Permalink
Find file Copy path
Fetching contributors…
Cannot retrieve contributors at this time
440 lines (418 sloc) 13.3 KB
-----BEGIN CREV PACKAGE REVIEW-----
version: -1
date: "2018-12-18T23:10:21.111854021-08:00"
from:
id-type: crev
id: 8iUv_SPgsAQ4paabLfs1D9tIptMnuSRZ344_M-6m9RE
url: "https://github.com/dpc/crev-proofs"
package:
source: "https://crates.io"
name: log
version: 0.4.6
digest: BhDmOOjfESqs8i3z9qsQANH8A39eKklgQKuVtrwN-Tw
review:
thoroughness: low
understanding: medium
rating: positive
-----BEGIN CREV PACKAGE REVIEW SIGNATURE-----
LXHRP2Spd2jzaXe5CXCTwb4mu_epLtgdfxy717RSPVyUmfVxoOICg49AfKQzhpWH5bWLvFAzVuXtJnJ0klI3Dw
-----END CREV PACKAGE REVIEW-----
-----BEGIN CREV PACKAGE REVIEW-----
version: -1
date: "2018-12-18T23:37:43.256529129-08:00"
from:
id-type: crev
id: 8iUv_SPgsAQ4paabLfs1D9tIptMnuSRZ344_M-6m9RE
url: "https://github.com/dpc/crev-proofs"
package:
source: "https://crates.io"
name: default
version: 0.1.2
digest: YuxzyXhCHZYMi4__Hj_hCzkQyxRLrZjDqL8usLqA4QY
review:
thoroughness: high
understanding: high
rating: strong
comment: "I'm the author. And this crate is 3 lines of trivial code."
-----BEGIN CREV PACKAGE REVIEW SIGNATURE-----
PmOe-V2KkLiCBjcU8yK1re09XVPl56M9no6yD3_auWwtDA7wMxYZIzNDEmHatoqUNj19Usv78BiFW7Kj1N06Ag
-----END CREV PACKAGE REVIEW-----
-----BEGIN CREV PACKAGE REVIEW-----
version: -1
date: "2018-12-19T21:58:36.697400553-08:00"
from:
id-type: crev
id: 8iUv_SPgsAQ4paabLfs1D9tIptMnuSRZ344_M-6m9RE
url: "https://github.com/dpc/crev-proofs"
package:
source: "https://crates.io"
name: slog-async
version: 2.3.0
digest: 1yzbyfpSaZNxsAol5kht1ujEn3YZQ64Op1PokybFiLU
review:
thoroughness: high
understanding: high
rating: strong
comment: "I'm the author. It's a decent, popular crate."
-----BEGIN CREV PACKAGE REVIEW SIGNATURE-----
sK3qpnUDMfk35Zkau-FZGoDR3rYyQapB5ApXdhcMmpVWSowLFxcRXTEZQclA7KEPG8IF2xe9IehGBhh3tj17AQ
-----END CREV PACKAGE REVIEW-----
-----BEGIN CREV PACKAGE REVIEW-----
version: -1
date: "2018-12-19T21:59:25.411823962-08:00"
from:
id-type: crev
id: 8iUv_SPgsAQ4paabLfs1D9tIptMnuSRZ344_M-6m9RE
url: "https://github.com/dpc/crev-proofs"
package:
source: "https://crates.io"
name: slog-term
version: 2.4.0
digest: M78HRLvbdP7ury0MJX2WL7AEDeg56V6ApBBAHXPsrv4
review:
thoroughness: high
understanding: high
rating: strong
comment: "Strong. It's a decent, popular crate."
-----BEGIN CREV PACKAGE REVIEW SIGNATURE-----
ycJ2faPcsuMPByZetap1yrfdcYQNKY6wbkFqJW0xJ4ekf0zrHvmZID2K8J96Ipp4gEGXmSUyZ-u4mbcmpyVbAA
-----END CREV PACKAGE REVIEW-----
-----BEGIN CREV PACKAGE REVIEW-----
version: -1
date: "2018-12-19T22:00:24.644210896-08:00"
from:
id-type: crev
id: 8iUv_SPgsAQ4paabLfs1D9tIptMnuSRZ344_M-6m9RE
url: "https://github.com/dpc/crev-proofs"
package:
source: "https://crates.io"
name: either
version: 1.5.0
digest: uBbgCVotv_8z4SEOjremFmvMG4JPhUROC19OLjPPLNE
review:
thoroughness: medium
understanding: high
rating: strong
comment: "Simple `Either` type."
