cargo-dephell VS rekor

Compare cargo-dephell vs rekor and see what are their differences.

cargo-dephell

Cargo dephell analyzes the third-party dependencies of a Rust workspace (by mimoo)
Our great sponsors
  • WorkOS - The modern identity platform for B2B SaaS
  • InfluxDB - Power Real-Time Data Analytics at Scale
  • SaaSHub - Software Alternatives and Reviews
cargo-dephell rekor
2 29
46 832
- 1.8%
1.8 9.7
12 months ago 8 days ago
HTML Go
- Apache License 2.0
The number of mentions indicates the total number of mentions that we've tracked plus the number of user suggested alternatives.
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.

cargo-dephell

Posts with mentions or reviews of cargo-dephell. We have used some of these posts to build our list of alternatives and similar projects. The last one was on 2021-11-18.
  • Backdooring Rust crates for fun and profit
    11 projects | news.ycombinator.com | 18 Nov 2021
    That's why I started https://github.com/mimoo/cargo-dephell and https://github.com/diem/whackadep btw, to try to get a sense of the risk in our Rust dependencies. The second one is a web UI that can update periodically and shows you what's up with your dependencies. If there's a new update, it'll tell you if it affected a `build.rs` file (which triggers a warning). I wanted to add more rules, like the ones mentioned in the article, but never had the time to do it.
  • Is the crate dependency becoming a problem?
    6 projects | /r/rust | 9 Sep 2021
    Check whackadep and cargo-dephell: https://github.com/mimoo/cargo-dephell and https://github.com/diem/whackadep

rekor

Posts with mentions or reviews of rekor. We have used some of these posts to build our list of alternatives and similar projects. The last one was on 2023-10-10.

What are some alternatives?

When comparing cargo-dephell and rekor you can also consider the following projects:

cargo-udeps - Find unused dependencies in Cargo.toml

sigstore-the-hard-way - sigstore the hard way!

glog - Leveled execution logs for Go

fulcio - Sigstore OIDC PKI

bmrng - An async MPSC request-response channel for Tokio

cosign - Code signing and transparency for containers and binaries

kubeclarity - KubeClarity is a tool for detection and management of Software Bill Of Materials (SBOM) and vulnerabilities of container images and filesystems

Covenant - Covenant is a collaborative .NET C2 framework for red teamers.

MEMZ - A trojan made for Danooct1's User Made Malware Series.

cargo-crev - A cryptographically verifiable code review system for the cargo (Rust) package manager.

trezor-agent - Hardware-based SSH/GPG/age agent

lsblk - List information about block devices in the FreeBSD system.