Book a Demo!
CoCalc Logo Icon
StoreFeaturesDocsShareSupportNewsAboutPoliciesSign UpSign In
bytecodealliance
GitHub Repository: bytecodealliance/wasmtime
Path: blob/main/supply-chain/config.toml
1685 views
1
2
# cargo-vet config file
3
4
[cargo-vet]
5
version = "0.10"
6
7
[imports.embark-studios]
8
url = "https://raw.githubusercontent.com/EmbarkStudios/rust-ecosystem/main/audits.toml"
9
10
[imports.fermyon]
11
url = "https://raw.githubusercontent.com/fermyon/spin/main/supply-chain/audits.toml"
12
13
[imports.google]
14
url = [
15
"https://chromium.googlesource.com/chromiumos/third_party/rust_crates/+/main/cargo-vet/audits.toml?format=TEXT",
16
"https://fuchsia.googlesource.com/fuchsia/+/refs/heads/main/third_party/rust_crates/supply-chain/audits.toml?format=TEXT",
17
]
18
19
[imports.isrg]
20
url = "https://raw.githubusercontent.com/divviup/libprio-rs/main/supply-chain/audits.toml"
21
22
[imports.mozilla]
23
url = "https://raw.githubusercontent.com/mozilla/supply-chain/main/audits.toml"
24
25
[policy.cranelift]
26
audit-as-crates-io = true
27
28
[policy.cranelift-assembler-x64]
29
audit-as-crates-io = true
30
31
[policy.cranelift-assembler-x64-fuzz]
32
criteria = []
33
34
[policy.cranelift-assembler-x64-meta]
35
audit-as-crates-io = true
36
37
[policy.cranelift-bforest]
38
audit-as-crates-io = true
39
40
[policy.cranelift-bitset]
41
audit-as-crates-io = true
42
43
[policy.cranelift-codegen]
44
audit-as-crates-io = true
45
46
[policy.cranelift-codegen-meta]
47
audit-as-crates-io = true
48
49
[policy.cranelift-codegen-shared]
50
audit-as-crates-io = true
51
52
[policy.cranelift-control]
53
audit-as-crates-io = true
54
55
[policy.cranelift-entity]
56
audit-as-crates-io = true
57
58
[policy.cranelift-frontend]
59
audit-as-crates-io = true
60
61
[policy.cranelift-fuzzgen]
62
criteria = []
63
64
[policy.cranelift-interpreter]
65
audit-as-crates-io = true
66
67
[policy.cranelift-isle]
68
audit-as-crates-io = true
69
70
[policy.cranelift-jit]
71
audit-as-crates-io = true
72
73
[policy.cranelift-module]
74
audit-as-crates-io = true
75
76
[policy.cranelift-native]
77
audit-as-crates-io = true
78
79
[policy.cranelift-object]
80
audit-as-crates-io = true
81
82
[policy.cranelift-reader]
83
audit-as-crates-io = true
84
85
[policy.cranelift-serde]
86
audit-as-crates-io = true
87
88
[policy.cranelift-srcgen]
89
audit-as-crates-io = true
90
91
[policy.isle-fuzz]
92
criteria = []
93
94
[policy.pulley-interpreter]
95
audit-as-crates-io = true
96
97
[policy.pulley-interpreter-fuzz]
98
criteria = []
99
100
[policy.pulley-macros]
101
audit-as-crates-io = true
102
103
[policy.wasi-common]
104
audit-as-crates-io = true
105
106
[policy.wasmtime]
107
audit-as-crates-io = true
108
109
[policy.wasmtime-c-api-impl]
110
audit-as-crates-io = false
111
112
[policy.wasmtime-cli]
113
audit-as-crates-io = true
114
115
[policy.wasmtime-cli-flags]
116
audit-as-crates-io = true
117
118
[policy.wasmtime-environ]
119
audit-as-crates-io = true
120
121
[policy.wasmtime-environ-fuzz]
122
criteria = []
123
124
[policy.wasmtime-fuzz]
125
criteria = []
126
127
[policy.wasmtime-fuzzing]
128
criteria = []
129
130
[policy.wasmtime-internal-asm-macros]
131
audit-as-crates-io = true
132
133
[policy.wasmtime-internal-c-api-macros]
134
audit-as-crates-io = true
135
136
