hse
cargo-deny
hse | cargo-deny | |
---|---|---|
5 | 15 | |
673 | 1,554 | |
0.4% | 1.7% | |
3.6 | 8.8 | |
8 months ago | 2 days ago | |
C | Rust | |
Apache License 2.0 | Apache License 2.0 |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
hse
- Please add licenses to your projects, rust DS emulator Dust now dead.
-
What's the big deal about key-value databases like FoundationDB ands RocksDB?
HSE[0] is another storage engine to throw on the pile.
[0]: https://github.com/hse-project/hse
-
What projects need C?
We use C on our storage engine. https://github.com/hse-project/hse. C is a good language if you want to be usable from other languages because all languages speak the C ABI.
-
Announcing tz-rs, a reimplementation of libc functions localtime, gmtime and mktime in pure Rust with no dependencies
I can tell you have never compiled libcurl from source: https://github.com/hse-project/hse/blob/master/subprojects/packagefiles/curl/meson.build.
- HSE: Heterogeneous-Memory Storage Engine
cargo-deny
-
Please add licenses to your projects, rust DS emulator Dust now dead.
Tip: You can check the licenses of all your dependencies (recursively) using cargo-deny: https://github.com/EmbarkStudios/cargo-deny
- Cargo-deny: a cargo plugin for linting Rust project dependencies
-
What are some useful tools for Rust?
cargo-deny
-
Can versions of a crate be blocked / be made unusable / be made not downloadable?
cargo-deny can help block specified versions of a crate and even has some advisory features that can probably used to block crate with reported vulnerabilities
-
Best way to protect a project from supply chain attacks?
cargo deny for fetching crates only from trusted sources, blacklisting crates, etc.
-
NPM malware and what it could imply for Cargo
Use cargo audit or cargo deny to check the crates in your Cargo.lock to ensure they don't contain any vulnerabilities.
-
This Year in Embedded Rust: 2021 edition
> Explain the crate scanner thing?
I assume a reference to tools that help manage potential issues around dependencies, e.g.:
* https://github.com/rustsec/rustsec/tree/main/cargo-audit
* https://github.com/EmbarkStudios/cargo-deny
"[cargo-audit] Audit Cargo.lock files for crates with security vulnerabilities reported to the RustSec Advisory Database."
"cargo-deny is a cargo plugin that lets you lint your project's dependency graph to ensure all your dependencies conform to your expectations and requirements." e.g. license, security advisories, source.
-
Score card for dependencies in a project
cargo-deny does license and security advisory checking, and cargo-geiger does unsafe checking.
-
How can we make sure this doesn't happen with Crates.io?
cargo-deny
-
Blog post: Cross compiling Rust Windows binaries from Linux
OpenSSL has been banned in our project for a variety of reasons via cargo-deny for around a year and half, it was actually one of the reasons we created it in the first place.
What are some alternatives?
go-sstables - Go library for protobuf compatible sstables, a skiplist, a recordio format and other database building blocks like a write-ahead log. Ships now with an embedded key-value store.
cargo-about - 📜 Cargo plugin to generate list of all licenses for a crate 🦀
dust - A Nintendo DS emulator written in Rust
advisory-db - Security advisory database for Rust crates published through crates.io
tz-rs - A pure Rust reimplementation of libc functions localtime, gmtime and mktime.
xwin - A utility for downloading and packaging the Microsoft CRT headers and libraries, and Windows SDK headers and libraries needed for compiling and linking programs targeting Windows.
dust - A Nintendo DS emulator written in Rust for desktop devices and the web, with debugging features and a focus on accuracy
crates.io-index - Registry index for crates.io
IncludeDB - Tiny key/value-store in a single, embeddable C file. For games, small servers, sbc, etc...
static_init
RethinkDB - The open-source database for the realtime web.
nextest - A next-generation test runner for Rust.