-----BEGIN CREV PACKAGE REVIEW SIGNATURE-----
dEvpC3ta8vAyCtHehs_bqHH2yV8Yq7dXQsYI09e5kSOZrGDo4pOiPRan5Sp46VzNIAq-Vri7n6RemjUsIJ9EAw
-----END CREV PACKAGE REVIEW-----
-----BEGIN CREV PACKAGE REVIEW-----
version: -1
date: "2018-12-19T22:01:03.687302314-08:00"
from:
id-type: crev
id: 8iUv_SPgsAQ4paabLfs1D9tIptMnuSRZ344_M-6m9RE
url: "https://github.com/dpc/crev-proofs"
package:
source: "https://crates.io"
name: nodrop
version: 0.1.13
digest: Kh2VjXR5hV5D074ujzyFV-R9s4rsHfVl7kfd2R2BT38
review:
thoroughness: medium
understanding: medium
rating: positive
comment: "Some `unsafe`, but LGTM"
-----BEGIN CREV PACKAGE REVIEW SIGNATURE-----
R9ci3I2cwt8kaNOTdPqkHOXGyx-XlmRlVf_aDvWOa2fHlL9_SdMkt_uUrJp_mFC0T21VuibE-i-vWkMjvrnmDg
-----END CREV PACKAGE REVIEW-----
-----BEGIN CREV PACKAGE REVIEW-----
version: -1
date: "2018-12-20T20:16:36.075909096-08:00"
from:
id-type: crev
id: 8iUv_SPgsAQ4paabLfs1D9tIptMnuSRZ344_M-6m9RE
url: "https://github.com/dpc/crev-proofs"
package:
source: "https://crates.io"
name: hex
version: 0.3.2
digest: 6FtxZesHD7pnSlbpp--CF_MPAnJATZI4ZR-Vdwb6Fes
review:
thoroughness: medium
understanding: high
rating: strong
comment: "Small, no unsafe, tests, good documentation."
-----BEGIN CREV PACKAGE REVIEW SIGNATURE-----
Xu8uXl07wkknKnR73UVFeMk5mS13fOaXqPmZj21x6jY9deffFCpkvD-Keer6yj3tDWqfP08waW-974KMWysyDw
-----END CREV PACKAGE REVIEW-----
-----BEGIN CREV PACKAGE REVIEW-----
version: -1
date: "2018-12-20T20:19:40.928326067-08:00"
from:
id-type: crev
id: 8iUv_SPgsAQ4paabLfs1D9tIptMnuSRZ344_M-6m9RE
url: "https://github.com/dpc/crev-proofs"
package:
source: "https://crates.io"
name: structopt
version: 0.2.14
digest: q3Qpn_xprRmbCzKUUwpDMoH7ISO-ov1IJqqmit5dPBs
review:
thoroughness: low
understanding: medium
rating: strong
comment: "Surpringly small, no unsafe, tests and all."
-----BEGIN CREV PACKAGE REVIEW SIGNATURE-----
0ZjK6iToqZo1cli-BqUOoj5kR3dfrmUz8K8L5VXNBZgu8Dci1pMsNTen4mwe6kkewMAgpkg3b48VDR8D8QbmCg
-----END CREV PACKAGE REVIEW-----
-----BEGIN CREV PACKAGE REVIEW-----
version: -1
date: "2018-12-20T20:28:10.019382430-08:00"
from:
id-type: crev
id: 8iUv_SPgsAQ4paabLfs1D9tIptMnuSRZ344_M-6m9RE
url: "https://github.com/dpc/crev-proofs"
package:
source: "https://crates.io"
name: structopt-derive
version: 0.2.14
digest: H8mhoDElenx3NMk4GBVbfRWI8BX2ZXXbZQxyZ-41Vio
review:
thoroughness: low
understanding: low
rating: strong
comment: "No unsafe, documentation, fairly small. A lot of macro magic."
