# `❌ cargo-deny` **Cargo plugin for linting your dependencies** [![Embark Opensource](https://img.shields.io/badge/embark-open%20source-blueviolet.svg)](https://embark.dev) [![Embark Discord](https://img.shields.io/badge/discord-ark-%237289da.svg?logo=discord)](https://discord.gg/Fg4u4VX) [![Crates.io](https://img.shields.io/crates/v/cargo-deny.svg)](https://crates.io/crates/cargo-deny) [![API Docs](https://docs.rs/cargo-deny/badge.svg)](https://docs.rs/cargo-deny) [![Docs](https://img.shields.io/badge/The%20Book-πŸ“•-brightgreen.svg)](https://embarkstudios.github.io/cargo-deny/) [![Minimum Stable Rust Version](https://img.shields.io/badge/Rust-1.65.0-blue?color=fc8d62&logo=rust)](https://blog.rust-lang.org/2022/11/03/Rust-1.65.0.html) [![SPDX Version](https://img.shields.io/badge/SPDX%20Version-3.18-blue.svg)](https://spdx.org/licenses/) [![dependency status](https://deps.rs/repo/github/EmbarkStudios/cargo-deny/status.svg)](https://deps.rs/repo/github/EmbarkStudios/cargo-deny) [![Build Status](https://github.com/EmbarkStudios/cargo-deny/workflows/CI/badge.svg)](https://github.com/EmbarkStudios/cargo-deny/actions?workflow=CI)

See the book πŸ“• for in-depth documentation.

To run on CI as a GitHub Action, see cargo-deny-action.

Please Note: This is a tool that we use (and like!) and it makes sense to us to release it as open source. However, we can’t take any responsibility for your use of the tool, if it will function correctly or fulfil your needs. No functionality in - or information provided by - cargo-deny constitutes legal advice.

Quickstart

bash cargo install --locked cargo-deny && cargo deny init && cargo deny check

Usage

Install cargo-deny

If you want to use cargo-deny without having cargo installed, build cargo-deny with the standalone feature. This can be useful in Docker Images.

```bash cargo install --locked cargo-deny

Or, if you're an Arch user

pacman -S cargo-deny ```

Initialize your project

bash cargo deny init

Check your crates

bash cargo deny check

Licenses

The licenses check is used to verify that every crate you use has license terms you find acceptable.

bash cargo deny check licenses

licenses output

Bans

The bans check is used to deny (or allow) specific crates, as well as detect and handle multiple versions of the same crate.

bash cargo deny check bans

bans output

Advisories

The advisories check is used to detect issues for crates by looking in an advisory database.

bash cargo deny check advisories

advisories output

Sources

The sources check ensures crates only come from sources you trust.

bash cargo deny check sources

sources output

Contributing

Contributor Covenant

We welcome community contributions to this project.

Please read our Contributor Guide for more information on how to get started.

License

Licensed under either of

at your option.

Contribution

Unless you explicitly state otherwise, any contribution intentionally submitted for inclusion in the work by you, as defined in the Apache-2.0 license, shall be dual licensed as above, without any additional terms or conditions.