[policy.wasmtime-internal-cache]
137
audit-as-crates-io = true
138
139
[policy.wasmtime-internal-component-macro]
140
audit-as-crates-io = true
141
142
[policy.wasmtime-internal-component-util]
143
audit-as-crates-io = true
144
145
[policy.wasmtime-internal-cranelift]
146
audit-as-crates-io = true
147
148
[policy.wasmtime-internal-explorer]
149
audit-as-crates-io = true
150
151
[policy.wasmtime-internal-fiber]
152
audit-as-crates-io = true
153
154
[policy.wasmtime-internal-jit-debug]
155
audit-as-crates-io = true
156
157
[policy.wasmtime-internal-jit-icache-coherence]
158
audit-as-crates-io = true
159
160
[policy.wasmtime-internal-math]
161
audit-as-crates-io = true
162
163
[policy.wasmtime-internal-slab]
164
audit-as-crates-io = true
165
166
[policy.wasmtime-internal-unwinder]
167
audit-as-crates-io = true
168
169
[policy.wasmtime-internal-versioned-export-macros]
170
audit-as-crates-io = true
171
172
[policy.wasmtime-internal-winch]
173
audit-as-crates-io = true
174
175
[policy.wasmtime-internal-wit-bindgen]
176
audit-as-crates-io = true
177
178
[policy.wasmtime-internal-wmemcheck]
179
audit-as-crates-io = true
180
181
[policy.wasmtime-wasi]
182
audit-as-crates-io = true
183
184
[policy.wasmtime-wasi-config]
185
audit-as-crates-io = true
186
187
[policy.wasmtime-wasi-http]
188
audit-as-crates-io = true
189
190
[policy.wasmtime-wasi-io]
191
audit-as-crates-io = true
192
193
[policy.wasmtime-wasi-keyvalue]
194
audit-as-crates-io = true
195
196
[policy.wasmtime-wasi-nn]
197
audit-as-crates-io = true
198
199
[policy.wasmtime-wasi-threads]
200
audit-as-crates-io = true
201
202
[policy.wasmtime-wasi-tls]
203
audit-as-crates-io = true
204
205
[policy.wasmtime-wasi-tls-nativetls]
206
audit-as-crates-io = true
207
208
[policy.wasmtime-wast]
209
audit-as-crates-io = true
210
211
[policy.wiggle]
212
audit-as-crates-io = true
213
214
[policy.wiggle-generate]
215
audit-as-crates-io = true
216
217
[policy.wiggle-macro]
218
audit-as-crates-io = true
219
220
[policy.wiggle-test]
221
audit-as-crates-io = true
222
223
[policy.winch-codegen]
224
audit-as-crates-io = true
225
226
[[exemptions.addr2line]]
227
version = "0.17.0"
228
criteria = "safe-to-deploy"
229
230
[[exemptions.aes]]
231
version = "0.8.4"
232
criteria = "safe-to-deploy"
233
234
[[exemptions.base64ct]]
235
version = "1.6.0"
236
criteria = "safe-to-deploy"
237
238
[[exemptions.bitflags]]
239
version = "1.3.2"
240
criteria = "safe-to-deploy"
241
242
[[exemptions.bitmaps]]
243
version = "2.1.0"
244
criteria = "safe-to-run"
245
246
[[exemptions.capstone]]
247
version = "0.12.0"
248
criteria = "safe-to-deploy"
249
250
[[exemptions.capstone-sys]]
251
version = "0.16.0"
252
criteria = "safe-to-deploy"
253
254
[[exemptions.console]]
255
version = "0.15.0"
256
criteria = "safe-to-deploy"
257
258
[[exemptions.constant_time_eq]]
259
version = "0.1.5"
260
criteria = "safe-to-deploy"
261
262
[[exemptions.cpp_demangle]]
263
version = "0.3.5"
264
criteria = "safe-to-deploy"
265
266
[[exemptions.cpufeatures]]
267
version = "0.2.2"
268
criteria = "safe-to-deploy"
269
270
[[exemptions.crc32fast]]
271
version = "1.3.2"
272
criteria = "safe-to-deploy"
273
274
[[exemptions.criterion]]
275
version = "0.3.5"
276
criteria = "safe-to-run"
277
278
[[exemptions.criterion-plot]]
279
version = "0.4.4"
280
criteria = "safe-to-run"
