ring/deny.toml
2022-10-19 23:49:17 -07:00

34 lines
698 B
TOML

[advisories]
# cargo-audit handles these. In the case where we have to temporarily allow
# some unmaintained/yanked crates, we'll do that in .cargo/audit.toml.
unmaintained = "allow"
yanked = "allow"
notice = "deny"
[licenses]
allow = [
"Apache-2.0",
"ISC",
"LicenseRef-ring",
"MIT",
"Unicode-DFS-2016",
]
confidence-threshold = 1.0
[[licenses.clarify]]
name = "ring"
expression = "LicenseRef-ring"
license-files = [
{ path = "LICENSE", hash = 0xbd0eed23 },
]
[bans]
# We don't maintain a fixed Cargo.lock so enforcing
# `multiple-versions = "deny"` is impractical.
multiple-versions = "allow"
wildcards = "deny"
[sources]
unknown-registry = "deny"
unknown-git = "deny"