-----BEGIN CREV PACKAGE REVIEW SIGNATURE-----
32QoLHnhnzhYXHb9h1PVVgkJrRkGl6kUN7jN74N6AQg88N2bFT3LEi7VdpCoh5L32nALaR4UGNl7_M2VPgKiDQ
-----END CREV PACKAGE REVIEW-----
-----BEGIN CREV PACKAGE REVIEW-----
version: -1
date: "2018-12-20T20:45:54.982248458-08:00"
from:
id-type: crev
id: 8iUv_SPgsAQ4paabLfs1D9tIptMnuSRZ344_M-6m9RE
url: "https://github.com/dpc/crev-proofs"
package:
source: "https://crates.io"
name: rand
version: 0.6.1
digest: "-HmN-lWe1NU5F5u4t1sP_RsYlj8MWgCjSH-3USiPqfA"
review:
thoroughness: none
understanding: low
rating: strong
comment: "I failed to review the whole thing. I looked at `unsafe`s and when through ~10 random files. LGTM, but considering how important this crate it, my understanding of it is insufficient."
-----BEGIN CREV PACKAGE REVIEW SIGNATURE-----
TkyHNRBdJpUdjUpMap44KeLOrPgLBrqGUEGvci4NDGaTvQCwtBspdCZaNU3H67wndPFaOwfCZjNS-6PAfhqNAQ
-----END CREV PACKAGE REVIEW-----
-----BEGIN CREV PACKAGE REVIEW-----
version: -1
date: "2018-12-20T20:55:01.370541058-08:00"
from:
id-type: crev
id: 8iUv_SPgsAQ4paabLfs1D9tIptMnuSRZ344_M-6m9RE
url: "https://github.com/dpc/crev-proofs"
package:
source: "https://crates.io"
name: tempdir
version: 0.3.7
digest: HCBmm8gIxllQsbpNbOJnpW_nmJck53FC2H65raSV4CU
review:
thoroughness: medium
understanding: high
rating: strong
comment: "Small, no unsafe, good documentation."
-----BEGIN CREV PACKAGE REVIEW SIGNATURE-----
GhCt7yBgfYHXcFbQB9nll92PBjrpnYjSSZkk0vjD4vMJeR_uKPQOcqCroVwxZI_aAv1lcKDfe1MAVjwFkRqdAQ
-----END CREV PACKAGE REVIEW-----
-----BEGIN CREV PACKAGE REVIEW-----
version: -1
date: "2018-12-20T21:02:36.256181729-08:00"
from:
id-type: crev
id: 8iUv_SPgsAQ4paabLfs1D9tIptMnuSRZ344_M-6m9RE
url: "https://github.com/dpc/crev-proofs"
package:
source: "https://crates.io"
name: lazy_static
version: 1.2.0
digest: gAbTM9yZ_I3yo9pQdJa1FTi_GrjFOrlrEuYOgXXnNzk
review:
thoroughness: medium
understanding: medium
rating: strong
-----BEGIN CREV PACKAGE REVIEW SIGNATURE-----
pGfQi1fUP9i2jwmVrwXTROGxjwyUlCcekZk_hewbUmDWIYRYcajDv5Dnve0mku5qil-QMKt4LAHIMsZ5_6BBDA
-----END CREV PACKAGE REVIEW-----
-----BEGIN CREV PACKAGE REVIEW-----
version: -1
date: "2018-12-20T21:06:57.941594700-08:00"
from:
id-type: crev
id: 8iUv_SPgsAQ4paabLfs1D9tIptMnuSRZ344_M-6m9RE
url: "https://github.com/dpc/crev-proofs"
package:
source: "https://crates.io"
name: byteorder
version: 1.2.7
digest: tm4tSfypGXF8-ESvMqH9Pw76GxIDm1UPVFHWF6LUZq8
review:
thoroughness: low
understanding: medium
rating: strong
comment: "Good test coverage, good documentation. LGTM"
-----BEGIN CREV PACKAGE REVIEW SIGNATURE-----
vbGDOTqgwG0ghMVOcp3hTH1fNVxiQDTAM5WohnND3qrMhq2Bcm_u3bj9WeWq63FMUIOPzoO5EfpMPx4nYF6PAQ
-----END CREV PACKAGE REVIEW-----
-----BEGIN CREV PACKAGE REVIEW-----
version: -1
date: "2018-12-20T21:11:19.043903303-08:00"
from:
id-type: crev
id: 8iUv_SPgsAQ4paabLfs1D9tIptMnuSRZ344_M-6m9RE
url: "https://github.com/dpc/crev-proofs"
package:
source: "https://crates.io"
name: smallvec
version: 0.6.7
digest: Fzeb-w65FQ6585uCTOw7h_oSVxIXmW01aXkZAGaYmG8
review:
thoroughness: low
understanding: low
rating: neutral
comment: Quite a bit of unsafe. It seems to me this crate could use some fuzzing.
