nixpkgs/pkgs/development/tools/rust/cargo-geiger/default.nix

53 lines
1.8 KiB
Nix
Raw Normal View History

2019-11-02 22:27:34 +00:00
{ stdenv, lib, fetchFromGitHub
2019-11-06 19:23:32 +00:00
, rustPlatform, pkgconfig, openssl
# darwin dependencies
, Security, CoreFoundation, libiconv
}:
2019-11-02 22:27:34 +00:00
rustPlatform.buildRustPackage rec {
pname = "cargo-geiger";
version = "0.9.1";
2019-11-02 22:27:34 +00:00
src = fetchFromGitHub {
owner = "rust-secure-code";
2019-11-02 22:27:34 +00:00
repo = pname;
rev = "${pname}-${version}";
sha256 = "0kvmjahyx5dcjhry2hkvcshi0lbgipfj0as74a3h3bllfvdfkkg0";
2019-11-02 22:27:34 +00:00
};
# Delete this on next update; see #79975 for details
legacyCargoFetcher = true;
cargoSha256 = "0aykhhxk416p237safmqh5dhwjgrhvgc6zikkmxi9rq567ypp914";
cargoPatches = [ ./cargo-lock.patch ];
2019-11-02 22:27:34 +00:00
# Multiple tests require internet connectivity, so they are disabled here.
# If we ever get cargo-insta (https://crates.io/crates/insta) in tree,
# we might be able to run these with something like
# `cargo insta review` in the `preCheck` phase.
checkPhase = ''
cargo test -- \
--skip test_package::case_2 \
--skip test_package::case_3 \
--skip test_package::case_6
'';
2019-11-06 19:23:32 +00:00
buildInputs = [ openssl ] ++ lib.optionals stdenv.isDarwin [ Security libiconv ];
2019-11-02 22:27:34 +00:00
nativeBuildInputs = [ pkgconfig ];
2019-11-06 19:23:32 +00:00
# FIXME: Use impure version of CoreFoundation because of missing symbols.
# CFURLSetResourcePropertyForKey is defined in the headers but there's no
# corresponding implementation in the sources from opensource.apple.com.
preConfigure = stdenv.lib.optionalString stdenv.isDarwin ''
export NIX_CFLAGS_COMPILE="-F${CoreFoundation}/Library/Frameworks $NIX_CFLAGS_COMPILE"
'';
2019-11-02 22:27:34 +00:00
meta = with lib; {
description = "Detects usage of unsafe Rust in a Rust crate and its dependencies.";
homepage = https://github.com/rust-secure-code/cargo-geiger;
2019-11-02 22:27:34 +00:00
license = with licenses; [ asl20 /* or */ mit ];
maintainers = with maintainers; [ evanjs ];
platforms = platforms.all;
};
}