281
282
[[exemptions.crossbeam-deque]]
283
version = "0.8.1"
284
criteria = "safe-to-deploy"
285
286
[[exemptions.crossbeam-epoch]]
287
version = "0.9.9"
288
criteria = "safe-to-deploy"
289
290
[[exemptions.crossbeam-utils]]
291
version = "0.8.10"
292
criteria = "safe-to-deploy"
293
294
[[exemptions.digest]]
295
version = "0.9.0"
296
criteria = "safe-to-deploy"
297
298
[[exemptions.directories-next]]
299
version = "2.0.0"
300
criteria = "safe-to-deploy"
301
302
[[exemptions.dirs-sys-next]]
303
version = "0.1.2"
304
criteria = "safe-to-deploy"
305
306
[[exemptions.encode_unicode]]
307
version = "0.3.6"
308
criteria = "safe-to-deploy"
309
310
[[exemptions.fallible-iterator]]
311
version = "0.2.0"
312
criteria = "safe-to-deploy"
313
314
[[exemptions.futures-task]]
315
version = "0.3.27"
316
criteria = "safe-to-deploy"
317
notes = "deferring this vetting until Alex gets back from vacation"
318
319
[[exemptions.futures-util]]
320
version = "0.3.27"
321
criteria = "safe-to-deploy"
322
notes = "this is 25k lines and contains over 149 uses of the substring unsafe. it is a huge grab bag of complexity with no practical way to audit it"
323
324
[[exemptions.generic-array]]
325
version = "0.14.5"
326
criteria = "safe-to-deploy"
327
328
[[exemptions.getrandom]]
329
version = "0.2.6"
330
criteria = "safe-to-deploy"
331
332
[[exemptions.h2]]
333
version = "0.4.4"
334
criteria = "safe-to-deploy"
335
336
[[exemptions.half]]
337
version = "2.4.1"
338
criteria = "safe-to-deploy"
339
340
[[exemptions.hermit-abi]]
341
version = "0.3.9"
342
criteria = "safe-to-deploy"
343
344
[[exemptions.http]]
345
version = "0.2.9"
346
criteria = "safe-to-deploy"
347
notes = "we are exempting tokio, hyper, and their tightly coupled dependencies by the same authors, expecting that the authors at aws will publish attestions we can import at some point soon"
348
349
[[exemptions.httparse]]
350
version = "1.8.0"
351
criteria = "safe-to-deploy"
352
notes = "we are exempting tokio, hyper, and their tightly coupled dependencies by the same authors, expecting that the authors at aws will publish attestions we can import at some point soon"
353
354
[[exemptions.humantime]]
355
version = "2.1.0"
356
criteria = "safe-to-deploy"
357
358
[[exemptions.hyper]]
359
version = "1.0.0-rc.3"
360
criteria = "safe-to-deploy"
361
notes = "we are exempting tokio, hyper, and their tightly coupled dependencies by the same authors, expecting that the authors at aws will publish attestions we can import at some point soon"
362
363
[[exemptions.indicatif]]
364
version = "0.13.0"
365
criteria = "safe-to-deploy"
366
367
[[exemptions.ipnet]]
368
version = "2.5.0"
369
criteria = "safe-to-deploy"
370
371
[[exemptions.itertools]]
372
version = "0.10.3"
373
criteria = "safe-to-deploy"
374
375
[[exemptions.libloading]]
376
version = "0.7.3"
377
criteria = "safe-to-deploy"
378
379
[[exemptions.listenfd]]
380
version = "1.0.0"
381
criteria = "safe-to-deploy"
382
383
[[exemptions.logos]]
384
version = "0.14.2"
385
criteria = "safe-to-deploy"
386
notes = "safe when forbid_unsafe feature enabled, which it is in our dep through wasm-wave"
387
388
[[exemptions.logos-codegen]]
389
version = "0.14.2"
390
criteria = "safe-to-deploy"
391
notes = "safe when forbid_unsafe feature enabled, which it is in our dep through wasm-wave"