-----BEGIN CREV PACKAGE REVIEW SIGNATURE-----
1bcnCoHeeVFtnB6qe700YQ9DNhNEFIMM6MiBBVs8KgqRvYvSgnJzJvB5lFMcu8Dbol4tBQ_P3zyA7ufngzClDw
-----END CREV PACKAGE REVIEW-----
-----BEGIN CREV PACKAGE REVIEW-----
version: -1
date: "2018-12-21T23:28:57.211800263-08:00"
from:
id-type: crev
id: 8iUv_SPgsAQ4paabLfs1D9tIptMnuSRZ344_M-6m9RE
url: "https://github.com/dpc/crev-proofs"
package:
source: "https://crates.io"
name: temporary
version: 0.6.3
digest: F0icIXqLCy9VS7YdB6vfLyrPsCocp2NAa0NWtNbceEc
review:
thoroughness: medium
understanding: high
rating: dangerous
comment: "Reckless `unsafe`, buggy. https://github.com/stainless-steel/temporary/issues/1 . One of the reasons I've created cargo-crev in the first place."
-----BEGIN CREV PACKAGE REVIEW SIGNATURE-----
JdhJYIt4_o94w4vxKDCh3n7rSQ-A7Jhg9gHB_pt7z3OEVCgChmqD3kHx5BUb80QukitbpLGWCNQpBNAkH9E_Bw
-----END CREV PACKAGE REVIEW-----
-----BEGIN CREV PACKAGE REVIEW-----
version: -1
date: "2018-12-21T23:32:08.068653107-08:00"
from:
id-type: crev
id: 8iUv_SPgsAQ4paabLfs1D9tIptMnuSRZ344_M-6m9RE
url: "https://github.com/dpc/crev-proofs"
package:
source: "https://crates.io"
name: random
version: 0.12.2
digest: GPySMiyOWhCfeMmzRhUkoFNSls26QaQ7THXneb3106w
review:
thoroughness: none
understanding: medium
rating: negative
comment: "I see no point in this crate existing (just use `rand`), and considering poor quality of other crates of this author, I would advise not to use. https://github.com/stainless-steel/temporary/issues/1"
-----BEGIN CREV PACKAGE REVIEW SIGNATURE-----
OzKdB039-_h0zW6v5c8acurGt03wdypI3opeToqiQ2RvurdRZ80-qc0fObCiL0Fy4pesfxQp-lG03V_FSWCGCA
-----END CREV PACKAGE REVIEW-----
-----BEGIN CREV PACKAGE REVIEW-----
version: -1
date: "2018-12-22T00:03:38.493541376-08:00"
from:
id-type: crev
id: 8iUv_SPgsAQ4paabLfs1D9tIptMnuSRZ344_M-6m9RE
url: "https://github.com/dpc/crev-proofs"
package:
source: "https://crates.io"
name: sqlite
version: 0.24.0
digest: U_xnUNvAZjwR1sGgcRwLdPHO0J2RaAms50VOZcL1Kpk
review:
thoroughness: none
understanding: low
rating: negative
comment: "The owner of this crate https://crates.io/users/IvanUkhov has plenty of low-quality, suspicious crates, that at best are name-squating, I would advise against usting this one."
