deny.toml (1523B)
1 [graph] 2 targets = [ 3 "aarch64-apple-darwin", 4 "wasm32-unknown-unknown", 5 "x86_64-pc-windows-gnu", 6 "x86_64-unknown-linux-gnu", 7 ] 8 all-features = true 9 10 [advisories] 11 # `nostr` 0.44.7 depends on `url-fork` 3.0.1 and therefore `idna` 0.5.0. 12 # The only network-capable public adapter canonicalizes every relay URL with 13 # patched `url` >=2.5.4 before the value reaches upstream Nostr code. This 14 # exact exception is contract-bound and must be removed with the Nostr 0.45 15 # stable upgrade. 16 ignore = [ 17 "RUSTSEC-2024-0384", # `instant` is an unmaintained, non-vulnerability Nostr 0.44 dependency. 18 "RUSTSEC-2024-0421", 19 "RUSTSEC-2026-0243", # `nostr-relay-pool` is unmaintained and moves into `nostr-sdk` at 0.45. 20 ] 21 22 [licenses] 23 allow = [ 24 "0BSD", 25 "Apache-2.0", 26 "Apache-2.0 WITH LLVM-exception", 27 "BSD-1-Clause", 28 "BSD-2-Clause", 29 "BSD-3-Clause", 30 "BSL-1.0", 31 "CC0-1.0", 32 "CDLA-Permissive-2.0", 33 "ISC", 34 "MIT", 35 "MIT-0", 36 "MPL-2.0", 37 "Unicode-3.0", 38 "Unlicense", 39 "Zlib", 40 ] 41 confidence-threshold = 0.93 42 43 [licenses.private] 44 ignore = false 45 registries = [] 46 47 [bans] 48 multiple-versions = "allow" 49 wildcards = "deny" 50 highlight = "all" 51 workspace-default-features = "allow" 52 external-default-features = "allow" 53 allow = [] 54 allow-workspace = true 55 deny = [] 56 skip = [] 57 skip-tree = [] 58 59 [sources] 60 unknown-registry = "deny" 61 unknown-git = "deny" 62 allow-registry = ["https://github.com/rust-lang/crates.io-index"] 63 allow-git = ["https://github.com/rust-nostr/nostr.git"] 64 65 [sources.allow-org] 66 github = [] 67 gitlab = [] 68 bitbucket = []