{
"$type": "site.standard.document",
"bskyPostRef": {
"cid": "bafyreiblahtudenzk6i5666n2ocaurm3iljq3ycf275lklxa6nkcxpskpa",
"uri": "at://did:plc:ivbknywyskln22er3nkssdhl/app.bsky.feed.post/3mkczmxsvj3x2"
},
"path": "/t/easily-inspect-dependencies/24200#post_3",
"publishedAt": "2026-04-25T10:27:35.000Z",
"site": "https://internals.rust-lang.org",
"textContent": "At least cargo-crev makes an attempt at renaming any config files that may cause your editor to run potentially malicious code when opening the package directory. This is pretty important if you want to inspect the crate because you want to look for malicious code. Does the cargo team want to accept responsibility for that? If not I think keeping it separate from cargo may be better.",
"title": "Easily inspect dependencies"
}