tv42 3 months ago
- 1 comment
Labels: bug
#764 - Bug: Docs say `[build]`, `[build.bypass]` etc, actual syntax is `[bans.build]`, `[[bans.build.bypass]]`
Issue -
State: open - Opened by tv42 3 months ago
Labels: bug
#763 - Bug: Allowing build script also allows executables
Issue -
State: open - Opened by tv42 3 months ago
- 1 comment
Labels: bug
#762 - Show version requirements to determine cause for duplicates
Issue -
State: open - Opened by mickvangelderen 3 months ago
Labels: enhancement
#761 - Feature request: exclude self repo for checking
Issue -
State: open - Opened by dentiny 3 months ago
Labels: enhancement
#760 - Bug: False negative on license check for transitive dependency
Issue -
State: open - Opened by andrewhalle 3 months ago
Labels: bug
#759 - Bug: `cargo deny --frozen check` is not equivalent to specifying both `--locked` and `--offline`
Issue -
State: open - Opened by DianaNites 4 months ago
Labels: bug
#758 - Update gix/tokio
Pull Request -
State: closed - Opened by Jake-Shadle 4 months ago
#757 - Update crates
Pull Request -
State: closed - Opened by Jake-Shadle 4 months ago
#756 - Make duplicates its own check category and stop displaying them when one of the other categories (e.g. licenses) is requested
Issue -
State: closed - Opened by taladar 4 months ago
- 1 comment
Labels: enhancement
#755 - Check license compatibility
Issue -
State: closed - Opened by Krahos 5 months ago
- 1 comment
Labels: enhancement
#754 - More fine-grained control over ignoring specific issues to allow upstream crates to update
Issue -
State: open - Opened by gsson 5 months ago
- 2 comments
Labels: enhancement
#753 - Add `advisories.unmaintained` back
Pull Request -
State: closed - Opened by Jake-Shadle 5 months ago
- 1 comment
#752 - How do I ignore unmaintained advisories
Issue -
State: closed - Opened by dignifiedquire 5 months ago
#751 - Specify depth of dependency traversal in `bans.allow`
Issue -
State: open - Opened by ethanuppal 5 months ago
Labels: enhancement
#750 - Justify dependencies
Issue -
State: closed - Opened by ethanuppal 5 months ago
- 9 comments
Labels: enhancement
#749 - Update krates
Pull Request -
State: closed - Opened by Jake-Shadle 5 months ago
#748 - Bug: `--config` is relative to `--manifest-path`
Issue -
State: open - Opened by kpreid 5 months ago
Labels: bug
#747 - Add `source.org` for `bans` section
Issue -
State: open - Opened by TimePrinciple 5 months ago
Labels: enhancement
#746 - Additional 1.85.0 fixup
Pull Request -
State: closed - Opened by Jake-Shadle 5 months ago
#745 - Prepare for cargo 1.85.0
Pull Request -
State: closed - Opened by Jake-Shadle 5 months ago
#744 - Add ability to ignore `[build-dependencies]` when checking for licenses
Issue -
State: open - Opened by liss-h 6 months ago
#743 - Clippy fixes
Pull Request -
State: closed - Opened by jayvdb 7 months ago
#742 - Update gix 0.70 to avoid RUSTSEC-2025-0001
Pull Request -
State: closed - Opened by jayvdb 7 months ago
#741 - False positive for `yanked crate`, because Registry index paths changed in Rust 1.85.0
Issue -
State: open - Opened by mizar 7 months ago
Labels: bug
#740 - docs(cli): remove deprecated `--context` arguments
Pull Request -
State: closed - Opened by kemingy 7 months ago
#739 - Fix incorrect precedence for inexact match check
Pull Request -
State: closed - Opened by jongiddy 8 months ago
#738 - Add empty workspace to Cargo.toml
Pull Request -
State: closed - Opened by yuvald-sweet-security 8 months ago
- 2 comments
#737 - Disable check if config section is missing
Issue -
State: open - Opened by Jake-Shadle 8 months ago
- 1 comment
Labels: enhancement
#736 - Bug: Missing license information still not allowed in crates from a private registry
Issue -
State: open - Opened by kornelski 8 months ago
- 4 comments
Labels: bug
#735 - Ability to disable checking of rustsec advisories and licenses
Issue -
State: closed - Opened by kornelski 8 months ago
- 2 comments
Labels: enhancement
#734 - license.clarify doesn't specify source of the crate
Issue -
State: open - Opened by kornelski 8 months ago
Labels: enhancement
#733 - Fix lints
Pull Request -
State: closed - Opened by Jake-Shadle 8 months ago
#732 - refactor: remove raw string hashes for readability
Pull Request -
State: closed - Opened by hamirmahal 8 months ago
#727 - A lot of `#`s can be removed
Issue -
State: closed - Opened by hamirmahal 8 months ago
#726 - Warn on skip without duplicates
Pull Request -
State: closed - Opened by Jake-Shadle 8 months ago
- 1 comment
#725 - Warn/error if duplicate is allowed, but unnecessary
Issue -
State: closed - Opened by sagudev 8 months ago
- 1 comment
Labels: enhancement
#724 - Bug: Yanked crate advisory gives false negative result if crate is in local cache
Issue -
State: open - Opened by sergiimk 8 months ago
- 2 comments
Labels: bug
#723 - Update spdx cache
Pull Request -
State: closed - Opened by Jake-Shadle 9 months ago
#722 - Update SPDX
Pull Request -
State: closed - Opened by Jake-Shadle 9 months ago
#721 - Add MSRV check to CI
Pull Request -
State: closed - Opened by Jake-Shadle 9 months ago
#720 - Bug: MSRV is defacto 1.81.0 while advertised as 1.70.0
Issue -
State: closed - Opened by Wumpf 9 months ago
Labels: bug
#719 - Prep release
Pull Request -
State: closed - Opened by Jake-Shadle 9 months ago
#718 - Bug: Some CLI arguments are undocumented
Issue -
State: closed - Opened by eric-seppanen 9 months ago
Labels: bug
#717 - Bug: graph.exclude does not accept package spec values with crate versions
Issue -
State: closed - Opened by eric-seppanen 9 months ago
- 1 comment
Labels: bug
#716 - Ignore advisories or bans for dependencies of a particular crate
Issue -
State: closed - Opened by eric-seppanen 9 months ago
- 2 comments
Labels: enhancement
#715 - Add support for Rust 2024 edition
Pull Request -
State: closed - Opened by kpcyrd 9 months ago
- 1 comment
#714 - Support for 2024 edition
Issue -
State: closed - Opened by kpcyrd 9 months ago
Labels: enhancement
#713 - Update crates
Pull Request -
State: closed - Opened by Jake-Shadle 9 months ago
#712 - Bug: Cargo deny fails with NFS
Issue -
State: closed - Opened by Arslan8 9 months ago
- 2 comments
Labels: bug
#711 - Update goblin to 0.9
Pull Request -
State: closed - Opened by musicinmybrain 9 months ago
#710 - Feature `--exclude-unpublished`
Pull Request -
State: closed - Opened by Tastaturtaste 10 months ago
#708 - Ability to exclude unpublished crates from dependency resolution
Issue -
State: closed - Opened by Tastaturtaste 10 months ago
- 1 comment
Labels: enhancement
#707 - Bug: `workspace-duplicate` triggers on renamed dependencies
Issue -
State: open - Opened by Nemo157 10 months ago
Labels: bug
#706 - Bug: false-positive warning "scheme modifiers are unnecessary"
Issue -
State: closed - Opened by MOZGIII 10 months ago
- 4 comments
Labels: bug
#705 - Is a "Lockfile Only" mode possible, that doesn't require a Cargo.toml to be present?
