Sitelet https://web.archive.org/web/20200615042735/https://github.com/crev-dev/cargo-crev
Skip to content
A cryptographically verifiable code review system for the cargo (Rust) package manager.
Rust Other
  1. Rust 99.7%
  2. Other 0.3%
Branch: master
Clone or download

Latest commit

ffranr Merge pull request #360 from ffranr/fix_internal_trust_set_creation
When creating an internal trust set, skip processing an ID if its effective trust level is None.
Latest commit 0d37afb Jun 6, 2020

Files

Permalink
Type Name Latest commit message Commit time
Failed to load latest commit information.
.art Start some design docs Aug 24, 2018
.github
cargo-crev Merge branch 'master' into refactor_symbol_names Jun 5, 2020
ci Update cargo Apr 10, 2020
crev-bin Switch to anyhow/thiserror May 16, 2020
crev-common Use stdlib read_to_string May 29, 2020
crev-data Force user to handle None-Review case May 30, 2020
crev-lib Rename format argument: t_or_d --> proof_type. Jun 5, 2020
crev-wot When creating an internal trust set, skip processing an ID if its eff… Jun 5, 2020
crevsum Update CHANGELOG. Get 0.17.0 ready Apr 29, 2020
design Start some design docs Aug 24, 2018
.gitignore Implement two missing commands Jul 7, 2019
.pre-commit-config.yaml Fix pre-commit config: correct hook language type. Jun 3, 2020
.travis.yml Add CI format check. May 1, 2020
CHANGELOG.md chore: Fixes after moving into github organization Aug 24, 2019
Cargo.lock Remove ifmt May 29, 2020
Cargo.toml Refactor proofdb into crate crev-wot. #137 May 3, 2020
HACKING.md Add config file for optional pre-commit hooks. May 31, 2020
LICENSE-APACHE Add LICENSE files Jan 5, 2019
LICENSE-MIT Add LICENSE files Jan 5, 2019
LICENSE-MPL2 Add LICENSE files Jan 5, 2019
README.md chore: Fixes after moving into github organization Aug 24, 2019
appveyor.yml Fix appveyor Apr 9, 2020
rustfmt.toml Run `cargo fmt --all` and ensure `rustfmt` is checked on travis. Also… Jan 8, 2019
shell.nix Fix digest, hopefully Sep 24, 2018

README.md

Travis CI Build Status crates.io crev matrix channel crev gitter channel

jesus, that's a lot of unsafe

cargo-crev

A cryptographically verifiable code review system for the cargo (Rust) package manager.

Introduction

Crev is a language and ecosystem agnostic, distributed code review system.

cargo-crev is an implementation of Crev as a command line tool integrated with cargo. This tool helps Rust users evaluate the quality and trustworthiness of their package dependencies.

Features

cargo-crev can already:

  • warn you about untrustworthy crates and security vulnerabilities,
  • display useful metrics about your dependencies,
  • help you identify dependency-bloat,
  • allow you to review most suspicious dependencies and publish your findings,
  • use reviews produced by other users,
  • increase trustworthiness of your own code,
  • build a web of trust of other reputable users to help verify the code you use,

and many other things with many more to come.

Getting started

Static binaries are available from the releases page.

Follow the cargo-crev - Getting Started Guide (more documentation available on docs.rs).

cargo-crev is a work in progress, but it should be usable at all times. Join our matrix or gitter channel, get help, report problems and feedback. Thank you!

Raise awareness

If you're supportive of the cause, we would appreciate helping to raise awareness of the project. Consider putting the below note in the README of your Rust projects:

It is recommended to always use [cargo-crev](https://github.com/crev-dev/cargo-crev)
to verify the trustworthiness of each of your dependencies, including this one.

Thank you!

Changelog

Changelog can be found here: https://github.com/crev-dev/cargo-crev/blob/master/cargo-crev/CHANGELOG.md

You can’t perform that action at this time.