Skip to content

use the (existing) .cargo/audit.toml to ignore some rust advisories#2903

Merged
djmitche merged 2 commits intoGothenburgBitFactory:developfrom
djmitche:audit-ignore
Aug 7, 2022
Merged

use the (existing) .cargo/audit.toml to ignore some rust advisories#2903
djmitche merged 2 commits intoGothenburgBitFactory:developfrom
djmitche:audit-ignore

Conversation

@djmitche
Copy link
Copy Markdown
Collaborator

@djmitche djmitche commented Aug 6, 2022

I was grepping for RUSTSEC and realized we had ignores set up already, but they had ended up in taskchampion/.cargo instead of .cargo. Let's see if the GH actions pass for this PR..

@djmitche
Copy link
Copy Markdown
Collaborator Author

djmitche commented Aug 6, 2022

It does! So we don't actually need the forked action.

@tbabej
Copy link
Copy Markdown
Member

tbabej commented Aug 6, 2022

Nice! I suppose that means we can archive the audit-rs repo?

@djmitche
Copy link
Copy Markdown
Collaborator Author

djmitche commented Aug 7, 2022

There's some question about people still using it, or moving it somewhere more official, so let's hold off on that.

@djmitche djmitche merged commit 4852b14 into GothenburgBitFactory:develop Aug 7, 2022
@pinkforest
Copy link
Copy Markdown

psst we've forked - https://github.com/rustsec/audit-check

psssst it's sometimes helpful to have runtime flag support instead of having to rely on some config file in-repo

@djmitche
Copy link
Copy Markdown
Collaborator Author

True! Would you like me to propose the same PR to the new "upstream"?

I'll archive the repo in this org.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants