Skip to content

Commit 00c3dd8

Browse files
committed
Remove cargo audit CI job again
We realized that libraries should probably not check for CVEs. It will generate too many false positives and provide very little value. It's up to downstream *program* developers to select exact versions of transitive dependencies. If it ends up being that no version of one of our dependencies is safe/works, then that program developer must report to this library that we should probably consider upgrading/replacing that dependency with something better.
1 parent 91ca82d commit 00c3dd8

File tree

1 file changed

+0
-35
lines changed

1 file changed

+0
-35
lines changed

Diff for: .github/workflows/cargo-audit.yml

-35
This file was deleted.

0 commit comments

Comments
 (0)