Issue -
State: closed - Opened by jblebrun 10 months ago
- 2 comments
Labels: enhancement
#704 - Skip checking crate for [bans.workspace.duplicates] (interaction with cargo-hakari)
Issue -
State: open - Opened by jalil-salame 10 months ago
Labels: enhancement
#703 - Don't emit errors if deprecated fields fail to deserialize
Pull Request -
State: closed - Opened by Jake-Shadle 11 months ago
#702 - Bug: `cargo install cargo-deny` has an warning `profile package spec `insta` in profile `dev` did not match any packages`
Issue -
State: closed - Opened by eval-exec 11 months ago
- 1 comment
Labels: bug
#701 - Enable Link-Time Optimization (LTO)
Issue -
State: closed - Opened by zamazan4ik 11 months ago
- 2 comments
Labels: enhancement
#700 - Bug: workspace-default-features behaves incorrectly
Issue -
State: closed - Opened by sergiimk 11 months ago
- 3 comments
Labels: bug
#699 - Non-transitive version of external-default-features
Issue -
State: open - Opened by sergiimk 11 months ago
Labels: enhancement
#698 - Deny dependencies that don't pin an exact version
Issue -
State: open - Opened by SRv6d 11 months ago
Labels: enhancement
#697 - Support allow-listing by git link prefix
Issue -
State: open - Opened by jgpaiva 11 months ago
- 1 comment
Labels: enhancement
#696 - Bug: documentation to bulk accept OSI/FSF licenses leads to error when applied, and absence of working documentation to bulkd accept OSI/FSF licenses
Issue -
State: closed - Opened by vemonet 11 months ago
- 2 comments
Labels: bug
#695 - README: Add repology packaging status
Pull Request -
State: closed - Opened by kpcyrd 12 months ago
- 1 comment
#694 - Bug: unused workspace dependency check breaks when replacing crates-io with a mirror
Issue -
State: open - Opened by gillyobeast 12 months ago
- 2 comments
Labels: bug
#693 - Bug: pre-commit fails on pr checks
Issue -
State: closed - Opened by gacallea 12 months ago
- 8 comments
Labels: bug
#692 - Error: failed to open advisory database
Issue -
State: closed - Opened by leonnapsun 12 months ago
- 2 comments
Labels: bug
#691 - Fix unused workspace dependency for current dir
Pull Request -
State: closed - Opened by Jake-Shadle 12 months ago
#690 - Add version / Git commit comment to generated `deny.toml`
Issue -
State: open - Opened by Marcono1234 12 months ago
Labels: enhancement
#689 - Bug: Documentation is too strict with "one or more" when 0 values are accepted as well
Issue -
State: closed - Opened by Marcono1234 12 months ago
- 3 comments
Labels: bug
#688 - Fix `unmatched-organization` warnings for deny template
Pull Request -
State: closed - Opened by Marcono1234 12 months ago
#687 - Prep release
Pull Request -
State: closed - Opened by Jake-Shadle 12 months ago
#686 - Remove deprecated config fields
Pull Request -
State: closed - Opened by Jake-Shadle about 1 year ago
#685 - Improve workspace dependencies lints
Pull Request -
State: closed - Opened by Jake-Shadle about 1 year ago
#684 - Update crates
Pull Request -
State: closed - Opened by Jake-Shadle about 1 year ago
- 2 comments
#683 - Add an environment variable to control test timeout
Pull Request -
State: closed - Opened by jaxvanyang about 1 year ago
#682 - workspace-duplicates is oversensitive for intra-workspace path-only dependencies
Issue -
State: closed - Opened by adam-azarchs about 1 year ago
- 2 comments
Labels: enhancement
#681 - Fix bug with path matching on git dependencies
Pull Request -
State: closed - Opened by Jake-Shadle about 1 year ago
#680 - Bug: unused-workspace-dependencies false positives for any git dependency
Issue -
State: closed - Opened by jaskij about 1 year ago
- 7 comments
Labels: bug
#679 - Bug: unused-workspace-dependencies fires for dev-dependencies
Issue -
State: closed - Opened by jaskij about 1 year ago
- 2 comments
Labels: bug
#678 - Don't synthesize cargo manifest for licenses
Issue -
State: open - Opened by Jake-Shadle about 1 year ago
Labels: enhancement