-----BEGIN CREV PACKAGE REVIEW SIGNATURE-----
23qcacm2ofiNTuLLV6OkBVFmSoUXt0L5Bz51PN_KlseK0Fu6Zd6yzCoa8BWjuNvdfNGOAE8usrptUdtjsNp0BA
-----END CREV PACKAGE REVIEW-----
-----BEGIN CREV PACKAGE REVIEW-----
version: -1
date: "2018-12-26T23:26:27.078926318-08:00"
from:
id-type: crev
id: 8iUv_SPgsAQ4paabLfs1D9tIptMnuSRZ344_M-6m9RE
url: "https://github.com/dpc/crev-proofs"
package:
source: "https://crates.io"
name: tempfile
version: 3.0.4
digest: PpEPY4-sG9RKDxAplgTiChbk6FcX8u5GEqe2CCXh7jA
review:
thoroughness: low
understanding: medium
rating: positive
comment: "LGTM. I feel like this crate could use more in-depth review since it does have some `unsafe` blocks (especially for Windows)."
-----BEGIN CREV PACKAGE REVIEW SIGNATURE-----
uFWt80GFM8uQwOHolSt1ke9zgiIAgeaSV3WDaZEysI--KcDipAQJEMnC0GArroK2pm4zuoOEl5GxUC4GrJgYCA
-----END CREV PACKAGE REVIEW-----
-----BEGIN CREV PACKAGE REVIEW-----
version: -1
date: "2018-12-26T23:57:10.649281071-08:00"
from:
id-type: crev
id: 8iUv_SPgsAQ4paabLfs1D9tIptMnuSRZ344_M-6m9RE
url: "https://github.com/dpc/crev-proofs"
package:
source: "https://crates.io"
name: common_failures
version: 0.1.1
digest: iPrJvUpdsQLiYfo21Cgp0s55r73K6EO-KagO6fWEOxk
review:
thoroughness: low
understanding: high
rating: strong
comment: LGTM
-----BEGIN CREV PACKAGE REVIEW SIGNATURE-----
4o3EH_rIk4QugN3m5Zr9puAEpbt2lFbx9TJdnKlwKpMP9ODEhgcu_Rh-FmdEPuQk0gMbI7g9PeLYid8sXVWCCQ
-----END CREV PACKAGE REVIEW-----
-----BEGIN CREV PACKAGE REVIEW-----
version: -1
date: "2018-12-27T15:03:34.189335776-08:00"
from:
id-type: crev
id: 8iUv_SPgsAQ4paabLfs1D9tIptMnuSRZ344_M-6m9RE
url: "https://github.com/dpc/crev-proofs"
package:
source: "https://crates.io"
name: crates_io_api
version: 0.3.0
revision: 734324f1bb29c094dc0749efce3dab8ca6822f45
digest: XWZhBHowu-uzuWl_rXm5jDcCfoiLvZT87do09OtS4aQ
review:
thoroughness: low
understanding: high
rating: positive
comment: LGTM
-----BEGIN CREV PACKAGE REVIEW SIGNATURE-----
c1WSdgCjUmBZh4xuMw7br1mKM2LhCt7zEE6-mU727ABJ0ebKybwcJaWEVhxNoxu7uJ26yjc-bTRsWkG0AuMDDg
-----END CREV PACKAGE REVIEW-----
-----BEGIN CREV PACKAGE REVIEW-----
version: -1
date: "2018-12-27T18:38:54.880597736-08:00"
from:
id-type: crev
id: 8iUv_SPgsAQ4paabLfs1D9tIptMnuSRZ344_M-6m9RE
url: "https://github.com/dpc/crev-proofs"
package:
source: "https://crates.io"
name: crates_io_api
version: 0.3.0
digest: XWZhBHowu-uzuWl_rXm5jDcCfoiLvZT87do09OtS4aQ
review:
thoroughness: low
understanding: medium
rating: positive
-----BEGIN CREV PACKAGE REVIEW SIGNATURE-----
q6lFwVKS0Lv7bvMcsNFJP3w5AuRcUxxLsP8T700YGja-TxnwHk1wrP_ZBA3_c15RVftSA6tImecSwc-BB3MJAw
-----END CREV PACKAGE REVIEW-----