392
393
[[exemptions.logos-derive]]
394
version = "0.14.2"
395
criteria = "safe-to-deploy"
396
notes = "safe when forbid_unsafe feature enabled, which it is in our dep through wasm-wave"
397
398
[[exemptions.matrixmultiply]]
399
version = "0.3.9"
400
criteria = "safe-to-deploy"
401
402
[[exemptions.maybe-owned]]
403
version = "0.3.4"
404
criteria = "safe-to-deploy"
405
406
[[exemptions.memmap2]]
407
version = "0.2.3"
408
criteria = "safe-to-deploy"
409
410
[[exemptions.mio]]
411
version = "1.0.3"
412
criteria = "safe-to-deploy"
413
414
[[exemptions.ndarray]]
415
version = "0.15.6"
416
criteria = "safe-to-deploy"
417
418
[[exemptions.num-complex]]
419
version = "0.4.6"
420
criteria = "safe-to-deploy"
421
422
[[exemptions.num_cpus]]
423
version = "1.13.1"
424
criteria = "safe-to-deploy"
425
426
[[exemptions.number_prefix]]
427
version = "0.3.0"
428
criteria = "safe-to-deploy"
429
430
[[exemptions.object]]
431
version = "0.36.0"
432
criteria = "safe-to-deploy"
433
434
[[exemptions.once_cell]]
435
version = "1.12.0"
436
criteria = "safe-to-deploy"
437
438
[[exemptions.openssl]]
439
version = "0.10.73"
440
criteria = "safe-to-deploy"
441
442
[[exemptions.openssl-sys]]
443
version = "0.9.109"
444
criteria = "safe-to-deploy"
445
446
[[exemptions.openvino-finder]]
447
version = "0.4.1"
448
criteria = "safe-to-deploy"
449
450
[[exemptions.openvino-sys]]
451
version = "0.4.1"
452
criteria = "safe-to-deploy"
453
454
[[exemptions.password-hash]]
455
version = "0.4.2"
456
criteria = "safe-to-deploy"
457
458
[[exemptions.pbkdf2]]
459
version = "0.11.0"
460
criteria = "safe-to-deploy"
461
462
[[exemptions.petgraph]]
463
version = "0.6.5"
464
criteria = "safe-to-run"
465
466
[[exemptions.ppv-lite86]]
467
version = "0.2.16"
468
criteria = "safe-to-deploy"
469
470
[[exemptions.proptest]]
471
version = "1.0.0"
472
criteria = "safe-to-deploy"
473
474
[[exemptions.quick-error]]
475
version = "1.2.3"
476
criteria = "safe-to-deploy"
477
478
[[exemptions.quick-error]]
479
version = "2.0.1"
480
criteria = "safe-to-deploy"
481
482
[[exemptions.rand]]
483
version = "0.8.5"
484
criteria = "safe-to-deploy"
485
486
[[exemptions.rand_xorshift]]
487
version = "0.3.0"
488
criteria = "safe-to-deploy"
489
490
[[exemptions.rand_xoshiro]]
491
version = "0.6.0"
492
criteria = "safe-to-run"
493
494
[[exemptions.rawpointer]]
495
version = "0.2.1"
496
criteria = "safe-to-deploy"
497
498
[[exemptions.redox_syscall]]
499
version = "0.2.13"
500
criteria = "safe-to-deploy"
501
502
[[exemptions.redox_users]]
503
version = "0.4.3"
504
criteria = "safe-to-deploy"
505
506
[[exemptions.region]]
507
version = "2.2.0"
508
criteria = "safe-to-deploy"
509
510
[[exemptions.ring]]
511
version = "0.17.14"
512
criteria = "safe-to-deploy"
513
514
[[exemptions.rustls]]
515
version = "0.22.4"
516
criteria = "safe-to-deploy"
517
518
[[exemptions.rustls-pki-types]]
519
version = "1.3.1"
520
criteria = "safe-to-deploy"
521
522
[[exemptions.rustls-webpki]]
523
version = "0.102.2"
524
criteria = "safe-to-deploy"
525
526
[[exemptions.rusty-fork]]
527
version = "0.3.0"
528
criteria = "safe-to-deploy"
529
530
[[exemptions.schannel]]
531
version = "0.1.27"
532
criteria = "safe-to-deploy"
533
534
[[exemptions.security-framework]]
535
version = "2.11.1"
536
criteria = "safe-to-deploy"
