Skip to content

Consider dependent crate versioning #21

@erichte-ibm

Description

@erichte-ibm

Let's not have an NPM situation here, and make sure that we can automatically pull crates that get hotfixes for NastyStuff™

translation: figure out the semver in Cargo.toml to pull latest versions of crates always. Note: this may be in conflict with shipping Cargo.lock for reproducibility. Perhaps consider integrated CI with some kind of cargo audit to report and complain about compromised crates?

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions