aboutcode-org / aboutcode-org/scancode.io

t-rust: Implement T-Rust solution

未关闭
#1,766 0 条评论 0 个 reaction 已指派 0 人 在 GitHub 查看
主要语言
Python
星标
215
派生
203
平均合并
4 天 8 小时
30 天内合并 PR
6

描述

Rust crates.io hosts over 160 thousand packages that have been downloaded over 90 billion times. Rust crates origin metadata and licensing documentation is declared by crate authors as part of crate metadata, but can be misleading and/or incorrect. Accurate Rust crates origin and license metadata are essential to safely automate the consumption of Rust packages in the software supply chain of safety-critical applications.

The solution to this is to lift the trust in Rust crates and this work is to fix this problem in multiple steps: Scan, review, curate and fix the metadata of the most popular crates. Release this data as open data, and work with the Rust community to provide the data as part of the crates.io API, cross-check and report code borrowing and reuse between crates.

贡献指南

打开贡献指南

评估

这个 Issue 还没有评估数据。

把新 issue 发到你的邮箱

精选适合新手参与的 GitHub issue 摘要。