537
538
[[exemptions.security-framework-sys]]
539
version = "2.14.0"
540
criteria = "safe-to-deploy"
541
542
[[exemptions.serde_yaml]]
543
version = "0.9.34+deprecated"
544
criteria = "safe-to-run"
545
546
[[exemptions.shuffling-allocator]]
547
version = "1.1.2"
548
criteria = "safe-to-deploy"
549
550
[[exemptions.sized-chunks]]
551
version = "0.6.5"
552
criteria = "safe-to-run"
553
554
[[exemptions.smallvec]]
555
version = "1.8.0"
556
criteria = "safe-to-deploy"
557
558
[[exemptions.socket2]]
559
version = "0.4.9"
560
criteria = "safe-to-deploy"
561
562
[[exemptions.souper-ir]]
563
version = "2.1.0"
564
criteria = "safe-to-deploy"
565
566
[[exemptions.stable_deref_trait]]
567
version = "1.2.0"
568
criteria = "safe-to-deploy"
569
570
[[exemptions.strsim]]
571
version = "0.10.0"
572
criteria = "safe-to-deploy"
573
574
[[exemptions.tempfile]]
575
version = "3.3.0"
576
criteria = "safe-to-deploy"
577
578
[[exemptions.terminal_size]]
579
version = "0.1.17"
580
criteria = "safe-to-deploy"
581
582
[[exemptions.time]]
583
version = "0.3.36"
584
criteria = "safe-to-deploy"
585
586
[[exemptions.tokio]]
587
version = "1.44.2"
588
criteria = "safe-to-deploy"
589
notes = "we are exempting tokio, hyper, and their tightly coupled dependencies by the same authors, expecting that the authors at aws will publish attestions we can import at some point soon"
590
591
[[exemptions.tokio-macros]]
592
version = "2.5.0"
593
criteria = "safe-to-deploy"
594
595
[[exemptions.tokio-rustls]]
596
version = "0.25.0"
597
criteria = "safe-to-deploy"
598
599
[[exemptions.tracing-attributes]]
600
version = "0.1.21"
601
criteria = "safe-to-deploy"
602
603
[[exemptions.tracing-core]]
604
version = "0.1.28"
605
criteria = "safe-to-deploy"
606
607
[[exemptions.typenum]]
608
version = "1.15.0"
609
criteria = "safe-to-deploy"
610
611
[[exemptions.unsafe-libyaml]]
612
version = "0.2.11"
613
criteria = "safe-to-run"
614
615
[[exemptions.untrusted]]
616
version = "0.9.0"
617
criteria = "safe-to-deploy"
618
619
[[exemptions.ureq]]
620
version = "2.9.6"
621
criteria = "safe-to-deploy"
622
623
[[exemptions.uuid]]
624
version = "1.0.0"
625
criteria = "safe-to-deploy"
626
627
[[exemptions.wait-timeout]]
628
version = "0.2.0"
629
criteria = "safe-to-deploy"
630
631
[[exemptions.webpki-roots]]
632
version = "0.26.1"
633
criteria = "safe-to-deploy"
634
635
[[exemptions.winapi]]
636
version = "0.3.9"
637
criteria = "safe-to-deploy"
638
639
[[exemptions.winapi-i686-pc-windows-gnu]]
640
version = "0.4.0"
641
criteria = "safe-to-deploy"
642
643
[[exemptions.winapi-x86_64-pc-windows-gnu]]
644
version = "0.4.0"
645
criteria = "safe-to-deploy"
646
647
[[exemptions.zeroize]]
648
version = "1.7.0"
649
criteria = "safe-to-deploy"
650
651
[[exemptions.zip]]
652
version = "0.6.6"
653
criteria = "safe-to-deploy"
654
655
[[exemptions.zstd]]
656
version = "0.11.1+zstd.1.5.2"
657
criteria = "safe-to-deploy"
658
659
[[exemptions.zstd]]
660
version = "0.11.2+zstd.1.5.2"
661
criteria = "safe-to-deploy"
662
663
[[exemptions.zstd-safe]]
664
version = "5.0.1+zstd.1.5.2"
665
criteria = "safe-to-deploy"
666
667
[[exemptions.zstd-safe]]
668
version = "5.0.2+zstd.1.5.2"
669
criteria = "safe-to-deploy"
670
671
[[exemptions.zstd-sys]]
672
version = "2.0.9+zstd.1.5.5"
673
criteria = "safe-to-deploy"
674
675